Rezultaty skanowania Farbar Recovery Scan Tool (FRST) (x64) Wersja:29-12-2015 Uruchomiony przez x (administrator) X-KOMPUTER (29-12-2015 20:48:56) Uruchomiony z C:\Users\x\Desktop Załadowane profile: x (Dostępne profile: x) Platform: Windows 7 Home Premium Service Pack 1 (X64) Język: Polski (Polska) Internet Explorer Wersja 11 (Domyślna przeglądarka: Chrome) Tryb startu: Normal Instrukcja obsługi Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Procesy (filtrowane) ================= (Załączenie wejścia w fixlist spowoduje zamknięcie procesu. Powiązany plik nie zostanie przeniesiony.) (AMD) C:\Windows\System32\atiesrxx.exe (AMD) C:\Windows\System32\atieclxx.exe (Avast Software s.r.o.) C:\Program Files\AVAST Software\Avast\AvastSvc.exe (Advanced Micro Devices, Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Framework\Common\avgsvca.exe (Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe (Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe () C:\Program Files (x86)\Canon\IJPLM\ijplmsvc.exe (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesService64.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesApp64.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe (Avast Software s.r.o.) C:\Program Files\AVAST Software\Avast\avastui.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Framework\Common\avguix.exe (Disc Soft Ltd) C:\Program Files (x86)\DAEMON Tools Lite\DiscSoftBusService.exe (Microsoft Corporation) C:\Windows\ehome\ehrecvr.exe (Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe (ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (Farbar) C:\Users\x\Desktop\FRST64(1).exe ==================== Rejestr (filtrowane) =========================== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [7506136 2013-12-06] (Realtek Semiconductor) HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [630912 2012-05-04] (Advanced Micro Devices, Inc.) HKLM-x32\...\Run: [AMD AVT] => C:\Program Files (x86)\AMD AVT\bin\kdbsync.exe [12288 2012-04-19] () HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [5515496 2015-07-03] (Avast Software s.r.o.) HKLM-x32\...\Run: [AvgUi] => C:\Program Files (x86)\AVG\Framework\Common\avguix.exe [1136552 2015-11-12] (AVG Technologies CZ, s.r.o.) HKU\S-1-5-21-1067321925-3578864132-775108078-1000\...\Run: [AtiDriverStart] => C:\Users\x\AppData\Local\ATI Technologies\atidxx.exe HKU\S-1-5-21-1067321925-3578864132-775108078-1000\...\Run: [SplitCam] => C:\Program Files (x86)\SplitCam\SplitCam.exe HKU\S-1-5-21-1067321925-3578864132-775108078-1000\...\Run: [DAEMON Tools Lite Automount] => C:\Program Files (x86)\DAEMON Tools Lite\DTAgent.exe [4179288 2015-11-30] (Disc Soft Ltd) HKU\S-1-5-21-1067321925-3578864132-775108078-1000\...\MountPoints2: G - G:\LGAutoRun.exe HKU\S-1-5-21-1067321925-3578864132-775108078-1000\...\MountPoints2: {33c19ae6-1332-11e4-9552-d43d7e352e65} - G:\Autorun_By_VictorVal.exe HKU\S-1-5-21-1067321925-3578864132-775108078-1000\...\MountPoints2: {5a8027b8-0b87-11e4-84fa-d43d7e352e65} - G:\LGAutoRun.exe HKU\S-1-5-21-1067321925-3578864132-775108078-1000\...\MountPoints2: {60b7ecd1-f61d-11e4-b4a0-d43d7e352e65} - G:\LGAutoRun.exe HKU\S-1-5-21-1067321925-3578864132-775108078-1000\...\MountPoints2: {910a9e12-abb7-11e5-9728-d43d7e352e65} - F:\setup.exe ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2015-07-02] (Avast Software s.r.o.) GroupPolicy: Ograniczenia - Chrome <======= UWAGA CHR HKLM\SOFTWARE\Policies\Google: Ograniczenia <======= UWAGA ==================== Internet (filtrowane) ==================== (Załączenie wejścia w fixlist, w przypadku gdy jest to obiekt rejestru, spowoduje usunięcie go z rejestru lub przywrócenie jego domyślnej postaci.) Tcpip\Parameters: [DhcpNameServer] 192.168.11.1 Tcpip\..\Interfaces\{E00A43A0-9652-4348-B1E4-4D94A31E449C}: [DhcpNameServer] 192.168.11.1 Internet Explorer: ================== HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.com HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.bing.com/ HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.google.com HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.google.com HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.bing.com/ HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.bing.com/ HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.google.com HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.google.com HKU\S-1-5-21-1067321925-3578864132-775108078-1000\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.bing.com/ URLSearchHook: HKLM-x32 -> Domyślne = {CCC7B159-1D8C-11E3-B2AD-F3EF3D58318D} SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://searchinterneat-a.akamaihd.net/s?eq=U0EeE1xZE1oZB1ZEfQ0KAAEQRQZHbQxdWApcFVEScBQBVg0SDFRCIg1aUlsXGAxCcx9aFQQTSEcFME0FCFwEURNNfXFRBlEiVVRKMko=&q={searchTerms} SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://searchinterneat-a.akamaihd.net/s?eq=U0EeE1xZE1oZB1ZEfQ0KAAEQRQZHbQxdWApcFVEScBQBVg0SDFRCIg1aUlsXGAxCcx9aFQQTSEcFME0FCFwEURNNfXFRBlEiVVRKMko=&q={searchTerms} SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-21-1067321925-3578864132-775108078-1000 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = BHO: Canon Easy-WebPrint EX BHO -> {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} -> C:\Program Files\Canon\Easy-WebPrint EX\ewpexbho.dll [2014-07-07] (CANON INC.) BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2015-07-02] (Avast Software s.r.o.) BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17] (Microsoft Corp.) BHO: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2015-10-12] (Microsoft Corporation) BHO-x32: Canon Easy-WebPrint EX BHO -> {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} -> C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexbho.dll [2014-07-07] (CANON INC.) BHO-x32: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2015-07-02] (Avast Software s.r.o.) BHO-x32: Pomocnik logowania za pomocą konta Microsoft -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17] (Microsoft Corp.) BHO-x32: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2015-10-12] (Microsoft Corporation) Toolbar: HKLM - Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files\Canon\Easy-WebPrint EX\ewpexhlp.dll [2014-07-07] (CANON INC.) Toolbar: HKLM-x32 - Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexhlp.dll [2014-07-07] (CANON INC.) Toolbar: HKU\S-1-5-21-1067321925-3578864132-775108078-1000 -> Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files\Canon\Easy-WebPrint EX\ewpexhlp.dll [2014-07-07] (CANON INC.) DPF: HKLM-x32 {D27CDB6E-AE6D-11CF-96B8-444553540000} hxxps://fpdownload.macromedia.com/get/shockwave/cabs/flash/swflash.cab Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\SKYPE4~1.DLL [2014-05-02] (Skype Technologies) Handler: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2015-10-12] (Microsoft Corporation) Handler-x32: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2015-10-12] (Microsoft Corporation) FireFox: ======== FF ProfilePath: C:\Users\x\AppData\Roaming\Mozilla\Firefox\Profiles\abnkhfcq.default FF NewTab: hxxp://searchinterneat-a.akamaihd.net/t?eq=U0EeFFhaR1oWHAERIQFZBQoVDABGeQoVVV1AERgadw1bTFgQQwFBc1teWAAQEhNBNARaB0tXUUEeGGlxR1dMaVxEKGpMAFADUg== FF DefaultSearchEngine: Default FF SelectedSearchEngine: Default FF Homepage: hxxp://searchinterneat-a.akamaihd.net/h?eq=U0EeCFZVBB8SRggXclgAAF1CRRgWJQALTA0VEAUOeQ4MAhQQQFcXIgpaBwBIQAYFIk0FA18DB0VXfWFoKB8fHH1KJ1FrFVgYU0Y= FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_20_0_0_267.dll [2015-12-28] () FF Plugin: @microsoft.com/GENUINE -> disabled [Brak pliku] FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.41105.0\npctrl.dll [2015-11-04] ( Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_20_0_0_267.dll [2015-12-28] () FF Plugin-x32: @canon.com/EPPEX -> C:\Program Files (x86)\Canon\My Image Garden\AddOn\CIG\npmigfpi.dll [2011-11-30] (CANON INC.) FF Plugin-x32: @microsoft.com/GENUINE -> disabled [Brak pliku] FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.41105.0\npctrl.dll [2015-11-04] ( Microsoft Corporation) FF Plugin-x32: @pandonetworks.com/PandoWebPlugin -> C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll [2014-08-09] (Pando Networks) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.29.1\npGoogleUpdate3.dll [2015-12-02] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.29.1\npGoogleUpdate3.dll [2015-12-02] (Google Inc.) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2015-09-27] (Adobe Systems Inc.) FF Plugin HKU\S-1-5-21-1067321925-3578864132-775108078-1000: @Skype Limited.com/Facebook Video Calling Plugin -> C:\Users\x\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll [2014-07-24] (Skype Limited) FF Plugin HKU\S-1-5-21-1067321925-3578864132-775108078-1000: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\x\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2015-10-05] (Unity Technologies ApS) FF Plugin HKU\S-1-5-21-1067321925-3578864132-775108078-1000: facebook.com/fbDesktopPlugin -> C:\Users\x\AppData\Local\Facebook\Messenger\2.1.4814.0\npFbDesktopPlugin.dll [2013-03-07] (Facebook, Inc.) FF Plugin HKU\S-1-5-21-1067321925-3578864132-775108078-1000: pandonetworks.com/PandoWebPlugin -> C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll [2014-08-09] (Pando Networks) FF Plugin HKU\S-1-5-21-1067321925-3578864132-775108078-1000: thehappycloud.com/HappyCloudPlugin -> C:\ProgramData\HappyCloud\Application\npHappyCloudPlugin.dll [2013-05-05] (The Happy Cloud) FF Plugin ProgramFiles/Appdata: C:\Users\x\AppData\Roaming\mozilla\plugins\np-mswmp.dll [2009-09-25] (Microsoft Corporation) FF SearchPlugin: C:\Users\x\AppData\Roaming\Mozilla\Firefox\Profiles\abnkhfcq.default\searchplugins\dsrlte1.xml [2015-04-02] FF Extension: FF Toolbar - C:\Users\x\AppData\Roaming\Mozilla\Firefox\Profiles\abnkhfcq.default\Extensions\1430039862_xpi [2015-04-26] [Brak podpisu cyfrowego] FF Extension: High Stairs - C:\Users\x\AppData\Roaming\Mozilla\Firefox\Profiles\abnkhfcq.default\Extensions\{7eafe3da-bb0f-4921-9520-4381107e7fad}.xpi [2015-10-14] [Brak podpisu cyfrowego] FF Extension: Adblock Plus - C:\Users\x\AppData\Roaming\Mozilla\Firefox\Profiles\abnkhfcq.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2015-12-24] FF Extension: Skype Click to Call - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}.xpi [2015-10-08] FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF FF Extension: Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2015-12-10] Chrome: ======= CHR dev: Chrome dev build wykryto! <======= UWAGA CHR RestoreOnStartup: Default -> "hxxp://searchinterneat-a.akamaihd.net/h?eq=U0EeCFZVBB8SRggXclgAAF1CRRgWJQALTA0VEAUOeQ4MAhQQQFcXIgpaBwBIQAYFIk0FA1oDB0VXfV5bFElXTwhrKV5QMk0QSEdQ" CHR Profile: C:\Users\x\AppData\Local\Google\Chrome\User Data\Default CHR Extension: (Prezentacje Google) - C:\Users\x\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-12-04] CHR Extension: (Dokumenty Google) - C:\Users\x\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-12-04] CHR Extension: (Dysk Google) - C:\Users\x\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-12-04] CHR Extension: (YouTube) - C:\Users\x\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-12-04] CHR Extension: (Google Search) - C:\Users\x\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-12-04] CHR Extension: (High Stairs) - C:\Users\x\AppData\Local\Google\Chrome\User Data\Default\Extensions\dmlmbdgogacbbglbjomfbcpcnoglbgcm [2015-12-04] [UpdateUrl: hxxp://cdn.highstairs.com/update] <==== UWAGA CHR Extension: (Arkusze Google) - C:\Users\x\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-12-04] CHR Extension: (Dokumenty Google offline) - C:\Users\x\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2015-12-04] CHR Extension: (AdBlock) - C:\Users\x\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2015-12-25] CHR Extension: (Avast Online Security) - C:\Users\x\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2015-12-04] CHR Extension: (Skype) - C:\Users\x\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl [2015-12-19] CHR Extension: (Płatności w sklepie Chrome Web Store) - C:\Users\x\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-12-04] CHR Extension: (Gmail) - C:\Users\x\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-12-04] CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2015-07-02] CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx [2015-10-12] Opera: ======= OPR Extension: (Clock Hand) - C:\Users\x\AppData\Roaming\Opera Software\Opera Stable\Extensions\bdllemdkbkgllkkgbbdhbojodiaggnlp [2015-04-18] OPR Extension: (High Stairs) - C:\Users\x\AppData\Roaming\Opera Software\Opera Stable\Extensions\dmlmbdgogacbbglbjomfbcpcnoglbgcm [2015-11-17] OPR Extension: (iWebar) - C:\Users\x\AppData\Roaming\Opera Software\Opera Stable\Extensions\gnjbfdmiommbcdfigaefehgdndnpeech [2014-11-01] ==================== Usługi (filtrowane) ======================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) R2 AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [361984 2012-05-04] (Advanced Micro Devices, Inc.) [Brak podpisu cyfrowego] R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [343336 2015-07-02] (Avast Software s.r.o.) R2 avgsvc; C:\Program Files (x86)\AVG\Framework\Common\avgsvca.exe [1046952 2015-11-12] (AVG Technologies CZ, s.r.o.) R2 c2cautoupdatesvc; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1433216 2015-10-12] (Microsoft Corporation) R2 c2cpnrsvc; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1773696 2015-10-12] (Microsoft Corporation) R3 Disc Soft Lite Bus Service; C:\Program Files (x86)\DAEMON Tools Lite\DiscSoftBusService.exe [1368408 2015-11-30] (Disc Soft Ltd) R2 IJPLMSVC; C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE [140936 2013-05-14] () S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2104840 2015-12-24] (Electronic Arts) R2 TuneUp.UtilitiesSvc; C:\Program Files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesService64.exe [4377000 2015-12-11] (AVG Technologies CZ, s.r.o.) R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation) ===================== Sterowniki (filtrowane) ========================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) R2 AODDriver4.1; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\AODDriver2.sys [55936 2011-11-13] (Advanced Micro Devices) R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [29168 2015-07-02] () R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [89944 2015-07-02] (Avast Software s.r.o.) R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93528 2015-07-02] (Avast Software s.r.o.) R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65736 2015-07-02] () R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1047320 2015-07-02] (Avast Software s.r.o.) R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [442264 2015-07-03] (Avast Software s.r.o.) R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [137288 2015-07-02] (Avast Software s.r.o.) R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [272248 2015-07-02] () R3 DroidCam; C:\Windows\System32\DRIVERS\droidcam.sys [33592 2015-08-17] (Dev47Apps) R3 DroidCamVideo; C:\Windows\System32\DRIVERS\droidcamvideo.sys [229432 2015-08-17] (Dev47Apps) R3 dtlitescsibus; C:\Windows\System32\DRIVERS\dtlitescsibus.sys [30264 2015-12-26] (Disc Soft Ltd) R3 dtliteusbbus; C:\Windows\System32\DRIVERS\dtliteusbbus.sys [46392 2015-12-26] (Disc Soft Ltd) S3 ebdrv; C:\Windows\system32\drivers\evbda.sys [3286016 2009-06-10] (Broadcom Corporation) R0 fsbts; C:\Windows\System32\Drivers\fsbts.sys [66736 2015-10-06] () S3 MBAMSwissArmy; C:\Windows\system32\drivers\MBAMSwissArmy.sys [129752 2015-01-10] (Malwarebytes Corporation) S3 scvad_simple; C:\Windows\System32\drivers\SplitCamAudio.sys [23552 2014-06-30] (Windows (R) Win 7 DDK provider) S3 splitcam_hd_driver; C:\Windows\System32\DRIVERS\splitcam_hd_driver.sys [37496 2014-06-30] (Windows (R) Win 7 DDK provider) R3 TuneUpUtilitiesDrv; C:\Program Files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesDriver64.sys [31144 2015-12-11] (TuneUp Software) ==================== NetSvcs (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) ==================== Jeden miesiąc - utworzone pliki i foldery ======== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2015-12-29 20:48 - 2015-12-29 20:49 - 00020499 _____ C:\Users\x\Desktop\FRST.txt 2015-12-29 20:46 - 2015-12-29 20:47 - 02370560 _____ (Farbar) C:\Users\x\Desktop\FRST64(1).exe 2015-12-29 20:40 - 2015-12-29 20:40 - 00380416 _____ C:\Users\x\Desktop\vn399p4j.exe 2015-12-29 20:31 - 2015-12-29 20:41 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2015-12-29 20:31 - 2015-12-29 20:32 - 05271256 _____ (Husdawg, LLC) C:\Users\x\Downloads\Detection.exe 2015-12-29 18:21 - 2015-12-29 18:21 - 00001414 _____ C:\Users\x\Documents\dsj44.ecs 2015-12-29 18:20 - 2015-12-29 18:20 - 00001739 _____ C:\Users\x\Desktop\EasyClicker Pro 1.3v — skrót.lnk 2015-12-28 23:19 - 2015-12-28 23:19 - 00135308 _____ C:\Users\x\Downloads\!xSpeedPro-setup.exe 2015-12-28 23:19 - 2015-12-28 23:19 - 00000630 _____ C:\Users\x\Desktop\!xSpeedPro.lnk 2015-12-28 23:19 - 2015-12-28 23:19 - 00000000 ____D C:\Users\x\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\!xSpeedPro 2015-12-28 23:19 - 2015-12-28 23:19 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\!xSpeedPro 2015-12-28 23:19 - 2015-12-28 23:19 - 00000000 ____D C:\!xSpeedPro 2015-12-27 20:23 - 2015-12-27 20:23 - 00001414 ___SH C:\Users\x\Documents\AutoSkrypt.ecs 2015-12-27 20:20 - 2015-12-27 20:23 - 00001414 _____ C:\Users\x\Documents\dsj4.ecs 2015-12-27 19:16 - 2015-12-27 19:16 - 00001667 _____ C:\Users\x\Documents\dsj.ecs 2015-12-27 19:09 - 2015-12-27 19:19 - 00000000 ____D C:\Users\x\AppData\Local\Master 2015-12-27 19:03 - 2015-12-27 19:03 - 00000000 ____D C:\Users\x\AppData\Local\Perfection_Coders_Studio_ 2015-12-27 18:56 - 2015-12-27 18:56 - 00000000 ____D C:\Users\x\AppData\Roaming\WinRAR 2015-12-27 18:56 - 2009-07-29 17:01 - 00000000 ____D C:\Users\x\Downloads\EasyClicker 2015-12-27 18:55 - 2015-12-27 18:55 - 01964912 _____ C:\Users\x\Downloads\winrar-x64-530.exe 2015-12-27 18:55 - 2015-12-27 18:55 - 00000000 ____D C:\Program Files\WinRAR 2015-12-27 18:52 - 2015-12-27 18:52 - 00709165 _____ C:\Users\x\Downloads\EasyClicker-[www.legalne.info].rar 2015-12-27 14:45 - 2015-12-27 18:46 - 00001056 _____ C:\Users\x\Desktop\DSJ4.lnk 2015-12-27 14:45 - 2015-12-27 14:45 - 00000000 ____D C:\Users\x\Documents\Deluxe Ski Jump 4 2015-12-27 14:45 - 2015-12-27 14:45 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Deluxe Ski Jump 4 2015-12-27 14:45 - 2015-12-27 14:45 - 00000000 ____D C:\Program Files (x86)\Deluxe Ski Jump 4 2015-12-27 14:44 - 2015-12-27 14:45 - 15930210 _____ (Mediamond Tmi ) C:\Users\x\Downloads\dsj4v161.exe 2015-12-27 14:41 - 2015-12-27 18:49 - 00000000 ____D C:\Program Files (x86)\Master 2015-12-27 14:41 - 2015-12-27 14:41 - 00800033 _____ () C:\Users\x\Downloads\EasyClicker_Pro_1.3.exe 2015-12-26 23:50 - 2015-12-26 23:50 - 00002953 _____ C:\Users\x\Downloads\Potarz_Potarz.atm 2015-12-26 16:02 - 2015-12-26 16:02 - 00001218 _____ C:\Users\Public\Desktop\Call of Duty 2.lnk 2015-12-26 16:02 - 2015-12-26 16:02 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Call of Duty 2 2015-12-26 15:50 - 2015-12-26 15:50 - 00000000 ____D C:\Program Files (x86)\GTX Box Team 2015-12-26 15:49 - 2015-12-26 15:49 - 00000000 ____D C:\Users\x\AppData\Local\Disc_Soft_Ltd 2015-12-26 15:48 - 2015-12-26 15:48 - 00002252 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG PC TuneUp.lnk 2015-12-26 15:48 - 2015-12-26 15:48 - 00000000 ____D C:\Users\Public\Documents\Daemon Tools Images 2015-12-26 15:48 - 2015-12-26 15:48 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG PC TuneUp 2015-12-26 15:48 - 2015-12-11 15:39 - 00046504 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\TURegOpt.exe 2015-12-26 15:48 - 2015-12-11 15:33 - 00037288 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\authuitu.dll 2015-12-26 15:48 - 2015-12-11 15:33 - 00032680 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\SysWOW64\authuitu.dll 2015-12-26 15:47 - 2015-12-26 15:47 - 00000000 ____D C:\Users\x\AppData\Roaming\AVG 2015-12-26 15:42 - 2015-12-26 15:42 - 00000924 _____ C:\Users\Public\Desktop\AVG.lnk 2015-12-26 15:42 - 2015-12-26 15:42 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG Zen 2015-12-26 15:34 - 2015-12-26 15:34 - 00046392 _____ (Disc Soft Ltd) C:\Windows\system32\Drivers\dtliteusbbus.sys 2015-12-26 15:33 - 2015-12-26 15:46 - 00000000 ____D C:\ProgramData\Avg 2015-12-26 15:33 - 2015-12-26 15:46 - 00000000 ____D C:\Program Files (x86)\AVG 2015-12-26 15:30 - 2015-12-26 15:47 - 00000000 ____D C:\Users\x\AppData\Local\Avg 2015-12-26 15:30 - 2015-12-26 15:45 - 00000000 ____D C:\Users\x\AppData\Local\AvgSetupLog 2015-12-26 15:30 - 2015-12-26 15:34 - 00000000 ____D C:\Program Files (x86)\DAEMON Tools Lite 2015-12-26 15:30 - 2015-12-26 15:30 - 00030264 _____ (Disc Soft Ltd) C:\Windows\system32\Drivers\dtlitescsibus.sys 2015-12-26 15:30 - 2015-12-26 15:30 - 00001990 _____ C:\Users\Public\Desktop\DAEMON Tools Lite.lnk 2015-12-26 15:30 - 2015-12-26 15:30 - 00000000 ____D C:\Users\x\AppData\Roaming\RPEng 2015-12-26 15:30 - 2015-12-26 15:30 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DAEMON Tools Lite 2015-12-26 15:22 - 2015-12-26 15:23 - 01709792 _____ (Disc Soft Ltd.) C:\Users\x\Downloads\DTLiteInstaller_www.INSTALKI.pl.exe 2015-12-25 16:16 - 2015-12-25 18:49 - 00000000 ____D C:\Users\x\Downloads\[ZODIAC-TORRENT.PL]Call of Duty 2 GTX Box Team PL 2015-12-25 16:14 - 2015-12-25 16:14 - 00018203 _____ C:\Users\x\Downloads\Call of Duty 2 2005 [PL][POLISH REPACK GTX BOX Team][ iso] [marcinc33][Torrenty.org] (4).torrent 2015-12-25 16:13 - 2015-12-25 16:13 - 00018203 _____ C:\Users\x\Downloads\Call of Duty 2 2005 [PL][POLISH REPACK GTX BOX Team][ iso] [marcinc33][Torrenty.org] (3).torrent 2015-12-25 16:13 - 2015-12-25 16:13 - 00018203 _____ C:\Users\x\Downloads\Call of Duty 2 2005 [PL][POLISH REPACK GTX BOX Team][ iso] [marcinc33][Torrenty.org] (2).torrent 2015-12-25 16:13 - 2015-12-25 16:13 - 00018203 _____ C:\Users\x\Downloads\1.torrent 2015-12-25 16:10 - 2015-12-25 16:11 - 00018203 _____ C:\Users\x\Downloads\Call of Duty 2 2005 [PL][POLISH REPACK GTX BOX Team][ iso] [marcinc33][Torrenty.org].torrent 2015-12-25 15:07 - 2015-12-25 15:07 - 00122248 _____ C:\Users\x\Downloads\52213B1B14289317320830B9FA864163B5895AB6.torrent 2015-12-25 14:59 - 2015-12-25 15:00 - 13844671 _____ C:\Users\x\Downloads\Two Steps From Hell - Heart Of Courage.flac 2015-12-25 14:42 - 2015-12-25 15:09 - 00000000 ____D C:\Users\x\Downloads\Two Steps From Hell 2015-12-25 14:41 - 2015-12-25 14:41 - 00149761 _____ C:\Users\x\Downloads\[kat.cr]two.steps.from.hell.album.collection.2006.2015.k2k (3).torrent 2015-12-25 14:40 - 2015-12-25 14:40 - 00149761 _____ C:\Users\x\Downloads\[kat.cr]two.steps.from.hell.album.collection.2006.2015.k2k.torrent 2015-12-25 14:40 - 2015-12-25 14:40 - 00149761 _____ C:\Users\x\Downloads\[kat.cr]two.steps.from.hell.album.collection.2006.2015.k2k (2).torrent 2015-12-25 14:40 - 2015-12-25 14:40 - 00149761 _____ C:\Users\x\Downloads\[kat.cr]two.steps.from.hell.album.collection.2006.2015.k2k (1).torrent 2015-12-25 14:36 - 2015-12-25 14:36 - 00002621 _____ C:\Users\x\Desktop\µTorrent.lnk 2015-12-25 14:36 - 2015-12-25 14:36 - 00002621 _____ C:\Users\x\AppData\Roaming\Microsoft\Windows\Start Menu\µTorrent.lnk 2015-12-25 14:35 - 2015-12-25 14:35 - 02026520 _____ (BitTorrent Inc.) C:\Users\x\Downloads\uTorrent.exe 2015-12-25 14:31 - 2015-12-25 14:31 - 00000472 _____ C:\Users\x\Downloads\Two.Steps.from.Hell.-.Heart.of.Courage (2).torrent 2015-12-25 14:28 - 2015-12-25 14:28 - 00000472 _____ C:\Users\x\Downloads\Two.Steps.from.Hell.-.Heart.of.Courage.torrent 2015-12-25 14:28 - 2015-12-25 14:28 - 00000472 _____ C:\Users\x\Downloads\Two.Steps.from.Hell.-.Heart.of.Courage (1).torrent 2015-12-25 00:03 - 2015-12-25 00:05 - 00000000 ____D C:\Users\x\Documents\FIFA 16 Demo 2015-12-25 00:03 - 2015-12-25 00:03 - 00001219 _____ C:\Users\Public\Desktop\WERSJA DEMO FIFA 16.lnk 2015-12-25 00:03 - 2015-12-25 00:03 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WERSJA DEMO FIFA 16 2015-12-24 21:53 - 2015-12-25 00:01 - 00000000 ____D C:\ProgramData\Package Cache 2015-12-24 21:43 - 2015-12-24 21:45 - 31335048 _____ (Electronic Arts, Inc.) C:\Users\x\Downloads\OriginThinSetup.exe 2015-12-24 17:38 - 2015-12-24 17:38 - 01743360 _____ C:\Users\x\Downloads\adwcleaner_5.026.exe 2015-12-20 00:06 - 2015-12-20 00:06 - 00000000 ____D C:\Users\x\Desktop\Kompetencje 2015-12-19 00:22 - 2015-12-25 19:22 - 00001072 _____ C:\Users\x\Desktop\Kontynuuj instalację GIMP 2.8.14.1.lnk 2015-12-13 16:41 - 2015-12-13 16:41 - 00001134 _____ C:\Users\x\Desktop\OpenFM.lnk 2015-12-08 20:31 - 2015-11-11 22:12 - 00387792 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2015-12-08 20:31 - 2015-11-11 21:52 - 00341192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2015-12-08 20:31 - 2015-11-11 17:21 - 25837568 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2015-12-08 20:31 - 2015-11-11 17:00 - 12856832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2015-12-08 20:31 - 2015-11-11 16:44 - 00416256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2015-12-08 20:31 - 2015-11-11 16:44 - 00279040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2015-12-08 20:31 - 2015-11-11 16:41 - 20366848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2015-12-08 20:31 - 2015-11-11 16:12 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2015-12-08 20:31 - 2015-11-11 15:57 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2015-12-08 20:31 - 2015-11-10 01:24 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2015-12-08 20:31 - 2015-11-10 01:13 - 00496640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2015-12-08 20:31 - 2015-11-10 01:13 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2015-12-08 20:31 - 2015-11-10 01:12 - 00341504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec 2015-12-08 20:31 - 2015-11-10 01:12 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2015-12-08 20:31 - 2015-11-10 01:11 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2015-12-08 20:31 - 2015-11-10 01:08 - 02280448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2015-12-08 20:31 - 2015-11-10 01:06 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2015-12-08 20:31 - 2015-11-10 01:06 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2015-12-08 20:31 - 2015-11-10 01:04 - 00476160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2015-12-08 20:31 - 2015-11-10 01:03 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2015-12-08 20:31 - 2015-11-10 01:02 - 00663552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2015-12-08 20:31 - 2015-11-10 01:02 - 00620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2015-12-08 20:31 - 2015-11-10 00:50 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2015-12-08 20:31 - 2015-11-10 00:47 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2015-12-08 20:31 - 2015-11-10 00:46 - 04514816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2015-12-08 20:31 - 2015-11-10 00:44 - 00130048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll 2015-12-08 20:31 - 2015-11-10 00:37 - 00230400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll 2015-12-08 20:31 - 2015-11-10 00:36 - 02050560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2015-12-08 20:31 - 2015-11-10 00:36 - 00687104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2015-12-08 20:31 - 2015-11-10 00:35 - 01155072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2015-12-08 20:31 - 2015-11-10 00:17 - 02011136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2015-12-08 20:31 - 2015-11-10 00:14 - 01311744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2015-12-08 20:31 - 2015-11-10 00:12 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2015-12-08 20:31 - 2015-11-08 23:33 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2015-12-08 20:31 - 2015-11-08 23:32 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2015-12-08 20:31 - 2015-11-08 23:16 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2015-12-08 20:31 - 2015-11-08 23:15 - 02887168 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2015-12-08 20:31 - 2015-11-08 23:15 - 00571392 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2015-12-08 20:31 - 2015-11-08 23:15 - 00417792 _____ (Microsoft Corporation) C:\Windows\system32\html.iec 2015-12-08 20:31 - 2015-11-08 23:15 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2015-12-08 20:31 - 2015-11-08 23:14 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2015-12-08 20:31 - 2015-11-08 23:07 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2015-12-08 20:31 - 2015-11-08 23:06 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2015-12-08 20:31 - 2015-11-08 23:04 - 05923840 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2015-12-08 20:31 - 2015-11-08 23:02 - 00615936 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2015-12-08 20:31 - 2015-11-08 23:01 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2015-12-08 20:31 - 2015-11-08 23:01 - 00814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2015-12-08 20:31 - 2015-11-08 23:01 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2015-12-08 20:31 - 2015-11-08 23:01 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2015-12-08 20:31 - 2015-11-08 22:52 - 00968704 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2015-12-08 20:31 - 2015-11-08 22:48 - 00489984 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2015-12-08 20:31 - 2015-11-08 22:40 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2015-12-08 20:31 - 2015-11-08 22:35 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2015-12-08 20:31 - 2015-11-08 22:32 - 00315392 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2015-12-08 20:31 - 2015-11-08 22:29 - 00152064 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll 2015-12-08 20:31 - 2015-11-08 22:18 - 00262144 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll 2015-12-08 20:31 - 2015-11-08 22:15 - 00798208 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2015-12-08 20:31 - 2015-11-08 22:15 - 00718336 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2015-12-08 20:31 - 2015-11-08 22:14 - 14456832 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2015-12-08 20:31 - 2015-11-08 22:14 - 01359360 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2015-12-08 20:31 - 2015-11-08 22:13 - 02123264 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2015-12-08 20:31 - 2015-11-08 21:53 - 02487808 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2015-12-08 20:31 - 2015-11-08 21:41 - 01546752 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2015-12-08 20:31 - 2015-11-08 21:30 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2015-12-08 20:30 - 2015-11-20 19:54 - 03170304 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll 2015-12-08 20:30 - 2015-11-20 19:54 - 02609152 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll 2015-12-08 20:30 - 2015-11-20 19:54 - 00709632 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll 2015-12-08 20:30 - 2015-11-20 19:54 - 00192512 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll 2015-12-08 20:30 - 2015-11-20 19:54 - 00140288 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe 2015-12-08 20:30 - 2015-11-20 19:54 - 00098816 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll 2015-12-08 20:30 - 2015-11-20 19:54 - 00091136 _____ (Microsoft Corporation) C:\Windows\system32\WinSetupUI.dll 2015-12-08 20:30 - 2015-11-20 19:54 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll 2015-12-08 20:30 - 2015-11-20 19:54 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe 2015-12-08 20:30 - 2015-11-20 19:54 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll 2015-12-08 20:30 - 2015-11-20 19:54 - 00012288 _____ (Microsoft Corporation) C:\Windows\system32\wu.upgrade.ps.dll 2015-12-08 20:30 - 2015-11-20 19:34 - 00573440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll 2015-12-08 20:30 - 2015-11-20 19:34 - 00174080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll 2015-12-08 20:30 - 2015-11-20 19:34 - 00093696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll 2015-12-08 20:30 - 2015-11-20 19:34 - 00030208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wups.dll 2015-12-08 20:30 - 2015-11-20 19:33 - 00035328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe 2015-12-08 20:30 - 2015-11-11 19:53 - 01735680 _____ (Microsoft Corporation) C:\Windows\system32\comsvcs.dll 2015-12-08 20:30 - 2015-11-11 19:53 - 00525312 _____ (Microsoft Corporation) C:\Windows\system32\catsrvut.dll 2015-12-08 20:30 - 2015-11-11 19:39 - 01242624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comsvcs.dll 2015-12-08 20:30 - 2015-11-11 19:39 - 00487936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\catsrvut.dll 2015-12-08 20:30 - 2015-11-10 19:55 - 01648128 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll 2015-12-08 20:30 - 2015-11-10 19:55 - 01180160 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll 2015-12-08 20:30 - 2015-11-10 19:55 - 01008640 _____ (Microsoft Corporation) C:\Windows\system32\user32.dll 2015-12-08 20:30 - 2015-11-10 19:39 - 01251328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll 2015-12-08 20:30 - 2015-11-10 19:37 - 00833024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user32.dll 2015-12-08 20:30 - 2015-11-10 18:47 - 03211264 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2015-12-08 20:30 - 2015-11-05 20:05 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\wshrm.dll 2015-12-08 20:30 - 2015-11-05 20:02 - 00014848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wshrm.dll 2015-12-08 20:30 - 2015-11-05 10:53 - 00146944 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rmcast.sys 2015-12-08 20:30 - 2015-11-03 20:04 - 00802304 _____ (Microsoft Corporation) C:\Windows\system32\usp10.dll 2015-12-08 20:30 - 2015-11-03 19:56 - 00627712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\usp10.dll 2015-12-08 20:26 - 2015-11-03 20:04 - 00241664 _____ (Microsoft Corporation) C:\Windows\system32\els.dll 2015-12-08 20:26 - 2015-11-03 19:55 - 00179712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\els.dll 2015-12-06 12:11 - 2015-12-06 12:13 - 19506928 _____ C:\Users\x\Downloads\openfm_setup (1).exe 2015-12-03 14:54 - 2015-12-03 14:54 - 00000000 ____D C:\Windows\System32\Tasks\AVAST Software 2015-12-03 14:54 - 2015-12-03 14:54 - 00000000 ____D C:\Program Files\Common Files\AV 2015-12-01 06:34 - 2015-12-01 06:34 - 00878684 _____ C:\Users\x\Downloads\Prezentacja (2).odp 2015-12-01 06:33 - 2015-12-01 06:38 - 00870551 _____ C:\Users\x\Downloads\Prezentacja.odp 2015-12-01 06:33 - 2015-12-01 06:33 - 00878684 _____ C:\Users\x\Downloads\Prezentacja (1).odp 2015-11-30 18:41 - 2015-11-30 18:41 - 00930304 _____ C:\Users\x\Downloads\BMI2 (4).ppt 2015-11-30 18:41 - 2015-11-30 18:41 - 00930304 _____ C:\Users\x\Downloads\BMI2 (3).ppt 2015-11-30 18:41 - 2015-11-30 18:41 - 00451072 _____ C:\Users\x\Downloads\NadwagaAnnaDziedzic (2).pps 2015-11-30 14:15 - 2015-11-30 14:15 - 00003584 _____ C:\Users\x\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini 2015-11-30 13:52 - 2015-11-30 13:52 - 00930304 _____ C:\Users\x\Downloads\BMI2 (2).ppt 2015-11-30 13:51 - 2015-11-30 13:51 - 00451072 _____ C:\Users\x\Downloads\NadwagaAnnaDziedzic (1).pps 2015-11-30 13:50 - 2015-11-30 13:50 - 00930304 _____ C:\Users\x\Downloads\BMI2 (1).ppt 2015-11-30 13:50 - 2015-11-30 13:50 - 00451072 _____ C:\Users\x\Downloads\NadwagaAnnaDziedzic.pps 2015-11-29 19:19 - 2015-11-29 19:19 - 00930304 _____ C:\Users\x\Downloads\BMI2.ppt ==================== Jeden miesiąc - zmodyfikowane pliki i foldery ======== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2015-12-29 20:48 - 2014-12-25 16:25 - 00000000 ____D C:\FRST 2015-12-29 20:41 - 2014-05-15 16:07 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2015-12-29 20:21 - 2014-08-07 10:54 - 00001048 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2015-12-29 20:04 - 2009-07-14 05:45 - 00031760 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2015-12-29 20:04 - 2009-07-14 05:45 - 00031760 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2015-12-29 19:55 - 2014-05-15 16:13 - 00000930 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job 2015-12-29 16:03 - 2014-08-07 10:54 - 00001044 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2015-12-29 16:03 - 2009-07-14 06:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2015-12-28 23:55 - 2014-05-15 16:13 - 00003868 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater 2015-12-28 23:55 - 2014-05-15 16:12 - 00796864 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2015-12-28 23:55 - 2014-05-15 16:12 - 00142528 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2015-12-28 23:23 - 2011-02-04 18:20 - 01954932 _____ C:\Windows\system32\perfh015.dat 2015-12-28 23:23 - 2011-02-04 18:20 - 00567298 _____ C:\Windows\system32\perfc015.dat 2015-12-28 23:23 - 2009-07-14 06:13 - 00006248 _____ C:\Windows\system32\PerfStringBackup.INI 2015-12-27 18:55 - 2014-05-16 06:43 - 00000000 ____D C:\Users\x\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR 2015-12-27 18:55 - 2014-05-16 06:43 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR 2015-12-27 18:32 - 2015-10-17 16:58 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Super Mario Forever 2015 2015-12-26 17:24 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\rescache 2015-12-26 17:10 - 2014-11-08 12:57 - 00000000 ____D C:\Users\x\AppData\Local\ElevatedDiagnostics 2015-12-26 16:20 - 2014-05-15 19:51 - 00000000 ____D C:\Users\x\AppData\Local\VirtualStore 2015-12-26 16:02 - 2014-07-27 13:46 - 00000000 ____D C:\Users\x\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games 2015-12-26 15:49 - 2014-07-24 23:48 - 00000000 ____D C:\Users\x\AppData\Roaming\DAEMON Tools Lite 2015-12-26 15:36 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\inf 2015-12-25 20:46 - 2015-10-14 16:16 - 00000000 ____D C:\Program Files (x86)\360 2015-12-25 19:23 - 2014-07-24 16:58 - 00000000 ____D C:\Users\x\AppData\Roaming\uTorrent 2015-12-25 14:36 - 2015-11-25 18:03 - 00000000 ____D C:\Users\x\AppData\LocalLow\uTorrent 2015-12-25 11:49 - 2014-08-04 17:54 - 00000000 ____D C:\ProgramData\Origin 2015-12-25 00:04 - 2014-07-27 17:29 - 00000000 ____D C:\ProgramData\Electronic Arts 2015-12-25 00:02 - 2009-07-14 06:32 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games 2015-12-24 21:59 - 2014-08-04 18:30 - 00000000 ____D C:\Program Files (x86)\Origin Games 2015-12-24 21:57 - 2014-08-04 18:29 - 00000000 ____D C:\Users\x\AppData\Roaming\Origin 2015-12-24 21:55 - 2014-08-04 17:53 - 00000000 ____D C:\Program Files (x86)\Origin 2015-12-24 18:30 - 2015-10-14 16:16 - 00001366 _____ C:\Users\x\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WarThunder.lnk 2015-12-24 18:30 - 2015-10-14 16:16 - 00001319 _____ C:\Users\x\Desktop\WarThunder.lnk 2015-12-24 17:43 - 2015-08-12 19:05 - 00000000 ____D C:\AdwCleaner 2015-12-22 21:29 - 2009-07-14 06:08 - 00032604 _____ C:\Windows\Tasks\SCHEDLGU.TXT 2015-12-20 22:35 - 2015-10-16 20:57 - 00000000 ____D C:\Users\x\Desktop\JUSTIN 2015-12-20 14:46 - 2015-10-28 19:09 - 00000000 ____D C:\Users\x\Desktop\ikonki 2015-12-20 11:03 - 2015-03-16 19:15 - 00000000 ____D C:\Users\x\Desktop\RYSUNKI 2015-12-20 09:00 - 2015-10-20 22:42 - 00000000 __SHD C:\ProgramData\360Quarant 2015-12-20 09:00 - 2015-10-20 22:42 - 00000000 __SHD C:\$360Section 2015-12-17 15:56 - 2014-11-05 16:41 - 00002199 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2015-12-16 23:01 - 2015-11-06 23:37 - 00000000 ____D C:\Users\x\Desktop\śmieszne zdj 2015-12-09 17:30 - 2009-07-14 05:45 - 00300272 _____ C:\Windows\system32\FNTCACHE.DAT 2015-12-09 14:31 - 2014-10-13 21:53 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight 2015-12-09 14:29 - 2014-10-13 21:53 - 00000000 ____D C:\Program Files\Microsoft Silverlight 2015-12-09 14:29 - 2014-10-13 21:53 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight 2015-12-09 14:24 - 2015-07-29 16:05 - 00000000 ____D C:\Windows\system32\MRT 2015-12-09 14:12 - 2015-07-29 16:04 - 140158008 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2015-12-05 18:11 - 2014-05-16 06:44 - 00000000 ____D C:\Users\x\AppData\Roaming\Skype 2015-12-02 15:16 - 2014-08-07 10:54 - 00004044 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA 2015-12-02 15:16 - 2014-08-07 10:54 - 00003792 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore 2015-11-30 23:19 - 2015-09-14 22:24 - 00000000 ____D C:\Users\x\Desktop\ONE DIRECTION 2015-11-29 11:11 - 2014-05-15 19:51 - 00000000 ____D C:\Users\x ==================== Pliki w katalogu głównym wybranych folderów ======= 2015-11-30 14:15 - 2015-11-30 14:15 - 0003584 _____ () C:\Users\x\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini 2015-10-14 16:38 - 2015-10-14 16:38 - 0001026 _____ () C:\Users\x\AppData\Local\recently-used.xbel 2014-08-12 18:00 - 2014-08-23 19:18 - 5061201 _____ () C:\Users\x\AppData\Local\SocialSafe-Helper.log 2014-05-16 06:37 - 2014-05-16 06:37 - 0000000 ____H () C:\ProgramData\DP45977C.lfl 2015-08-17 17:42 - 2015-08-18 20:47 - 0000036 _____ () C:\ProgramData\droidcam-settings Niektóre pliki w TEMP: ==================== C:\Users\x\AppData\Local\Temp\1f0fb7c2d13cc0c07ff2ca40747bc03e_360tray.exe C:\Users\x\AppData\Local\Temp\bitool.dll C:\Users\x\AppData\Local\Temp\cleanup_tool.exe C:\Users\x\AppData\Local\Temp\ggdrive-menu.exe C:\Users\x\AppData\Local\Temp\ggdrive-overlay.exe C:\Users\x\AppData\Local\Temp\GIMP 2.8.14.1.exe C:\Users\x\AppData\Local\Temp\ICReinstall_GIMP 2.exe C:\Users\x\AppData\Local\Temp\installstats.exe C:\Users\x\AppData\Local\Temp\MSETUP4.EXE C:\Users\x\AppData\Local\Temp\Quarantine.exe C:\Users\x\AppData\Local\Temp\SkypeSetup.exe C:\Users\x\AppData\Local\Temp\sqlite3.dll C:\Users\x\AppData\Local\Temp\{001E6D0A-1B97-4813-9606-6BA8DFC425ED}.dll C:\Users\x\AppData\Local\Temp\{01F8AD8C-71A4-4BFA-8377-BAABAB8C6DCB}.dll C:\Users\x\AppData\Local\Temp\{030F7F6B-2F83-442F-A0B2-63541314E96C}.dll C:\Users\x\AppData\Local\Temp\{03CD93E4-C531-4596-A315-7101D7B79D1B}.dll C:\Users\x\AppData\Local\Temp\{056B7A80-B044-4386-AD50-ED6C6E99B51C}.dll C:\Users\x\AppData\Local\Temp\{05B96496-18D9-4593-BEBA-F1390114092A}.dll C:\Users\x\AppData\Local\Temp\{05F18611-B5EF-4C47-A2AF-E54567D76776}.dll C:\Users\x\AppData\Local\Temp\{0612D349-A9A6-4E53-B050-000F72B1D128}.dll C:\Users\x\AppData\Local\Temp\{063E11D1-1E73-4192-88BB-EC52FEFF466E}.dll C:\Users\x\AppData\Local\Temp\{06CE39B8-B41C-4FCA-A78E-A0F640C12BB6}.dll C:\Users\x\AppData\Local\Temp\{076E2458-8BA7-4961-B577-D1C30212E870}.dll C:\Users\x\AppData\Local\Temp\{0829C5B3-7510-4747-B4EF-65E5F4DCC35D}.dll C:\Users\x\AppData\Local\Temp\{08531D07-E24A-4E20-8409-C1DFB4159F44}.dll C:\Users\x\AppData\Local\Temp\{0871F932-8C2E-4017-8DE7-81AFD79E0760}.dll C:\Users\x\AppData\Local\Temp\{088BC499-55C0-4FAE-9D2F-FF249B66803F}.dll C:\Users\x\AppData\Local\Temp\{09BF21B8-2531-48B4-AE95-619DAD7324E7}.dll C:\Users\x\AppData\Local\Temp\{0A3194B8-DD81-4350-9629-F4863C1571FC}.dll C:\Users\x\AppData\Local\Temp\{0A4D50DA-D864-41F8-9D7D-C1537CAA16C6}.dll C:\Users\x\AppData\Local\Temp\{0A548874-05B8-43E0-815B-537725497818}.dll C:\Users\x\AppData\Local\Temp\{0AF987F2-7831-4C97-A96D-52C4943E33F0}.dll C:\Users\x\AppData\Local\Temp\{0BAF89C4-8B28-48B8-BBBA-F73569A073AA}.dll C:\Users\x\AppData\Local\Temp\{0BC661EC-3E6A-43C9-B2CF-34FDD024122B}.dll C:\Users\x\AppData\Local\Temp\{0C64906C-2A05-4E65-91D4-ABDF020575AA}.dll C:\Users\x\AppData\Local\Temp\{0CA4B3E1-8D1A-475C-85CB-FFCF32511D0D}.dll C:\Users\x\AppData\Local\Temp\{0CB469D8-ADA3-4915-964D-CD40A61E1909}.dll C:\Users\x\AppData\Local\Temp\{0CFB00D7-6AF2-403A-AB6A-25C2F03A2257}.dll C:\Users\x\AppData\Local\Temp\{0EA3ED6F-59F4-4ED5-8AEF-98169B8EE9E1}.dll C:\Users\x\AppData\Local\Temp\{0F42D96F-E0E6-4811-8D5F-256BD49C824D}.dll C:\Users\x\AppData\Local\Temp\{0F75E0E8-C0B9-4A48-A78D-C5542D8C69EE}.dll C:\Users\x\AppData\Local\Temp\{0F86E09F-3F94-408A-AE50-657087AA594F}.dll C:\Users\x\AppData\Local\Temp\{10DE9645-4E38-4A9F-B346-0DEB3DD0CA3F}.dll C:\Users\x\AppData\Local\Temp\{10E9570F-0248-4137-A593-C489AEBB03FB}.dll C:\Users\x\AppData\Local\Temp\{120662D2-2A77-4B69-AC3A-BE1B0A616618}.dll C:\Users\x\AppData\Local\Temp\{121D3AB8-A456-4DDC-B27F-6EF799D7CC36}.dll C:\Users\x\AppData\Local\Temp\{123E5D8F-F48B-4AEB-9C19-6D84AA384460}.dll C:\Users\x\AppData\Local\Temp\{12D98A1D-2208-4941-A70E-2B60B197098C}.dll C:\Users\x\AppData\Local\Temp\{13A610BB-C65C-434C-B965-65341A4257BD}.dll C:\Users\x\AppData\Local\Temp\{149443CC-BF5A-4001-BDA2-419A50DCFDFD}.dll C:\Users\x\AppData\Local\Temp\{14B30D17-D17D-4E21-82C4-2BCCDAF64CC1}.dll C:\Users\x\AppData\Local\Temp\{152A3C40-537A-4E44-9CEE-5AF373B0B2E8}.dll C:\Users\x\AppData\Local\Temp\{152FD046-A71C-4F89-BB0D-5EF3E1943738}.dll C:\Users\x\AppData\Local\Temp\{15320E55-8153-4764-91E2-0A11EF553540}.dll C:\Users\x\AppData\Local\Temp\{155EC85B-F4CF-4A88-A276-504F491B7A09}.dll C:\Users\x\AppData\Local\Temp\{15D368A9-9714-45B3-A482-CF7CFB367966}.dll C:\Users\x\AppData\Local\Temp\{16D713BA-E1A5-47B4-A91E-5174280FB419}.dll C:\Users\x\AppData\Local\Temp\{17B25081-A7A7-4D7C-B7A9-5D6BA8922D99}.dll C:\Users\x\AppData\Local\Temp\{1809BE5F-30E9-4C63-BDDE-6389CBC52787}.dll C:\Users\x\AppData\Local\Temp\{18D088C6-BDF6-425C-B94B-01679ECEFC11}.dll C:\Users\x\AppData\Local\Temp\{193A370D-6FF8-449E-B22D-7329F4A3031F}.dll C:\Users\x\AppData\Local\Temp\{196D1529-0EFE-4688-B142-ECAC669BC107}.dll C:\Users\x\AppData\Local\Temp\{19B2C49D-6BA4-4877-A6E3-7E47EFBDCCEC}.dll C:\Users\x\AppData\Local\Temp\{19B95649-972B-451D-BDEF-EA077CED0634}.dll C:\Users\x\AppData\Local\Temp\{1B119EDF-6156-4C40-B2E5-0D4BD1AF82AE}.dll C:\Users\x\AppData\Local\Temp\{1B386B8E-2727-495A-9ECF-21B418180E26}.dll C:\Users\x\AppData\Local\Temp\{1B707BC2-A69B-4D9A-A5E6-238094D96EFA}.dll C:\Users\x\AppData\Local\Temp\{1E4B2302-9943-4C06-B1C8-BE9E05463491}.dll C:\Users\x\AppData\Local\Temp\{1E98F588-6472-4E08-BAD0-B050C1A43DBE}.dll C:\Users\x\AppData\Local\Temp\{1EA5AB8A-ACD4-4429-9084-BD21C6777884}.dll C:\Users\x\AppData\Local\Temp\{1FCCE0DE-4AB2-4254-BF6E-E09F3DC15A54}.dll C:\Users\x\AppData\Local\Temp\{2005CC0E-CE6D-4D88-A42A-C12C56846865}.dll C:\Users\x\AppData\Local\Temp\{209AA712-F71A-453A-BF6D-7F61925C4979}.dll C:\Users\x\AppData\Local\Temp\{20ADEFFE-6B3A-4187-9D84-DDB51E1DF46C}.dll C:\Users\x\AppData\Local\Temp\{21F6D74B-AAC5-4CC0-89B1-5441B70CB694}.dll C:\Users\x\AppData\Local\Temp\{22792D65-3B72-4A79-B758-E96AEF94A723}.dll C:\Users\x\AppData\Local\Temp\{22D37BF1-DEC4-4AAF-80B3-2230A9DC067D}.dll C:\Users\x\AppData\Local\Temp\{232A1F88-4448-4366-8417-95ECAD5377DA}.dll C:\Users\x\AppData\Local\Temp\{23CDFA21-898A-4553-9F58-87A5F03EC65B}.dll C:\Users\x\AppData\Local\Temp\{246893FE-A325-475D-A246-F39BCE65745E}.dll C:\Users\x\AppData\Local\Temp\{25F4A770-7C19-4FD1-BE08-BE2D0095A639}.dll C:\Users\x\AppData\Local\Temp\{26043F9C-D219-420B-8962-94C6D14EB6E3}.dll C:\Users\x\AppData\Local\Temp\{2677E27B-2E60-4C35-BB29-0D61AD12D3C5}.dll C:\Users\x\AppData\Local\Temp\{267AACE0-4A21-43A3-B20C-01A7E7A5D629}.dll C:\Users\x\AppData\Local\Temp\{269963FD-87CF-462D-AB9D-381160DA0A82}.dll C:\Users\x\AppData\Local\Temp\{26DE526D-B650-488D-962F-968B8FECBCF8}.dll C:\Users\x\AppData\Local\Temp\{27300D85-2405-47CD-AF1B-34F7026571A6}.dll C:\Users\x\AppData\Local\Temp\{275A92FC-A299-4C68-A5F7-AC0CE9140B29}.dll C:\Users\x\AppData\Local\Temp\{27C92D35-485B-4310-83FE-B3853233EF09}.dll C:\Users\x\AppData\Local\Temp\{29E6D3D6-18AB-4F48-86D8-2CF20A25B289}.dll C:\Users\x\AppData\Local\Temp\{2BE2B400-8DF2-48A2-95CF-B62B6CA1E243}.dll C:\Users\x\AppData\Local\Temp\{2BFB71F3-1801-45C2-AEE0-42460B283F22}.dll C:\Users\x\AppData\Local\Temp\{2C23B05D-46A9-4F28-970E-2CFB8116F731}.dll C:\Users\x\AppData\Local\Temp\{2D97F9CB-AEFE-4CA1-AFF8-BDE450EC3424}.dll C:\Users\x\AppData\Local\Temp\{2E32C2E9-4D20-4BF7-B964-677E7C69DCF3}.dll C:\Users\x\AppData\Local\Temp\{2F78F3AA-102E-4D93-A421-56FAF5A9C9C6}.dll C:\Users\x\AppData\Local\Temp\{31BD3F2A-D339-4DB8-BEA1-647752087A78}.dll C:\Users\x\AppData\Local\Temp\{32560EB1-23C3-4FF6-8D1D-CC0075758A2A}.dll C:\Users\x\AppData\Local\Temp\{32CEDF5D-B0B4-4B4C-B2B9-F34791739434}.dll C:\Users\x\AppData\Local\Temp\{33F32305-9D85-4760-A944-D89B0CC4720B}.dll C:\Users\x\AppData\Local\Temp\{36C1CF4B-7EB6-4011-AF49-AA745233B6B7}.dll C:\Users\x\AppData\Local\Temp\{3971AE7F-9E28-4896-A55C-63E4D55E5B81}.dll C:\Users\x\AppData\Local\Temp\{39B78A96-98F2-4C8E-9CA9-3DB35E088B1E}.dll C:\Users\x\AppData\Local\Temp\{39C6162C-94A1-479D-BD71-07C21ED4EABB}.dll C:\Users\x\AppData\Local\Temp\{3B0205AF-436E-45BA-87DB-6B2A242B7CA1}.dll C:\Users\x\AppData\Local\Temp\{3B273A4D-373C-428A-8C56-16D317BE7659}.dll C:\Users\x\AppData\Local\Temp\{3B2C072E-5BC5-40FD-9244-5F39D0C52D3C}.dll C:\Users\x\AppData\Local\Temp\{3B48683B-3B4E-4FAB-9A20-EFAC8E839012}.dll C:\Users\x\AppData\Local\Temp\{3C2A0F12-77D9-4994-BEF3-D0AFCDBD45A5}.dll C:\Users\x\AppData\Local\Temp\{3C3AF895-BFCD-45AA-A994-57E2B6F3CE37}.dll C:\Users\x\AppData\Local\Temp\{3CF79A8C-0C81-473E-81E5-FF484CC3EB3C}.dll C:\Users\x\AppData\Local\Temp\{3D0515FA-DA99-48D1-A258-2EFB59027D3D}.dll C:\Users\x\AppData\Local\Temp\{3E59FAB9-EC2B-4D80-9B5F-5E5ACF1EB5C9}.dll C:\Users\x\AppData\Local\Temp\{3E5D6FD7-A34E-4408-BEA8-6876BD7A9DBF}.dll C:\Users\x\AppData\Local\Temp\{3F060FF6-79D3-4149-AD99-F161130AEBF8}.dll C:\Users\x\AppData\Local\Temp\{3F12660D-6BD3-44F3-972F-038A3BD08E27}.dll C:\Users\x\AppData\Local\Temp\{400872D7-7252-49BE-B158-0EE3F58D260F}.dll C:\Users\x\AppData\Local\Temp\{40EE6E4F-377E-46CB-BA70-2AF5BFBECB06}.dll C:\Users\x\AppData\Local\Temp\{4118DEBE-42F8-4839-AFCD-89C275E6FA88}.dll C:\Users\x\AppData\Local\Temp\{41763D46-5421-48F5-888D-C04E085F5280}.dll C:\Users\x\AppData\Local\Temp\{43536935-B522-4034-A73D-B03263D0C992}.dll C:\Users\x\AppData\Local\Temp\{43EBAF12-44C5-48C5-8AD9-2C3EDC52B6EF}.dll C:\Users\x\AppData\Local\Temp\{44C62D5E-2108-4D94-8B53-F98082EEB46C}.dll C:\Users\x\AppData\Local\Temp\{453CC517-A495-4E0D-9652-53537AFD03ED}.dll C:\Users\x\AppData\Local\Temp\{464FD238-6FB3-4D3B-AB3B-A8AF0F84FCF2}.dll C:\Users\x\AppData\Local\Temp\{467D4C19-8D41-4C2F-B06D-BFD8544A9918}-43.0.2357.132_43.0.2357.130_chrome_updater.exe C:\Users\x\AppData\Local\Temp\{46840797-303D-4F56-8528-335811389D83}.dll C:\Users\x\AppData\Local\Temp\{473D16FC-43E9-4FC0-A4EE-A2AEED6A8B84}.dll C:\Users\x\AppData\Local\Temp\{473FC68B-2155-435B-984C-C6C68F71EBD5}.dll C:\Users\x\AppData\Local\Temp\{49D4E21B-FB4E-407F-BCB6-A41DA73302B4}.dll C:\Users\x\AppData\Local\Temp\{4A51A894-8A04-430A-8074-F591740A50B1}.dll C:\Users\x\AppData\Local\Temp\{4B97FC41-A8DB-486D-A2A6-8BDE3632A69F}.dll C:\Users\x\AppData\Local\Temp\{4BA1B50C-1027-4EFD-B7C8-F2F007E3552C}.dll C:\Users\x\AppData\Local\Temp\{4BC7C393-4DEE-4F7C-8303-052563E7FDA3}.dll C:\Users\x\AppData\Local\Temp\{4BFE1444-C1A0-4130-B3FA-DB717B3937CC}.dll C:\Users\x\AppData\Local\Temp\{4C126851-81CD-455E-BB6D-B8A4D4376B5D}.dll C:\Users\x\AppData\Local\Temp\{4C681D55-5F66-4874-8C45-CB85B8FC462E}.dll C:\Users\x\AppData\Local\Temp\{4DF376D2-E4B8-4DC4-94C5-E3EAF93B6A0B}.dll C:\Users\x\AppData\Local\Temp\{4ECAEB7C-DC6A-4A11-A178-B5962F15791B}.dll C:\Users\x\AppData\Local\Temp\{4EDDB339-E88C-4EB9-B5B6-526A6536CE6A}.dll C:\Users\x\AppData\Local\Temp\{4EDE013A-644F-42EA-BAB6-C16E0283BAD7}.dll C:\Users\x\AppData\Local\Temp\{50108DFB-E490-4229-B31D-74BE0116B33E}.dll C:\Users\x\AppData\Local\Temp\{50145E97-642D-46C8-907B-B65170754C7D}.dll C:\Users\x\AppData\Local\Temp\{519ED969-B4A0-4B13-AAC1-A6B72F117741}.dll C:\Users\x\AppData\Local\Temp\{522E14E8-B897-4222-AE95-D7560DB76E9D}.dll C:\Users\x\AppData\Local\Temp\{531D3BB5-820F-49E2-B931-DDDBE2DF3A19}.dll C:\Users\x\AppData\Local\Temp\{55B2CE20-C13B-44B4-817B-AF3CE23A9031}.dll C:\Users\x\AppData\Local\Temp\{56213F44-E659-447B-AB64-C4C943C422BB}.dll C:\Users\x\AppData\Local\Temp\{57C12508-E36A-47DE-8C4D-C7CE8758E37C}.dll C:\Users\x\AppData\Local\Temp\{588F349C-9463-4749-8627-18771F5AE0E6}.dll C:\Users\x\AppData\Local\Temp\{58AD40BF-1C1B-4908-A2F3-3B3CD6EFDD33}.dll C:\Users\x\AppData\Local\Temp\{5961EA83-798F-4AEE-AF78-F842D2526AC7}.dll C:\Users\x\AppData\Local\Temp\{5A212270-7C68-4962-9EB1-5B41F1D3339F}.dll C:\Users\x\AppData\Local\Temp\{5BA7D244-5824-4F28-A29A-36A86E726980}.dll C:\Users\x\AppData\Local\Temp\{5BF08188-59C2-427A-AFF1-A15AEEB780CE}.dll C:\Users\x\AppData\Local\Temp\{5C0800FA-FB41-407A-8DC6-2AE1586B5FA6}.dll C:\Users\x\AppData\Local\Temp\{5C28E463-6964-4F13-B440-C856690CAF59}.dll C:\Users\x\AppData\Local\Temp\{5CD4E87D-B91D-4792-ACA4-78BBB9013A7D}.dll C:\Users\x\AppData\Local\Temp\{5EBC8C1B-A97A-4E7F-AAA1-C42B055AC40C}.dll C:\Users\x\AppData\Local\Temp\{5EFF2335-4615-48FD-8AF9-64A2CC6740AA}.dll C:\Users\x\AppData\Local\Temp\{5F4965D7-AED6-4476-8EA5-99BF3CC0F528}.dll C:\Users\x\AppData\Local\Temp\{5F87314E-1AFF-4635-BDB4-22E04DBCCABC}.dll C:\Users\x\AppData\Local\Temp\{5FC96D1B-2E79-4B3F-B51A-0307B3A70A7F}.dll C:\Users\x\AppData\Local\Temp\{600D686B-3421-4FB8-8AB1-1E504195EB12}.dll C:\Users\x\AppData\Local\Temp\{6047DAE7-B80A-4950-93AC-5B45308A6744}.dll C:\Users\x\AppData\Local\Temp\{6105B6F3-8A06-42AA-8B01-A81B10EAB906}.dll C:\Users\x\AppData\Local\Temp\{62160AA7-277E-4789-8B2B-5F60015A2D0D}.dll C:\Users\x\AppData\Local\Temp\{621CF334-EDE6-4088-A9AD-812C1245E92D}.dll C:\Users\x\AppData\Local\Temp\{6241C689-A454-4803-952B-235204672E41}.dll C:\Users\x\AppData\Local\Temp\{629AA570-E8A1-4236-8898-0100E8FA7434}.dll C:\Users\x\AppData\Local\Temp\{62AE77AF-A71F-47F7-8A08-C7653434DF04}.dll C:\Users\x\AppData\Local\Temp\{637D2740-DC00-4A45-8DD8-A37DE458CA9A}.dll C:\Users\x\AppData\Local\Temp\{64476944-3169-4D96-8042-76F96C8F8601}.dll C:\Users\x\AppData\Local\Temp\{64A5BA67-EABF-4C27-9E89-5DB9415CF06A}.dll C:\Users\x\AppData\Local\Temp\{652BE926-BB7A-4E0B-AE22-D41F943830AC}.dll C:\Users\x\AppData\Local\Temp\{65E6E4C8-5F0D-4B41-BECD-0B6D0C82B2B2}.dll C:\Users\x\AppData\Local\Temp\{6878E4E2-CB35-4C6D-92C2-15E0D2382CCA}.dll C:\Users\x\AppData\Local\Temp\{694C458F-DE4A-4364-87A7-7D9A1768E856}.dll C:\Users\x\AppData\Local\Temp\{6AACDC45-D775-4174-95F7-2F82EDFFE67B}.dll C:\Users\x\AppData\Local\Temp\{6BC6018C-3E2F-467D-BD9C-8FC12C1BB66E}.dll C:\Users\x\AppData\Local\Temp\{6C5FD661-0C16-4E52-B142-D5A1A36245A5}.dll C:\Users\x\AppData\Local\Temp\{6CC97205-E126-42C4-A7B2-2BA2DCA98B16}.dll C:\Users\x\AppData\Local\Temp\{6D3A6464-AD38-40B3-A56A-12499DA7979C}.dll C:\Users\x\AppData\Local\Temp\{6D419606-F521-4FCD-8D0B-61F6171CC026}.dll C:\Users\x\AppData\Local\Temp\{6DE8A42F-939C-4D39-9588-C750CD038133}.dll C:\Users\x\AppData\Local\Temp\{6E06BC90-BB9C-4A20-8257-82F1675E6A60}.dll C:\Users\x\AppData\Local\Temp\{6E077694-BED6-42C3-A686-7A3C6825D062}.dll C:\Users\x\AppData\Local\Temp\{6E09467C-BBBF-4358-A2D0-FA5810787B83}.dll C:\Users\x\AppData\Local\Temp\{6EC8B2E1-7A61-44BC-AF59-BC4DF8285C01}.dll C:\Users\x\AppData\Local\Temp\{706795E2-0322-4326-A975-88583CC68A8E}.dll C:\Users\x\AppData\Local\Temp\{718BCF0B-78E5-4E41-8A98-1F97786479AB}.dll C:\Users\x\AppData\Local\Temp\{73414332-249B-45D5-88A6-4707CE6998F5}.dll C:\Users\x\AppData\Local\Temp\{73B7F231-EF8E-44A5-8496-F92E3E727460}.dll C:\Users\x\AppData\Local\Temp\{73EEDED7-C8EA-4E65-AF5D-F606F33EFE34}.dll C:\Users\x\AppData\Local\Temp\{74692AD6-BBE2-4AC7-8979-F20CF5FE585A}.dll C:\Users\x\AppData\Local\Temp\{74F3497C-88E4-4238-ACF8-CED9D2B8C43E}.dll C:\Users\x\AppData\Local\Temp\{78F87366-C00E-45F2-8880-7F892D2C2DC8}.dll C:\Users\x\AppData\Local\Temp\{79299366-685D-4510-AF35-134BDB9C0292}.dll C:\Users\x\AppData\Local\Temp\{7957793B-FA1D-4F19-AC6B-A7710B9D1A94}.dll C:\Users\x\AppData\Local\Temp\{7AEDA874-0D07-420E-B0D0-B7DDCD3739FE}.dll C:\Users\x\AppData\Local\Temp\{7BC90147-B078-4FF2-B488-EDE7E2863D12}.dll C:\Users\x\AppData\Local\Temp\{7BDD74F8-0C8A-45E0-9ABB-9BC944F6F893}.dll C:\Users\x\AppData\Local\Temp\{7C8BF77D-02FF-4175-B51E-EC9EAF7DE8C6}.dll C:\Users\x\AppData\Local\Temp\{7DCC9C2E-D9CB-429E-A0DD-C0C69324F2E2}.dll C:\Users\x\AppData\Local\Temp\{7E1D4072-B6F2-4F63-8D5A-F937B8BB1560}.dll C:\Users\x\AppData\Local\Temp\{7E596203-4F3E-4878-8250-190DA1635E6E}.dll C:\Users\x\AppData\Local\Temp\{7EB4098D-E3BE-442B-B23F-4481B3C10D0B}.dll C:\Users\x\AppData\Local\Temp\{80B08380-2DE4-4440-B77B-874FD64E6EE4}.dll C:\Users\x\AppData\Local\Temp\{814184D3-B639-4480-ADF5-9EF089D5CB73}.dll C:\Users\x\AppData\Local\Temp\{81604EDC-ACE2-4137-922D-E72EEDB8B307}.dll C:\Users\x\AppData\Local\Temp\{819D619B-33E0-4B49-A885-D1019F865122}.dll C:\Users\x\AppData\Local\Temp\{81CC05BB-4866-4C92-83C7-D49771112529}.dll C:\Users\x\AppData\Local\Temp\{81D42F6B-565F-4D67-A091-FFA9F83639B1}.dll C:\Users\x\AppData\Local\Temp\{82CC57BC-3A96-41C1-85DC-C889AAB56200}.dll C:\Users\x\AppData\Local\Temp\{82D755F6-7D78-4D96-A331-613C23BD6960}.dll C:\Users\x\AppData\Local\Temp\{8386FD25-92A0-4A61-8E02-CE2A49D3F248}.dll C:\Users\x\AppData\Local\Temp\{839AD783-D776-457C-AF69-02170E46327C}.dll C:\Users\x\AppData\Local\Temp\{8406D031-9E13-4EC5-A804-7E0C029BBB82}.dll C:\Users\x\AppData\Local\Temp\{86130CF8-2F73-4719-ADC0-DCF736DCDE49}.dll C:\Users\x\AppData\Local\Temp\{86214580-0AE3-4FEB-8AB0-8884BD33B4B6}.dll C:\Users\x\AppData\Local\Temp\{86CF6C9B-B21E-4EA9-8BE0-A4E0909F4909}.dll C:\Users\x\AppData\Local\Temp\{86EE01B6-3087-4302-9354-85F90B077264}.dll C:\Users\x\AppData\Local\Temp\{8788BA46-A11E-41A1-8303-B1AB5BC64949}.dll C:\Users\x\AppData\Local\Temp\{87AE81E7-CD81-4011-91B3-FBB598B5EB52}.dll C:\Users\x\AppData\Local\Temp\{887BA934-E9D0-4E5F-A9E9-47CF01414878}.dll C:\Users\x\AppData\Local\Temp\{89E102EC-F13E-4039-8E39-FDA4C5D5FD8B}.dll C:\Users\x\AppData\Local\Temp\{8B48377A-4A72-463F-B061-63EA5B3587D9}.dll C:\Users\x\AppData\Local\Temp\{8B82F9D7-52C9-4B63-AF97-9EEB45ACF622}.dll C:\Users\x\AppData\Local\Temp\{8B9E56D5-5B57-43D3-8532-A37533DB8B6A}.dll C:\Users\x\AppData\Local\Temp\{8C685594-476F-4F84-AB7A-DCBD6BDE73A3}.dll C:\Users\x\AppData\Local\Temp\{8CAAC344-1107-47BF-8F21-6396800DE0A3}.dll C:\Users\x\AppData\Local\Temp\{8CADDF2E-A1EF-46C3-8FE9-D2D7DB386BC9}.dll C:\Users\x\AppData\Local\Temp\{8CD7948B-F9E5-4EC6-A8F4-F4B1A30D8B9E}.dll C:\Users\x\AppData\Local\Temp\{8DEC50E8-7CB7-4B6C-9626-FD0EC54052CD}.dll C:\Users\x\AppData\Local\Temp\{8E83B9DE-D813-41A0-A095-07CF0F9177CD}.dll C:\Users\x\AppData\Local\Temp\{8F0000AE-2A06-4060-A045-15CD5679D7FB}.dll C:\Users\x\AppData\Local\Temp\{90AF4847-0E51-4AC6-9A3D-026F11BE3E54}.dll C:\Users\x\AppData\Local\Temp\{90D0EE05-3679-426E-96BE-694A0147FB37}.dll C:\Users\x\AppData\Local\Temp\{9116AE94-7752-4178-A9B0-485DFD7D24D5}.dll C:\Users\x\AppData\Local\Temp\{92307604-FCB4-4D82-8E07-EE545E3B68A4}.dll C:\Users\x\AppData\Local\Temp\{943111D5-883A-4B3F-ACEA-A042A366F080}.dll C:\Users\x\AppData\Local\Temp\{94F02AEA-D3E5-47B0-977E-2512990D919F}.dll C:\Users\x\AppData\Local\Temp\{94FC83A9-0A9C-4E8F-83BF-06C1FA7887F4}.dll C:\Users\x\AppData\Local\Temp\{955A39ED-60CC-4FB9-808A-30E576F9336C}.dll C:\Users\x\AppData\Local\Temp\{95F1B86D-3509-445F-8705-97E5382FB8A0}.dll C:\Users\x\AppData\Local\Temp\{9617E3A2-916B-46BA-B84F-2272648DC2AF}.dll C:\Users\x\AppData\Local\Temp\{966917E8-8F33-41EC-B432-B213429D2CBA}.dll C:\Users\x\AppData\Local\Temp\{973BC58A-EAE7-4DB8-B296-4EDCEC89602F}.dll C:\Users\x\AppData\Local\Temp\{97A8FC3F-6BF2-4903-8E2B-B513AF02E1FA}.dll C:\Users\x\AppData\Local\Temp\{97E185D7-7B40-4E5A-B022-3C375747B754}.dll C:\Users\x\AppData\Local\Temp\{97E5B1D8-09F2-49EB-83C0-32E25163B88C}.dll C:\Users\x\AppData\Local\Temp\{97F8BB58-2D78-4592-A604-C62144411C97}.dll C:\Users\x\AppData\Local\Temp\{99E94A43-4E3E-46C7-BB43-D7D63A266C1B}.dll C:\Users\x\AppData\Local\Temp\{9AC2AC86-F379-4E04-9258-3BF54547984C}.dll C:\Users\x\AppData\Local\Temp\{9AFA6822-42FB-4B74-836C-C54C92F4775A}.dll C:\Users\x\AppData\Local\Temp\{9B4E429F-989C-49F4-BBE4-CFC0EE6C7C79}.dll C:\Users\x\AppData\Local\Temp\{9CAEFA29-4905-4DB9-8629-1BFCB5CABBF3}.dll C:\Users\x\AppData\Local\Temp\{9D8748A2-E8C4-41E2-94E4-5FBEEA2122A7}.dll C:\Users\x\AppData\Local\Temp\{9DA0D3D5-7559-4CA2-B4A4-221D639B9667}.dll C:\Users\x\AppData\Local\Temp\{9E190116-8207-430C-926F-FB544D6EDAF8}.dll C:\Users\x\AppData\Local\Temp\{9E68DB7C-B9C2-4645-8EB6-E0049F3E03FE}.dll C:\Users\x\AppData\Local\Temp\{9EBC0F48-F7A5-40FE-8632-FC154BBEA1C2}.dll C:\Users\x\AppData\Local\Temp\{9F2FB01C-20E7-466B-833A-76C97E4E1DAB}.dll C:\Users\x\AppData\Local\Temp\{9F3A493B-D928-487E-872B-A347556481B2}.dll C:\Users\x\AppData\Local\Temp\{9F70C882-0C36-4DA6-BE8E-41F854717592}.dll C:\Users\x\AppData\Local\Temp\{9F9F6B59-1F58-4855-8898-D85806CFACA6}.dll C:\Users\x\AppData\Local\Temp\{A0E0459C-E49D-48BB-9027-3A2E34EF5CD8}.dll C:\Users\x\AppData\Local\Temp\{A2F2B00E-41DA-4CB6-AF86-76FF7B2563E2}.dll C:\Users\x\AppData\Local\Temp\{A30AE61D-51CE-4555-BFFD-5C47DF2A2F35}.dll C:\Users\x\AppData\Local\Temp\{A350EA17-30F5-4831-B2A5-C32EF3E087F8}.dll C:\Users\x\AppData\Local\Temp\{A3C757E5-731E-471C-960D-211F79D23757}.dll C:\Users\x\AppData\Local\Temp\{A45A9C5A-C72D-425B-86F9-FD6D1F47CD6B}.dll C:\Users\x\AppData\Local\Temp\{A5F329D2-61D6-420B-8FA5-A8CDCC8F8A03}.dll C:\Users\x\AppData\Local\Temp\{A728A179-B09B-4FC5-9810-0CEBD5045D9E}.dll C:\Users\x\AppData\Local\Temp\{A754667A-6407-4928-AF15-C7F176BD109C}.dll C:\Users\x\AppData\Local\Temp\{A7837802-119F-4234-9A46-CE82353C4D5E}.dll C:\Users\x\AppData\Local\Temp\{A9234442-858C-429A-9FF7-174504CA727B}.dll C:\Users\x\AppData\Local\Temp\{A9ADD701-85BB-44B4-A400-91BD6A2CEC2D}.dll C:\Users\x\AppData\Local\Temp\{AA47CFE7-B67B-46DC-843E-2F0B6F9918EF}.dll C:\Users\x\AppData\Local\Temp\{AADD256B-5321-4C8F-AE62-B14E5F217C86}.dll C:\Users\x\AppData\Local\Temp\{ACFF5ED4-F2E2-41EA-ACB5-E16A561C7417}.dll C:\Users\x\AppData\Local\Temp\{ADE6D3BC-54CB-4684-A226-B63E974ADDBB}.dll C:\Users\x\AppData\Local\Temp\{ADFA487E-E445-4B11-827E-D5F38ABDAF8B}.dll C:\Users\x\AppData\Local\Temp\{ADFAF6B7-7A1A-4FC6-818C-C16E056B4263}.dll C:\Users\x\AppData\Local\Temp\{AEA1D062-F360-40F9-8280-158E9ED25C19}.dll C:\Users\x\AppData\Local\Temp\{AF42434E-EB03-4C06-95FD-E81B2FC63C6B}.dll C:\Users\x\AppData\Local\Temp\{AFBECEDF-E602-4BCF-852D-0654A67C2CD1}.dll C:\Users\x\AppData\Local\Temp\{B0499013-A71E-4260-80A2-1CD28410F92D}.dll C:\Users\x\AppData\Local\Temp\{B04E7BA3-B119-4542-846C-45A28DB87962}.dll C:\Users\x\AppData\Local\Temp\{B28C9917-9B52-46C9-8DC1-5A35DD62E897}.dll C:\Users\x\AppData\Local\Temp\{B28F50EC-7399-4400-9873-0FB3C93C4227}.dll C:\Users\x\AppData\Local\Temp\{B2BE5765-8FAC-4EAE-84FB-88620BAD3EAF}.dll C:\Users\x\AppData\Local\Temp\{B2E136B2-FE56-44B4-AA6D-FA75FC00CA7F}.dll C:\Users\x\AppData\Local\Temp\{B3722C6C-3BBF-4E1A-975F-32F51179E38E}.dll C:\Users\x\AppData\Local\Temp\{B497D7E3-3AC5-42F3-B1E5-C78E85025862}.dll C:\Users\x\AppData\Local\Temp\{B4C1FA5C-9E43-49E5-AE0F-6C29EC1C5C49}.dll C:\Users\x\AppData\Local\Temp\{B5347632-DE1B-4F14-8BD4-F0AE70631E40}.dll C:\Users\x\AppData\Local\Temp\{B69E5518-7D38-4FE2-9541-13C2346708C3}.dll C:\Users\x\AppData\Local\Temp\{B6E35E87-B7CC-40A5-B717-DD9F325BA1D1}.dll C:\Users\x\AppData\Local\Temp\{B7173DAE-31EE-4B33-BA99-C4E9E86F8C48}.dll C:\Users\x\AppData\Local\Temp\{B93AE011-9A4A-4AAD-B0BE-9A67AEC1281B}.dll C:\Users\x\AppData\Local\Temp\{B976A257-43B3-4BF6-9E55-AA40DA59FF74}.dll C:\Users\x\AppData\Local\Temp\{BA4F4CE0-0C4E-42E5-A610-32EA18BEC97D}.dll C:\Users\x\AppData\Local\Temp\{BA730B7A-6182-4D6C-B206-F7CF8D114016}.dll C:\Users\x\AppData\Local\Temp\{BADC638D-E3AE-4364-8805-EC2CC6E48C74}.dll C:\Users\x\AppData\Local\Temp\{BB2807CC-85CE-4481-BFE9-084E278541BC}.dll C:\Users\x\AppData\Local\Temp\{BB2B93D2-8785-4A90-85CF-EC4A3DD16DF8}.dll C:\Users\x\AppData\Local\Temp\{BBA9D689-6A0B-4A74-9151-79366A9374E5}.dll C:\Users\x\AppData\Local\Temp\{BCAD6D4F-7B34-4B48-A581-74EC0B17282A}.dll C:\Users\x\AppData\Local\Temp\{BCD75B1A-60DD-4ED2-B4A7-9DA2AABFC1B6}.dll C:\Users\x\AppData\Local\Temp\{BD66840B-9F8D-4A4A-8346-2F5D004A452C}.dll C:\Users\x\AppData\Local\Temp\{BDE4AB17-DF0D-495B-89E8-8BCB253D9EB1}.dll C:\Users\x\AppData\Local\Temp\{BF37A8F6-1546-4BAC-B2F0-9832B72E802A}.dll C:\Users\x\AppData\Local\Temp\{BF3D4589-A654-47FE-90A7-2CA1A555AFDE}.dll C:\Users\x\AppData\Local\Temp\{BF650137-1643-4348-BB8F-0C15B0B21971}.dll C:\Users\x\AppData\Local\Temp\{BF6DA7A7-059F-4EBE-B1B1-FFF7DC3FE338}.dll C:\Users\x\AppData\Local\Temp\{C018A623-8D3A-4B96-9C5B-9AF75C079253}.dll C:\Users\x\AppData\Local\Temp\{C295C3B2-9F6F-4F3A-B0AB-4F34A6691F94}.dll C:\Users\x\AppData\Local\Temp\{C299F8A6-487D-4406-8849-ADBB0ADE4568}.dll C:\Users\x\AppData\Local\Temp\{C31444FE-FDE2-4FBC-A6BB-0D8F5CB47B24}.dll C:\Users\x\AppData\Local\Temp\{C3219428-D777-4188-BF22-0DF18DE65EC5}.dll C:\Users\x\AppData\Local\Temp\{C3A41C20-F7E9-427A-81AC-9492E45D2395}.dll C:\Users\x\AppData\Local\Temp\{C4BD8459-D42D-4B69-A25A-2EC0AD10C32D}.dll C:\Users\x\AppData\Local\Temp\{C4ED1153-D62A-4465-A8E6-29649DB0AB3E}.dll C:\Users\x\AppData\Local\Temp\{C5796D38-83D5-41F1-8955-A2437FEBC168}.dll C:\Users\x\AppData\Local\Temp\{C659F995-0B52-4AE4-BFBC-8F9B2B030756}.dll C:\Users\x\AppData\Local\Temp\{C6CAF8F8-06D2-4839-BA59-90671209B4A2}.dll C:\Users\x\AppData\Local\Temp\{C6FB88D3-EC6D-4898-82D3-458358ABBC8D}.dll C:\Users\x\AppData\Local\Temp\{C73A09AF-94D1-4E81-95D8-5029F389310D}.dll C:\Users\x\AppData\Local\Temp\{C96CC000-4EE6-4A0B-B359-4A5A0EF71F5F}.dll C:\Users\x\AppData\Local\Temp\{C986FE55-30A3-46C5-B23A-075EFE55C984}.dll C:\Users\x\AppData\Local\Temp\{C9A7E9B1-C35A-444C-98BA-5165F55AC75E}.dll C:\Users\x\AppData\Local\Temp\{C9DB6BEE-56C1-4ADF-A529-B57A8D1B1AA3}.dll C:\Users\x\AppData\Local\Temp\{CA0CCA6E-6B61-4B60-A367-569D1EDEF362}.dll C:\Users\x\AppData\Local\Temp\{CB38FC26-EF6A-4586-90E4-A450D396F378}.dll C:\Users\x\AppData\Local\Temp\{CB5FF94A-0277-4AA4-8408-FFDF3C37172F}.dll C:\Users\x\AppData\Local\Temp\{CD498DC0-90A7-4BC4-8FC5-F6CC6EC3D21E}.dll C:\Users\x\AppData\Local\Temp\{CE440928-2A43-4163-922A-1501949CC0E5}.dll C:\Users\x\AppData\Local\Temp\{CE5B77CC-F6FA-4067-8267-4DFF3E48064E}.dll C:\Users\x\AppData\Local\Temp\{CE733322-614F-49B6-B796-92123E2FF8DF}.dll C:\Users\x\AppData\Local\Temp\{CEA07AE0-6080-4CA8-8696-E137A4560018}.dll C:\Users\x\AppData\Local\Temp\{CECACE42-7453-4C00-BB50-5BD02B42FDEB}.dll C:\Users\x\AppData\Local\Temp\{CF319D4F-465B-448A-A8E8-7416A6C38DA3}.dll C:\Users\x\AppData\Local\Temp\{CF6E9F69-4EA9-4BAE-BD8F-9B618FFD2EB3}.dll C:\Users\x\AppData\Local\Temp\{D10E21DF-F6C3-4837-9407-0DEE9848476B}.dll C:\Users\x\AppData\Local\Temp\{D15634D6-EC0B-4238-A623-B42DC7B50129}.dll C:\Users\x\AppData\Local\Temp\{D17E58E4-5259-49A6-B17F-26A453E78351}.dll C:\Users\x\AppData\Local\Temp\{D2173411-9E87-4B2E-9F22-973D0C4E069A}.dll C:\Users\x\AppData\Local\Temp\{D2216068-D640-4538-9B9F-947889CE34E5}.dll C:\Users\x\AppData\Local\Temp\{D25E9712-E775-426A-B78D-7A22ABF180FC}.dll C:\Users\x\AppData\Local\Temp\{D2B812B5-6515-452E-8F2E-F566E99874D2}.dll C:\Users\x\AppData\Local\Temp\{D2D5C3EC-62EF-4719-A835-6BD729646FDB}.dll C:\Users\x\AppData\Local\Temp\{D2DCE596-E830-4235-BA13-2CC2C87EC0D8}.dll C:\Users\x\AppData\Local\Temp\{D2FDD846-5270-4B45-AA7E-4E431700D14A}.dll C:\Users\x\AppData\Local\Temp\{D3218737-561D-4375-97F3-1138733CF3B2}.dll C:\Users\x\AppData\Local\Temp\{D3AE01A4-2047-4660-B1A1-827B3E62C2F7}.dll C:\Users\x\AppData\Local\Temp\{D3E60DDF-CE2F-4B76-A56B-B7DBB99E7B8E}.dll C:\Users\x\AppData\Local\Temp\{D44E2A3E-AA09-4ACB-8A65-9D9022D38B31}.dll C:\Users\x\AppData\Local\Temp\{D62F2A64-D03A-4DCF-ACE8-020840A3122C}.dll C:\Users\x\AppData\Local\Temp\{D63EC0BB-21E0-4BAB-85D9-05BA9EE8E14A}.dll C:\Users\x\AppData\Local\Temp\{D6581BC9-7435-4523-B85C-993AD6B0BC4D}.dll C:\Users\x\AppData\Local\Temp\{D6F4FABD-0F75-45C6-98B7-E805BB38EDC8}.dll C:\Users\x\AppData\Local\Temp\{D7537E1B-E5A0-4F83-B881-A446BCC84468}.dll C:\Users\x\AppData\Local\Temp\{D773AFD5-7AB4-4672-B29D-29F94165CEB6}.dll C:\Users\x\AppData\Local\Temp\{D7E7185B-6BFF-4050-BEE8-BBAACEBFDCB7}.dll C:\Users\x\AppData\Local\Temp\{DA293EFE-A2B3-4F83-BF9A-A108DBE73387}.dll C:\Users\x\AppData\Local\Temp\{DA8F4CD3-A24F-4313-9FCB-04FA3AF857D5}.dll C:\Users\x\AppData\Local\Temp\{DA9F0F50-C32F-4D25-8247-C7E7FED16288}.dll C:\Users\x\AppData\Local\Temp\{DB65E55B-A349-416C-8FC7-348247BA2132}.dll C:\Users\x\AppData\Local\Temp\{DBB1D27D-F24E-4637-9F09-F4940641318A}.dll C:\Users\x\AppData\Local\Temp\{DC008BBB-DD20-4E1D-8F7B-02608E6AFE37}.dll C:\Users\x\AppData\Local\Temp\{DCB011D8-7544-465A-AE65-1C75635553D8}.dll C:\Users\x\AppData\Local\Temp\{DDD4F78B-7519-4477-91D4-94FEAC006ABB}.dll C:\Users\x\AppData\Local\Temp\{DDF9961F-8D5F-406D-AAD7-35B555CBC54E}.dll C:\Users\x\AppData\Local\Temp\{DF0D3E79-91DF-4759-91E9-A7CAA18E24CF}.dll C:\Users\x\AppData\Local\Temp\{DF1000C6-7974-4E76-A87E-44F109C3D98B}.dll C:\Users\x\AppData\Local\Temp\{DF4C1BCB-4B85-4173-A811-AF62FBC63A7E}.dll C:\Users\x\AppData\Local\Temp\{DFAE89E2-9BCB-44D2-98C7-84DFF292B910}.dll C:\Users\x\AppData\Local\Temp\{E03EE11E-4B08-4200-908E-896D7B13A4EF}.dll C:\Users\x\AppData\Local\Temp\{E09B51CE-BC19-4CD0-AFCF-FA5D0CDAE2B8}.dll C:\Users\x\AppData\Local\Temp\{E1026E52-EFDF-4CCE-96D1-1737B4621DCD}.dll C:\Users\x\AppData\Local\Temp\{E149FCC9-8B50-4D2C-8950-9961D6E8C9E1}.dll C:\Users\x\AppData\Local\Temp\{E29C44FE-CD52-4121-B44C-032651DCB5AB}.dll C:\Users\x\AppData\Local\Temp\{E4011760-F638-49AE-9BC2-FFCA7AE758E5}.dll C:\Users\x\AppData\Local\Temp\{E4347261-5A55-422F-8C01-46FA26204B93}.dll C:\Users\x\AppData\Local\Temp\{E497DB77-EF59-43A5-8372-64BFB24A4C4D}.dll C:\Users\x\AppData\Local\Temp\{E497E843-7CAA-4834-8DF3-0254200E3EC5}.dll C:\Users\x\AppData\Local\Temp\{E505EC32-D8FE-4B9B-8328-0D7EB305E1FF}.dll C:\Users\x\AppData\Local\Temp\{E549520F-9EFE-4069-B63C-3B01547163EA}.dll C:\Users\x\AppData\Local\Temp\{E5FB494A-89FD-4014-BC77-646AA5A8500C}.dll C:\Users\x\AppData\Local\Temp\{E6CCF42C-5D65-4089-A7A3-2A5C839970D9}.dll C:\Users\x\AppData\Local\Temp\{E6FEBF47-B3EA-4452-AEE3-FC37EC247FA7}.dll C:\Users\x\AppData\Local\Temp\{E83C7CBB-0C5D-4F7F-B958-2ED1B9367281}.dll C:\Users\x\AppData\Local\Temp\{E9234585-9FEF-4C2D-9C46-5031DC930731}.dll C:\Users\x\AppData\Local\Temp\{E94D51A6-3B6B-43D9-9260-8F5C3167B2C1}.dll C:\Users\x\AppData\Local\Temp\{E964E49B-4AD7-45F1-B2D4-411D27AC7D4C}.dll C:\Users\x\AppData\Local\Temp\{E983A09A-090F-494E-B83A-2FBE645D1CDC}.dll C:\Users\x\AppData\Local\Temp\{EA4FD725-0405-4257-BFC8-11734ACD9B87}.dll C:\Users\x\AppData\Local\Temp\{EAB22B2A-AE57-40B3-8502-15C99DEAB1BF}.dll C:\Users\x\AppData\Local\Temp\{EB561BD1-10D8-46C6-A939-AAC572A5667A}.dll C:\Users\x\AppData\Local\Temp\{EB9BE9CA-DC99-40DC-AE35-B500F1641A00}.dll C:\Users\x\AppData\Local\Temp\{EBAC32AD-BD90-4F7A-A073-2F79273475B9}.dll C:\Users\x\AppData\Local\Temp\{EC88B2C5-4345-4359-8BCC-09E597D03D3C}.dll C:\Users\x\AppData\Local\Temp\{ED1CDC28-1899-4B37-923B-E9028CA740F1}.dll C:\Users\x\AppData\Local\Temp\{EE5718B8-9B09-4EC1-8B25-A2F7F97CA573}.dll C:\Users\x\AppData\Local\Temp\{EEB880DC-A887-4D70-8E6E-D6CF4475FD28}.dll C:\Users\x\AppData\Local\Temp\{EEFDE8C8-78CC-4286-B89C-A4E7FD7B536F}.dll C:\Users\x\AppData\Local\Temp\{EF9327D0-EA2D-40D2-B215-3AF0A63E6AE2}.dll C:\Users\x\AppData\Local\Temp\{F020D7EB-24AD-472B-92BB-ACD3530B1C01}.dll C:\Users\x\AppData\Local\Temp\{F02C36E9-BE12-4C1B-8293-348FB83E6CE0}.dll C:\Users\x\AppData\Local\Temp\{F09EE11D-0E40-4A88-877C-D55F6C3102A3}.dll C:\Users\x\AppData\Local\Temp\{F0C81FED-46D8-455E-8B1B-1668E323B01F}.dll C:\Users\x\AppData\Local\Temp\{F1DE5B38-EA05-41A5-8C14-27B2ABA2B812}.dll C:\Users\x\AppData\Local\Temp\{F2116A1D-1B08-4207-A814-3B707AB1A182}.dll C:\Users\x\AppData\Local\Temp\{F2D1EA31-895E-46AD-B549-27AB015B392C}.dll C:\Users\x\AppData\Local\Temp\{F4861CB6-AD8F-4719-8ABD-04B32847824D}.dll C:\Users\x\AppData\Local\Temp\{F621A840-5103-4374-826C-D7156AF73FBE}.dll C:\Users\x\AppData\Local\Temp\{F63709B5-7E61-4C25-950D-F3E3D99EA7EE}.dll C:\Users\x\AppData\Local\Temp\{F70400C8-DCCB-4ED5-B244-8FBEB648691D}.dll C:\Users\x\AppData\Local\Temp\{F8752AD6-5A74-4741-BCE2-95C745D00C90}.dll C:\Users\x\AppData\Local\Temp\{F8DA3714-9484-4B33-B6E7-01CD1256961A}.dll C:\Users\x\AppData\Local\Temp\{F915E5DB-40A8-4773-8E8C-C6C662A0A490}.dll C:\Users\x\AppData\Local\Temp\{F92450D7-88E8-47E7-9101-B0F85F638D2C}.dll C:\Users\x\AppData\Local\Temp\{F97AE5B1-9DAE-4163-8E9D-A144AB167902}.dll C:\Users\x\AppData\Local\Temp\{F9C9746B-3C85-4D12-ACF1-CB696C0B9802}.dll C:\Users\x\AppData\Local\Temp\{FA1901EB-2787-4A3E-B16D-8320790CBCBC}.dll C:\Users\x\AppData\Local\Temp\{FAAA953A-59BB-4561-9F5C-A5039F671B85}.dll C:\Users\x\AppData\Local\Temp\{FAD54402-71D9-4B2C-B4A7-66C7194CE529}.dll C:\Users\x\AppData\Local\Temp\{FCCD8E0E-FE2B-4BF5-A07F-8ADAFEA6DAE7}.dll C:\Users\x\AppData\Local\Temp\{FD5AC85D-364D-44BC-96D7-31041A55156F}.dll C:\Users\x\AppData\Local\Temp\{FE61E791-82AA-4C90-BE89-8A380BEEEAB6}.dll C:\Users\x\AppData\Local\Temp\{FE9679ED-BBFF-4DD0-BFE5-927E25446E45}.dll C:\Users\x\AppData\Local\Temp\{FF546CA7-711B-486B-A16B-5C122ACFF3CD}.dll ==================== Bamital & volsnap ================= (Brak automatycznej naprawy dla plików które nie przeszły weryfikacji.) C:\Windows\system32\winlogon.exe => Plik podpisany cyfrowo C:\Windows\system32\wininit.exe => Plik podpisany cyfrowo C:\Windows\SysWOW64\wininit.exe => Plik podpisany cyfrowo C:\Windows\explorer.exe => Plik podpisany cyfrowo C:\Windows\SysWOW64\explorer.exe => Plik podpisany cyfrowo C:\Windows\system32\svchost.exe => Plik podpisany cyfrowo C:\Windows\SysWOW64\svchost.exe => Plik podpisany cyfrowo C:\Windows\system32\services.exe => Plik podpisany cyfrowo C:\Windows\system32\User32.dll => Plik podpisany cyfrowo C:\Windows\SysWOW64\User32.dll => Plik podpisany cyfrowo C:\Windows\system32\userinit.exe => Plik podpisany cyfrowo C:\Windows\SysWOW64\userinit.exe => Plik podpisany cyfrowo C:\Windows\system32\rpcss.dll => Plik podpisany cyfrowo C:\Windows\system32\dnsapi.dll => Plik podpisany cyfrowo C:\Windows\SysWOW64\dnsapi.dll => Plik podpisany cyfrowo C:\Windows\system32\Drivers\volsnap.sys => Plik podpisany cyfrowo LastRegBack: 2015-12-26 17:04 ==================== Koniec FRST.txt ============================