Rezultaty skanowania Farbar Recovery Scan Tool (FRST) (x64) Wersja:01-12-2015 Uruchomiony przez keramti (administrator) KERAMTI73 (05-12-2015 00:09:13) Uruchomiony z C:\Users\keramti\Downloads Załadowane profile: keramti & (Dostępne profile: keramti & adamt & DefaultAppPool) Platform: Windows 10 Pro Wersja 1511 (X64) Język: Polski (Polska) Internet Explorer Wersja 11 (Domyślna przeglądarka: Edge) Tryb startu: Normal Instrukcja obsługi Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Procesy (filtrowane) ================= (Załączenie wejścia w fixlist spowoduje zamknięcie procesu. Powiązany plik nie zostanie przeniesiony.) (IObit) D:\IObit advaced systemcore PRo 8\Advanced SystemCare 8\ASCService.exe (AMD) C:\Windows\System32\atiesrxx.exe (AMD) C:\Windows\System32\atieclxx.exe (AVAST Software) D:\AVAST\AvastSvc.exe (IObit) C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe (Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe (Microsoft Corporation) C:\Windows\System32\mqsvc.exe (Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe (Avast Software) D:\AVAST\ng\vbox\AvastVBoxSVC.exe (Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe (AVAST Software) D:\AVAST\AvastUI.exe (Mozilla Corporation) D:\FIREFOX\firefox.exe (IObit) D:\IObit Uninstaller\UninstallMonitor.exe (Microsoft Corporation) C:\Windows\System32\DataExchangeHost.exe (IObit) D:\driver\Driver Booster\DriverBooster.exe (Microsoft Corporation) C:\Windows\HelpPane.exe (Malwarebytes) D:\Malwarebytes' Anti-Malware\Malwarebytes Anti-Malware\mbam.exe (Microsoft Corporation) C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.10586.0_none_95e4f9a171a1ad95\TiWorker.exe ==================== Rejestr (filtrowane) =========================== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.) HKLM-x32\...\Run: [AvastUI.exe] => D:\AVAST\AvastUI.exe [7004376 2015-11-19] (AVAST Software) Winlogon\Notify\igfxcui: igfxdev.dll [X] HKU\S-1-5-21-2607209770-1367983800-1593430848-1000\...\Run: [CCleaner Monitoring] => D:\CCLANER\CCleaner64.exe [8204056 2015-04-23] (Piriform Ltd) HKU\S-1-5-21-2607209770-1367983800-1593430848-1000\...\Policies\system: [LogonHoursAction] 2 HKU\S-1-5-21-2607209770-1367983800-1593430848-1000\...\Policies\system: [DontDisplayLogonHoursWarnings] 1 HKU\S-1-5-21-2607209770-1367983800-1593430848-1000\...\Policies\Explorer: [NoLowDiskSpaceChecks] 1 HKU\S-1-5-21-2607209770-1367983800-1593430848-1000\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\Windows\system32\scrnsave.scr [31744 2015-10-30] (Microsoft Corporation) HKU\S-1-5-21-2607209770-1367983800-1593430848-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\Run: [CCleaner Monitoring] => D:\CCLANER\CCleaner64.exe [8204056 2015-04-23] (Piriform Ltd) HKU\S-1-5-21-2607209770-1367983800-1593430848-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\Policies\system: [LogonHoursAction] 2 HKU\S-1-5-21-2607209770-1367983800-1593430848-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\Policies\system: [DontDisplayLogonHoursWarnings] 1 HKU\S-1-5-21-2607209770-1367983800-1593430848-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\Policies\Explorer: [NoLowDiskSpaceChecks] 1 HKU\S-1-5-21-2607209770-1367983800-1593430848-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\Windows\system32\scrnsave.scr [31744 2015-10-30] (Microsoft Corporation) HKU\S-1-5-21-2607209770-1367983800-1593430848-1004-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\Policies\system: [LogonHoursAction] 2 HKU\S-1-5-21-2607209770-1367983800-1593430848-1004-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\Policies\system: [DontDisplayLogonHoursWarnings] 1 ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => D:\AVAST\ashShA64.dll [2015-11-19] (AVAST Software) ShellIconOverlayIdentifiers: [GDriveSharedOverlay] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D43} => Brak pliku ==================== Internet (filtrowane) ==================== (Załączenie wejścia w fixlist, w przypadku gdy jest to obiekt rejestru, spowoduje usunięcie go z rejestru lub przywrócenie jego domyślnej postaci.) Tcpip\Parameters: [DhcpNameServer] 37.8.214.2 31.11.202.254 Tcpip\..\Interfaces\{79de9bca-91ad-4284-a41a-a665daa6af34}: [DhcpNameServer] 37.8.214.2 31.11.202.254 Internet Explorer: ================== HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = www.google.com HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = www.google.com HKU\S-1-5-21-2607209770-1367983800-1593430848-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.msn.com/?pc=SK2M&ocid=SK2MDHP&osmkt=pl-pl HKU\S-1-5-21-2607209770-1367983800-1593430848-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.msn.com/?pc=SK2M&ocid=SK2MDHP&osmkt=pl-pl SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-21-2607209770-1367983800-1593430848-1000 -> {C761630F-5BD2-4E56-B6C4-90F0A308E1CF} URL = hxxp://www.google.com/search?hl=pl&q={searchTerms} SearchScopes: HKU\S-1-5-21-2607209770-1367983800-1593430848-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0 -> {C761630F-5BD2-4E56-B6C4-90F0A308E1CF} URL = hxxp://www.google.com/search?hl=pl&q={searchTerms} BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> D:\AVAST\aswWebRepIE64.dll [2015-11-19] (AVAST Software) BHO-x32: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> D:\AVAST\aswWebRepIE.dll [2015-11-19] (AVAST Software) Handler: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2015-10-12] (Microsoft Corporation) Handler-x32: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2015-10-12] (Microsoft Corporation) FireFox: ======== FF ProfilePath: C:\Users\keramti\AppData\Roaming\Mozilla\Firefox\Profiles\ho4lyumi.Domyślny użytkownik FF Homepage: WWW.INTERIA.PL FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_19_0_0_245.dll [2015-11-10] () FF Plugin: @docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> D:\Tracker Software\PDF Viewer\npPDFXCviewNPPlugin.dll [2015-02-09] (Tracker Software Products (Canada) Ltd.) FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.40728.0\npctrl.dll [2015-07-28] ( Microsoft Corporation) FF Plugin: @tracker-software.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> D:\Tracker Software\PDF Viewer\npPDFXCviewNPPlugin.dll [2015-02-09] (Tracker Software Products (Canada) Ltd.) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_19_0_0_245.dll [2015-11-10] () FF Plugin-x32: @adobe.com/ShockwavePlayer -> C:\Windows\SysWOW64\Adobe\Director\np32dsw_1221171.dll [2015-10-19] (Adobe Systems, Inc.) FF Plugin-x32: @docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> D:\Tracker Software\PDF Viewer\Win32\npPDFXCviewNPPlugin.dll [2015-02-09] (Tracker Software Products (Canada) Ltd.) FF Plugin-x32: @Google.com/GoogleEarthPlugin -> C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll [2013-10-07] (Google) FF Plugin-x32: @java.com/DTPlugin,version=10.55.2 -> C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll [2014-04-14] (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=10.55.2 -> C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll [2014-04-14] (Oracle Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.40728.0\npctrl.dll [2015-07-28] ( Microsoft Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.22.5\npGoogleUpdate3.dll [2014-02-12] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.22.5\npGoogleUpdate3.dll [2014-02-12] (Google Inc.) FF Plugin-x32: @tracker-software.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> D:\Tracker Software\PDF Viewer\Win32\npPDFXCviewNPPlugin.dll [2015-02-09] (Tracker Software Products (Canada) Ltd.) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2015-07-03] (Adobe Systems Inc.) FF Plugin HKU\S-1-5-21-2607209770-1367983800-1593430848-1000: @docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> D:\Tracker Software\PDF Viewer\Win32\npPDFXCviewNPPlugin.dll [2015-02-09] (Tracker Software Products (Canada) Ltd.) FF Plugin HKU\S-1-5-21-2607209770-1367983800-1593430848-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0: @docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> D:\Tracker Software\PDF Viewer\Win32\npPDFXCviewNPPlugin.dll [2015-02-09] (Tracker Software Products (Canada) Ltd.) FF Extension: Ghostery - C:\Users\keramti\AppData\Roaming\Mozilla\Firefox\Profiles\ywfyxmxi.default\Extensions\firefox@ghostery.com.xpi [2015-11-23] FF Extension: Adblock Plus - C:\Users\keramti\AppData\Roaming\Mozilla\Firefox\Profiles\ywfyxmxi.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2015-11-23] FF Extension: Ghostery - C:\Users\keramti\AppData\Roaming\Mozilla\Firefox\Profiles\ho4lyumi.Domyślny użytkownik\Extensions\firefox@ghostery.com.xpi [2015-11-24] FF Extension: Brak nazwy - C:\Users\keramti\AppData\Roaming\Mozilla\Firefox\Profiles\ho4lyumi.Domyślny użytkownik\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2015-11-26] [Brak podpisu cyfrowego] FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - D:\AVAST\WebRep\FF FF Extension: Avast Online Security - D:\AVAST\WebRep\FF [2015-11-19] FF HKLM-x32\...\Firefox\Extensions: [sp@avast.com] - D:\AVAST\SafePrice\FF FF Extension: Avast SafePrice - D:\AVAST\SafePrice\FF [2015-11-19] StartMenuInternet: FIREFOX.EXE - D:\FIREFOX\firefox.exe Chrome: ======= CHR HomePage: Default -> hxxp://www.google.com/ CHR StartupUrls: Default -> "hxxp://www.google.com/" CHR Profile: C:\Users\keramti\AppData\Local\Google\Chrome\User Data\Default CHR Extension: (Prezentacje Google) - C:\Users\keramti\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-10-30] CHR Extension: (Dokumenty Google) - C:\Users\keramti\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-10-30] CHR Extension: (Dysk Google) - C:\Users\keramti\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-10-30] CHR Extension: (YouTube) - C:\Users\keramti\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-10-30] CHR Extension: (Google Search) - C:\Users\keramti\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-10-30] CHR Extension: (Arkusze Google) - C:\Users\keramti\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-10-30] CHR Extension: (Avast Online Security) - C:\Users\keramti\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2015-11-22] CHR Extension: (Płatności w sklepie Chrome Web Store) - C:\Users\keramti\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-08-22] CHR Extension: (Gmail) - C:\Users\keramti\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-10-30] CHR HKLM\...\Chrome\Extension: [ngpampappnmepgilojfohadhhmbhlaek] - CHR HKU\S-1-5-21-2607209770-1367983800-1593430848-1000\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [fcfenmboojpjinhpgggodefccipikbpd] - hxxps://clients2.google.com/service/update2/crx CHR HKU\S-1-5-21-2607209770-1367983800-1593430848-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [fcfenmboojpjinhpgggodefccipikbpd] - hxxps://clients2.google.com/service/update2/crx CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - D:\AVAST\WebRep\Chrome\aswWebRepChrome.crx [2015-11-19] ==================== Usługi (filtrowane) ======================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) R2 AdvancedSystemCareService8; D:\IObit advaced systemcore PRo 8\Advanced SystemCare 8\ASCService.exe [821024 2015-08-05] (IObit) R2 avast! Antivirus; D:\AVAST\AvastSvc.exe [174416 2015-11-19] (AVAST Software) R3 AvastVBoxSvc; D:\AVAST\ng\vbox\AvastVBoxSVC.exe [5554152 2015-11-19] (Avast Software) R2 c2cautoupdatesvc; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1433216 2015-10-12] (Microsoft Corporation) R2 c2cpnrsvc; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1773696 2015-10-12] (Microsoft Corporation) S3 IDriverT; C:\Program Files (x86)\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe [69632 2005-11-14] (Macrovision Corporation) [Brak podpisu cyfrowego] R2 LiveUpdateSvc; C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe [2934048 2015-11-10] (IObit) S4 MBAMService; D:\Malwarebytes' Anti-Malware\Malwarebytes Anti-Malware\mbamservice.exe [1135416 2015-10-05] (Malwarebytes) R2 MSMQ; C:\Windows\system32\mqsvc.exe [26624 2015-11-26] (Microsoft Corporation) S3 npggsvc; C:\Windows\SysWOW64\GameMon.des [3611808 2015-07-22] (INCA Internet Co., Ltd.) S4 Origin Client Service; C:\Program Files\Origin\OriginClientService.exe [2104840 2015-12-02] (Electronic Arts) S3 Smart TimeLock; C:\Program Files (x86)\GIGABYTE\Smart TimeLock\TimeMgmtDaemon.exe [102400 2013-02-22] (Gigabyte Technology CO., LTD.) [Brak podpisu cyfrowego] S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [364464 2015-10-30] (Microsoft Corporation) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [24864 2015-10-30] (Microsoft Corporation) S2 WiseBootAssistant; D:\Wise Care 365\BootTime.exe [580144 2015-08-06] (WiseCleaner.com) ===================== Sterowniki (filtrowane) ========================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [28656 2015-11-19] (AVAST Software) R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [97648 2015-11-19] (AVAST Software) R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93528 2015-11-19] (AVAST Software) R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65224 2015-11-19] (AVAST Software) R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1059656 2015-11-19] (AVAST Software) R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [449992 2015-11-19] (AVAST Software) R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [154256 2015-11-19] (AVAST Software) R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [273784 2015-11-19] (AVAST Software) R3 AtiHDAudioService; C:\Windows\system32\drivers\AtihdWT6.sys [102912 2015-05-28] (Advanced Micro Devices) S3 DFX11_1; C:\Windows\System32\drivers\dfx11_1x64.sys [28008 2012-12-13] (Windows (R) Win 7 DDK provider) R1 dvdfabio; C:\Windows\system32\drivers\dvdfabio.sys [12704 2014-08-29] (DVDFab Software) S3 GPCIDrv; C:\Program Files (x86)\GIGABYTE\GIGABYTE OC_GURU II\GPCIDrv64.sys [14376 2010-02-04] () R1 GUBootStartup; C:\Windows\System32\drivers\GUBootStartup.sys [20160 2015-08-30] (Glarysoft Ltd) R1 HWiNFO32; C:\WINDOWS\SysWOW64\drivers\HWiNFO64A.SYS [26528 2015-11-27] (REALiX(tm)) S3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25816 2015-10-05] (Malwarebytes) R3 MBAMSwissArmy; C:\WINDOWS\system32\drivers\MBAMSwissArmy.sys [192216 2015-12-05] (Malwarebytes) S3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [63704 2015-10-05] (Malwarebytes Corporation) R3 MEIx64; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [129312 2015-09-06] (Intel Corporation) R0 ngvss; C:\Windows\System32\Drivers\ngvss.sys [147088 2015-11-19] (AVAST Software) R3 SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [33448 2015-09-06] (Synaptics Incorporated) R2 VBoxAswDrv; D:\AVAST\ng\vbox\VBoxAswDrv.sys [310904 2015-11-19] (Avast Software) R3 vdrive; C:\Windows\System32\drivers\vdrive.sys [45544 2012-11-13] (Fengtao Software Inc.) S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [44568 2015-10-30] (Microsoft Corporation) S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [293216 2015-10-30] (Microsoft Corporation) S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [118112 2015-10-30] (Microsoft Corporation) S3 WiseHDInfo; C:\Windows\WiseHDInfo64.dll [14800 2015-10-31] (wisecleaner.com) U4 idsvc; Brak ImagePath U3 wpcsvc; Brak ImagePath ==================== NetSvcs (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) ==================== Jeden miesiąc - utworzone pliki i foldery ======== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2015-12-05 00:09 - 2015-12-05 00:09 - 00017897 _____ C:\Users\keramti\Downloads\FRST.txt 2015-12-05 00:07 - 2015-12-05 00:07 - 02350080 _____ (Farbar) C:\Users\keramti\Downloads\FRST64.exe 2015-12-04 23:55 - 2015-12-04 23:55 - 01736704 _____ C:\Users\keramti\Downloads\adwcleaner_5.023.exe 2015-12-04 20:16 - 2015-11-22 11:47 - 07476576 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe 2015-12-04 20:16 - 2015-11-22 11:47 - 02653816 _____ C:\WINDOWS\system32\CoreUIComponents.dll 2015-12-04 20:16 - 2015-11-22 11:41 - 01859448 _____ C:\WINDOWS\SysWOW64\CoreUIComponents.dll 2015-12-04 20:16 - 2015-11-22 11:41 - 01284960 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManager.dll 2015-12-04 20:16 - 2015-11-22 11:41 - 00026408 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe 2015-12-04 20:16 - 2015-11-22 11:35 - 00538632 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWanAPI.dll 2015-12-04 20:16 - 2015-11-22 11:34 - 00975200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicenseManager.dll 2015-12-04 20:16 - 2015-11-22 11:34 - 00080600 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwapi.dll 2015-12-04 20:16 - 2015-11-22 11:33 - 00095072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdstor.sys 2015-12-04 20:16 - 2015-11-22 11:33 - 00058408 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsNativeApi.dll 2015-12-04 20:16 - 2015-11-22 11:33 - 00051680 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsUtilsV2.dll 2015-12-04 20:16 - 2015-11-22 11:30 - 00604928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys 2015-12-04 20:16 - 2015-11-22 11:30 - 00161632 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys 2015-12-04 20:16 - 2015-11-22 11:26 - 00431232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWanAPI.dll 2015-12-04 20:16 - 2015-11-22 11:25 - 00063528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wwapi.dll 2015-12-04 20:16 - 2015-11-22 11:24 - 02772584 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11.dll 2015-12-04 20:16 - 2015-11-22 11:20 - 00795840 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll 2015-12-04 20:16 - 2015-11-22 11:19 - 00440160 _____ (Microsoft Corporation) C:\WINDOWS\system32\services.exe 2015-12-04 20:16 - 2015-11-22 11:14 - 02185840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d11.dll 2015-12-04 20:16 - 2015-11-22 11:00 - 00089088 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsCSP.dll 2015-12-04 20:16 - 2015-11-22 11:00 - 00058368 _____ (Microsoft Corporation) C:\WINDOWS\system32\MosResource.dll 2015-12-04 20:16 - 2015-11-22 10:57 - 02756096 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.tlb 2015-12-04 20:16 - 2015-11-22 10:57 - 00110592 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft-Windows-MapControls.dll 2015-12-04 20:16 - 2015-11-22 10:57 - 00036352 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAutomationCoreRes.dll 2015-12-04 20:16 - 2015-11-22 10:57 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft-Windows-MosTrace.dll 2015-12-04 20:16 - 2015-11-22 10:57 - 00009728 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft-Windows-MosHost.dll 2015-12-04 20:16 - 2015-11-22 10:56 - 22394880 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll 2015-12-04 20:16 - 2015-11-22 10:56 - 01268736 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Resources.dll 2015-12-04 20:16 - 2015-11-22 10:56 - 00064000 _____ (Microsoft Corporation) C:\WINDOWS\system32\MosHostClient.dll 2015-12-04 20:16 - 2015-11-22 10:56 - 00064000 _____ (Microsoft Corporation) C:\WINDOWS\system32\ihvrilproxy.dll 2015-12-04 20:16 - 2015-11-22 10:56 - 00055808 _____ (Microsoft Corporation) C:\WINDOWS\system32\rilproxy.dll 2015-12-04 20:16 - 2015-11-22 10:55 - 00070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\XblAuthManagerProxy.dll 2015-12-04 20:16 - 2015-11-22 10:55 - 00013312 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsBtSvcProxy.dll 2015-12-04 20:16 - 2015-11-22 10:55 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\readingviewresources.dll 2015-12-04 20:16 - 2015-11-22 10:54 - 00138240 _____ (Microsoft Corporation) C:\WINDOWS\system32\ETWCoreUIComponentsResources.dll 2015-12-04 20:16 - 2015-11-22 10:54 - 00117248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\capimg.sys 2015-12-04 20:16 - 2015-11-22 10:54 - 00092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsNativeApi.V2.dll 2015-12-04 20:16 - 2015-11-22 10:54 - 00075264 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanprotdim.dll 2015-12-04 20:16 - 2015-11-22 10:54 - 00044032 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsplib.dll 2015-12-04 20:16 - 2015-11-22 10:54 - 00032256 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups2.dll 2015-12-04 20:16 - 2015-11-22 10:54 - 00028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\WordBreakers.dll 2015-12-04 20:16 - 2015-11-22 10:54 - 00028160 _____ (Microsoft Corporation) C:\WINDOWS\system32\nativemap.dll 2015-12-04 20:16 - 2015-11-22 10:54 - 00003072 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapControlStringsRes.dll 2015-12-04 20:16 - 2015-11-22 10:52 - 16984576 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll 2015-12-04 20:16 - 2015-11-22 10:52 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininetlui.dll 2015-12-04 20:16 - 2015-11-22 10:52 - 00060928 _____ (Microsoft Corporation) C:\WINDOWS\system32\XblAuthTokenBrokerExt.dll 2015-12-04 20:16 - 2015-11-22 10:52 - 00052224 _____ (Microsoft Corporation) C:\WINDOWS\system32\jsproxy.dll 2015-12-04 20:16 - 2015-11-22 10:52 - 00028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\mapsupdatetask.dll 2015-12-04 20:16 - 2015-11-22 10:51 - 00157184 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmcertinst.exe 2015-12-04 20:16 - 2015-11-22 10:51 - 00119808 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsBtSvc.dll 2015-12-04 20:16 - 2015-11-22 10:51 - 00072704 _____ (Microsoft Corporation) C:\WINDOWS\system32\MosStorage.dll 2015-12-04 20:16 - 2015-11-22 10:51 - 00042496 _____ (Microsoft Corporation) C:\WINDOWS\system32\mapstoasttask.dll 2015-12-04 20:16 - 2015-11-22 10:51 - 00034304 _____ (Microsoft Corporation) C:\WINDOWS\system32\iernonce.dll 2015-12-04 20:16 - 2015-11-22 10:50 - 00074240 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssign32.dll 2015-12-04 20:16 - 2015-11-22 10:49 - 00162304 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceCensus.exe 2015-12-04 20:16 - 2015-11-22 10:49 - 00066560 _____ (Microsoft Corporation) C:\WINDOWS\system32\moshost.dll 2015-12-04 20:16 - 2015-11-22 10:49 - 00066560 _____ (Microsoft Corporation) C:\WINDOWS\system32\iesetup.dll 2015-12-04 20:16 - 2015-11-22 10:49 - 00052224 _____ (Microsoft Corporation) C:\WINDOWS\system32\Wwanpref.dll 2015-12-04 20:16 - 2015-11-22 10:48 - 00058368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MosResource.dll 2015-12-04 20:16 - 2015-11-22 10:47 - 00269824 _____ (Microsoft Corporation) C:\WINDOWS\system32\moshostcore.dll 2015-12-04 20:16 - 2015-11-22 10:46 - 00248832 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserMgrProxy.dll 2015-12-04 20:16 - 2015-11-22 10:46 - 00209920 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmcsp.dll 2015-12-04 20:16 - 2015-11-22 10:45 - 06572032 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanmm.dll 2015-12-04 20:16 - 2015-11-22 10:45 - 02756096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.tlb 2015-12-04 20:16 - 2015-11-22 10:45 - 00638464 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll 2015-12-04 20:16 - 2015-11-22 10:45 - 00264192 _____ (Nokia) C:\WINDOWS\system32\NmaDirect.dll 2015-12-04 20:16 - 2015-11-22 10:45 - 00220672 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe 2015-12-04 20:16 - 2015-11-22 10:45 - 00110592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Microsoft-Windows-MapControls.dll 2015-12-04 20:16 - 2015-11-22 10:45 - 00073728 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwancfg.dll 2015-12-04 20:16 - 2015-11-22 10:45 - 00036352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIAutomationCoreRes.dll 2015-12-04 20:16 - 2015-11-22 10:45 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Microsoft-Windows-MosTrace.dll 2015-12-04 20:16 - 2015-11-22 10:45 - 00009728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Microsoft-Windows-MosHost.dll 2015-12-04 20:16 - 2015-11-22 10:44 - 01268736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.Resources.dll 2015-12-04 20:16 - 2015-11-22 10:44 - 00558080 _____ (Microsoft Corporation) C:\WINDOWS\system32\MBMediaManager.dll 2015-12-04 20:16 - 2015-11-22 10:44 - 00048640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MosHostClient.dll 2015-12-04 20:16 - 2015-11-22 10:43 - 24604672 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 2015-12-04 20:16 - 2015-11-22 10:43 - 00704000 _____ (Microsoft Corporation) C:\WINDOWS\system32\CellularAPI.dll 2015-12-04 20:16 - 2015-11-22 10:43 - 00459776 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapConfiguration.dll 2015-12-04 20:16 - 2015-11-22 10:43 - 00382464 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll 2015-12-04 20:16 - 2015-11-22 10:43 - 00342016 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorService.dll 2015-12-04 20:16 - 2015-11-22 10:43 - 00041984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XblAuthManagerProxy.dll 2015-12-04 20:16 - 2015-11-22 10:42 - 13017600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll 2015-12-04 20:16 - 2015-11-22 10:42 - 07979008 _____ (Microsoft Corporation) C:\WINDOWS\system32\mos.dll 2015-12-04 20:16 - 2015-11-22 10:42 - 00589312 _____ (Microsoft Corporation) C:\WINDOWS\system32\MbaeApi.dll 2015-12-04 20:16 - 2015-11-22 10:42 - 00168960 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmmigrator.dll 2015-12-04 20:16 - 2015-11-22 10:42 - 00138240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ETWCoreUIComponentsResources.dll 2015-12-04 20:16 - 2015-11-22 10:42 - 00024064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WordBreakers.dll 2015-12-04 20:16 - 2015-11-22 10:42 - 00003072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapControlStringsRes.dll 2015-12-04 20:16 - 2015-11-22 10:41 - 01814528 _____ (Microsoft Corporation) C:\WINDOWS\system32\pnidui.dll 2015-12-04 20:16 - 2015-11-22 10:41 - 00948224 _____ (Microsoft Corporation) C:\WINDOWS\system32\XblAuthManager.dll 2015-12-04 20:16 - 2015-11-22 10:41 - 00607232 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmsvc.dll 2015-12-04 20:16 - 2015-11-22 10:40 - 01056256 _____ (Microsoft Corporation) C:\WINDOWS\system32\JpMapControl.dll 2015-12-04 20:16 - 2015-11-22 10:40 - 00850432 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsStore.dll 2015-12-04 20:16 - 2015-11-22 10:40 - 00465920 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanconn.dll 2015-12-04 20:16 - 2015-11-22 10:40 - 00065536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininetlui.dll 2015-12-04 20:16 - 2015-11-22 10:40 - 00049152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XblAuthTokenBrokerExt.dll 2015-12-04 20:16 - 2015-11-22 10:39 - 02126848 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl 2015-12-04 20:16 - 2015-11-22 10:39 - 01713664 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRHInproc.dll 2015-12-04 20:16 - 2015-11-22 10:39 - 00988160 _____ (Microsoft Corporation) C:\WINDOWS\system32\NMAA.dll 2015-12-04 20:16 - 2015-11-22 10:39 - 00957440 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRH.dll 2015-12-04 20:16 - 2015-11-22 10:39 - 00938496 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapControlCore.dll 2015-12-04 20:16 - 2015-11-22 10:39 - 00870400 _____ (Microsoft Corporation) C:\WINDOWS\system32\modernexecserver.dll 2015-12-04 20:16 - 2015-11-22 10:39 - 00783360 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll 2015-12-04 20:16 - 2015-11-22 10:39 - 00114688 _____ (Microsoft Corporation) C:\WINDOWS\system32\offlinelsa.dll 2015-12-04 20:16 - 2015-11-22 10:39 - 00086528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapsBtSvc.dll 2015-12-04 20:16 - 2015-11-22 10:39 - 00058368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MosStorage.dll 2015-12-04 20:16 - 2015-11-22 10:39 - 00045568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jsproxy.dll 2015-12-04 20:16 - 2015-11-22 10:38 - 01223168 _____ (Microsoft Corporation) C:\WINDOWS\system32\Unistore.dll 2015-12-04 20:16 - 2015-11-22 10:38 - 01212928 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwansvc.dll 2015-12-04 20:16 - 2015-11-22 10:38 - 00912384 _____ (Microsoft Corporation) C:\WINDOWS\system32\usermgr.dll 2015-12-04 20:16 - 2015-11-22 10:38 - 00320000 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptngc.dll 2015-12-04 20:16 - 2015-11-22 10:38 - 00060928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssign32.dll 2015-12-04 20:16 - 2015-11-22 10:37 - 02624512 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputService.dll 2015-12-04 20:16 - 2015-11-22 10:37 - 01395200 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAutomationCore.dll 2015-12-04 20:16 - 2015-11-22 10:37 - 00515584 _____ (Microsoft Corporation) C:\WINDOWS\system32\LogonController.dll 2015-12-04 20:16 - 2015-11-22 10:36 - 01042432 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingOnlineServices.dll 2015-12-04 20:16 - 2015-11-22 10:34 - 02843136 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdp.dll 2015-12-04 20:16 - 2015-11-22 10:34 - 00345600 _____ (Microsoft Corporation) C:\WINDOWS\system32\TextInputFramework.dll 2015-12-04 20:16 - 2015-11-22 10:34 - 00175616 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll 2015-12-04 20:16 - 2015-11-22 10:34 - 00166912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserMgrProxy.dll 2015-12-04 20:16 - 2015-11-22 10:34 - 00108544 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputLocaleManager.dll 2015-12-04 20:16 - 2015-11-22 10:34 - 00075264 _____ (Microsoft Corporation) C:\WINDOWS\system32\EditBufferTestHook.dll 2015-12-04 20:16 - 2015-11-22 10:33 - 18677760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll 2015-12-04 20:16 - 2015-11-22 10:33 - 13380608 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll 2015-12-04 20:16 - 2015-11-22 10:33 - 02587136 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll 2015-12-04 20:16 - 2015-11-22 10:33 - 00205824 _____ (Nokia) C:\WINDOWS\SysWOW64\NmaDirect.dll 2015-12-04 20:16 - 2015-11-22 10:32 - 00346112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapConfiguration.dll 2015-12-04 20:16 - 2015-11-22 10:32 - 00340480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PlayToDevice.dll 2015-12-04 20:16 - 2015-11-22 10:32 - 00334848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iedkcs32.dll 2015-12-04 20:16 - 2015-11-22 10:31 - 07199232 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingMaps.dll 2015-12-04 20:16 - 2015-11-22 10:31 - 00470528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MbaeApi.dll 2015-12-04 20:16 - 2015-11-22 10:31 - 00416768 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmenrollengine.dll 2015-12-04 20:16 - 2015-11-22 10:30 - 19340800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll 2015-12-04 20:16 - 2015-11-22 10:30 - 02598400 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkMobileSettings.dll 2015-12-04 20:16 - 2015-11-22 10:29 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\JpMapControl.dll 2015-12-04 20:16 - 2015-11-22 10:28 - 01734656 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll 2015-12-04 20:16 - 2015-11-22 10:28 - 01443328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SRHInproc.dll 2015-12-04 20:16 - 2015-11-22 10:28 - 01387008 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll 2015-12-04 20:16 - 2015-11-22 10:28 - 00948224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Unistore.dll 2015-12-04 20:16 - 2015-11-22 10:28 - 00870400 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpncore.dll 2015-12-04 20:16 - 2015-11-22 10:28 - 00793600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SRH.dll 2015-12-04 20:16 - 2015-11-22 10:28 - 00784896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NMAA.dll 2015-12-04 20:16 - 2015-11-22 10:28 - 00686592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll 2015-12-04 20:16 - 2015-11-22 10:28 - 00100864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\offlinelsa.dll 2015-12-04 20:16 - 2015-11-22 10:27 - 03993600 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll 2015-12-04 20:16 - 2015-11-22 10:27 - 02049024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl 2015-12-04 20:16 - 2015-11-22 10:27 - 01944576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputService.dll 2015-12-04 20:16 - 2015-11-22 10:27 - 00711680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapControlCore.dll 2015-12-04 20:16 - 2015-11-22 10:27 - 00241664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cryptngc.dll 2015-12-04 20:16 - 2015-11-22 10:27 - 00160768 _____ (Microsoft Corporation) C:\WINDOWS\system32\enrollmentapi.dll 2015-12-04 20:16 - 2015-11-22 10:26 - 03355136 _____ (Microsoft Corporation) C:\WINDOWS\system32\msftedit.dll 2015-12-04 20:16 - 2015-11-22 10:26 - 01139200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIAutomationCore.dll 2015-12-04 20:16 - 2015-11-22 10:26 - 00709120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BingOnlineServices.dll 2015-12-04 20:16 - 2015-11-22 10:26 - 00421888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LogonController.dll 2015-12-04 20:16 - 2015-11-22 10:25 - 06297088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mos.dll 2015-12-04 20:16 - 2015-11-22 10:25 - 02280448 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll 2015-12-04 20:16 - 2015-11-22 10:25 - 00133632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Core.TextInput.dll 2015-12-04 20:16 - 2015-11-22 10:24 - 12124672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll 2015-12-04 20:16 - 2015-11-22 10:24 - 02647552 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll 2015-12-04 20:16 - 2015-11-22 10:24 - 01995264 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActiveSyncProvider.dll 2015-12-04 20:16 - 2015-11-22 10:24 - 00245760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TextInputFramework.dll 2015-12-04 20:16 - 2015-11-22 10:24 - 00083456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputLocaleManager.dll 2015-12-04 20:16 - 2015-11-22 10:24 - 00059904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EditBufferTestHook.dll 2015-12-04 20:16 - 2015-11-22 10:23 - 05202944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BingMaps.dll 2015-12-04 20:16 - 2015-11-22 10:20 - 01860096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cdp.dll 2015-12-04 20:16 - 2015-11-22 10:19 - 02064384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll 2015-12-04 20:16 - 2015-11-22 10:18 - 01505280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll 2015-12-04 20:16 - 2015-11-22 10:18 - 00697856 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToManager.dll 2015-12-04 20:16 - 2015-11-22 10:18 - 00458752 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToDevice.dll 2015-12-04 20:16 - 2015-11-22 10:17 - 02680320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msftedit.dll 2015-12-04 20:16 - 2015-11-22 10:17 - 02121216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll 2015-12-04 20:16 - 2015-11-22 10:16 - 01706496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ActiveSyncProvider.dll 2015-12-04 20:16 - 2015-11-22 10:11 - 00517632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PlayToManager.dll 2015-12-04 20:10 - 2015-12-04 20:10 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_ZuneDriver_01_09_00.Wdf 2015-12-04 20:10 - 2015-12-04 20:10 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_Kernel_WinUSB_01009.Wdf 2015-12-04 16:30 - 2015-12-04 16:30 - 04868664 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2015-12-01 19:57 - 2015-12-01 19:57 - 00000000 ____D C:\Users\adamt\AppData\Roaming\Macromedia 2015-12-01 18:59 - 2015-12-01 18:59 - 00003952 _____ C:\WINDOWS\System32\Tasks\Wise Turbo Checker.job 2015-11-30 23:18 - 2015-12-04 22:40 - 00000000 ___HD C:\$SysReset 2015-11-30 21:49 - 2015-11-30 21:49 - 00000000 ____D C:\WINDOWS\system32\SleepStudy 2015-11-29 20:37 - 2015-11-29 20:37 - 00000000 ____D C:\Users\adamt\AppData\Local\AMD 2015-11-29 13:36 - 2015-12-04 18:28 - 00000000 ____D C:\Users\adamt\AppData\Roaming\.minecraft 2015-11-29 13:36 - 2015-12-04 17:25 - 00000000 ____D C:\Users\adamt\AppData\Roaming\.minecraftzyczu 2015-11-29 09:52 - 2015-11-29 09:52 - 00000000 ____D C:\Users\adamt\AppData\Roaming\WinRAR 2015-11-29 09:35 - 2015-12-04 19:10 - 00000615 _____ C:\Users\adamt\Desktop\enaris.lnk 2015-11-28 17:47 - 2015-12-04 21:41 - 00000250 _____ C:\WINDOWS\Tasks\Uninstaller_SkipUac_keramti.job 2015-11-28 17:47 - 2015-12-04 21:39 - 00002444 _____ C:\WINDOWS\System32\Tasks\Uninstaller_SkipUac_keramti 2015-11-28 16:49 - 2015-11-28 16:49 - 00000000 ____D C:\Users\keramti\AppData\Local\PeerDistRepub 2015-11-28 16:07 - 2015-11-28 16:07 - 00002832 _____ C:\WINDOWS\System32\Tasks\CCleanerSkipUAC 2015-11-28 08:45 - 2015-11-28 08:45 - 00000000 ___RD C:\Users\adamt\Desktop\muzyki 2015-11-28 00:43 - 2015-11-28 00:43 - 00000000 ____D C:\Users\keramti\AppData\Local\AMD 2015-11-28 00:22 - 2015-12-01 18:58 - 00000276 _____ C:\WINDOWS\Tasks\ASC8_SkipUac_keramti.job 2015-11-28 00:22 - 2015-11-28 00:22 - 00002456 _____ C:\WINDOWS\System32\Tasks\ASC8_SkipUac_keramti 2015-11-27 22:07 - 2015-11-28 07:15 - 00003390 _____ C:\WINDOWS\System32\Tasks\Driver Booster Scheduler 2015-11-27 22:07 - 2015-11-27 22:07 - 00026528 _____ (REALiX(tm)) C:\WINDOWS\SysWOW64\Drivers\HWiNFO64A.SYS 2015-11-27 22:07 - 2015-11-27 22:07 - 00003042 _____ C:\WINDOWS\System32\Tasks\Driver Booster SkipUAC (keramti) 2015-11-27 21:00 - 2015-11-27 21:00 - 00000440 _____ C:\Users\adamt\Desktop\Ten komputer — skrót.lnk 2015-11-27 19:23 - 2015-11-28 18:50 - 00000000 ____D C:\Users\adamt\Documents\FIFA 12 2015-11-27 19:23 - 2015-11-27 19:23 - 00000000 ____D C:\Program Files (x86)\Origin Games 2015-11-27 19:19 - 2015-11-27 19:19 - 00000000 ____D C:\Users\adamt\AppData\Local\NFS Underground 2 2015-11-27 19:17 - 2015-11-27 19:23 - 00000000 ____D C:\Users\adamt\AppData\Roaming\Origin 2015-11-27 19:17 - 2015-11-27 19:23 - 00000000 ____D C:\Users\adamt\AppData\Local\Origin 2015-11-27 18:07 - 2015-12-04 20:18 - 00000000 ____D C:\Users\keramti\AppData\Local\ElevatedDiagnostics 2015-11-27 17:55 - 2015-11-27 17:55 - 00000000 ____D C:\Users\adamt\AppData\Roaming\ProductData 2015-11-27 15:12 - 2015-11-28 09:22 - 00000000 ____D C:\Users\adamt\AppData\Local\MicrosoftEdge 2015-11-27 15:01 - 2015-11-27 15:01 - 00000000 ____D C:\Users\keramti\Desktop\KERAMTI73 2015-11-27 14:59 - 2015-12-04 18:28 - 00000000 ____D C:\Users\adamt\AppData\Roaming\Skype 2015-11-27 14:59 - 2015-11-27 14:59 - 00000000 ____D C:\Users\adamt\Tracing 2015-11-27 14:59 - 2015-11-27 14:59 - 00000000 ____D C:\Users\adamt\AppData\Local\Skype 2015-11-27 14:39 - 2015-11-27 19:30 - 00000000 ____D C:\Users\adamt\Desktop\gry 2015-11-27 14:38 - 2015-11-27 15:52 - 00000000 ____D C:\Users\adamt\AppData\Local\Mozilla 2015-11-27 14:38 - 2015-11-27 14:38 - 00000000 ____D C:\Users\adamt\AppData\Roaming\Mozilla 2015-11-27 14:23 - 2015-12-04 19:21 - 00000000 ___RD C:\Users\adamt\OneDrive 2015-11-27 14:23 - 2015-11-27 14:23 - 00002382 _____ C:\Users\adamt\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2015-11-27 14:23 - 2015-11-27 14:23 - 00000000 ____D C:\Users\adamt\AppData\Roaming\AVAST Software 2015-11-27 14:23 - 2015-11-27 14:23 - 00000000 ____D C:\Users\adamt\AppData\Roaming\ATI 2015-11-27 14:23 - 2015-11-27 14:23 - 00000000 ____D C:\Users\adamt\AppData\Local\Comms 2015-11-27 14:23 - 2015-11-27 14:23 - 00000000 ____D C:\Users\adamt\AppData\Local\ATI 2015-11-27 14:23 - 2015-11-27 14:23 - 00000000 ____D C:\Users\adamt\AppData\Local\ActiveSync 2015-11-27 14:22 - 2015-11-30 17:00 - 00000000 ____D C:\Users\adamt 2015-11-27 14:22 - 2015-11-27 19:24 - 00000000 ____D C:\Users\adamt\AppData\Local\VirtualStore 2015-11-27 14:22 - 2015-11-27 15:45 - 00000000 ____D C:\Users\adamt\AppData\Roaming\IObit 2015-11-27 14:22 - 2015-11-27 14:40 - 00000000 ____D C:\Users\adamt\AppData\Local\Packages 2015-11-27 14:22 - 2015-11-27 14:22 - 00000640 __RSH C:\Users\adamt\ntuser.pol 2015-11-27 14:22 - 2015-11-27 14:22 - 00000020 ___SH C:\Users\adamt\ntuser.ini 2015-11-27 14:22 - 2015-11-27 14:22 - 00000000 _SHDL C:\Users\adamt\Ustawienia lokalne 2015-11-27 14:22 - 2015-11-27 14:22 - 00000000 _SHDL C:\Users\adamt\Szablony 2015-11-27 14:22 - 2015-11-27 14:22 - 00000000 _SHDL C:\Users\adamt\Moje dokumenty 2015-11-27 14:22 - 2015-11-27 14:22 - 00000000 _SHDL C:\Users\adamt\Menu Start 2015-11-27 14:22 - 2015-11-27 14:22 - 00000000 _SHDL C:\Users\adamt\Documents\Moje wideo 2015-11-27 14:22 - 2015-11-27 14:22 - 00000000 _SHDL C:\Users\adamt\Documents\Moje obrazy 2015-11-27 14:22 - 2015-11-27 14:22 - 00000000 _SHDL C:\Users\adamt\Documents\Moja muzyka 2015-11-27 14:22 - 2015-11-27 14:22 - 00000000 _SHDL C:\Users\adamt\Dane aplikacji 2015-11-27 14:22 - 2015-11-27 14:22 - 00000000 _SHDL C:\Users\adamt\AppData\Roaming\Microsoft\Windows\Start Menu\Programy 2015-11-27 14:22 - 2015-11-27 14:22 - 00000000 _SHDL C:\Users\adamt\AppData\Local\Historia 2015-11-27 14:22 - 2015-11-27 14:22 - 00000000 _SHDL C:\Users\adamt\AppData\Local\Dane aplikacji 2015-11-27 14:22 - 2015-11-27 14:22 - 00000000 ____D C:\Users\adamt\AppData\Roaming\Adobe 2015-11-27 14:22 - 2015-11-27 14:22 - 00000000 ____D C:\Users\adamt\AppData\Local\TileDataLayer 2015-11-27 14:22 - 2015-11-27 14:22 - 00000000 ____D C:\Users\adamt\AppData\Local\Publishers 2015-11-27 14:22 - 2015-11-27 05:51 - 00000000 ____D C:\Users\adamt\AppData\Local\Microsoft Help 2015-11-27 14:22 - 2015-11-26 23:56 - 00000000 ____D C:\Users\adamt\AppData\Local\Google 2015-11-27 13:40 - 2015-11-27 13:40 - 00000020 ___SH C:\Users\DefaultAppPool\ntuser.ini 2015-11-27 13:40 - 2015-11-27 13:40 - 00000000 _SHDL C:\Users\DefaultAppPool\Ustawienia lokalne 2015-11-27 13:40 - 2015-11-27 13:40 - 00000000 _SHDL C:\Users\DefaultAppPool\Szablony 2015-11-27 13:40 - 2015-11-27 13:40 - 00000000 _SHDL C:\Users\DefaultAppPool\Moje dokumenty 2015-11-27 13:40 - 2015-11-27 13:40 - 00000000 _SHDL C:\Users\DefaultAppPool\Menu Start 2015-11-27 13:40 - 2015-11-27 13:40 - 00000000 _SHDL C:\Users\DefaultAppPool\Documents\Moje wideo 2015-11-27 13:40 - 2015-11-27 13:40 - 00000000 _SHDL C:\Users\DefaultAppPool\Documents\Moje obrazy 2015-11-27 13:40 - 2015-11-27 13:40 - 00000000 _SHDL C:\Users\DefaultAppPool\Documents\Moja muzyka 2015-11-27 13:40 - 2015-11-27 13:40 - 00000000 _SHDL C:\Users\DefaultAppPool\Dane aplikacji 2015-11-27 13:40 - 2015-11-27 13:40 - 00000000 _SHDL C:\Users\DefaultAppPool\AppData\Roaming\Microsoft\Windows\Start Menu\Programy 2015-11-27 13:40 - 2015-11-27 13:40 - 00000000 _SHDL C:\Users\DefaultAppPool\AppData\Local\Historia 2015-11-27 13:40 - 2015-11-27 13:40 - 00000000 _SHDL C:\Users\DefaultAppPool\AppData\Local\Dane aplikacji 2015-11-27 13:40 - 2015-11-27 13:40 - 00000000 ____D C:\Users\DefaultAppPool 2015-11-27 13:40 - 2015-11-27 05:51 - 00000000 ____D C:\Users\DefaultAppPool\AppData\Local\Microsoft Help 2015-11-27 13:40 - 2015-11-26 23:56 - 00000000 ____D C:\Users\DefaultAppPool\AppData\Local\Google 2015-11-27 05:51 - 2015-11-27 05:51 - 00000000 ____D C:\WINDOWS\PCHEALTH 2015-11-27 05:51 - 2015-11-27 05:51 - 00000000 ____D C:\Users\Default\AppData\Local\Microsoft Help 2015-11-27 05:51 - 2015-11-27 05:51 - 00000000 ____D C:\Users\Default User\AppData\Local\Microsoft Help 2015-11-27 00:28 - 2015-11-27 00:28 - 00000000 ____D C:\WINDOWS\Embedded 2015-11-27 00:28 - 2015-11-27 00:28 - 00000000 ____D C:\Users\keramti\AppData\Local\Comms 2015-11-27 00:21 - 2015-11-27 00:21 - 00000000 ____D C:\Users\keramti\AppData\Local\MicrosoftEdge 2015-11-27 00:19 - 2015-11-27 00:19 - 00002388 _____ C:\Users\keramti\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2015-11-27 00:19 - 2015-11-27 00:19 - 00000000 ___RD C:\Users\keramti\OneDrive 2015-11-27 00:18 - 2015-11-27 00:18 - 00001051 _____ C:\Users\keramti\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Funkcje opcjonalne.lnk 2015-11-27 00:18 - 2015-11-27 00:18 - 00000000 ____D C:\Users\keramti\AppData\Local\Publishers 2015-11-27 00:18 - 2015-11-27 00:18 - 00000000 ____D C:\Users\keramti\AppData\Local\ActiveSync 2015-11-27 00:18 - 2015-10-29 19:43 - 05739520 _____ (Microsoft Corporation) C:\WINDOWS\system32\prm0009.dll 2015-11-27 00:18 - 2015-10-29 19:43 - 02629632 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsLexicons0009.dll 2015-11-27 00:18 - 2015-10-29 19:41 - 02629632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NlsLexicons0009.dll 2015-11-27 00:18 - 2015-10-29 19:25 - 06359040 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData0009.dll 2015-11-27 00:18 - 2015-10-29 19:24 - 04847616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NlsData0009.dll 2015-11-27 00:17 - 2015-11-27 13:21 - 00000640 __RSH C:\Users\keramti\ntuser.pol 2015-11-27 00:17 - 2015-11-27 05:54 - 00000000 ____D C:\Users\keramti\AppData\Local\Packages 2015-11-27 00:17 - 2015-11-27 00:17 - 00000000 ____D C:\Users\keramti\AppData\Local\TileDataLayer 2015-11-27 00:06 - 2015-11-27 00:06 - 00000020 ___SH C:\Users\keramti\ntuser.ini 2015-11-27 00:05 - 2015-11-27 00:05 - 00000000 ____D C:\ProgramData\Microsoft OneDrive 2015-11-27 00:03 - 2015-11-27 21:29 - 00000000 __RHD C:\Users\Public\AccountPictures 2015-11-26 23:58 - 2015-12-04 23:57 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT 2015-11-26 23:58 - 2015-11-26 23:58 - 00023044 _____ C:\WINDOWS\system32\emptyregdb.dat 2015-11-26 23:58 - 2015-11-26 23:58 - 00000000 _SHDL C:\Users\Default\Ustawienia lokalne 2015-11-26 23:58 - 2015-11-26 23:58 - 00000000 _SHDL C:\Users\Default\Szablony 2015-11-26 23:58 - 2015-11-26 23:58 - 00000000 _SHDL C:\Users\Default\Moje dokumenty 2015-11-26 23:58 - 2015-11-26 23:58 - 00000000 _SHDL C:\Users\Default\Menu Start 2015-11-26 23:58 - 2015-11-26 23:58 - 00000000 _SHDL C:\Users\Default\Documents\Moje wideo 2015-11-26 23:58 - 2015-11-26 23:58 - 00000000 _SHDL C:\Users\Default\Documents\Moje obrazy 2015-11-26 23:58 - 2015-11-26 23:58 - 00000000 _SHDL C:\Users\Default\Documents\Moja muzyka 2015-11-26 23:58 - 2015-11-26 23:58 - 00000000 _SHDL C:\Users\Default\Dane aplikacji 2015-11-26 23:58 - 2015-11-26 23:58 - 00000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programy 2015-11-26 23:58 - 2015-11-26 23:58 - 00000000 _SHDL C:\Users\Default\AppData\Local\Historia 2015-11-26 23:58 - 2015-11-26 23:58 - 00000000 _SHDL C:\Users\Default\AppData\Local\Dane aplikacji 2015-11-26 23:58 - 2015-11-26 23:58 - 00000000 _SHDL C:\Users\Default User\Documents\Moje wideo 2015-11-26 23:58 - 2015-11-26 23:58 - 00000000 _SHDL C:\Users\Default User\Documents\Moje obrazy 2015-11-26 23:58 - 2015-11-26 23:58 - 00000000 _SHDL C:\Users\Default User\Documents\Moja muzyka 2015-11-26 23:58 - 2015-11-26 23:58 - 00000000 _SHDL C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programy 2015-11-26 23:58 - 2015-11-26 23:58 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Historia 2015-11-26 23:58 - 2015-11-26 23:58 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Dane aplikacji 2015-11-26 23:58 - 2015-11-26 23:58 - 00000000 ____D C:\ProgramData\USOShared 2015-11-26 23:56 - 2015-11-26 23:56 - 00001576 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk 2015-11-26 23:56 - 2015-11-26 23:56 - 00000000 ____D C:\Users\Default\AppData\Local\Google 2015-11-26 23:56 - 2015-11-26 23:56 - 00000000 ____D C:\Users\Default User\AppData\Local\Google 2015-11-26 23:55 - 2015-11-26 23:55 - 00000000 ____D C:\Program Files\Common Files\SpeechEngines 2015-11-26 23:55 - 2015-10-30 08:17 - 02718208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll 2015-11-26 23:54 - 2015-12-05 00:02 - 02132070 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2015-11-26 23:54 - 2015-12-03 05:35 - 00000000 ____D C:\Users\keramti 2015-11-26 23:54 - 2015-11-26 23:54 - 02033134 _____ C:\WINDOWS\SysWOW64\PerfStringBackup.INI 2015-11-26 23:54 - 2015-11-26 23:54 - 00000000 _SHDL C:\Users\keramti\Ustawienia lokalne 2015-11-26 23:54 - 2015-11-26 23:54 - 00000000 _SHDL C:\Users\keramti\Szablony 2015-11-26 23:54 - 2015-11-26 23:54 - 00000000 _SHDL C:\Users\keramti\Moje dokumenty 2015-11-26 23:54 - 2015-11-26 23:54 - 00000000 _SHDL C:\Users\keramti\Menu Start 2015-11-26 23:54 - 2015-11-26 23:54 - 00000000 _SHDL C:\Users\keramti\Documents\Moje wideo 2015-11-26 23:54 - 2015-11-26 23:54 - 00000000 _SHDL C:\Users\keramti\Documents\Moje obrazy 2015-11-26 23:54 - 2015-11-26 23:54 - 00000000 _SHDL C:\Users\keramti\Documents\Moja muzyka 2015-11-26 23:54 - 2015-11-26 23:54 - 00000000 _SHDL C:\Users\keramti\Dane aplikacji 2015-11-26 23:54 - 2015-11-26 23:54 - 00000000 _SHDL C:\Users\keramti\AppData\Roaming\Microsoft\Windows\Start Menu\Programy 2015-11-26 23:54 - 2015-11-26 23:54 - 00000000 _SHDL C:\Users\keramti\AppData\Local\Historia 2015-11-26 23:54 - 2015-11-26 23:54 - 00000000 _SHDL C:\Users\keramti\AppData\Local\Dane aplikacji 2015-11-26 23:53 - 2015-11-27 00:06 - 00000000 ____D C:\AMD 2015-11-26 23:53 - 2015-11-26 23:55 - 00000000 ____D C:\ProgramData\Package Cache 2015-11-26 23:53 - 2015-11-26 23:55 - 00000000 ____D C:\Program Files\AMD 2015-11-26 23:53 - 2015-11-26 23:53 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf 2015-11-26 23:53 - 2015-11-26 23:53 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_Kernel_TeeDriverx64_01011.Wdf 2015-11-26 23:53 - 2015-11-26 23:53 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_Kernel_Smb_driver_Intel_01011.Wdf 2015-11-26 23:53 - 2015-11-26 23:53 - 00000000 ____D C:\WINDOWS\SysWOW64\RTCOM 2015-11-26 23:53 - 2015-11-26 23:53 - 00000000 ____D C:\Program Files\Synaptics 2015-11-26 23:53 - 2015-11-26 23:53 - 00000000 ____D C:\Program Files\Realtek 2015-11-26 23:53 - 2015-11-26 23:53 - 00000000 ____D C:\Program Files\Common Files\ATI Technologies 2015-11-26 23:53 - 2015-11-26 23:53 - 00000000 _____ C:\WINDOWS\ativpsrm.bin 2015-11-26 23:52 - 2015-12-01 21:35 - 00000000 ___DC C:\WINDOWS\Panther 2015-11-26 23:50 - 2015-11-26 23:50 - 22572632 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll 2015-11-26 23:50 - 2015-11-26 23:50 - 21125408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll 2015-11-26 23:50 - 2015-11-26 23:50 - 11545088 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll 2015-11-26 23:50 - 2015-11-26 23:50 - 09918976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll 2015-11-26 23:50 - 2015-11-26 23:50 - 03670832 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll 2015-11-26 23:50 - 2015-11-26 23:50 - 03592704 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys 2015-11-26 23:50 - 2015-11-26 23:50 - 02918808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll 2015-11-26 23:50 - 2015-11-26 23:50 - 02544264 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll 2015-11-26 23:50 - 2015-11-26 23:50 - 02444288 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.appcore.dll 2015-11-26 23:50 - 2015-11-26 23:50 - 02179584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll 2015-11-26 23:50 - 2015-11-26 23:50 - 02001408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.appcore.dll 2015-11-26 23:50 - 2015-11-26 23:50 - 01393664 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys 2015-11-26 23:50 - 2015-11-26 23:50 - 01063424 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll 2015-11-26 23:50 - 2015-11-26 23:50 - 00969728 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll 2015-11-26 23:50 - 2015-11-26 23:50 - 00911648 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcomp.dll 2015-11-26 23:50 - 2015-11-26 23:50 - 00809312 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWAHost.exe 2015-11-26 23:50 - 2015-11-26 23:50 - 00803840 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll 2015-11-26 23:50 - 2015-11-26 23:50 - 00791552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll 2015-11-26 23:50 - 2015-11-26 23:50 - 00704352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWAHost.exe 2015-11-26 23:50 - 2015-11-26 23:50 - 00698208 _____ (Microsoft Corporation) C:\WINDOWS\system32\wimgapi.dll 2015-11-26 23:50 - 2015-11-26 23:50 - 00675064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dcomp.dll 2015-11-26 23:50 - 2015-11-26 23:50 - 00674816 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.dll 2015-11-26 23:50 - 2015-11-26 23:50 - 00647168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll 2015-11-26 23:50 - 2015-11-26 23:50 - 00630632 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe 2015-11-26 23:50 - 2015-11-26 23:50 - 00623616 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneProviders.dll 2015-11-26 23:50 - 2015-11-26 23:50 - 00586208 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf.dll 2015-11-26 23:50 - 2015-11-26 23:50 - 00586080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wimgapi.dll 2015-11-26 23:50 - 2015-11-26 23:50 - 00578912 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\afd.sys 2015-11-26 23:50 - 2015-11-26 23:50 - 00543232 _____ (Microsoft Corporation) C:\WINDOWS\system32\StoreAgent.dll 2015-11-26 23:50 - 2015-11-26 23:50 - 00540752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe 2015-11-26 23:50 - 2015-11-26 23:50 - 00536768 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll 2015-11-26 23:50 - 2015-11-26 23:50 - 00523616 _____ (Microsoft Corporation) C:\WINDOWS\system32\wimserv.exe 2015-11-26 23:50 - 2015-11-26 23:50 - 00517632 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv 2015-11-26 23:50 - 2015-11-26 23:50 - 00516544 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll 2015-11-26 23:50 - 2015-11-26 23:50 - 00511320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mf.dll 2015-11-26 23:50 - 2015-11-26 23:50 - 00497664 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmkvsrcsnk.dll 2015-11-26 23:50 - 2015-11-26 23:50 - 00490496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.dll 2015-11-26 23:50 - 2015-11-26 23:50 - 00454056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioEng.dll 2015-11-26 23:50 - 2015-11-26 23:50 - 00450560 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Bluetooth.dll 2015-11-26 23:50 - 2015-11-26 23:50 - 00414720 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcastdvr.exe 2015-11-26 23:50 - 2015-11-26 23:50 - 00409088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\StoreAgent.dll 2015-11-26 23:50 - 2015-11-26 23:50 - 00408128 _____ (Microsoft Corporation) C:\WINDOWS\system32\AUDIOKSE.dll 2015-11-26 23:50 - 2015-11-26 23:50 - 00405048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll 2015-11-26 23:50 - 2015-11-26 23:50 - 00400896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winspool.drv 2015-11-26 23:50 - 2015-11-26 23:50 - 00382464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmkvsrcsnk.dll 2015-11-26 23:50 - 2015-11-26 23:50 - 00369912 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe 2015-11-26 23:50 - 2015-11-26 23:50 - 00366224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AUDIOKSE.dll 2015-11-26 23:50 - 2015-11-26 23:50 - 00365568 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\atmfd.dll 2015-11-26 23:50 - 2015-11-26 23:50 - 00334736 _____ (Microsoft Corporation) C:\WINDOWS\system32\policymanager.dll 2015-11-26 23:50 - 2015-11-26 23:50 - 00334336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcastdvr.exe 2015-11-26 23:50 - 2015-11-26 23:50 - 00315904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Bluetooth.dll 2015-11-26 23:50 - 2015-11-26 23:50 - 00303104 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\atmfd.dll 2015-11-26 23:50 - 2015-11-26 23:50 - 00296488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\policymanager.dll 2015-11-26 23:50 - 2015-11-26 23:50 - 00292352 _____ (Microsoft Corporation) C:\WINDOWS\system32\provengine.dll 2015-11-26 23:50 - 2015-11-26 23:50 - 00286720 _____ (Microsoft Corporation) C:\WINDOWS\system32\deviceaccess.dll 2015-11-26 23:50 - 2015-11-26 23:50 - 00286208 _____ (Microsoft Corporation) C:\WINDOWS\system32\provhandlers.dll 2015-11-26 23:50 - 2015-11-26 23:50 - 00275456 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll 2015-11-26 23:50 - 2015-11-26 23:50 - 00245848 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfps.dll 2015-11-26 23:50 - 2015-11-26 23:50 - 00231936 _____ (Microsoft Corporation) C:\WINDOWS\system32\KnobsCore.dll 2015-11-26 23:50 - 2015-11-26 23:50 - 00227840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\deviceaccess.dll 2015-11-26 23:50 - 2015-11-26 23:50 - 00204800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft-Windows-AppModelExecEvents.dll 2015-11-26 23:50 - 2015-11-26 23:50 - 00198656 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallAgent.exe 2015-11-26 23:50 - 2015-11-26 23:50 - 00192000 _____ (Microsoft Corporation) C:\WINDOWS\system32\provisioningcsp.dll 2015-11-26 23:50 - 2015-11-26 23:50 - 00165376 _____ (Microsoft Corporation) C:\WINDOWS\system32\provdatastore.dll 2015-11-26 23:50 - 2015-11-26 23:50 - 00163328 _____ (Microsoft Corporation) C:\WINDOWS\system32\provops.dll 2015-11-26 23:50 - 2015-11-26 23:50 - 00162304 _____ (Microsoft Corporation) C:\WINDOWS\system32\tetheringservice.dll 2015-11-26 23:50 - 2015-11-26 23:50 - 00160768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallAgent.exe 2015-11-26 23:50 - 2015-11-26 23:50 - 00122368 _____ (Microsoft Corporation) C:\WINDOWS\system32\KnobsCsp.dll 2015-11-26 23:50 - 2015-11-26 23:50 - 00118624 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tdx.sys 2015-11-26 23:50 - 2015-11-26 23:50 - 00118272 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontsub.dll 2015-11-26 23:50 - 2015-11-26 23:50 - 00116728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfps.dll 2015-11-26 23:50 - 2015-11-26 23:50 - 00115200 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys 2015-11-26 23:50 - 2015-11-26 23:50 - 00110032 _____ (Microsoft Corporation) C:\WINDOWS\system32\EncDump.dll 2015-11-26 23:50 - 2015-11-26 23:50 - 00093696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontsub.dll 2015-11-26 23:50 - 2015-11-26 23:50 - 00092352 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll 2015-11-26 23:50 - 2015-11-26 23:50 - 00089600 _____ (Microsoft Corporation) C:\WINDOWS\system32\NFCProvisioningPlugin.dll 2015-11-26 23:50 - 2015-11-26 23:50 - 00088392 _____ (Microsoft Corporation) C:\WINDOWS\system32\remoteaudioendpoint.dll 2015-11-26 23:50 - 2015-11-26 23:50 - 00087040 _____ (Microsoft Corporation) C:\WINDOWS\system32\tzautoupdate.dll 2015-11-26 23:50 - 2015-11-26 23:50 - 00086528 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppCapture.dll 2015-11-26 23:50 - 2015-11-26 23:50 - 00078336 _____ (Microsoft Corporation) C:\WINDOWS\system32\BarcodeProvisioningPlugin.dll 2015-11-26 23:50 - 2015-11-26 23:50 - 00077312 _____ (Microsoft Corporation) C:\WINDOWS\system32\ProvPluginEng.dll 2015-11-26 23:50 - 2015-11-26 23:50 - 00073360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\remoteaudioendpoint.dll 2015-11-26 23:50 - 2015-11-26 23:50 - 00070656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppCapture.dll 2015-11-26 23:50 - 2015-11-26 23:50 - 00056320 _____ (Microsoft Corporation) C:\WINDOWS\system32\provtool.exe 2015-11-26 23:50 - 2015-11-26 23:50 - 00052736 _____ (Microsoft Corporation) C:\WINDOWS\system32\tetheringclient.dll 2015-11-26 23:50 - 2015-11-26 23:50 - 00052736 _____ (Microsoft Corporation) C:\WINDOWS\system32\RemovableMediaProvisioningPlugin.dll 2015-11-26 23:50 - 2015-11-26 23:50 - 00045568 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll 2015-11-26 23:50 - 2015-11-26 23:50 - 00043520 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcastdvr.proxy.dll 2015-11-26 23:50 - 2015-11-26 23:50 - 00037376 _____ (Microsoft Corporation) C:\WINDOWS\system32\LaunchWinApp.exe 2015-11-26 23:50 - 2015-11-26 23:50 - 00037376 _____ (Adobe Systems) C:\WINDOWS\SysWOW64\atmlib.dll 2015-11-26 23:50 - 2015-11-26 23:50 - 00035680 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wimmount.sys 2015-11-26 23:50 - 2015-11-26 23:50 - 00035656 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfpmp.exe 2015-11-26 23:50 - 2015-11-26 23:50 - 00032040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfpmp.exe 2015-11-26 23:50 - 2015-11-26 23:50 - 00030720 _____ (Microsoft Corporation) C:\WINDOWS\system32\tetheringconfigsp.dll 2015-11-26 23:50 - 2015-11-26 23:50 - 00029696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LaunchWinApp.exe 2015-11-26 23:50 - 2015-11-26 23:50 - 00028160 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Management.Provisioning.ProxyStub.dll 2015-11-26 23:50 - 2015-11-26 23:50 - 00027136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcastdvr.proxy.dll 2015-11-26 23:50 - 2015-11-26 23:50 - 00017408 _____ (Microsoft Corporation) C:\WINDOWS\system32\IcsEntitlementHost.exe 2015-11-26 23:50 - 2015-11-26 23:50 - 00014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\dciman32.dll 2015-11-26 23:50 - 2015-11-26 23:50 - 00011776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dciman32.dll 2015-11-26 23:50 - 2015-11-26 23:50 - 00003072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\lpk.dll 2015-11-26 23:50 - 2015-11-26 23:50 - 00003072 _____ (Microsoft Corporation) C:\WINDOWS\system32\lpk.dll 2015-11-26 23:49 - 2015-11-26 23:49 - 00008192 _____ C:\WINDOWS\system32\config\userdiff 2015-11-26 23:48 - 2015-11-27 18:11 - 00000000 ____D C:\WINDOWS\system32\msmq 2015-11-26 23:48 - 2015-11-26 23:48 - 00000000 ____D C:\WINDOWS\SysWOW64\XPSViewer 2015-11-26 23:48 - 2015-11-26 23:48 - 00000000 ____D C:\WINDOWS\SysWOW64\BestPractices 2015-11-26 23:48 - 2015-11-26 23:48 - 00000000 ____D C:\WINDOWS\system32\BestPractices 2015-11-26 23:48 - 2015-11-26 23:48 - 00000000 ____D C:\Program Files\Reference Assemblies 2015-11-26 23:48 - 2015-11-26 23:48 - 00000000 ____D C:\Program Files\MSBuild 2015-11-26 23:48 - 2015-11-26 23:48 - 00000000 ____D C:\Program Files (x86)\Reference Assemblies 2015-11-26 23:48 - 2015-11-26 23:48 - 00000000 ____D C:\Program Files (x86)\MSBuild 2015-11-26 23:48 - 2015-11-26 23:48 - 00000000 ____D C:\inetpub 2015-11-26 23:48 - 2015-10-23 17:47 - 00778936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationNative_v0300.dll 2015-11-26 23:48 - 2015-10-23 17:47 - 00103120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationCFFRasterizerNative_v0300.dll 2015-11-26 23:48 - 2015-10-23 17:47 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TsWpfWrp.exe 2015-11-26 23:48 - 2015-10-23 17:46 - 01166520 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationNative_v0300.dll 2015-11-26 23:48 - 2015-10-23 17:46 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\system32\TsWpfWrp.exe 2015-11-26 23:48 - 2015-10-23 17:45 - 00124624 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll 2015-11-26 12:12 - 2015-11-26 23:55 - 00000000 ___HD C:\WINDOWS\system32\GroupPolicy 2015-11-25 23:48 - 2015-11-25 23:48 - 00000000 ____D C:\Users\keramti\AppData\Local\Microsoft Help 2015-11-25 23:47 - 2015-10-31 00:04 - 00968704 _____ (Microsoft Corporation) C:\WINDOWS\system32\MsSpellCheckingFacility.exe 2015-11-25 23:47 - 2015-10-30 23:29 - 01359360 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmlmedia.dll 2015-11-25 23:47 - 2015-10-30 23:09 - 01155072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtmlmedia.dll 2015-11-25 23:47 - 2015-10-20 19:41 - 00012288 _____ (Microsoft Corporation) C:\WINDOWS\system32\wu.upgrade.ps.dll 2015-11-25 23:47 - 2015-07-22 17:48 - 00041984 _____ (Microsoft Corporation) C:\WINDOWS\system32\UtcResources.dll 2015-11-25 23:47 - 2015-07-18 14:08 - 00066400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-private-l1-1-0.dll 2015-11-25 23:47 - 2015-07-18 14:08 - 00063840 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-private-l1-1-0.dll 2015-11-25 23:47 - 2015-07-18 14:08 - 00022368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-math-l1-1-0.dll 2015-11-25 23:47 - 2015-07-18 14:08 - 00020832 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-math-l1-1-0.dll 2015-11-25 23:47 - 2015-07-18 14:08 - 00019808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-multibyte-l1-1-0.dll 2015-11-25 23:47 - 2015-07-18 14:08 - 00019808 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-multibyte-l1-1-0.dll 2015-11-25 23:47 - 2015-07-18 14:08 - 00017760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-string-l1-1-0.dll 2015-11-25 23:47 - 2015-07-18 14:08 - 00017760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-stdio-l1-1-0.dll 2015-11-25 23:47 - 2015-07-18 14:08 - 00017760 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-string-l1-1-0.dll 2015-11-25 23:47 - 2015-07-18 14:08 - 00017760 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-stdio-l1-1-0.dll 2015-11-25 23:47 - 2015-07-18 14:08 - 00016224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-runtime-l1-1-0.dll 2015-11-25 23:47 - 2015-07-18 14:08 - 00016224 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-runtime-l1-1-0.dll 2015-11-25 23:47 - 2015-07-18 14:08 - 00015712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-convert-l1-1-0.dll 2015-11-25 23:47 - 2015-07-18 14:08 - 00015712 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-convert-l1-1-0.dll 2015-11-25 23:47 - 2015-07-18 14:08 - 00014176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-time-l1-1-0.dll 2015-11-25 23:47 - 2015-07-18 14:08 - 00014176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-core-localization-l1-2-0.dll 2015-11-25 23:47 - 2015-07-18 14:08 - 00014176 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-time-l1-1-0.dll 2015-11-25 23:47 - 2015-07-18 14:08 - 00014176 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-core-localization-l1-2-0.dll 2015-11-25 23:47 - 2015-07-18 14:08 - 00013664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-filesystem-l1-1-0.dll 2015-11-25 23:47 - 2015-07-18 14:08 - 00013664 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-filesystem-l1-1-0.dll 2015-11-25 23:47 - 2015-07-18 14:08 - 00012640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-process-l1-1-0.dll 2015-11-25 23:47 - 2015-07-18 14:08 - 00012640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-heap-l1-1-0.dll 2015-11-25 23:47 - 2015-07-18 14:08 - 00012640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-conio-l1-1-0.dll 2015-11-25 23:47 - 2015-07-18 14:08 - 00012640 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-process-l1-1-0.dll 2015-11-25 23:47 - 2015-07-18 14:08 - 00012640 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-heap-l1-1-0.dll 2015-11-25 23:47 - 2015-07-18 14:08 - 00012640 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-conio-l1-1-0.dll 2015-11-25 23:47 - 2015-07-18 14:08 - 00012128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-utility-l1-1-0.dll 2015-11-25 23:47 - 2015-07-18 14:08 - 00012128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-locale-l1-1-0.dll 2015-11-25 23:47 - 2015-07-18 14:08 - 00012128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-environment-l1-1-0.dll 2015-11-25 23:47 - 2015-07-18 14:08 - 00012128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-core-synch-l1-2-0.dll 2015-11-25 23:47 - 2015-07-18 14:08 - 00012128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-core-processthreads-l1-1-1.dll 2015-11-25 23:47 - 2015-07-18 14:08 - 00012128 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-utility-l1-1-0.dll 2015-11-25 23:47 - 2015-07-18 14:08 - 00012128 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-locale-l1-1-0.dll 2015-11-25 23:47 - 2015-07-18 14:08 - 00012128 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-environment-l1-1-0.dll 2015-11-25 23:47 - 2015-07-18 14:08 - 00012128 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-core-synch-l1-2-0.dll 2015-11-25 23:47 - 2015-07-18 14:08 - 00012128 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-core-processthreads-l1-1-1.dll 2015-11-25 23:47 - 2015-07-18 14:08 - 00011616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-eventing-provider-l1-1-0.dll 2015-11-25 23:47 - 2015-07-18 14:08 - 00011616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-core-xstate-l2-1-0.dll 2015-11-25 23:47 - 2015-07-18 14:08 - 00011616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-core-timezone-l1-1-0.dll 2015-11-25 23:47 - 2015-07-18 14:08 - 00011616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-core-file-l2-1-0.dll 2015-11-25 23:47 - 2015-07-18 14:08 - 00011616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-core-file-l1-2-0.dll 2015-11-25 23:47 - 2015-07-18 14:08 - 00011616 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-eventing-provider-l1-1-0.dll 2015-11-25 23:47 - 2015-07-18 14:08 - 00011616 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-core-xstate-l2-1-0.dll 2015-11-25 23:47 - 2015-07-18 14:08 - 00011616 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-core-timezone-l1-1-0.dll 2015-11-25 23:47 - 2015-07-18 14:08 - 00011616 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-core-file-l2-1-0.dll 2015-11-25 23:47 - 2015-07-18 14:08 - 00011616 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-core-file-l1-2-0.dll 2015-11-25 23:29 - 2015-12-04 23:57 - 00000000 ____D C:\AdwCleaner 2015-11-25 23:25 - 2015-11-26 00:28 - 00000000 ____D C:\WINDOWS\System32\Tasks\WiseCleaner 2015-11-25 22:52 - 2015-11-25 22:52 - 00000000 ____D C:\Users\keramti\AppData\Roaming\dll-files.com 2015-11-23 23:58 - 2015-11-23 23:58 - 00004205 _____ C:\Users\keramti\Documents\us.txt 2015-11-23 23:56 - 2015-12-03 05:16 - 00000000 ____D C:\ProgramData\ProductData 2015-11-23 23:56 - 2015-11-24 08:06 - 00000000 ____D C:\Users\keramti\AppData\Roaming\ProductData 2015-11-23 10:51 - 2015-11-23 10:52 - 00042728 _____ C:\Users\keramti\Downloads\Addition.txt 2015-11-23 10:48 - 2015-12-05 00:09 - 00000000 ____D C:\FRST 2015-11-23 00:38 - 2015-11-23 00:38 - 00000000 ____D C:\Users\keramti\AppData\Roaming\Mozilla 2015-11-23 00:37 - 2015-11-23 00:38 - 00000610 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk 2015-11-21 14:52 - 2015-11-21 14:52 - 00000000 ____D C:\Program Files\Common Files\INCA Shared 2015-11-20 22:07 - 2015-11-26 23:56 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Driver Booster 3 2015-11-19 21:19 - 2015-11-19 21:19 - 00386096 _____ (AVAST Software) C:\WINDOWS\system32\aswBoot.exe 2015-11-19 21:19 - 2015-11-19 21:19 - 00043112 _____ (AVAST Software) C:\WINDOWS\avastSS.scr 2015-11-17 22:04 - 2015-11-17 22:04 - 00000000 ____D C:\GvTemp 2015-11-15 23:22 - 2015-11-15 23:24 - 00000000 ____D C:\Users\keramti\Archos 2015-11-15 18:27 - 2015-11-26 23:56 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Macro Recorder ==================== Jeden miesiąc - zmodyfikowane pliki i foldery ======== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2015-12-05 00:05 - 2015-10-30 08:21 - 00000000 ____D C:\WINDOWS\INF 2015-12-05 00:05 - 2015-01-01 20:14 - 00192216 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys 2015-12-05 00:02 - 2015-10-30 20:19 - 00922654 _____ C:\WINDOWS\system32\perfh015.dat 2015-12-05 00:02 - 2015-10-30 20:19 - 00204234 _____ C:\WINDOWS\system32\perfc015.dat 2015-12-04 23:57 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\schemas 2015-12-04 23:57 - 2015-10-30 07:28 - 00524288 ___SH C:\WINDOWS\system32\config\BBI 2015-12-04 23:45 - 2013-12-21 22:26 - 00000000 ____D C:\Users\keramti\Documents\FIFA 12 2015-12-04 23:23 - 2013-12-20 20:47 - 00000000 ____D C:\ProgramData\Origin 2015-12-04 23:15 - 2015-01-14 00:11 - 00004218 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{0C95BBDD-EA9F-4BCF-B7D0-6C154ADCF75A} 2015-12-04 22:22 - 2015-10-02 07:06 - 00000000 ____D C:\Users\keramti\Documents\temp 2015-12-04 22:06 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\AppReadiness 2015-12-04 21:01 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\system32\SystemResetPlatform 2015-12-04 20:41 - 2015-10-30 08:11 - 00000000 ____D C:\WINDOWS\CbsTemp 2015-12-04 20:10 - 2015-10-30 07:28 - 00000000 ____D C:\Windows 2015-12-03 21:49 - 2015-10-30 08:24 - 00000000 ___HD C:\Program Files\WindowsApps 2015-12-03 11:58 - 2015-04-30 22:37 - 00004222 _____ C:\WINDOWS\System32\Tasks\avast! Emergency Update 2015-12-02 22:38 - 2013-12-20 20:47 - 00000000 ____D C:\Program Files\Origin 2015-12-02 14:35 - 2015-04-04 07:31 - 00000000 ____D C:\Users\keramti\AppData\Roaming\Skype 2015-12-02 12:10 - 2015-10-10 17:22 - 00000000 ____D C:\Users\keramti\AppData\Roaming\RayeN 2015-12-01 22:39 - 2013-12-17 20:26 - 00000000 ____D C:\Program Files (x86)\Microsoft Office 2015-12-01 18:59 - 2015-10-31 12:07 - 00000000 ____D C:\Users\keramti\AppData\Roaming\Wise Care 365 2015-11-30 21:49 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\rescache 2015-11-28 07:47 - 2013-12-17 20:34 - 00000000 ____D C:\Users\keramti\Desktop\GRY 2015-11-27 22:07 - 2015-01-07 21:50 - 00000000 ____D C:\Users\keramti\AppData\Roaming\IObit 2015-11-27 18:13 - 2013-12-18 21:42 - 00000404 _____ C:\WINDOWS\BRWMARK.INI 2015-11-27 18:13 - 2013-12-18 21:42 - 00000027 _____ C:\WINDOWS\BRPP2KA.INI 2015-11-27 15:01 - 2015-10-30 08:24 - 00000000 ___HD C:\WINDOWS\system32\GroupPolicyUsers 2015-11-27 14:59 - 2015-08-20 18:07 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype 2015-11-27 14:59 - 2015-08-04 15:08 - 00000000 ____D C:\ProgramData\Skype 2015-11-27 14:59 - 2015-05-25 18:26 - 00002642 _____ C:\Users\Public\Desktop\Skype.lnk 2015-11-27 11:02 - 2014-11-07 23:18 - 00000000 ____D C:\WINDOWS\SysWOW64\vbox 2015-11-27 11:02 - 2014-11-07 23:18 - 00000000 ____D C:\WINDOWS\system32\vbox 2015-11-27 05:53 - 2013-12-17 19:18 - 00000000 ____D C:\ProgramData\Microsoft Help 2015-11-27 05:45 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\appcompat 2015-11-27 00:18 - 2015-10-30 20:20 - 00000000 ____D C:\WINDOWS\OCR 2015-11-27 00:18 - 2015-10-07 21:39 - 00000000 ____D C:\Users\keramti\AppData\Roaming\ATI 2015-11-27 00:18 - 2013-12-16 21:15 - 00000000 ____D C:\Users\keramti\AppData\Local\ATI 2015-11-27 00:17 - 2015-10-30 08:24 - 00000000 ___RD C:\WINDOWS\DevicesFlow 2015-11-27 00:03 - 2015-10-30 08:24 - 00000000 ___RD C:\WINDOWS\PurchaseDialog 2015-11-27 00:03 - 2015-10-30 08:24 - 00000000 ___RD C:\WINDOWS\PrintDialog 2015-11-27 00:03 - 2015-10-30 08:24 - 00000000 ___RD C:\WINDOWS\MiracastView 2015-11-27 00:03 - 2015-10-30 08:24 - 00000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2015-11-26 23:59 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\system32\spool 2015-11-26 23:59 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\system32\FxsTmp 2015-11-26 23:58 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\system32\WinBioDatabase 2015-11-26 23:58 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\Registration 2015-11-26 23:58 - 2015-10-30 08:24 - 00000000 ____D C:\ProgramData\USOPrivate 2015-11-26 23:58 - 2015-10-30 08:24 - 00000000 ____D C:\Program Files\Windows NT 2015-11-26 23:58 - 2015-10-30 07:28 - 00032768 ___SH C:\WINDOWS\system32\config\ELAM 2015-11-26 23:58 - 2015-10-29 23:17 - 00003544 _____ C:\WINDOWS\System32\Tasks\SidebarExecute 2015-11-26 23:58 - 2015-07-15 21:36 - 00003998 _____ C:\WINDOWS\System32\Tasks\Adobe Acrobat Update Task 2015-11-26 23:58 - 2014-11-16 20:44 - 00016146 _____ C:\WINDOWS\diagerr.xml 2015-11-26 23:58 - 2014-11-16 20:44 - 00015878 _____ C:\WINDOWS\diagwrn.xml 2015-11-26 23:57 - 2015-10-30 08:24 - 00000000 __RSD C:\WINDOWS\Media 2015-11-26 23:57 - 2015-10-30 08:24 - 00000000 __RHD C:\Users\Public\Libraries 2015-11-26 23:56 - 2015-11-01 11:57 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Afterfall Reconquest 2015-11-26 23:56 - 2015-10-31 12:47 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Advanced SystemCare 8 2015-11-26 23:56 - 2015-10-31 12:07 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wise Care 365 2015-11-26 23:56 - 2015-10-30 20:23 - 00000000 ____D C:\WINDOWS\ShellNew 2015-11-26 23:56 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\system32\NDF 2015-11-26 23:56 - 2015-10-29 20:32 - 00000000 ____D C:\Users\keramti\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Flashout 3D 2015-11-26 23:56 - 2015-10-24 20:25 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Odkurzacz 2015-11-26 23:56 - 2015-10-15 11:00 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Smash up Derby 2015-11-26 23:56 - 2015-10-09 18:57 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\World of Warships 2015-11-26 23:56 - 2015-10-03 22:19 - 00000000 ____D C:\Users\keramti\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MSI Afterburner 2015-11-26 23:56 - 2015-09-06 15:53 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Debugging Tools for Windows (x86) 2015-11-26 23:56 - 2015-08-30 14:31 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Glary Utilities 5 2015-11-26 23:56 - 2015-05-01 00:50 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDF-XChange PDF Viewer 2015-11-26 23:56 - 2015-04-30 23:18 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IObit Uninstaller 2015-11-26 23:56 - 2015-04-30 23:07 - 00000000 ____D C:\Users\keramti\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SpeedFan 2015-11-26 23:56 - 2015-04-30 22:37 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVAST Software 2015-11-26 23:56 - 2015-04-13 19:44 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Gameforge Live 2015-11-26 23:56 - 2015-01-14 22:58 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OCCT 2015-11-26 23:56 - 2015-01-09 21:59 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HEXelon tabliczka mnożenia 2015-11-26 23:56 - 2015-01-03 22:11 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ALLPlayer 2015-11-26 23:56 - 2015-01-01 20:14 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware 2015-11-26 23:56 - 2014-12-05 19:48 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GSR 2015-11-26 23:56 - 2014-10-26 08:38 - 00000000 ____D C:\Users\keramti\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WarThunder 2015-11-26 23:56 - 2014-05-25 12:18 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java 2015-11-26 23:56 - 2014-04-05 18:49 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Gwiezdny Mściciel 2015-11-26 23:56 - 2014-03-27 22:58 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Earth 2015-11-26 23:56 - 2014-01-29 19:41 - 00000000 ____D C:\Users\keramti\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FIFA 12 FAST START V.1.0 BY DOCTOR+ PRODUCTIONS 2015-11-26 23:56 - 2014-01-15 23:00 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight 2015-11-26 23:56 - 2014-01-06 01:41 - 00000000 ____D C:\WINDOWS\SysWOW64\GBT_DL_OBJ 2015-11-26 23:56 - 2013-12-20 20:47 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Origin 2015-11-26 23:56 - 2013-12-19 23:10 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Air Conflicts 2015-11-26 23:56 - 2013-12-18 21:55 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam 2015-11-26 23:56 - 2013-12-18 19:54 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DVDFab Virtual Drive 2015-11-26 23:56 - 2013-12-18 19:47 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Pocket Tanks 2015-11-26 23:56 - 2013-12-18 19:46 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Jardinains! 2015-11-26 23:56 - 2013-12-18 19:40 - 00000000 ____D C:\Users\keramti\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games 2015-11-26 23:56 - 2013-12-18 19:38 - 00000000 ____D C:\Users\keramti\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Autko 2015-11-26 23:56 - 2013-12-17 20:51 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Massive Assault 2015-11-26 23:56 - 2013-12-17 20:29 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2015-11-26 23:56 - 2013-12-17 19:27 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Puran Defrag 2015-11-26 23:56 - 2013-12-17 16:22 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Creative 2015-11-26 23:56 - 2013-12-17 14:24 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CrystalDiskInfo 2015-11-26 23:56 - 2013-12-16 22:16 - 00000000 ____D C:\Users\keramti\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR 2015-11-26 23:56 - 2013-12-16 22:16 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR 2015-11-26 23:56 - 2013-12-16 20:50 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome 2015-11-26 23:56 - 2009-07-14 06:32 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games 2015-11-26 23:55 - 2015-10-31 15:01 - 00000000 ____D C:\WINDOWS\SysWOW64\Adobe 2015-11-26 23:55 - 2015-10-30 08:24 - 00000000 __SHD C:\Program Files\Windows Sidebar 2015-11-26 23:55 - 2015-10-30 08:24 - 00000000 __SHD C:\Program Files (x86)\Windows Sidebar 2015-11-26 23:55 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\SysWOW64\migwiz 2015-11-26 23:55 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\SysWOW64\Macromed 2015-11-26 23:55 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\SysWOW64\IME 2015-11-26 23:55 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\system32\oobe 2015-11-26 23:55 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\system32\IME 2015-11-26 23:55 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\PolicyDefinitions 2015-11-26 23:55 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\LiveKernelReports 2015-11-26 23:55 - 2015-10-30 08:24 - 00000000 ____D C:\Program Files\Common Files\microsoft shared 2015-11-26 23:55 - 2015-10-29 19:58 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel 2015-11-26 23:55 - 2014-01-06 01:16 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Gigabyte 2015-11-26 23:55 - 2013-12-21 17:06 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GMX Media 2015-11-26 23:55 - 2013-12-21 16:10 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TerraGame 2015-11-26 23:55 - 2013-12-19 22:59 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\City Interactive 2015-11-26 23:55 - 2013-12-19 22:39 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Techland 2015-11-26 23:55 - 2013-12-19 16:06 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Brother 2015-11-26 23:55 - 2013-12-18 20:02 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AnvSoft 2015-11-26 23:55 - 2013-12-17 14:29 - 00000000 ____D C:\WINDOWS\system32\SPReview 2015-11-26 23:55 - 2013-12-17 14:28 - 00000000 ____D C:\WINDOWS\system32\EventProviders 2015-11-26 23:55 - 2009-07-14 19:09 - 00000000 ___RD C:\Users\Public\Recorded TV 2015-11-26 23:55 - 2009-07-14 06:32 - 00000000 ____D C:\Program Files\Microsoft Games 2015-11-26 23:55 - 2009-07-14 06:32 - 00000000 ____D C:\Program Files\DVD Maker 2015-11-26 23:55 - 2009-07-14 04:20 - 00000000 ____D C:\Users\Default.migrated 2015-11-26 23:54 - 2015-10-30 07:28 - 00000000 ____D C:\WINDOWS\system32\Sysprep 2015-11-26 23:53 - 2015-10-30 20:29 - 00000000 ____D C:\WINDOWS\ServiceProfiles 2015-11-26 23:52 - 2015-10-30 08:24 - 00028672 _____ C:\WINDOWS\system32\config\BCD-Template 2015-11-26 23:50 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\system32\appraiser 2015-11-26 23:50 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\Provisioning 2015-11-26 23:50 - 2015-10-30 07:28 - 00000000 ____D C:\WINDOWS\SysWOW64\Dism 2015-11-26 23:50 - 2015-10-30 07:28 - 00000000 ____D C:\WINDOWS\system32\Dism 2015-11-26 23:48 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\SysWOW64\MUI 2015-11-26 23:48 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\SysWOW64\inetsrv 2015-11-26 23:48 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\system32\MUI 2015-11-26 23:48 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\system32\inetsrv 2015-11-26 23:48 - 2015-10-30 08:19 - 00635904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqsnap.dll 2015-11-26 23:48 - 2015-10-30 08:19 - 00562176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqutil.dll 2015-11-26 23:48 - 2015-10-30 08:19 - 00266240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqoa.dll 2015-11-26 23:48 - 2015-10-30 08:19 - 00168960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iisRtl.dll 2015-11-26 23:48 - 2015-10-30 08:19 - 00161792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqrt.dll 2015-11-26 23:48 - 2015-10-30 08:19 - 00096768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqoa.tlb 2015-11-26 23:48 - 2015-10-30 08:19 - 00091136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqoa30.tlb 2015-11-26 23:48 - 2015-10-30 08:19 - 00055808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqoa20.tlb 2015-11-26 23:48 - 2015-10-30 08:19 - 00051200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\admwprox.dll 2015-11-26 23:48 - 2015-10-30 08:19 - 00037376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqoa10.tlb 2015-11-26 23:48 - 2015-10-30 08:19 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ahadmin.dll 2015-11-26 23:48 - 2015-10-30 08:19 - 00017408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iisreset.exe 2015-11-26 23:48 - 2015-10-30 08:19 - 00014848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqcertui.dll 2015-11-26 23:48 - 2015-10-30 08:19 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wamregps.dll 2015-11-26 23:48 - 2015-10-30 08:19 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iisrstap.dll 2015-11-26 23:48 - 2015-10-30 08:19 - 00009096 _____ C:\WINDOWS\SysWOW64\msmqtrc.mof 2015-11-26 23:48 - 2015-10-30 08:18 - 01417728 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqqm.dll 2015-11-26 23:48 - 2015-10-30 08:18 - 00813056 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqsnap.dll 2015-11-26 23:48 - 2015-10-30 08:18 - 00564224 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqutil.dll 2015-11-26 23:48 - 2015-10-30 08:18 - 00317440 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqoa.dll 2015-11-26 23:48 - 2015-10-30 08:18 - 00229888 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqrt.dll 2015-11-26 23:48 - 2015-10-30 08:18 - 00202240 _____ (Microsoft Corporation) C:\WINDOWS\system32\iisRtl.dll 2015-11-26 23:48 - 2015-10-30 08:18 - 00175616 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mqac.sys 2015-11-26 23:48 - 2015-10-30 08:18 - 00130048 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqlogmgr.dll 2015-11-26 23:48 - 2015-10-30 08:18 - 00096768 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqoa.tlb 2015-11-26 23:48 - 2015-10-30 08:18 - 00091136 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqoa30.tlb 2015-11-26 23:48 - 2015-10-30 08:18 - 00056320 _____ (Microsoft Corporation) C:\WINDOWS\system32\admwprox.dll 2015-11-26 23:48 - 2015-10-30 08:18 - 00055808 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqoa20.tlb 2015-11-26 23:48 - 2015-10-30 08:18 - 00053248 _____ (Microsoft Corporation) C:\WINDOWS\system32\ahadmin.dll 2015-11-26 23:48 - 2015-10-30 08:18 - 00052736 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqbkup.exe 2015-11-26 23:48 - 2015-10-30 08:18 - 00037376 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqoa10.tlb 2015-11-26 23:48 - 2015-10-30 08:18 - 00026624 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqsvc.exe 2015-11-26 23:48 - 2015-10-30 08:18 - 00019456 _____ (Microsoft Corporation) C:\WINDOWS\system32\iisreset.exe 2015-11-26 23:48 - 2015-10-30 08:18 - 00018944 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqcertui.dll 2015-11-26 23:48 - 2015-10-30 08:18 - 00015360 _____ (Microsoft Corporation) C:\WINDOWS\system32\wamregps.dll 2015-11-26 23:48 - 2015-10-30 08:18 - 00013312 _____ (Microsoft Corporation) C:\WINDOWS\system32\iisrstap.dll 2015-11-26 23:48 - 2015-10-30 08:18 - 00009096 _____ C:\WINDOWS\system32\msmqtrc.mof 2015-11-26 23:45 - 2009-07-14 05:45 - 00010240 ____H C:\WINDOWS\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2015-11-26 23:45 - 2009-07-14 05:45 - 00010240 ____H C:\WINDOWS\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2015-11-26 21:46 - 2015-09-06 01:16 - 00025640 _____ (Windows (R) Server 2003 DDK provider) C:\WINDOWS\gdrv.sys 2015-11-26 00:28 - 2015-10-31 12:07 - 00000000 ____D C:\Users\keramti\AppData\Roaming\WiseUpdate 2015-11-25 23:53 - 2013-12-16 21:40 - 00000000 ____D C:\WINDOWS\system32\MRT 2015-11-25 22:28 - 2013-12-16 20:49 - 00000000 ____D C:\Users\keramti\AppData\Local\Google 2015-11-23 23:16 - 2015-01-07 21:51 - 00000000 ____D C:\ProgramData\IObit 2015-11-23 22:49 - 2013-12-17 15:56 - 00000000 ___RD C:\Users\keramti\Desktop\PORZADKI WIN 7 2015-11-23 10:34 - 2013-12-17 15:57 - 00000000 ____D C:\Users\keramti\AppData\Roaming\Audacity 2015-11-23 01:23 - 2013-12-16 20:49 - 00000000 ____D C:\Program Files (x86)\Google 2015-11-23 00:38 - 2013-12-16 21:40 - 00000000 ____D C:\Users\keramti\AppData\Local\Mozilla 2015-11-22 23:49 - 2015-09-29 21:11 - 00000000 ____D C:\Users\keramti\Youtube 2015-11-22 23:45 - 2015-01-03 22:24 - 00000000 ___RD C:\Users\keramti\Desktop\ALL PLAYER 2015-11-22 21:43 - 2015-01-07 21:51 - 00000000 ____D C:\Program Files (x86)\IObit 2015-11-21 14:50 - 2015-11-01 13:22 - 00000000 ____D C:\Users\keramti\Downloads\Gameforge Live 2015-11-19 21:19 - 2015-08-01 21:01 - 00147088 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\ngvss.sys 2015-11-19 21:19 - 2015-04-30 22:37 - 01059656 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSnx.sys 2015-11-19 21:19 - 2015-04-30 22:37 - 00449992 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSP.sys 2015-11-19 21:19 - 2015-04-30 22:37 - 00273784 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswVmm.sys 2015-11-19 21:19 - 2015-04-30 22:37 - 00154256 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswStm.sys 2015-11-19 21:19 - 2015-04-30 22:37 - 00097648 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswMonFlt.sys 2015-11-19 21:19 - 2015-04-30 22:37 - 00093528 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRdr2.sys 2015-11-19 21:19 - 2015-04-30 22:37 - 00065224 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRvrt.sys 2015-11-19 21:19 - 2015-04-30 22:37 - 00028656 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswHwid.sys 2015-11-19 21:17 - 2015-11-03 20:13 - 00000000 ____D C:\Users\keramti\Desktop\My Shared Folder 2015-11-12 11:48 - 2013-12-19 17:20 - 00000000 ____D C:\Users\keramti\AppData\Local\Microsoft Games 2015-11-10 22:17 - 2014-09-10 10:46 - 00000000 ____D C:\Users\keramti\AppData\Local\Adobe 2015-11-05 22:50 - 2015-11-03 20:13 - 00000000 ____D C:\Users\keramti\AppData\Local\Ares ==================== Pliki w katalogu głównym wybranych folderów ======= 2014-01-07 08:44 - 2015-04-20 23:17 - 0007635 _____ () C:\Users\keramti\AppData\Local\resmon.resmoncfg Niektóre pliki w TEMP: ==================== C:\Users\adamt\AppData\Local\Temp\SkypeSetup.exe C:\Users\keramti\AppData\Local\Temp\SkypeSetup.exe C:\Users\keramti\AppData\Local\Temp\sqlite3.dll ==================== Bamital & volsnap ================= (Brak automatycznej naprawy dla plików które nie przeszły weryfikacji.) C:\WINDOWS\system32\winlogon.exe => Plik podpisany cyfrowo C:\WINDOWS\system32\wininit.exe => Plik podpisany cyfrowo C:\WINDOWS\explorer.exe => Plik podpisany cyfrowo C:\WINDOWS\SysWOW64\explorer.exe => Plik podpisany cyfrowo C:\WINDOWS\system32\svchost.exe => Plik podpisany cyfrowo C:\WINDOWS\SysWOW64\svchost.exe => Plik podpisany cyfrowo C:\WINDOWS\system32\services.exe => Plik podpisany cyfrowo C:\WINDOWS\system32\User32.dll => Plik podpisany cyfrowo C:\WINDOWS\SysWOW64\User32.dll => Plik podpisany cyfrowo C:\WINDOWS\system32\userinit.exe => Plik podpisany cyfrowo C:\WINDOWS\SysWOW64\userinit.exe => Plik podpisany cyfrowo C:\WINDOWS\system32\rpcss.dll => Plik podpisany cyfrowo C:\WINDOWS\system32\dnsapi.dll => Plik podpisany cyfrowo C:\WINDOWS\SysWOW64\dnsapi.dll => Plik podpisany cyfrowo C:\WINDOWS\system32\Drivers\volsnap.sys => Plik podpisany cyfrowo LastRegBack: 2015-12-02 23:36 ==================== Koniec FRST.txt ============================