Rezultaty skanowania Farbar Recovery Scan Tool (FRST) (x64) Wersja:26-11-2015 Uruchomiony przez Rafal (administrator) FARAL (27-11-2015 16:46:38) Uruchomiony z F:\Chrome Załadowane profile: Rafal (Dostępne profile: Rafal) Platform: Windows 8.1 Pro (X64) Język: Polski (Polska) Internet Explorer Wersja 11 (Domyślna przeglądarka: Chrome) Tryb startu: Normal Instrukcja obsługi Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Procesy (filtrowane) ================= (Załączenie wejścia w fixlist spowoduje zamknięcie procesu. Powiązany plik nie zostanie przeniesiony.) (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (Intel Corporation) C:\Windows\System32\igfxCUIService.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe (Microsoft Corporation) C:\Windows\System32\wlanext.exe (Micro-Star International Co., Ltd.) C:\Program Files (x86)\MSI\Dragoon Gaming Center\Dragoon Gaming Center.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome Remote Desktop\47.0.2526.18\remoting_host.exe (ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDService.exe (ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrl.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe (Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome Remote Desktop\47.0.2526.18\remoting_host.exe (Micro-Star International Co., Ltd.) C:\Windows\SysWOW64\MSIService.exe (Nero AG) C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe (Qualcomm Atheros) C:\Program Files\Qualcomm Atheros\Network Manager\KillerService.exe (Microsoft Corporation) C:\Windows\System32\GWX\GWX.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (Avast Software) C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe (ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrlHelper.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (Intel Corporation) C:\Windows\System32\igfxEM.exe (Intel Corporation) C:\Windows\System32\igfxHK.exe () C:\Windows\System32\igfxTray.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Microsoft Corporation) C:\Windows\System32\rundll32.exe () C:\Program Files\Qualcomm Atheros\Network Manager\NetworkManager.exe (Microsoft Corporation) C:\Windows\System32\rundll32.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\avastui.exe (Creative Technology Ltd) C:\Program Files (x86)\Creative\Sound Blaster Cinema\Sound Blaster Cinema\SBCinema.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe (Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe (Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Rejestr (filtrowane) =========================== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.) HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [286704 2013-03-22] (Intel Corporation) HKLM\...\Run: [IgfxTray] => C:\Windows\system32\igfxtray.exe [393480 2015-03-19] () HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13538376 2013-05-21] (Realtek Semiconductor) HKLM\...\Run: [ETDCtrl] => C:\Program Files\Elantech\ETDCtrl.exe [2889072 2013-04-25] (ELAN Microelectronics Corp.) HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2655520 2015-11-05] (NVIDIA Corporation) HKLM\...\Run: [ShadowPlay] => C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart HKLM\...\Run: [MBCfg64] => C:\Windows\system32\RunDLL32.exe C:\Windows\system32\MBCfg64.dll,RunDLLEntry MBCfg64 HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [6133520 2015-11-06] (AVAST Software) HKLM-x32\...\Run: [Sound Blaster Cinema] => C:\Program Files (x86)\Creative\Sound Blaster Cinema\Sound Blaster Cinema\SBCinema.exe [711680 2013-08-16] (Creative Technology Ltd) AppInit_DLLs: C:\Windows\system32\nvinitx.dll => C:\Windows\system32\nvinitx.dll [177416 2015-11-16] (NVIDIA Corporation) AppInit_DLLs-x32: C:\Windows\SysWOW64\nvinit.dll => C:\Windows\SysWOW64\nvinit.dll [155976 2015-11-16] (NVIDIA Corporation) ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2015-10-23] (AVAST Software) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Killer Network Manager.lnk [2015-08-03] ShortcutTarget: Killer Network Manager.lnk -> C:\Windows\Installer\{FC2CA280-7EF3-41C9-AD8D-E4CEC4726E5D}\NetworkManager.exe_130C27D738F34C89BDDF21BCFD74B56D.exe (Flexera Software LLC) Startup: C:\Users\Rafal\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Powiadomienia monitorowania tuszu - HP Deskjet 1510 series.lnk [2015-11-27] ShortcutTarget: Powiadomienia monitorowania tuszu - HP Deskjet 1510 series.lnk -> C:\Program Files\HP\HP Deskjet 1510 series\Bin\HPStatusBL.dll (Hewlett-Packard Co.) ==================== Internet (filtrowane) ==================== (Załączenie wejścia w fixlist, w przypadku gdy jest to obiekt rejestru, spowoduje usunięcie go z rejestru lub przywrócenie jego domyślnej postaci.) Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{717B4E4B-3E68-4ACA-AB66-E9A735274CC9}: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{DC595E89-EF2F-4C81-BCB4-230C66CFC039}: [DhcpNameServer] 192.168.1.1 Internet Explorer: ================== BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2015-08-02] (AVAST Software) BHO-x32: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2015-08-02] (AVAST Software) FireFox: ======== FF Plugin HKU\S-1-5-21-3819146831-3552020989-3957378979-1001: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\Rafal\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2015-08-28] (Unity Technologies ApS) Chrome: ======= CHR StartupUrls: Default -> "hxxp://www.google.com/","hxxp://www.google.com/","about:blank","hxxp://www.google.com/" CHR Profile: C:\Users\Rafal\AppData\Local\Google\Chrome\User Data\Default CHR Extension: (Prezentacje Google) - C:\Users\Rafal\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-09-24] CHR Extension: (Dokumenty Google) - C:\Users\Rafal\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-09-24] CHR Extension: (Dysk Google) - C:\Users\Rafal\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-10-21] CHR Extension: (Połączenia przez Skype) - C:\Users\Rafal\AppData\Local\Google\Chrome\User Data\Default\Extensions\blakpkgjpemejpbmfiglncklihnhjkij [2015-11-02] CHR Extension: (YouTube) - C:\Users\Rafal\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-09-24] CHR Extension: (Adblock Plus) - C:\Users\Rafal\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2015-11-25] CHR Extension: (Crazy4Jigsaws) - C:\Users\Rafal\AppData\Local\Google\Chrome\User Data\Default\Extensions\clgliemokfgimmfodoeboneoibjklncc [2015-10-06] CHR Extension: (Google Search) - C:\Users\Rafal\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-10-26] CHR Extension: (Arkusze Google) - C:\Users\Rafal\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-09-24] CHR Extension: (Vector Racer) - C:\Users\Rafal\AppData\Local\Google\Chrome\User Data\Default\Extensions\fnlopomddhnaodbjochfdcebknmejgei [2015-10-06] CHR Extension: (Pulpit zdalny Chrome) - C:\Users\Rafal\AppData\Local\Google\Chrome\User Data\Default\Extensions\gbchcmhmhahfdphkhkmpfmihenigjmpp [2015-11-04] CHR Extension: (Dokumenty Google offline) - C:\Users\Rafal\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2015-11-16] CHR Extension: (AdBlock) - C:\Users\Rafal\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2015-11-25] CHR Extension: (Avast Online Security) - C:\Users\Rafal\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2015-11-02] CHR Extension: (Fireboy & Watergirl 4 Crystal Temple) - C:\Users\Rafal\AppData\Local\Google\Chrome\User Data\Default\Extensions\hbioademamgcidpknbkilibejpjhhoak [2015-10-06] CHR Extension: (The RGB Game) - C:\Users\Rafal\AppData\Local\Google\Chrome\User Data\Default\Extensions\hnieofmjopiiifehpejcgcpailcndege [2015-10-06] CHR Extension: (Silent Rider) - C:\Users\Rafal\AppData\Local\Google\Chrome\User Data\Default\Extensions\ilappllkolejmoibpnlobambnoeblgmh [2015-10-06] CHR Extension: (LEGO Bricks for Kids - Duckie Deck) - C:\Users\Rafal\AppData\Local\Google\Chrome\User Data\Default\Extensions\nbganapjeophmimeokdffcajbbphfedb [2015-10-06] CHR Extension: (Sumon) - C:\Users\Rafal\AppData\Local\Google\Chrome\User Data\Default\Extensions\nddpmdmpdcbnnkjfplckngdkhhmmbjaf [2015-10-06] CHR Extension: (Płatności w sklepie Chrome Web Store) - C:\Users\Rafal\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-09-24] CHR Extension: (Gmail) - C:\Users\Rafal\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-09-24] CHR Extension: (Canvas Rider) - C:\Users\Rafal\AppData\Local\Google\Chrome\User Data\Default\Extensions\poknhlcknimnnbfcombaooklofipaibk [2015-10-06] CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2015-08-02] ==================== Usługi (filtrowane) ======================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [146600 2015-10-23] (AVAST Software) R3 AvastVBoxSvc; C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe [4048280 2015-10-23] (Avast Software) R2 chromoting; C:\Program Files (x86)\Google\Chrome Remote Desktop\47.0.2526.18\remoting_host.exe [69448 2015-10-14] (Google Inc.) R2 ETDService; C:\Program Files\Elantech\ETDService.exe [98672 2013-04-25] (ELAN Microelectronics Corp.) R2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1156384 2015-11-05] (NVIDIA Corporation) R2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [15344 2013-03-22] (Intel Corporation) R2 igfxCUIService1.0.0.0; C:\Windows\system32\igfxCUIService.exe [345864 2015-03-19] (Intel Corporation) R2 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [731648 2013-02-13] (Intel(R) Corporation) [Brak podpisu cyfrowego] S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [820184 2013-02-13] (Intel(R) Corporation) R2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [131544 2013-03-12] (Intel Corporation) R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432 2013-03-12] (Intel Corporation) R2 Micro Star SCM; C:\Windows\SysWOW64\MSIService.exe [160768 2009-07-09] (Micro-Star International Co., Ltd.) [Brak podpisu cyfrowego] R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1873696 2015-11-05] (NVIDIA Corporation) R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe [5568288 2015-11-05] (NVIDIA Corporation) S3 Origin Client Service; F:\Program Files\Origin\OriginClientService.exe [2078216 2015-09-30] (Electronic Arts) R2 Qualcomm Atheros Killer Service V2; C:\Program Files\Qualcomm Atheros\Network Manager\KillerService.exe [386560 2014-12-10] (Qualcomm Atheros) [Brak podpisu cyfrowego] S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [366520 2015-02-04] (Microsoft Corporation) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23792 2015-02-04] (Microsoft Corporation) ===================== Sterowniki (filtrowane) ========================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [28656 2015-10-23] (AVAST Software) R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [90968 2015-10-23] (AVAST Software) R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93528 2015-10-23] (AVAST Software) R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65224 2015-10-23] (AVAST Software) R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1059656 2015-11-06] (AVAST Software) R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [449992 2015-11-06] (AVAST Software) R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [153744 2015-10-23] (AVAST Software) R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [274808 2015-10-23] (AVAST Software) R1 BfLwf; C:\Windows\system32\DRIVERS\bwcW8x64.sys [98992 2014-11-18] (Qualcomm Atheros, Inc.) R3 BthLEEnum; C:\Windows\system32\DRIVERS\BthLEEnum.sys [226304 2014-11-21] (Microsoft Corporation) R3 dtultrascsibus; C:\Windows\System32\drivers\dtultrascsibus.sys [30352 2015-08-12] (Disc Soft Ltd) S0 ebdrv; C:\Windows\System32\drivers\evbda.sys [3357024 2013-08-22] (Broadcom Corporation) R3 Ke2200; C:\Windows\system32\DRIVERS\e22w8x64.sys [130224 2014-03-27] (Qualcomm Atheros, Inc.) R0 ngvss; C:\Windows\System32\Drivers\ngvss.sys [132656 2015-10-23] (AVAST Software) R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [20768 2015-11-05] (NVIDIA Corporation) R3 nvvad_WaveExtensible; C:\Windows\system32\drivers\nvvad64v.sys [50472 2015-08-11] (NVIDIA Corporation) R3 RTSPER; C:\Windows\system32\DRIVERS\RtsPer.sys [407112 2013-04-28] (Realsil Semiconductor Corporation) R3 RTWlanE; C:\Windows\system32\DRIVERS\rtwlane.sys [1549384 2013-05-02] (Realtek Semiconductor Corporation ) R2 VBoxAswDrv; C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys [274336 2015-10-23] (Avast Software) S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [44024 2015-02-04] (Microsoft Corporation) S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [264000 2015-02-04] (Microsoft Corporation) S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [114496 2015-02-04] (Microsoft Corporation) R3 WINIO; C:\Program Files (x86)\MSI\Dragoon Gaming Center\winio64.sys [15160 2010-06-07] () S1 wfdrvr_vw_1_10_0_28; system32\drivers\wfdrvr_vw_1_10_0_28.sys [X] ==================== NetSvcs (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) ==================== Jeden miesiąc - utworzone pliki i foldery ======== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2015-11-26 23:48 - 2015-11-26 23:48 - 00000706 _____ C:\Users\Public\Desktop\MailShare.lnk 2015-11-26 22:13 - 2015-11-27 16:46 - 00000000 ____D C:\FRST 2015-11-26 18:49 - 2015-11-26 18:49 - 00000000 ____D C:\Windows\SysWOW64\NV 2015-11-26 18:49 - 2015-11-26 18:49 - 00000000 ____D C:\Windows\system32\NV 2015-11-26 18:48 - 2015-11-14 07:06 - 00062768 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll 2015-11-26 18:47 - 2015-11-16 04:35 - 42913912 _____ C:\Windows\system32\nvcompiler.dll 2015-11-26 18:47 - 2015-11-16 04:35 - 37881976 _____ C:\Windows\SysWOW64\nvcompiler.dll 2015-11-26 18:47 - 2015-11-16 04:35 - 22310008 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll 2015-11-26 18:47 - 2015-11-16 04:35 - 18363000 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll 2015-11-26 18:47 - 2015-11-16 04:35 - 17515528 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2umx.dll 2015-11-26 18:47 - 2015-11-16 04:35 - 16553568 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll 2015-11-26 18:47 - 2015-11-16 04:35 - 15717864 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll 2015-11-26 18:47 - 2015-11-16 04:35 - 15122296 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll 2015-11-26 18:47 - 2015-11-16 04:35 - 14835872 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll 2015-11-26 18:47 - 2015-11-16 04:35 - 13527440 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll 2015-11-26 18:47 - 2015-11-16 04:35 - 12770944 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll 2015-11-26 18:47 - 2015-11-16 04:35 - 12034248 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll 2015-11-26 18:47 - 2015-11-16 04:35 - 11130488 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys 2015-11-26 18:47 - 2015-11-16 04:35 - 03579696 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll 2015-11-26 18:47 - 2015-11-16 04:35 - 03159248 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll 2015-11-26 18:47 - 2015-11-16 04:35 - 02870576 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll 2015-11-26 18:47 - 2015-11-16 04:35 - 02490672 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll 2015-11-26 18:47 - 2015-11-16 04:35 - 01905272 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6435900.dll 2015-11-26 18:47 - 2015-11-16 04:35 - 01564792 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6435900.dll 2015-11-26 18:47 - 2015-11-16 04:35 - 00877176 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll 2015-11-26 18:47 - 2015-11-16 04:35 - 00861816 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll 2015-11-26 18:47 - 2015-11-16 04:35 - 00689272 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll 2015-11-26 18:47 - 2015-11-16 04:35 - 00673912 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll 2015-11-26 18:47 - 2015-11-16 04:35 - 00501056 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll 2015-11-26 18:47 - 2015-11-16 04:35 - 00467912 _____ (NVIDIA Corporation) C:\Windows\system32\nvumdshimx.dll 2015-11-26 18:47 - 2015-11-16 04:35 - 00422240 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll 2015-11-26 18:47 - 2015-11-16 04:35 - 00413816 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFROpenGL.dll 2015-11-26 18:47 - 2015-11-16 04:35 - 00388024 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll 2015-11-26 18:47 - 2015-11-16 04:35 - 00369272 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFROpenGL.dll 2015-11-26 18:47 - 2015-11-16 04:35 - 00177416 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll 2015-11-26 18:47 - 2015-11-16 04:35 - 00155976 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll 2015-11-26 18:47 - 2015-11-16 04:35 - 00151368 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll 2015-11-26 18:47 - 2015-11-16 04:35 - 00128512 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll 2015-11-26 18:47 - 2015-11-16 04:35 - 00033607 _____ C:\Windows\system32\nvinfo.pb 2015-11-26 18:47 - 2015-11-16 04:35 - 00031352 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvpciflt.sys 2015-11-25 22:29 - 2015-11-26 23:48 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MailShare 2015-11-25 22:29 - 2009-12-12 16:15 - 00206848 _____ C:\Windows\system32\unrar.dll 2015-11-25 18:16 - 2015-11-25 18:17 - 00000000 ____D C:\Users\Rafal\AppData\Local\Apps\Windows 7 USB DVD Download Tool 2015-11-25 18:16 - 2015-11-25 18:16 - 00002578 _____ C:\Users\Rafal\Desktop\Windows 7 USB DVD Download Tool.lnk 2015-11-25 18:16 - 2015-11-25 18:16 - 00000000 ____D C:\Users\Rafal\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows 7 USB DVD Download Tool 2015-11-22 09:52 - 2015-11-22 09:52 - 54750728 _____ (Free Time) C:\Users\Rafal\Downloads\Format Factory 3.7.5.0.exe 2015-11-22 09:52 - 2015-11-22 09:52 - 00000746 _____ C:\Users\Rafal\Desktop\Format Factory.lnk 2015-11-22 09:52 - 2015-11-22 09:52 - 00000000 ____D C:\Users\Rafal\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FormatFactory 2015-11-19 23:03 - 2015-11-22 09:58 - 00000661 _____ C:\Users\Rafal\Desktop\Sonic Lost World.lnk 2015-11-19 23:03 - 2015-11-19 23:03 - 00000000 ____D C:\Users\Rafal\AppData\Roaming\Sonic Lost World 2015-11-19 23:03 - 2015-11-19 23:03 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\R.G. Mechanics 2015-11-19 22:10 - 2015-11-19 22:12 - 00000000 ____D C:\Users\Rafal\Documents\Assassin's Creed Syndicate 2015-11-19 21:57 - 2015-11-19 21:57 - 00000742 _____ C:\Users\Rafal\Desktop\Assassins Creed Syndicate.lnk 2015-11-19 21:57 - 2015-11-19 21:57 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Assassins Creed Syndicate 2015-11-17 23:30 - 2015-11-22 09:59 - 00000049 _____ C:\Users\Rafal\Desktop\oplaty listopad.txt 2015-11-15 16:12 - 2015-11-15 16:12 - 00000000 ____D C:\Users\Rafal\AppData\Roaming\Steam 2015-11-15 16:12 - 2015-11-15 16:12 - 00000000 ____D C:\Users\Rafal\AppData\Local\Fallout4 2015-11-15 15:30 - 2015-11-15 15:30 - 00000601 _____ C:\Users\Rafal\Desktop\Fallout 4.lnk 2015-11-15 15:30 - 2015-11-15 15:30 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Fallout 4 2015-11-12 22:31 - 2015-11-05 18:13 - 01710752 _____ (NVIDIA Corporation) C:\Windows\system32\nvspcap64.dll 2015-11-12 22:30 - 2015-11-14 07:06 - 00075056 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshextr.dll 2015-11-12 22:28 - 2015-11-05 18:13 - 01905272 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6435891.dll 2015-11-12 22:28 - 2015-11-05 18:13 - 01564792 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6435891.dll 2015-11-12 22:27 - 2015-11-12 22:27 - 00000000 ____D C:\NVIDIA 2015-11-12 21:29 - 2015-11-12 21:29 - 00000477 _____ C:\Users\Public\Desktop\Call of Duty Black Ops III.lnk 2015-11-12 21:29 - 2015-11-12 21:29 - 00000477 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Call of Duty Black Ops III.lnk 2015-11-12 18:18 - 2015-11-12 18:18 - 00000000 ____D C:\ProgramData\Google 2015-11-06 22:18 - 2015-11-06 22:18 - 01059656 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsnx.sys 2015-11-06 22:18 - 2015-11-06 22:18 - 00449992 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsp.sys ==================== Jeden miesiąc - zmodyfikowane pliki i foldery ======== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2015-11-27 16:44 - 2015-09-24 21:39 - 00001058 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2015-11-27 16:43 - 2014-11-21 05:46 - 01828496 _____ C:\Windows\system32\PerfStringBackup.INI 2015-11-27 16:43 - 2014-11-21 05:07 - 00808198 _____ C:\Windows\system32\perfh015.dat 2015-11-27 16:43 - 2014-11-21 05:07 - 00164014 _____ C:\Windows\system32\perfc015.dat 2015-11-27 16:43 - 2013-08-22 14:36 - 00000000 ____D C:\Windows\Inf 2015-11-27 16:41 - 2015-08-02 09:07 - 00003598 _____ C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-3819146831-3552020989-3957378979-1001 2015-11-27 14:57 - 2015-09-24 21:39 - 00001054 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2015-11-27 14:57 - 2015-08-04 13:44 - 00000000 __SHD C:\Users\Rafal\IntelGraphicsProfiles 2015-11-27 14:56 - 2013-08-22 15:45 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2015-11-27 14:56 - 2013-08-22 14:25 - 00262144 ___SH C:\Windows\system32\config\BBI 2015-11-26 23:45 - 2015-10-23 07:15 - 00004182 _____ C:\Windows\System32\Tasks\avast! Emergency Update 2015-11-26 22:16 - 2013-08-22 14:36 - 00000000 ____D C:\Windows 2015-11-26 18:49 - 2015-08-02 09:17 - 00000000 ____D C:\ProgramData\NVIDIA 2015-11-25 22:09 - 2013-08-22 16:36 - 00000000 ____D C:\Windows\LiveKernelReports 2015-11-25 21:52 - 2013-08-22 16:36 - 00000000 ____D C:\Windows\system32\NDF 2015-11-19 23:03 - 2013-08-22 16:36 - 00000000 ____D C:\Program Files\Common Files\microsoft shared 2015-11-15 16:12 - 2015-09-11 18:20 - 00000000 ____D C:\Users\Rafal\Documents\My Games 2015-11-14 07:06 - 2015-10-18 08:10 - 00523384 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshext.dll 2015-11-14 07:06 - 2015-08-02 09:17 - 06358832 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll 2015-11-14 07:06 - 2015-08-02 09:17 - 02983032 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc64.dll 2015-11-14 07:06 - 2015-08-02 09:17 - 02554488 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvcr.dll 2015-11-14 07:06 - 2015-08-02 09:17 - 00938800 _____ (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe 2015-11-14 07:06 - 2015-08-02 09:17 - 00385144 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll 2015-11-12 18:17 - 2015-08-02 11:01 - 00000000 ____D C:\Program Files (x86)\Google 2015-11-11 15:14 - 2015-09-24 21:40 - 00002221 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2015-11-05 18:13 - 2015-09-12 09:26 - 01423304 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspcap.dll 2015-11-05 18:13 - 2015-08-04 18:25 - 01756424 _____ (NVIDIA Corporation) C:\Windows\system32\nvspbridge64.dll 2015-11-05 18:13 - 2015-08-04 18:25 - 01316000 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspbridge.dll 2015-11-02 11:32 - 2015-08-02 09:02 - 00000000 ____D C:\Users\Rafal 2015-10-28 09:17 - 2015-08-02 09:17 - 06027430 _____ C:\Windows\system32\nvcoproc.bin ==================== Pliki w katalogu głównym wybranych folderów ======= 2015-08-03 20:45 - 2015-08-03 20:45 - 0000000 _____ () C:\Users\Rafal\AppData\Local\Driver_LOM_8161Present.flag 2015-08-02 09:20 - 2015-08-02 09:20 - 0000027 _____ () C:\Users\Rafal\AppData\Local\killertool.log 2015-08-05 20:22 - 2015-08-05 20:22 - 0000057 _____ () C:\ProgramData\Ament.ini ==================== Bamital & volsnap ================= (Brak automatycznej naprawy dla plików które nie przeszły weryfikacji.) C:\Windows\system32\winlogon.exe => Plik podpisany cyfrowo C:\Windows\system32\wininit.exe => Plik podpisany cyfrowo C:\Windows\explorer.exe => Plik podpisany cyfrowo C:\Windows\SysWOW64\explorer.exe => Plik podpisany cyfrowo C:\Windows\system32\svchost.exe => Plik podpisany cyfrowo C:\Windows\SysWOW64\svchost.exe => Plik podpisany cyfrowo C:\Windows\system32\services.exe => Plik podpisany cyfrowo C:\Windows\system32\User32.dll => Plik podpisany cyfrowo C:\Windows\SysWOW64\User32.dll => Plik podpisany cyfrowo C:\Windows\system32\userinit.exe => Plik podpisany cyfrowo C:\Windows\SysWOW64\userinit.exe => Plik podpisany cyfrowo C:\Windows\system32\rpcss.dll => Plik podpisany cyfrowo C:\Windows\system32\dnsapi.dll => Plik podpisany cyfrowo C:\Windows\SysWOW64\dnsapi.dll => Plik podpisany cyfrowo C:\Windows\system32\Drivers\volsnap.sys => Plik podpisany cyfrowo LastRegBack: 2015-11-22 09:48 ==================== Koniec FRST.txt ============================