Rezultaty skanowania Farbar Recovery Scan Tool (FRST) (x64) Wersja: 21-08-2025 Uruchomiony przez pszen (administrator) DESKTOP-5B4NBNC (ASUSTeK COMPUTER INC. X556UQK) (24-08-2025 10:35:24) Uruchomiony z C:\Users\pszen\Downloads\FRST64.exe Załadowane profile: pszen Platforma: Microsoft Windows 10 Home Wersja 22H2 19045.6216 (X64) Język: Polski (Polska) Domyślna przeglądarka: Chrome Tryb startu: Normal ==================== Procesy (filtrowane) ================= (Załączenie wejścia w fixlist spowoduje zamknięcie procesu. Powiązany plik nie zostanie przeniesiony.) (5BD5593D-A41B-4F89-884E-B4F3E0FBAA75 -> Apple Inc.) C:\Program Files\WindowsApps\AppleInc.iTunes_12137.1.3025.0_x64__nzyj5cx40ttqa\AMDS64\AppleMobileDeviceProcess.exe (ASUSTeK Computer Inc. -> ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe (ASUSTeK Computer Inc. -> ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe (C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe ->) (ASUSTeK Computer Inc. -> ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe (C:\Program Files (x86)\Cisco\Cisco AnyConnect Secure Mobility Client\aciseagent.exe ->) (Cisco Systems, Inc. -> Cisco Systems, Inc.) C:\Program Files (x86)\Cisco\Cisco AnyConnect Secure Mobility Client\aciseposture.exe (C:\Program Files (x86)\Garmin\Express\express.exe ->) (The CefSharp Authors) [Brak podpisu cyfrowego] C:\Program Files (x86)\Garmin\Express\CefSharp.BrowserSubprocess.exe <2> (C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe <10> (C:\Program Files\WindowsApps\Microsoft.OutlookForWindows_1.2025.818.302_x64__8wekyb3d8bbwe\olk.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\139.0.3405.111\msedgewebview2.exe <8> (C:\Users\pszen\AppData\Local\kingsoft\WPS Office\12.2.0.21546\office6\wpscloudsvr.exe ->) (Zhuhai Kingsoft Office Software Co., Ltd. -> Zhuhai Kingsoft Office Software Co.,Ltd) C:\Users\pszen\AppData\Local\kingsoft\WPS Office\12.2.0.21546\office6\wpscenter.exe (Cisco Systems, Inc. -> Cisco Systems, Inc.) C:\Program Files (x86)\Cisco\Cisco AnyConnect Secure Mobility Client\vpnui.exe (DriverStore\FileRepository\igdlh64.inf_amd64_9f310939ec1eebf9\igfxCUIService.exe ->) (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_9f310939ec1eebf9\igfxEM.exe (explorer.exe ->) (Garmin International, Inc. -> Garmin Ltd. or its subsidiaries) C:\Program Files (x86)\Garmin\Express\express.exe (explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.OutlookForWindows_1.2025.818.302_x64__8wekyb3d8bbwe\olk.exe (explorer.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe (Google LLC -> Google LLC) C:\Program Files\Google\Chrome\Application\chrome.exe <49> (Intel\DPTF\esif_uf.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\Temp\DPTF\esif_assist_64.exe (services.exe ->) (ASUSTeK Computer Inc. -> ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe (services.exe ->) (Avaya Inc. -> Avaya Inc.) C:\Windows\SysWOW64\QosServM.exe (services.exe ->) (Cisco Systems, Inc. -> Cisco Systems, Inc.) C:\Program Files (x86)\Cisco\Cisco AnyConnect Secure Mobility Client\aciseagent.exe (services.exe ->) (Cisco Systems, Inc. -> Cisco Systems, Inc.) C:\Program Files (x86)\Cisco\Cisco AnyConnect Secure Mobility Client\vpnagent.exe (services.exe ->) (Cisco Systems, Inc. -> Cisco Systems, Inc.) C:\Program Files (x86)\Cisco\Cisco HostScan\bin\ciscod.exe (services.exe ->) (HP Inc. -> HP Inc.) C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe (services.exe ->) (Intel Corporation - Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (services.exe ->) (Intel Corporation - pGFX -> Intel Corporation) C:\Windows\System32\Intel\DPTF\esif_uf.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_af50fdb80983f7bc\jhi_service.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\mewmiprov.inf_amd64_d51901c26227fb29\WMIRegistrationService.exe (services.exe ->) (Intel Corporation) [Brak podpisu cyfrowego] C:\Program Files (x86)\Intel\Intel(R) Security Assist\isa.exe (services.exe ->) (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_9f310939ec1eebf9\igfxCUIService.exe (services.exe ->) (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_9f310939ec1eebf9\IntelCpHDCPSvc.exe (services.exe ->) (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_9f310939ec1eebf9\IntelCpHeciSvc.exe (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> Windows (R) Win 7 DDK provider) C:\Windows\System32\drivers\AdminService.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25070.5-0\MpDefenderCoreService.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25070.5-0\MsMpEng.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25070.5-0\NisSrv.exe (services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe (services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe <2> (services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe (services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe <2> (services.exe ->) (Qualcomm Atheros, Inc. -> ) C:\Windows\System32\drivers\QcomWlanSrvx64.exe (services.exe ->) (TeamViewer -> TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (services.exe ->) (Zhuhai Kingsoft Office Software Co.,Ltd -> Zhuhai Kingsoft Office Software Co.,Ltd) C:\Program Files (x86)\Kingsoft\WPS Office\10.1.0.5644\wtoolex\wpsupdatesvr.exe (sihost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_11.2502.2.0_x64__8wekyb3d8bbwe\CalculatorApp.exe (svchost.exe ->) (24803D75-212C-471A-BC57-9EF86AB91435 -> ) C:\Program Files\WindowsApps\5319275A.WhatsAppDesktop_2.2532.3.0_x64__cv1g1gvanyjgm\WhatsApp.exe (svchost.exe ->) (ASUS) [Brak podpisu cyfrowego] C:\Program Files (x86)\ASUS\Splendid\ACMON.exe (svchost.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe (svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\MicrosoftCorporationII.WinAppRuntime.Singleton_7000.522.1444.0_x64__8wekyb3d8bbwe\PushNotificationsLongRunningTask.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <3> (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe (svchost.exe ->) (Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (svchost.exe ->) (Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (svchost.exe ->) (Zhuhai Kingsoft Office Software Co., Ltd. -> Zhuhai Kingsoft Office Software Co.,Ltd) C:\Users\pszen\AppData\Local\kingsoft\WPS Office\12.2.0.21546\office6\wpscloudsvr.exe ==================== Rejestr (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.) HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2398776 2016-05-02] (NVIDIA Corporation -> NVIDIA Corporation) HKLM\...\Run: [ShadowPlay] => "C:\Windows\system32\rundll32.exe" C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart [1767944 2016-05-02] (NVIDIA Corporation PE Sign v2014 -> NVIDIA Corporation) [Brak podpisu cyfrowego] HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [500208 2010-03-06] (Adobe Systems Incorporated -> Adobe Systems Incorporated) HKLM-x32\...\Run: [Cisco AnyConnect Secure Mobility Agent for Windows] => C:\Program Files (x86)\Cisco\Cisco AnyConnect Secure Mobility Client\vpnui.exe [2044576 2024-02-15] (Cisco Systems, Inc. -> Cisco Systems, Inc.) HKLM-x32\...\Run: [AdobeCS4ServiceManager] => C:\Program Files (x86)\Common Files\Adobe\CS4ServiceManager\CS4ServiceManager.exe [611712 2008-08-14] (Adobe Systems Incorporated -> Adobe Systems Incorporated) HKU\S-1-5-21-1163443387-2214835131-3549050545-1001\...\Run: [MicrosoftEdgeAutoLaunch_1BE92F778BA5D780E6461ABE58FBFEA9] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start [4117576 2025-08-21] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-5-21-1163443387-2214835131-3549050545-1001\...\Run: [GarminExpress] => C:\Program Files (x86)\Garmin\Express\express.exe [28999440 2024-11-06] (Garmin International, Inc. -> Garmin Ltd. or its subsidiaries) HKU\S-1-5-21-1163443387-2214835131-3549050545-1001\...\MountPoints2: {afb6be86-bddf-11ef-88b8-f0038ca28fcc} - "E:\HiSuiteDownLoader.exe" HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\139.0.7258.139\Installer\chrmstp.exe [2025-08-24] (Google LLC -> Google LLC) HKLM\Software\Microsoft\Active Setup\Installed Components: [{AFE6A462-C574-4B8A-AF43-4CC60DF4563B}] -> C:\Program Files\BraveSoftware\Brave-Browser\Application\139.1.81.136\Installer\chrmstp.exe [2025-08-21] (Brave Software, Inc. -> Brave Software, Inc.) HKLM\Software\...\Authentication\PLAP Providers: [{C15C0AAF-C309-FE12-BB17-814630A2009F}] -> C:\WINDOWS\SysWOW64\vpnplap64.dll [2024-02-15] (Cisco Systems, Inc. -> Cisco Systems, Inc.) HKLM\SOFTWARE\Policies\Google: Ograniczenia <==== UWAGA ==================== Zaplanowane zadania (filtrowane) ================= (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) Task: {03896D04-23AB-4F74-A27D-B1B71EE41E2C} - \Microsoft\Windows\EnterpriseMgmt\MDMMaintenenceTask -> Brak pliku <==== UWAGA Task: {19849B53-BCBD-445E-9F63-587846EC063A} - \WpsKtpcntrQingTask_Administrator -> Brak pliku <==== UWAGA Task: {32AE5BC7-470F-4E7A-AF8B-DF96A0A93F64} - \Microsoft\Windows\ErrorDetails\EnableErrorDetailsUpdate -> Brak pliku <==== UWAGA Task: {37BCCB44-2A53-49A7-AE1B-AD6ACB668A7A} - \ATK Package A22126881260 -> Brak pliku <==== UWAGA Task: {4520E8A9-AF06-4122-859B-E4B655B29B36} - \Microsoft\Windows\AppID\SmartScreenSpecific -> Brak pliku <==== UWAGA Task: {5B4905E4-FA46-4999-B730-E21819686E9B} - \Microsoft\Windows\UpdateOrchestrator\Maintenance Install -> Brak pliku <==== UWAGA Task: {5DDFDC76-DFC5-4E8B-967B-D72C24423F5C} - \Microsoft\Windows\ErrorDetails\ErrorDetailsUpdate -> Brak pliku <==== UWAGA Task: {635A185A-88AD-4B41-9344-B07C284A75E9} - \Microsoft\Windows\WindowsUpdate\sih -> Brak pliku <==== UWAGA Task: {69DCBE7C-0B27-4D74-9AD7-EB1E555F3984} - \Microsoft\Windows\UpdateOrchestrator\USO_UxBroker_Display -> Brak pliku <==== UWAGA Task: {838A8EB3-D3F7-478D-AAFB-E9F5A665B6BA} - \ATK Package 36D18D69AFC3 -> Brak pliku <==== UWAGA Task: {8933CC2F-94A1-48F6-AEFA-1072D1BCE695} - \Microsoft\Windows\UpdateOrchestrator\USO_UxBroker_ReadyToReboot -> Brak pliku <==== UWAGA Task: {8A49C36C-371C-4B6E-B489-35F92E268EDF} - \Microsoft\Windows\UpdateOrchestrator\Policy Install -> Brak pliku <==== UWAGA Task: {8A56350F-F06D-4F43-B093-9C656C8F81CE} - \ASUS Splendid ACMON -> Brak pliku <==== UWAGA Task: {94F13E2F-23E2-4281-9D87-2CF7B90F6974} - \Microsoft\XblGameSave\XblGameSaveTaskLogon -> Brak pliku <==== UWAGA Task: {C9ACBFD2-20AA-4A3F-BE1A-A3D5279BB1BB} - \Microsoft\Windows\Plug and Play\Plug and Play Cleanup -> Brak pliku <==== UWAGA Task: {D394BE25-2E16-45D4-AAB2-3E8861A09351} - \Microsoft\Windows\Shell\FamilySafetyMonitorToastTask -> Brak pliku <==== UWAGA Task: {D81FF288-7101-479D-A50C-96F80DAFDC0C} - \ASUS\ASUS Product Register Service -> Brak pliku <==== UWAGA Task: {DB880212-D144-420D-8100-A87570CD15DB} - \ASUS USB Charger Plus -> Brak pliku <==== UWAGA Task: {F1BF6F52-19A1-4349-A55B-CB0E78E8B23A} - \WpsExternal_20161114022915 -> Brak pliku <==== UWAGA Task: {F200B6AE-7AD3-4DF7-B3EB-F1356CA5D011} - \Microsoft\Windows\UpdateOrchestrator\Reboot -> Brak pliku <==== UWAGA Task: {390DF602-135B-405D-991F-9AEFCD66E10A} - System32\Tasks\AdobeAAMUpdater-1.0-MicrosoftAccount-pszeniczko@hotmail.com => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [500208 2010-03-06] (Adobe Systems Incorporated -> Adobe Systems Incorporated) Task: {F000DC45-364F-474D-A9DB-549AA335166E} - System32\Tasks\BraveSoftwareUpdateTaskMachineCore{B5C98250-04A5-4706-B364-2D544389FFAF} => C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [167440 2025-03-13] (Brave Software, Inc. -> BraveSoftware Inc.) Task: {C6A430BD-0B9A-4776-909A-054EF383D211} - System32\Tasks\BraveSoftwareUpdateTaskMachineUA{E6E943E3-D550-48B2-9BB8-94B6D9117997} => C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [167440 2025-03-13] (Brave Software, Inc. -> BraveSoftware Inc.) Task: {A9905AAE-CA63-447C-9412-8EC968FCF73E} - System32\Tasks\GarminUpdaterTask => C:\Program Files (x86)\Garmin\Express SelfUpdater\ExpressSelfUpdater.exe [30992 2024-11-06] (Garmin International, Inc. -> ) Task: {8B4F2703-FEDB-4A8E-BCF3-C4476ACFAA2F} - System32\Tasks\GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem141.0.7340.0{C40631DF-F7DF-43D5-AB3E-8C1621D98E07} => C:\Program Files (x86)\Google\GoogleUpdater\141.0.7340.0\updater.exe [6813336 2025-08-06] (Google LLC -> Google LLC) Task: {F0C69810-FD68-425B-82CF-1EC1428F6F1A} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25070.5-0\MpCmdRun.exe [1778240 2025-08-08] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {D34C18C9-1519-4A1D-ACDE-5DC55E56E345} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25070.5-0\MpCmdRun.exe [1778240 2025-08-08] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {4A498D34-423B-46C1-9ECF-8A8587602FE0} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25070.5-0\MpCmdRun.exe [1778240 2025-08-08] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {9D6B796D-23B0-41B3-89BB-43AC7D48E589} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25070.5-0\MpCmdRun.exe [1778240 2025-08-08] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {632F0BA5-EA78-4274-AEFD-147295B1DDA2} - System32\Tasks\Mozilla\Firefox Background Update S-1-5-21-1163443387-2214835131-3549050545-1001 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\firefox.exe [712320 2025-08-20] (Mozilla Corporation -> Mozilla Corporation) -> C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\--MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\backgroundupdate.moz_log --backgroundtask background (dane wartości zawierają 6 znaków więcej). Task: {C1419449-6262-4013-B102-A030F165FB62} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe [34944 2025-08-20] (Mozilla Corporation -> Mozilla Foundation) Task: {5B758CAD-33ED-440D-AEBA-9427C00F62CE} - System32\Tasks\RtHDVBg_ListenToDevice => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1429248 2016-05-20] (Realtek Semiconductor Corp -> Realtek Semiconductor) Task: {59A9C467-5DA9-42BF-8823-A1BB4E54FD47} - System32\Tasks\RTKCPL => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [16475392 2016-05-20] (Realtek Semiconductor Corp -> Realtek Semiconductor) Task: {B225265A-DABA-426F-9180-08F734FAE2E9} - System32\Tasks\Update Checker => C:\Program Files (x86)\ASUS\ASUS Live Update\UpdateChecker.exe [143160 2019-03-12] (ASUSTek Computer Inc. -> ASUSTek Computer Inc.) Task: {DDC35171-3A45-43F0-BC6A-81DE1DB943EB} - System32\Tasks\WpsExternal_pszen_interval => C:\Users\pszen\AppData\Local\kingsoft\WPS Office\12.2.0.21546\office6\wpscloudsvr.exe [945536 2025-06-13] (Zhuhai Kingsoft Office Software Co., Ltd. -> Zhuhai Kingsoft Office Software Co.,Ltd) -> /wpscloudlaunch /run_plugin /plugin_name=ktaskschdtool /plugin_entry=ktaskschdtool.dll /task=wpsexternal /launchtask /ver=1.0 /start_from=task_external_interval Task: {AFBF6D12-9F63-4130-A44E-907FF50D71A0} - System32\Tasks\WpsExternal_pszen_startup => C:\Users\pszen\AppData\Local\kingsoft\WPS Office\12.2.0.21546\office6\wpscloudsvr.exe [945536 2025-06-13] (Zhuhai Kingsoft Office Software Co., Ltd. -> Zhuhai Kingsoft Office Software Co.,Ltd) -> /wpscloudlaunch /run_plugin /plugin_name=ktaskschdtool /plugin_entry=ktaskschdtool.dll /task=wpsexternal /launchtask /ver=1.0 /start_from=task_external_startup Task: {281EC3AA-9C2C-4637-8CC2-1C713ECB9096} - System32\Tasks\WpsUpdateTask_pszen => C:\Users\pszen\AppData\Local\kingsoft\WPS Office\12.2.0.21931\office6\wpsupdate.exe [1732992 2025-07-10] (Zhuhai Kingsoft Office Software Co., Ltd. -> Zhuhai Kingsoft Office Software Co.,Ltd) (Załączenie wejścia w fixlist spowoduje przesunięcie pliku zadania (.job). Plik uruchamiany docelowo przez zadanie nie zostanie przeniesiony.) Task: C:\WINDOWS\Tasks\WpsExternal_20161114022915.job => C:\Program Files (x86)\Kingsoft\WPS Office\ksolaunch.exe Task: C:\WINDOWS\Tasks\WpsKtpcntrQingTask_Administrator.job => C:\Program Files (x86)\Kingsoft\WPS Office\10.1.0.5644\office6\ktpcntr.exeÃqing 10.1.0.5644 xxx server_url=hxxp:/kdl1.cache.wps.com/ksodl/wpscfg/client/____client____html____service____bubble.html ic_server_url=hxxp:/info.kingsoftstore.com/wpsv6internet/infos.ads ==================== Internet (filtrowane) ==================== (Załączenie wejścia w fixlist, w przypadku gdy jest to obiekt rejestru, spowoduje usunięcie go z rejestru lub przywrócenie jego domyślnej postaci.) Tcpip\Parameters: [DhcpNameServer] 192.168.0.1 Tcpip\..\Interfaces\{21f09f47-f9ce-4af9-a69f-1675db9f0fa5}: [DhcpNameServer] 192.168.0.1 Tcpip\..\Interfaces\{21f09f47-f9ce-4af9-a69f-1675db9f0fa5}: [DhcpDomain] home Tcpip\..\Interfaces\{e771d720-68dd-43b2-ad46-ecf933d7218d}: [DhcpNameServer] 192.168.0.1 Tcpip\..\Interfaces\{e771d720-68dd-43b2-ad46-ecf933d7218d}: [DhcpDomain] home Tcpip\..\Interfaces\{e771d720-68dd-43b2-ad46-ecf933d7218d}\3505545444D2E45445D2533373432333D25374: [DhcpNameServer] 192.168.233.1 Tcpip\..\Interfaces\{e771d720-68dd-43b2-ad46-ecf933d7218d}\55053453336464731424: [DhcpNameServer] 192.168.0.1 Tcpip\..\Interfaces\{e771d720-68dd-43b2-ad46-ecf933d7218d}\55053453336464731424: [DhcpDomain] home Edge: ======= Edge Profile: C:\Users\pszen\AppData\Local\Microsoft\Edge\User Data\Default [2025-08-24] Edge Extension: (Dokumenty Google offline) - C:\Users\pszen\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2025-08-05] Edge Extension: (Edge relevant text changes) - C:\Users\pszen\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2024-01-29] FireFox: ======== FF DefaultProfile: s5lm4e0i.default FF ProfilePath: C:\Users\pszen\AppData\Roaming\Mozilla\Firefox\Profiles\s5lm4e0i.default [2024-03-06] FF ProfilePath: C:\Users\pszen\AppData\Roaming\Mozilla\Firefox\Profiles\5ng59v8w.default-release [2025-08-24] Chrome: ======= CHR Profile: C:\Users\pszen\AppData\Local\Google\Chrome\User Data\Default [2025-08-24] CHR Notifications: Default -> hxxps://inpost.pl; hxxps://ipccivr3.p4.org; hxxps://www.autodoc.pl; hxxps://www.facebook.com; hxxps://www.messenger.com; hxxps://www.netflix.com CHR StartupUrls: Default -> "hxxp://www.google.com/" CHR Extension: (Dokumenty Google offline) - C:\Users\pszen\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2025-08-18] CHR Extension: (Darmowy VPN dla Chrome - VPN Proxy VeePN) - C:\Users\pszen\AppData\Local\Google\Chrome\User Data\Default\Extensions\majdfhpaihoncoakbjgbdhglocklcgno [2025-08-24] CHR Extension: (Re-introduce google maps links to search page) - C:\Users\pszen\AppData\Local\Google\Chrome\User Data\Default\Extensions\mjkkdbmdflkcjmonelmlokplkgnjcnji [2025-08-20] CHR Extension: (MetaMask) - C:\Users\pszen\AppData\Local\Google\Chrome\User Data\Default\Extensions\nkbihfbeogaeaoehlefnkodbefgpgknn [2025-08-24] CHR Extension: (Płatności w sklepie Chrome Web Store) - C:\Users\pszen\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2023-12-06] Brave: ======= BRA Profile: C:\Users\pszen\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default [2025-08-24] BRA Extension: (Brave Ad Block Updater (Brave Ad Block First Party Filters (plaintext))) - C:\Users\pszen\AppData\Local\BraveSoftware\Brave-Browser\User Data\adcocjohghhfpidemphmcmlmhnfgikei [2025-07-19] BRA Extension: (Brave Local Data Files Updater) - C:\Users\pszen\AppData\Local\BraveSoftware\Brave-Browser\User Data\afalakplffnnnlkncjhbmahjfjhmlkal [2025-08-24] BRA Extension: (Brave NTP background images) - C:\Users\pszen\AppData\Local\BraveSoftware\Brave-Browser\User Data\aoojcmojmmcbpfgoecoadbdpnagfchel [2025-05-19] BRA Extension: (Brave Ad Block Updater (Oficjalne Polskie Filtry Przeciwko Alertom o Adblocku (plaintext))) - C:\Users\pszen\AppData\Local\BraveSoftware\Brave-Browser\User Data\beeceepafhbchnbfdkfalfipoancnjkm [2025-03-24] BRA Extension: (Brave Ad Block Updater (Fanboy's Mobile Notifications (plaintext))) - C:\Users\pszen\AppData\Local\BraveSoftware\Brave-Browser\User Data\bfpgedeaaibpoidldhjcknekahbikncb [2025-07-19] BRA Extension: (Brave Ad Block Updater (EasyList Cookie (plaintext))) - C:\Users\pszen\AppData\Local\BraveSoftware\Brave-Browser\User Data\cdbbhgbmjhfnhnmgeddbliobbofkgdhe [2025-07-19] BRA Extension: (Brave Ads Resources) - C:\Users\pszen\AppData\Local\BraveSoftware\Brave-Browser\User Data\feeklcgpaolphdiamjaolkkcpbeihkbh [2025-05-19] BRA Extension: (Brave Ad Block Updater (Regional Catalog)) - C:\Users\pszen\AppData\Local\BraveSoftware\Brave-Browser\User Data\gkboaolpopklhgplhaaiboijnklogmbc [2025-06-12] BRA Extension: (Brave NTP Super Referrer mapping table) - C:\Users\pszen\AppData\Local\BraveSoftware\Brave-Browser\User Data\heplpbhjcbmiibdlchlanmdenffpiibo [2025-03-13] BRA Extension: (Brave NTP sponsored images) - C:\Users\pszen\AppData\Local\BraveSoftware\Brave-Browser\User Data\iodhafecfemgejckecbnmpobnhmoaoag [2025-08-24] BRA Extension: (Brave Ad Block Updater (Brave Ad Block Updater (plaintext))) - C:\Users\pszen\AppData\Local\BraveSoftware\Brave-Browser\User Data\iodkpdagapdfkphljnddpjlldadblomo [2025-07-19] BRA Extension: (Brave Ad Block Updater (Resources)) - C:\Users\pszen\AppData\Local\BraveSoftware\Brave-Browser\User Data\mfddibmblmbccpadfndgakiopmmhebop [2025-08-24] BRA Extension: (Brave Ad Block Updater (Oficjalne Polskie Filtry do AdBlocka (plaintext))) - C:\Users\pszen\AppData\Local\BraveSoftware\Brave-Browser\User Data\ngcohbdfildjnmfnicgdipopmlhdcokg [2025-07-19] ==================== Usługi (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) R3 aciseagent; C:\Program Files (x86)\Cisco\Cisco AnyConnect Secure Mobility Client\aciseagent.exe [294560 2024-02-15] (Cisco Systems, Inc. -> Cisco Systems, Inc.) S2 brave; C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [167440 2025-03-13] (Brave Software, Inc. -> BraveSoftware Inc.) S3 BraveElevationService; C:\Program Files\BraveSoftware\Brave-Browser\Application\139.1.81.136\elevation_service.exe [3188304 2025-08-20] (Brave Software, Inc. -> Brave Software, Inc.) S3 bravem; C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [167440 2025-03-13] (Brave Software, Inc. -> BraveSoftware Inc.) R2 ciscod.exe; C:\Program Files (x86)\Cisco\Cisco HostScan\bin\ciscod.exe [897184 2024-02-15] (Cisco Systems, Inc. -> Cisco Systems, Inc.) S3 DevActSvc; C:\Program Files (x86)\ASUS\ASUS Device Activation\DevActSvc.exe [326032 2018-06-05] (ASUSTeK Computer Inc. -> ) R2 HPPrintScanDoctorService; C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe [243720 2025-07-10] (HP Inc. -> HP Inc.) R2 iClarityQoSService; C:\WINDOWS\SysWOW64\QosServM.exe [1666896 2020-02-13] (Avaya Inc. -> Avaya Inc.) R3 Intel(R) Security Assist; C:\Program Files (x86)\Intel\Intel(R) Security Assist\isa.exe [335872 2016-03-02] (Intel Corporation) [Brak podpisu cyfrowego] S2 isaHelperSvc; C:\Program Files (x86)\Intel\Intel(R) Security Assist\isaHelperService.exe [8704 2016-03-02] (Intel Corporation) [Brak podpisu cyfrowego] R2 Kingsoft_WPS_UpdateService; C:\Program Files (x86)\Kingsoft\WPS Office\10.1.0.5644\wtoolex\wpsupdatesvr.exe [133376 2016-11-14] (Zhuhai Kingsoft Office Software Co.,Ltd -> Zhuhai Kingsoft Office Software Co.,Ltd) R2 MDCoreSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25070.5-0\MpDefenderCoreService.exe [2050952 2025-08-08] (Microsoft Windows Publisher -> Microsoft Corporation) R2 QcomWlanSrv; C:\WINDOWS\System32\drivers\QcomWlanSrvx64.exe [189808 2023-03-19] (Qualcomm Atheros, Inc. -> ) R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [7032080 2016-05-12] (TeamViewer -> TeamViewer GmbH) R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25070.5-0\NisSrv.exe [4517784 2025-08-08] (Microsoft Windows Publisher -> Microsoft Corporation) R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25070.5-0\MsMpEng.exe [282464 2025-08-08] (Microsoft Windows Publisher -> Microsoft Corporation) S3 wpscloudsvr; C:\Program Files (x86)\Kingsoft\WPS Office\wpscloudsvr.exe [162048 2016-11-14] (Zhuhai Kingsoft Office Software Co.,Ltd -> Zhuhai Kingsoft Office Software Co.,Ltd) S4 mccspsvc; "C:\Program Files\Common Files\McAfee\CSP\1.9.741.0\\McCSPServiceHost.exe" [X] S4 McProxy; "C:\Program Files\Common Files\McAfee\platform\McSvcHost\McSvHost.exe" /McCoreSvc [X] ===================== Sterowniki (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) R3 acsock; C:\WINDOWS\system32\DRIVERS\acsock64.sys [310216 2024-02-15] (Microsoft Windows Hardware Compatibility Publisher -> Cisco Systems, Inc.) R3 AiCharger; C:\WINDOWS\system32\DRIVERS\AiCharger.sys [22656 2016-02-23] (Microsoft Windows Hardware Compatibility Publisher -> ASUSTek Computer Inc.) R2 ASMMAP64; C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\ASMMAP64.sys [18048 2015-05-08] (Microsoft Windows Hardware Compatibility Publisher -> ASUS) R3 AsusSGDrv; C:\WINDOWS\System32\drivers\AsusSGDrv.sys [152064 2017-01-09] (ASUSTeK Computer Inc. -> ASUS Corporation) R1 ATKWMIACPIIO; C:\Program Files (x86)\ASUS\ATK Package\ATK WMIACPI\atkwmiacpi64.sys [20096 2015-05-08] (Microsoft Windows Hardware Compatibility Publisher -> ASUSTek Computer Inc.) S3 BTHMODEM; C:\WINDOWS\System32\drivers\bthmodem.sys [76800 2019-12-07] (Microsoft Corporation) [Brak podpisu cyfrowego] S3 dtlitescsibus; C:\WINDOWS\System32\drivers\dtlitescsibus.sys [30264 2017-11-02] (Disc Soft Ltd -> Disc Soft Ltd) S3 dtliteusbbus; C:\WINDOWS\System32\drivers\dtliteusbbus.sys [47672 2017-11-02] (Disc Soft Ltd -> Disc Soft Ltd) S3 ew_usbccgpfilter; C:\WINDOWS\System32\drivers\ew_usbccgpfilter.sys [18944 2020-09-07] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.) R3 HIDSwitch; C:\WINDOWS\System32\drivers\AsRadioControl.sys [32696 2020-11-19] (ASUSTek Computer Inc. -> ASUS) S3 HWHandSet; C:\WINDOWS\System32\drivers\hw_quusbmdm.sys [226560 2020-09-07] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.) S3 hwusb_cdcacm; C:\WINDOWS\System32\drivers\hw_cdcacm.sys [127360 2020-09-07] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.) S3 hw_usbdev; C:\WINDOWS\System32\drivers\hw_usbdev.sys [116864 2020-09-07] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.) R3 KslD; C:\WINDOWS\System32\drivers\wd\KslD.sys [332184 2025-08-08] (Microsoft Windows -> Microsoft Corporation) S3 monectdevices; C:\WINDOWS\System32\drivers\monectdevices.sys [15768 2013-12-03] (Kasherlab Technology Inc. -> ) S3 NVSWCFilter; C:\WINDOWS\System32\drivers\nvswcfilter.sys [28344 2016-03-17] (Nvidia Corporation -> Windows (R) Win 7 DDK provider) S3 USBAAPL64; C:\WINDOWS\System32\Drivers\usbaapl64.sys [54784 2018-02-05] (Microsoft Windows Hardware Compatibility Publisher -> Apple, Inc.) S3 vpnva; C:\WINDOWS\System32\drivers\vpnva64-6.sys [74064 2024-02-15] (Cisco Systems, Inc. -> Cisco Systems, Inc.) S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [20888 2025-08-08] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [627120 2025-08-08] (Microsoft Windows -> Microsoft Corporation) R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [101792 2025-08-08] (Microsoft Windows -> Microsoft Corporation) ==================== NetSvcs (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) ==================== Jeden miesiąc (utworzone) (Wszystkie) ========= (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2025-08-24 10:35 - 2025-08-24 10:36 - 000030919 _____ C:\Users\pszen\Downloads\FRST.txt 2025-08-24 10:34 - 2025-08-24 10:36 - 000000000 ____D C:\FRST 2025-08-24 10:33 - 2025-08-24 10:33 - 002409472 _____ (Farbar) C:\Users\pszen\Downloads\FRST64.exe 2025-08-24 10:32 - 2025-08-24 10:32 - 002101248 _____ (Farbar) C:\Users\pszen\Downloads\FRST.exe 2025-08-24 09:52 - 2025-08-24 09:52 - 000000000 ____D C:\Users\pszen\Downloads\Serwisowka Honda Civic VIII gen 5D 2025-08-24 09:51 - 2025-08-24 09:52 - 037086005 _____ C:\Users\pszen\Downloads\Serwisowka Honda Civic VIII gen 5D.zip 2025-08-24 09:47 - 2025-08-24 09:47 - 000000000 ____D C:\Users\pszen\AppData\Roaming\Georiask Meqxiao 2025-08-23 09:49 - 2025-08-23 09:49 - 000000000 ____D C:\Users\pszen\OneDrive\Pulpit\KSG 2025-08-22 12:00 - 2025-08-22 12:00 - 000112186 _____ C:\Users\pszen\Downloads\100178155291.pdf 2025-08-22 10:55 - 2025-08-22 10:55 - 000112687 _____ C:\Users\pszen\Downloads\100183892779.pdf 2025-08-21 15:41 - 2025-08-21 15:41 - 000042432 _____ C:\Users\pszen\Downloads\cennik_oferty_canal%2b_filmy_i_seriale_na_rok_2024-1.pdf 2025-08-21 12:46 - 2025-08-21 12:46 - 000043320 _____ C:\Users\pszen\Downloads\cennik_oferty_specjalny_pakiet_mega_sport_na_6_miesiecy_2025-1.pdf 2025-08-20 16:47 - 2025-08-20 16:47 - 000047596 _____ C:\Users\pszen\Downloads\Potwierdzenie zamówienia (1).pdf 2025-08-20 16:47 - 2025-08-20 16:47 - 000043179 _____ C:\Users\pszen\Downloads\cennik_oferty_mega_sport_na_6_miesiecy_zobowiazania_2025-1.pdf 2025-08-20 12:41 - 2025-08-24 10:00 - 000000000 ____D C:\Program Files\Mozilla Firefox 2025-08-18 17:31 - 2025-08-18 17:31 - 000048231 _____ C:\Users\pszen\Downloads\100184226650.pdf 2025-08-14 12:54 - 2025-08-14 12:54 - 000113573 _____ C:\Users\pszen\Downloads\100184644774.pdf 2025-08-14 12:54 - 2025-08-14 12:54 - 000113573 _____ C:\Users\pszen\Downloads\100184644774 (1).pdf 2025-08-14 12:31 - 2025-08-14 12:31 - 000111454 _____ C:\Users\pszen\Downloads\100184452467.pdf 2025-08-14 11:18 - 2025-08-14 11:18 - 000113243 _____ C:\Users\pszen\Downloads\100171919358.pdf 2025-08-13 08:53 - 2025-08-13 08:53 - 026269696 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 023449088 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 018082816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 014744576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 010859936 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe 2025-08-13 08:53 - 2025-08-13 08:53 - 007824568 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 006424808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 006164488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 005373200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe 2025-08-13 08:53 - 2025-08-13 08:53 - 005064192 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdp.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 004800944 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 004790272 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 004669200 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppsvc.exe 2025-08-13 08:53 - 2025-08-13 08:53 - 004464640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cdp.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 004318208 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 003666432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 003561792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 003356160 _____ (Microsoft Corporation) C:\WINDOWS\system32\msi.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 003113080 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 003064320 _____ (Microsoft Corporation) C:\WINDOWS\system32\windowsudk.shellcommon.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 002993560 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys 2025-08-13 08:53 - 2025-08-13 08:53 - 002871272 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 002845072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys 2025-08-13 08:53 - 2025-08-13 08:53 - 002771456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys 2025-08-13 08:53 - 2025-08-13 08:53 - 002705920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msi.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 002542824 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMVDECOD.DLL 2025-08-13 08:53 - 2025-08-13 08:53 - 002523736 _____ (Microsoft Corporation) C:\WINDOWS\system32\msmpeg2vdec.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 002519040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windowsudk.shellcommon.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 002467360 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMVCORE.DLL 2025-08-13 08:53 - 2025-08-13 08:53 - 002342912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msmpeg2vdec.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 002334096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 002321224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 002269088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMVDECOD.DLL 2025-08-13 08:53 - 2025-08-13 08:53 - 002150776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMVCORE.DLL 2025-08-13 08:53 - 2025-08-13 08:53 - 002033472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 001968128 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 001955328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallService.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 001955328 _____ (Microsoft Corporation) C:\WINDOWS\system32\mmc.exe 2025-08-13 08:53 - 2025-08-13 08:53 - 001787136 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 001718784 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 001714176 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 001701376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 001700464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 001682816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user32.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 001659904 _____ (Microsoft Corporation) C:\WINDOWS\system32\msdtctm.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 001647008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpserverbase.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 001578400 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\http.sys 2025-08-13 08:53 - 2025-08-13 08:53 - 001575808 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe 2025-08-13 08:53 - 2025-08-13 08:53 - 001457664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GdiPlus.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 001450912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dcomp.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 001441280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mmc.exe 2025-08-13 08:53 - 2025-08-13 08:53 - 001412152 _____ (Microsoft Corporation) C:\WINDOWS\system32\crypt32.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 001390592 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcastdvruserservice.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 001346960 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi 2025-08-13 08:53 - 2025-08-13 08:53 - 001323008 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcss.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 001308048 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe 2025-08-13 08:53 - 2025-08-13 08:53 - 001307544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpbase.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 001269248 _____ (Microsoft Corporation) C:\WINDOWS\system32\reseteng.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 001216920 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplyTrustOffline.exe 2025-08-13 08:53 - 2025-08-13 08:53 - 001204552 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcrt4.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 001167896 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipUp.exe 2025-08-13 08:53 - 2025-08-13 08:53 - 001165184 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReAgent.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 001144832 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Management.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 001133272 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32full.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 001113088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wpnapps.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 001084712 _____ (Microsoft Corporation) C:\WINDOWS\system32\msmpeg2adec.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 001078008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Taskmgr.exe 2025-08-13 08:53 - 2025-08-13 08:53 - 001053184 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcomm.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 001053072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CloudExperienceHostCommon.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 001035112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\crypt32.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 000991744 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapi.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 000965632 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmenrollengine.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 000964480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ReAgent.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 000950552 _____ (Microsoft Corporation) C:\WINDOWS\system32\ci.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 000941080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32full.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 000922112 _____ (Microsoft Corporation) C:\WINDOWS\system32\msdtcprx.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 000919040 _____ (Microsoft Corporation) C:\WINDOWS\system32\netlogon.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 000914792 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Shell.Broker.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 000903168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcomm.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 000885160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicenseManager.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 000876544 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcntel.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 000837120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 000828472 _____ (Microsoft Corporation) C:\WINDOWS\system32\tcblaunch.exe 2025-08-13 08:53 - 2025-08-13 08:53 - 000822272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Management.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 000813440 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fvevol.sys 2025-08-13 08:53 - 2025-08-13 08:53 - 000791040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv2.sys 2025-08-13 08:53 - 2025-08-13 08:53 - 000779416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rpcrt4.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 000768512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fveapi.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 000764416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dmenrollengine.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 000758272 _____ (Microsoft Corporation) C:\WINDOWS\system32\sqlsrv32.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 000737280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msdtcprx.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 000736560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 000717824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netlogon.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 000717312 _____ (Microsoft Corporation) C:\WINDOWS\system32\NgcIsoCtnr.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 000668672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sqlsrv32.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 000659328 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\afd.sys 2025-08-13 08:53 - 2025-08-13 08:53 - 000654336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\apphelp.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 000652800 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepic.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 000646144 _____ (Microsoft Corporation) C:\WINDOWS\system32\actxprxy.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 000585112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb.sys 2025-08-13 08:53 - 2025-08-13 08:53 - 000582144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSDApi.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 000546688 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 000532480 _____ (Microsoft Corporation) C:\WINDOWS\system32\mprapi.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 000514048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\daxexec.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 000503680 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\FWPKCLNT.SYS 2025-08-13 08:53 - 2025-08-13 08:53 - 000502784 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceEnroller.exe 2025-08-13 08:53 - 2025-08-13 08:53 - 000501760 _____ (Microsoft Corporation) C:\WINDOWS\system32\upnphost.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 000501248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aepic.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 000491520 _____ (Microsoft Corporation) C:\WINDOWS\system32\profsvc.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 000475648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ShellCommonCommonProxyStub.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 000448000 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgeIso.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 000445352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msv1_0.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 000440832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mprapi.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 000432640 _____ (Microsoft Corporation) C:\WINDOWS\system32\rastls.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 000431616 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapibase.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 000428448 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\clfs.sys 2025-08-13 08:53 - 2025-08-13 08:53 - 000427520 _____ (Microsoft Corporation) C:\WINDOWS\system32\upnp.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 000425472 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXTaskFactory.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 000404992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Bluetooth.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 000403456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgeIso.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 000372224 _____ (Microsoft Corporation) C:\WINDOWS\system32\msdtcuiu.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 000364032 _____ (Microsoft Corporation) C:\WINDOWS\system32\Wldap32.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 000363520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Wldap32.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 000362920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SystemSettings.DataModel.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 000361472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fveapibase.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 000359424 _____ (Microsoft Corporation) C:\WINDOWS\system32\BootMenuUX.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 000355920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wintrust.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 000350208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\secproc.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 000347648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rastls.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 000346624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\upnphost.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 000342528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aadauthhelper.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 000341504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\upnp.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 000334848 _____ (Microsoft Corporation) C:\WINDOWS\system32\msIso.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 000331776 _____ (Microsoft Corporation) C:\WINDOWS\system32\shutdownux.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 000330240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32k.sys 2025-08-13 08:53 - 2025-08-13 08:53 - 000318976 _____ (Microsoft Corporation) C:\WINDOWS\system32\newdev.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 000317952 _____ (Microsoft Corporation) C:\WINDOWS\system32\tapisrv.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 000314368 _____ (Microsoft Corporation) C:\WINDOWS\system32\MTFServer.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 000305152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ahcache.sys 2025-08-13 08:53 - 2025-08-13 08:53 - 000301056 _____ (Microsoft Corporation) C:\WINDOWS\system32\authz.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 000298384 _____ (Microsoft Corporation) C:\WINDOWS\system32\unattend.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 000293760 _____ (Microsoft Corporation) C:\WINDOWS\system32\MTF.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 000292864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msdtcuiu.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 000286720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\actxprxy.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 000277504 _____ (Microsoft Corporation) C:\WINDOWS\system32\ssdpsrv.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 000268672 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb20.sys 2025-08-13 08:53 - 2025-08-13 08:53 - 000267264 _____ (Microsoft Corporation) C:\WINDOWS\system32\rastlsext.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 000266752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msIso.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 000252416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tapisrv.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 000251904 _____ (Microsoft Corporation) C:\WINDOWS\system32\sdiageng.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 000250880 _____ (Microsoft Corporation) C:\WINDOWS\system32\tapi32.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 000241664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\newdev.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 000241152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 000237056 _____ (Microsoft Corporation) C:\WINDOWS\system32\IndexedDbLegacy.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 000225184 _____ (Microsoft Corporation) C:\WINDOWS\system32\tcbloader.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 000217600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallServiceTasks.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 000209280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MTF.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 000207872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sdiageng.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 000202240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rastlsext.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 000198144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tapi32.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 000195584 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcwutl.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 000187904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\authz.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 000184456 _____ (Microsoft Corporation) C:\WINDOWS\system32\imm32.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 000184320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\pcaui.exe 2025-08-13 08:53 - 2025-08-13 08:53 - 000181120 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys 2025-08-13 08:53 - 2025-08-13 08:53 - 000176640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\IndexedDbLegacy.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 000156072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hvsocket.sys 2025-08-13 08:53 - 2025-08-13 08:53 - 000150960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tm.sys 2025-08-13 08:53 - 2025-08-13 08:53 - 000143640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\imm32.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 000139536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmapi.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 000138464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 000136064 _____ (Microsoft Corporation) C:\WINDOWS\system32\offlinelsa.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 000134144 _____ (Microsoft Corporation) C:\WINDOWS\system32\omadmprc.exe 2025-08-13 08:53 - 2025-08-13 08:53 - 000118784 _____ (Microsoft Corporation) C:\WINDOWS\system32\msoert2.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 000109568 _____ (Microsoft Corporation) C:\WINDOWS\system32\remotesp.tsp 2025-08-13 08:53 - 2025-08-13 08:53 - 000104448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\pcaui.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 000102400 _____ (Microsoft Corporation) C:\WINDOWS\system32\xolehlp.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 000097280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msoert2.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 000096256 _____ (Microsoft Corporation) C:\WINDOWS\system32\ssdpapi.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 000095232 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceMetadataRetrievalClient.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 000094712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dumpfve.sys 2025-08-13 08:53 - 2025-08-13 08:53 - 000094088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32u.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 000088576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\remotesp.tsp 2025-08-13 08:53 - 2025-08-13 08:53 - 000085504 _____ (Microsoft Corporation) C:\WINDOWS\system32\INETRES.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 000084992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\INETRES.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 000084480 _____ (Microsoft Corporation) C:\WINDOWS\system32\RpcEpMap.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 000082432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\pcacli.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 000076800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xolehlp.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 000072192 _____ (Microsoft Corporation) C:\WINDOWS\system32\newdev.exe 2025-08-13 08:53 - 2025-08-13 08:53 - 000070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\udhisapi.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 000069632 _____ (Microsoft Corporation) C:\WINDOWS\system32\ndadmin.exe 2025-08-13 08:53 - 2025-08-13 08:53 - 000069120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ssdpapi.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 000067584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\newdev.exe 2025-08-13 08:53 - 2025-08-13 08:53 - 000065536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ndadmin.exe 2025-08-13 08:53 - 2025-08-13 08:53 - 000058368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\udhisapi.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 000056336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\RpcRtRemote.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 000053248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rpcnsh.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 000048128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\afunix.sys 2025-08-13 08:53 - 2025-08-13 08:53 - 000044544 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReAgentc.exe 2025-08-13 08:53 - 2025-08-13 08:53 - 000043008 _____ (Microsoft Corporation) C:\WINDOWS\system32\upnpcont.exe 2025-08-13 08:53 - 2025-08-13 08:53 - 000036864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ReAgentc.exe 2025-08-13 08:53 - 2025-08-13 08:53 - 000036864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksthunk.sys 2025-08-13 08:53 - 2025-08-13 08:53 - 000035328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\upnpcont.exe 2025-08-13 08:53 - 2025-08-13 08:53 - 000034816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Drivers\afunix.sys 2025-08-13 08:53 - 2025-08-13 08:53 - 000032256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PCShellCommonProxyStub.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 000026112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msimsg.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 000026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\msimsg.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 000023734 _____ C:\WINDOWS\SysWOW64\IntegratedServicesRegionPolicySet.json 2025-08-13 08:53 - 2025-08-13 08:53 - 000015872 _____ (Microsoft Corporation) C:\WINDOWS\system32\msdtcspoffln.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 000013179 _____ C:\WINDOWS\system32\DrtmAuthTxt.wim 2025-08-13 08:53 - 2025-08-13 08:53 - 000012800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msdtcspoffln.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 000010752 _____ (Microsoft Corporation) C:\WINDOWS\system32\DMAlertListener.ProxyStub.dll 2025-08-13 08:53 - 2025-08-13 08:53 - 000010240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LaunchTM.exe 2025-08-13 08:53 - 2025-08-13 08:53 - 000007680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DMAlertListener.ProxyStub.dll 2025-08-13 08:52 - 2025-08-13 08:52 - 017531392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll 2025-08-13 08:52 - 2025-08-13 08:52 - 008049256 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll 2025-08-13 08:52 - 2025-08-13 08:52 - 006998016 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.pcshell.dll 2025-08-13 08:52 - 2025-08-13 08:52 - 006092176 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe 2025-08-13 08:52 - 2025-08-13 08:52 - 006033320 _____ (Microsoft Corporation) C:\WINDOWS\system32\StartTileData.dll 2025-08-13 08:52 - 2025-08-13 08:52 - 004796416 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputService.dll 2025-08-13 08:52 - 2025-08-13 08:52 - 003816856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys 2025-08-13 08:52 - 2025-08-13 08:52 - 003810304 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys 2025-08-13 08:52 - 2025-08-13 08:52 - 003750400 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeContent.dll 2025-08-13 08:52 - 2025-08-13 08:52 - 003586048 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll 2025-08-13 08:52 - 2025-08-13 08:52 - 003262464 _____ (Microsoft Corporation) C:\WINDOWS\system32\aitstatic.exe 2025-08-13 08:52 - 2025-08-13 08:52 - 002980864 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssrch.dll 2025-08-13 08:52 - 2025-08-13 08:52 - 002911744 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys 2025-08-13 08:52 - 2025-08-13 08:52 - 002662784 _____ (Microsoft Corporation) C:\WINDOWS\system32\UpdateAgent.dll 2025-08-13 08:52 - 2025-08-13 08:52 - 002594400 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll 2025-08-13 08:52 - 2025-08-13 08:52 - 002572288 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallService.dll 2025-08-13 08:52 - 2025-08-13 08:52 - 002545664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.CloudStore.dll 2025-08-13 08:52 - 2025-08-13 08:52 - 002380288 _____ (Microsoft Corporation) C:\WINDOWS\system32\smartscreen.exe 2025-08-13 08:52 - 2025-08-13 08:52 - 002263424 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll 2025-08-13 08:52 - 2025-08-13 08:52 - 002251264 _____ (Microsoft Corporation) C:\WINDOWS\system32\ISM.dll 2025-08-13 08:52 - 2025-08-13 08:52 - 002006928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\refs.sys 2025-08-13 08:52 - 2025-08-13 08:52 - 001976128 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcomp.dll 2025-08-13 08:52 - 2025-08-13 08:52 - 001901496 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpserverbase.dll 2025-08-13 08:52 - 2025-08-13 08:52 - 001885696 _____ (Microsoft Corporation) C:\WINDOWS\system32\wevtsvc.dll 2025-08-13 08:52 - 2025-08-13 08:52 - 001859000 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi 2025-08-13 08:52 - 2025-08-13 08:52 - 001693168 _____ (Microsoft Corporation) C:\WINDOWS\system32\user32.dll 2025-08-13 08:52 - 2025-08-13 08:52 - 001581976 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpbase.dll 2025-08-13 08:52 - 2025-08-13 08:52 - 001581600 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe 2025-08-13 08:52 - 2025-08-13 08:52 - 001580544 _____ (Microsoft Corporation) C:\WINDOWS\system32\SpeechPal.dll 2025-08-13 08:52 - 2025-08-13 08:52 - 001433864 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi 2025-08-13 08:52 - 2025-08-13 08:52 - 001413120 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnapps.dll 2025-08-13 08:52 - 2025-08-13 08:52 - 001358392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Taskmgr.exe 2025-08-13 08:52 - 2025-08-13 08:52 - 001267096 _____ (Microsoft Corporation) C:\WINDOWS\system32\ShellAppRuntime.exe 2025-08-13 08:52 - 2025-08-13 08:52 - 001234856 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHostCommon.dll 2025-08-13 08:52 - 2025-08-13 08:52 - 001231416 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe 2025-08-13 08:52 - 2025-08-13 08:52 - 001184768 _____ (Microsoft Corporation) C:\WINDOWS\system32\usbmon.dll 2025-08-13 08:52 - 2025-08-13 08:52 - 001108376 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ClipSp.sys 2025-08-13 08:52 - 2025-08-13 08:52 - 001100288 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll 2025-08-13 08:52 - 2025-08-13 08:52 - 001090560 _____ (Microsoft Corporation) C:\WINDOWS\system32\aadcloudap.dll 2025-08-13 08:52 - 2025-08-13 08:52 - 001077664 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManager.dll 2025-08-13 08:52 - 2025-08-13 08:52 - 001049088 _____ (Microsoft Corporation) C:\WINDOWS\system32\IKEEXT.DLL 2025-08-13 08:52 - 2025-08-13 08:52 - 001040896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll 2025-08-13 08:52 - 2025-08-13 08:52 - 001015000 _____ (Microsoft Corporation) C:\WINDOWS\system32\TextInputFramework.dll 2025-08-13 08:52 - 2025-08-13 08:52 - 001011200 _____ (Microsoft Corporation) C:\WINDOWS\system32\uDWM.dll 2025-08-13 08:52 - 2025-08-13 08:52 - 000994200 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\refsv1.sys 2025-08-13 08:52 - 2025-08-13 08:52 - 000987544 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll 2025-08-13 08:52 - 2025-08-13 08:52 - 000954880 _____ (Microsoft Corporation) C:\WINDOWS\system32\ShellCommonCommonProxyStub.dll 2025-08-13 08:52 - 2025-08-13 08:52 - 000953984 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.dll 2025-08-13 08:52 - 2025-08-13 08:52 - 000940416 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcasvc.dll 2025-08-13 08:52 - 2025-08-13 08:52 - 000923536 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll 2025-08-13 08:52 - 2025-08-13 08:52 - 000896912 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys 2025-08-13 08:52 - 2025-08-13 08:52 - 000891392 _____ (Microsoft Corporation) C:\WINDOWS\system32\BFE.DLL 2025-08-13 08:52 - 2025-08-13 08:52 - 000883712 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudRestoreLauncher.dll 2025-08-13 08:52 - 2025-08-13 08:52 - 000856576 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.CloudStore.Schema.Shell.dll 2025-08-13 08:52 - 2025-08-13 08:52 - 000832384 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vhdmp.sys 2025-08-13 08:52 - 2025-08-13 08:52 - 000810880 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_StorageSense.dll 2025-08-13 08:52 - 2025-08-13 08:52 - 000787968 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.immersiveshell.serviceprovider.dll 2025-08-13 08:52 - 2025-08-13 08:52 - 000714752 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSDApi.dll 2025-08-13 08:52 - 2025-08-13 08:52 - 000695296 _____ (Microsoft Corporation) C:\WINDOWS\system32\daxexec.dll 2025-08-13 08:52 - 2025-08-13 08:52 - 000694784 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmTasks.dll 2025-08-13 08:52 - 2025-08-13 08:52 - 000657832 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll 2025-08-13 08:52 - 2025-08-13 08:52 - 000651776 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnprv.dll 2025-08-13 08:52 - 2025-08-13 08:52 - 000645504 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll 2025-08-13 08:52 - 2025-08-13 08:52 - 000636416 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsEnvironment.Desktop.dll 2025-08-13 08:52 - 2025-08-13 08:52 - 000632320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.UX.EapRequestHandler.dll 2025-08-13 08:52 - 2025-08-13 08:52 - 000631208 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll 2025-08-13 08:52 - 2025-08-13 08:52 - 000628736 _____ C:\WINDOWS\system32\aemarebackup.dll 2025-08-13 08:52 - 2025-08-13 08:52 - 000613376 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdpsvc.dll 2025-08-13 08:52 - 2025-08-13 08:52 - 000598528 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys 2025-08-13 08:52 - 2025-08-13 08:52 - 000590848 _____ (Microsoft Corporation) C:\WINDOWS\system32\apphelp.dll 2025-08-13 08:52 - 2025-08-13 08:52 - 000547840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Bluetooth.dll 2025-08-13 08:52 - 2025-08-13 08:52 - 000533056 _____ (Microsoft Corporation) C:\WINDOWS\system32\wow64win.dll 2025-08-13 08:52 - 2025-08-13 08:52 - 000504832 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cldflt.sys 2025-08-13 08:52 - 2025-08-13 08:52 - 000503296 _____ (Microsoft Corporation) C:\WINDOWS\system32\FWPUCLNT.DLL 2025-08-13 08:52 - 2025-08-13 08:52 - 000491008 _____ C:\WINDOWS\system32\consumeresumgr.dll 2025-08-13 08:52 - 2025-08-13 08:52 - 000481688 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.DataModel.dll 2025-08-13 08:52 - 2025-08-13 08:52 - 000471552 _____ (Microsoft Corporation) C:\WINDOWS\system32\aadauthhelper.dll 2025-08-13 08:52 - 2025-08-13 08:52 - 000469504 _____ (Microsoft Corporation) C:\WINDOWS\system32\wintrust.dll 2025-08-13 08:52 - 2025-08-13 08:52 - 000456088 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys 2025-08-13 08:52 - 2025-08-13 08:52 - 000436224 _____ (Microsoft Corporation) C:\WINDOWS\system32\wosc.dll 2025-08-13 08:52 - 2025-08-13 08:52 - 000392536 _____ (Microsoft Corporation) C:\WINDOWS\system32\GameInputInbox.dll 2025-08-13 08:52 - 2025-08-13 08:52 - 000373248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Cortana.OneCore.dll 2025-08-13 08:52 - 2025-08-13 08:52 - 000360320 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipESUConsumer.exe 2025-08-13 08:52 - 2025-08-13 08:52 - 000358400 _____ (Microsoft Corporation) C:\WINDOWS\system32\PushToInstall.dll 2025-08-13 08:52 - 2025-08-13 08:52 - 000340864 _____ (Microsoft Corporation) C:\WINDOWS\system32\clipesu.exe 2025-08-13 08:52 - 2025-08-13 08:52 - 000332288 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll 2025-08-13 08:52 - 2025-08-13 08:52 - 000310272 _____ (Microsoft Corporation) C:\WINDOWS\system32\storewuauth.dll 2025-08-13 08:52 - 2025-08-13 08:52 - 000296448 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceSetupManager.dll 2025-08-13 08:52 - 2025-08-13 08:52 - 000267776 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdd.dll 2025-08-13 08:52 - 2025-08-13 08:52 - 000267264 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallServiceTasks.dll 2025-08-13 08:52 - 2025-08-13 08:52 - 000265728 _____ (Microsoft Corporation) C:\WINDOWS\system32\Win32CompatibilityAppraiserCSP.dll 2025-08-13 08:52 - 2025-08-13 08:52 - 000261632 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.System.UserProfile.dll 2025-08-13 08:52 - 2025-08-13 08:52 - 000256384 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompatTelRunner.exe 2025-08-13 08:52 - 2025-08-13 08:52 - 000230312 _____ (Microsoft Corporation) C:\WINDOWS\system32\convertvhd.exe 2025-08-13 08:52 - 2025-08-13 08:52 - 000222208 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcaui.exe 2025-08-13 08:52 - 2025-08-13 08:52 - 000206336 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft-Windows-Internal-Shell-NearShareExperience.dll 2025-08-13 08:52 - 2025-08-13 08:52 - 000206128 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsBroker.exe 2025-08-13 08:52 - 2025-08-13 08:52 - 000188928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Taskbar.dll 2025-08-13 08:52 - 2025-08-13 08:52 - 000181632 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wfplwfs.sys 2025-08-13 08:52 - 2025-08-13 08:52 - 000168960 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmredir.dll 2025-08-13 08:52 - 2025-08-13 08:52 - 000168456 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmapi.dll 2025-08-13 08:52 - 2025-08-13 08:52 - 000166784 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pdc.sys 2025-08-13 08:52 - 2025-08-13 08:52 - 000163312 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32.dll 2025-08-13 08:52 - 2025-08-13 08:52 - 000142848 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32appinventorycsp.dll 2025-08-13 08:52 - 2025-08-13 08:52 - 000142336 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputLocaleManager.dll 2025-08-13 08:52 - 2025-08-13 08:52 - 000135168 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hdaudbus.sys 2025-08-13 08:52 - 2025-08-13 08:52 - 000133824 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32u.dll 2025-08-13 08:52 - 2025-08-13 08:52 - 000132608 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcaui.dll 2025-08-13 08:52 - 2025-08-13 08:52 - 000109568 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcacli.dll 2025-08-13 08:52 - 2025-08-13 08:52 - 000109472 _____ (Microsoft Corporation) C:\WINDOWS\system32\GameInput.dll 2025-08-13 08:52 - 2025-08-13 08:52 - 000104960 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcadm.dll 2025-08-13 08:52 - 2025-08-13 08:52 - 000091136 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcalua.exe 2025-08-13 08:52 - 2025-08-13 08:52 - 000089600 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmghost.dll 2025-08-13 08:52 - 2025-08-13 08:52 - 000088576 _____ (Microsoft Corporation) C:\WINDOWS\system32\EditBufferTestHook.dll 2025-08-13 08:52 - 2025-08-13 08:52 - 000070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcnsh.dll 2025-08-13 08:52 - 2025-08-13 08:52 - 000070328 _____ (Microsoft Corporation) C:\WINDOWS\system32\RpcRtRemote.dll 2025-08-13 08:52 - 2025-08-13 08:52 - 000060928 _____ (Microsoft Corporation) C:\WINDOWS\system32\PCShellCommonProxyStub.dll 2025-08-13 08:52 - 2025-08-13 08:52 - 000057856 _____ (Microsoft Corporation) C:\WINDOWS\system32\readCloudDataSettings.exe 2025-08-13 08:52 - 2025-08-13 08:52 - 000044032 _____ (Microsoft Corporation) C:\WINDOWS\system32\WordBreakers.dll 2025-08-13 08:52 - 2025-08-13 08:52 - 000043008 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbprint.sys 2025-08-13 08:52 - 2025-08-13 08:52 - 000023734 _____ C:\WINDOWS\system32\IntegratedServicesRegionPolicySet.json 2025-08-13 08:52 - 2025-08-13 08:52 - 000019968 _____ (Microsoft Corporation) C:\WINDOWS\system32\localui.dll 2025-08-13 08:52 - 2025-08-13 08:52 - 000012800 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcaevts.dll 2025-08-13 08:52 - 2025-08-13 08:52 - 000011776 _____ (Microsoft Corporation) C:\WINDOWS\system32\LaunchTM.exe 2025-08-13 08:44 - 2025-06-26 05:53 - 000498176 _____ (Microsoft Corporation) C:\WINDOWS\system32\poqexec.exe 2025-08-13 08:44 - 2025-06-26 04:56 - 000393216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\poqexec.exe 2025-08-12 09:53 - 2025-08-12 09:53 - 000123379 _____ C:\Users\pszen\Downloads\000157579159.pdf 2025-08-06 17:49 - 2025-08-06 17:49 - 000122816 _____ C:\Users\pszen\Downloads\100181113411.pdf 2025-08-06 13:04 - 2025-08-06 13:04 - 000046478 _____ C:\Users\pszen\Downloads\100182003723.pdf 2025-08-05 10:45 - 2025-08-05 10:45 - 000115371 _____ C:\Users\pszen\Downloads\100166505244.pdf 2025-08-04 14:43 - 2025-08-04 14:43 - 000111801 _____ C:\Users\pszen\Downloads\100177877637.pdf 2025-08-04 14:28 - 2025-08-24 09:59 - 000451065 _____ C:\Users\pszen\OneDrive\Pulpit\sierpien.xlsx 2025-08-04 09:41 - 2025-08-04 09:41 - 000117502 _____ C:\Users\pszen\OneDrive\Pulpit\E006293001 Pszeniczko Konrad-7.xlsx 2025-07-31 12:31 - 2025-07-31 12:31 - 000112824 _____ C:\Users\pszen\Downloads\100181248413.pdf 2025-07-31 12:30 - 2025-07-31 12:30 - 000113057 _____ C:\Users\pszen\Downloads\100182814163.pdf ==================== Jeden miesiąc (zmodyfikowane) ================== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2025-08-24 10:32 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2025-08-24 10:08 - 2023-12-06 14:41 - 000000000 ____D C:\WINDOWS\SystemTemp 2025-08-24 10:08 - 2019-12-07 11:14 - 000000000 ___HD C:\Program Files\WindowsApps 2025-08-24 10:08 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\AppReadiness 2025-08-24 10:05 - 2023-12-06 15:36 - 000000200 _____ C:\Users\pszen\AppData\Roaming\sp_data.sys 2025-08-24 10:04 - 2023-12-06 15:26 - 001767984 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2025-08-24 10:04 - 2019-12-07 17:08 - 000787066 _____ C:\WINDOWS\system32\perfh015.dat 2025-08-24 10:04 - 2019-12-07 17:08 - 000152910 _____ C:\WINDOWS\system32\perfc015.dat 2025-08-24 10:04 - 2019-12-07 11:13 - 000000000 ____D C:\WINDOWS\INF 2025-08-24 10:02 - 2023-12-06 15:32 - 000000000 __SHD C:\Users\pszen\IntelGraphicsProfiles 2025-08-24 10:00 - 2024-03-06 19:41 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2025-08-24 10:00 - 2023-12-06 16:10 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2025-08-24 10:00 - 2023-12-06 16:10 - 000000000 ____D C:\ProgramData\NVIDIA 2025-08-24 10:00 - 2023-12-06 16:09 - 000008192 ___SH C:\DumpStack.log.tmp 2025-08-24 10:00 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\ServiceState 2025-08-24 10:00 - 2019-12-07 11:03 - 000524288 _____ C:\WINDOWS\system32\config\BBI 2025-08-24 09:53 - 2023-12-06 16:04 - 000000000 ____D C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38 2025-08-24 09:38 - 2023-12-06 16:10 - 000002450 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2025-08-24 09:38 - 2023-12-06 15:32 - 000000000 ____D C:\Users\pszen\AppData\Local\Packages 2025-08-24 09:37 - 2023-12-06 15:36 - 000002255 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2025-08-24 09:35 - 2023-12-06 16:09 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2025-08-22 16:43 - 2024-02-25 22:03 - 000013080 _____ C:\Users\pszen\OneDrive\Pulpit\HAJS.xlsx 2025-08-22 15:28 - 2023-12-06 15:32 - 000000000 ____D C:\Users\pszen\AppData\Local\D3DSCache 2025-08-21 10:13 - 2025-07-10 13:24 - 000003784 _____ C:\WINDOWS\system32\Tasks\WpsUpdateTask_pszen 2025-08-21 08:55 - 2024-03-06 19:41 - 000001007 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk 2025-08-21 08:53 - 2025-03-13 19:03 - 000002372 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Brave.lnk 2025-08-20 12:32 - 2025-03-18 11:01 - 000000000 ____D C:\ProgramData\boost_interprocess 2025-08-18 19:14 - 2023-12-06 16:09 - 004872120 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2025-08-18 19:13 - 2024-07-11 20:02 - 000000000 ____D C:\WINDOWS\system32\compatrel 2025-08-18 19:13 - 2019-12-07 11:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2025-08-18 19:13 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SystemResources 2025-08-18 19:13 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\oobe 2025-08-18 19:13 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\migwiz 2025-08-18 19:13 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\appraiser 2025-08-18 19:13 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\bcastdvr 2025-08-18 18:54 - 2025-04-30 09:39 - 000000000 ____D C:\Program Files\HP 2025-08-17 20:17 - 2024-08-14 13:38 - 000000000 ____D C:\Users\pszen\OneDrive\Pulpit\fv 2025-08-13 09:11 - 2023-12-08 19:00 - 000000000 ____D C:\WINDOWS\system32\MRT 2025-08-13 09:08 - 2023-12-08 19:00 - 223939376 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2025-08-13 08:57 - 2019-12-07 11:03 - 000000000 ____D C:\WINDOWS\CbsTemp 2025-08-13 08:52 - 2023-12-06 16:12 - 003016192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll 2025-08-10 09:55 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\LiveKernelReports 2025-08-09 12:30 - 2022-03-22 10:36 - 000000529 _____ C:\Users\pszen\OneDrive\Pulpit\PESEL.txt 2025-08-08 11:12 - 2023-12-06 16:10 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd 2025-08-06 17:07 - 2023-02-25 11:58 - 000000000 ____D C:\Users\pszen\OneDrive\Pulpit\CPU 2025-08-04 08:19 - 2025-07-01 08:41 - 000451495 _____ C:\Users\pszen\OneDrive\Pulpit\lipiec.xlsx 2025-08-04 08:18 - 2023-12-06 16:10 - 000003566 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA 2025-08-04 08:18 - 2023-12-06 16:10 - 000003440 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore ==================== Pliki w katalogu głównym wybranych folderów ======== 2024-01-08 19:47 - 2024-02-15 22:41 - 000000132 _____ () C:\Users\pszen\AppData\Roaming\Adobe PNG Format CS5 Prefs 2023-12-06 15:36 - 2025-08-24 10:05 - 000000200 _____ () C:\Users\pszen\AppData\Roaming\sp_data.sys 2024-01-18 13:10 - 2024-01-18 13:10 - 000007606 _____ () C:\Users\pszen\AppData\Local\Resmon.ResmonCfg ==================== SigCheck ============================ (Brak automatycznej naprawy dla plików które nie przeszły weryfikacji.) ==================== Koniec FRST.txt ========================