Rezultaty skanowania Farbar Recovery Scan Tool (FRST) (x86) Wersja:29-12-2015 Uruchomiony przez Ja (administrator) JA-PC (29-12-2015 23:39:59) Uruchomiony z C:\Users\Ja\Downloads Załadowane profile: Ja (Dostępne profile: Ja) Platform: Microsoft® Windows Vista™ Home Premium Service Pack 2 (X86) Język: Polski (Polska) Internet Explorer Wersja 9 (Domyślna przeglądarka: Chrome) Tryb startu: Normal Instrukcja obsługi Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Procesy (filtrowane) ================= (Załączenie wejścia w fixlist spowoduje zamknięcie procesu. Powiązany plik nie zostanie przeniesiony.) (Microsoft Corporation) C:\Windows\System32\SLsvc.exe (Agere Systems) C:\Windows\System32\agrsmsvc.exe (AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\Framework\Common\avgsvcx.exe (AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\Av\avgwdsvcx.exe (TOSHIBA CORPORATION) C:\Program Files\Toshiba\ConfigFree\CFSvcs.exe (Microsoft Corporation) C:\Program Files\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\sqlservr.exe (© pdfforge GmbH.) C:\ProgramData\pdfforge\PDF Architect 4 Manager\PDF Architect 4\Architect Manager.exe (Microsoft Corporation) C:\Program Files\Microsoft SQL Server\90\Shared\sqlbrowser.exe (Microsoft Corporation) C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe (Toshiba Europe GmbH) C:\Program Files\Toshiba TEMPRO\TempoSVC.exe (TOSHIBA Corporation) C:\Program Files\Toshiba\TOSHIBA DVD PLAYER\TNaviSrv.exe (TOSHIBA Corporation) C:\Windows\System32\TODDSrv.exe (TOSHIBA Corporation) C:\Program Files\Toshiba\Power Saver\TosCoSrv.exe (TOSHIBA CORPORATION) C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe (TOSHIBA Corporation) C:\Program Files\Toshiba\SMARTLogService\TosIPCSrv.exe (Ulead Systems, Inc.) C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe (Toshiba) C:\Program Files\Toshiba\SmartFaceV\SmartFaceVWatchSrv.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe ( TOSHIBA CORPORATION) C:\Program Files\Toshiba\Bluetooth Toshiba Stack\ItSecMng.exe () C:\Program Files\Toshiba\Utilities\KeNotify.exe (TOSHIBA CORPORATION) C:\Program Files\Toshiba\ConfigFree\NDSTray.exe (TOSHIBA Corporation.) C:\Program Files\Toshiba\HDMICtrlMan\HDMICtrlMan.exe (TOSHIBA Corporation) C:\Program Files\Toshiba\Power Saver\TPwrMain.exe (TOSHIBA Corporation) C:\Program Files\Toshiba\FlashCards\TCrdMain.exe (Alps Electric Co., Ltd.) C:\Program Files\Apoint2K\Apoint.exe (Chicony) C:\Program Files\Camera Assistant Software for Toshiba\traybar.exe (AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\Av\avgui.exe (AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\Framework\Common\avguix.exe (Microsoft Corporation) C:\Program Files\Windows Media Player\wmpnscfg.exe (Alps Electric Co., Ltd.) C:\Program Files\Apoint2K\ApMsgFwd.exe (TOSHIBA CORPORATION) C:\Program Files\Toshiba\ConfigFree\CFSwMgr.exe (Alps Electric Co., Ltd.) C:\Program Files\Apoint2K\ApntEx.exe (TOSHIBA Corporation.) C:\Program Files\Toshiba\HDMICtrlMan\HCMSoundChanger.exe (Disc Soft Ltd) D:\deamon\DAEMON Tools Lite\DiscSoftBusService.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Microsoft Corporation) C:\Windows\System32\wuauclt.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe ==================== Rejestr (filtrowane) =========================== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.) HKLM\...\Run: [Windows Defender] => C:\Program Files\Windows Defender\MSASCui.exe [1008184 2008-01-21] (Microsoft Corporation) HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [7719456 2009-08-24] (Realtek Semiconductor) HKLM\...\Run: [ITSecMng] => C:\Program Files\TOSHIBA\Bluetooth Toshiba Stack\ItSecMng.exe [75136 2007-09-28] ( TOSHIBA CORPORATION) HKLM\...\Run: [HWSetup] => C:\Program Files\TOSHIBA\Utilities\HWSetup.exe [421888 2007-04-16] (TOSHIBA Electronics, Inc.) HKLM\...\Run: [KeNotify] => C:\Program Files\TOSHIBA\Utilities\KeNotify.exe [34352 2006-11-06] () HKLM\...\Run: [NDSTray.exe] => NDSTray.exe HKLM\...\Run: [cfFncEnabler.exe] => cfFncEnabler.exe HKLM\...\Run: [HDMICtrlMan] => C:\Program Files\TOSHIBA\HDMICtrlMan\HDMICtrlMan.exe [716800 2008-05-20] (TOSHIBA Corporation.) HKLM\...\Run: [TPwrMain] => C:\Program Files\TOSHIBA\Power Saver\TPwrMain.EXE [431456 2008-08-18] (TOSHIBA Corporation) HKLM\...\Run: [HSON] => C:\Program Files\TOSHIBA\TBS\HSON.exe [54608 2007-10-31] (TOSHIBA Corporation) HKLM\...\Run: [00TCrdMain] => C:\Program Files\TOSHIBA\FlashCards\TCrdMain.exe [727608 2008-09-24] (TOSHIBA Corporation) HKLM\...\Run: [Google Desktop Search] => C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe [29744 2008-12-08] (Google) HKLM\...\Run: [Apoint] => C:\Program Files\Apoint2K\Apoint.exe [184320 2007-12-15] (Alps Electric Co., Ltd.) HKLM\...\Run: [Camera Assistant Software] => C:\Program Files\Camera Assistant Software for Toshiba\traybar.exe [417792 2008-09-26] (Chicony) HKLM\...\Run: [AVG_UI] => C:\Program Files\AVG\Av\avgui.exe [3855272 2015-12-09] (AVG Technologies CZ, s.r.o.) HKLM\...\Run: [BCSSync] => D:\office\Office14\BCSSync.exe [89184 2012-11-05] (Microsoft Corporation) HKLM\...\Run: [OV3_Monitor] => D:\olympus\FirstStart.exe [55320 2015-05-13] (OLYMPUS CORPORATION) HKLM\...\Run: [AvgUi] => C:\Program Files\AVG\Framework\Common\avguix.exe [1136552 2015-11-12] (AVG Technologies CZ, s.r.o.) HKU\S-1-5-21-1530225504-1027307781-76199518-1000\...\Run: [PeerBlock] => D:\peerblock\PeerBlock\peerblock.exe [2124360 2014-01-14] (PeerBlock, LLC) HKU\S-1-5-21-1530225504-1027307781-76199518-1000\...\Run: [DAEMON Tools Lite Automount] => D:\deamon\DAEMON Tools Lite\DTAgent.exe [3576664 2015-06-18] (Disc Soft Ltd) HKU\S-1-5-21-1530225504-1027307781-76199518-1000\...\Run: [OV3_Monitor] => D:\olympus\OV3Monitor.exe [419864 2015-05-13] (OLYMPUS CORPORATION) HKU\S-1-5-21-1530225504-1027307781-76199518-1000\...\Run: [WMPNSCFG] => C:\Program Files\Windows Media Player\WMPNSCFG.exe [202240 2008-01-21] (Microsoft Corporation) HKU\S-1-5-21-1530225504-1027307781-76199518-1000\...\Policies\Explorer: [NoLowDiskSpaceChecks] 1 HKU\S-1-5-21-1530225504-1027307781-76199518-1000\...\MountPoints2: G - G:\blank.exe HKU\S-1-5-21-1530225504-1027307781-76199518-1000\...\MountPoints2: {51f78621-23ef-11e5-b02b-00235a085700} - G:\blank.exe AppInit_DLLs: C:\PROGRA~1\Google\GOOGLE~2\GOEC62~1.DLL => C:\Program Files\Google\Google Desktop Search\GoogleDesktopNetwork3.dll [112128 2008-12-08] (Google) ShellIconOverlayIdentifiers: [Groove Explorer Icon Overlay 1 (GFS Unread Stub)] -> {99FD978C-D287-4F50-827F-B2C658EDA8E7} => D:\office\Office14\GROOVEEX.DLL [2013-12-18] (Microsoft Corporation) ShellIconOverlayIdentifiers: [Groove Explorer Icon Overlay 2 (GFS Stub)] -> {AB5C5600-7E6E-4B06-9197-9ECEF74D31CC} => D:\office\Office14\GROOVEEX.DLL [2013-12-18] (Microsoft Corporation) ShellIconOverlayIdentifiers: [Groove Explorer Icon Overlay 2.5 (GFS Unread Folder)] -> {920E6DB1-9907-4370-B3A0-BAFC03D81399} => D:\office\Office14\GROOVEEX.DLL [2013-12-18] (Microsoft Corporation) ShellIconOverlayIdentifiers: [Groove Explorer Icon Overlay 3 (GFS Folder)] -> {16F3DD56-1AF5-4347-846D-7C10C4192619} => D:\office\Office14\GROOVEEX.DLL [2013-12-18] (Microsoft Corporation) ShellIconOverlayIdentifiers: [Groove Explorer Icon Overlay 4 (GFS Unread Mark)] -> {2916C86E-86A6-43FE-8112-43ABE6BF8DCC} => D:\office\Office14\GROOVEEX.DLL [2013-12-18] (Microsoft Corporation) Startup: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\TRDCReminder.lnk [2008-12-08] ShortcutTarget: TRDCReminder.lnk -> C:\Program Files\Toshiba\TRDCReminder\TRDCReminder.exe (TOSHIBA Europe) Startup: C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\TRDCReminder.lnk [2008-12-08] ShortcutTarget: TRDCReminder.lnk -> C:\Program Files\Toshiba\TRDCReminder\TRDCReminder.exe (TOSHIBA Europe) ==================== Internet (filtrowane) ==================== (Załączenie wejścia w fixlist, w przypadku gdy jest to obiekt rejestru, spowoduje usunięcie go z rejestru lub przywrócenie jego domyślnej postaci.) Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 192.168.1.1 Tcpip\..\Interfaces\{D2C847E8-14CB-4BF1-9766-AEA09A6FA8D1}: [DhcpNameServer] 192.168.1.1 192.168.1.1 Internet Explorer: ================== HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.com/ig/redirectdomain?brand=TSEA&bmod=TSEA HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.google.com/ig/redirectdomain?brand=TSEA&bmod=TSEA HKU\S-1-5-21-1530225504-1027307781-76199518-1000\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.google.com/ig/redirectdomain?brand=TSEA&bmod=TSEA; SearchScopes: HKLM -> DefaultScope {0DB75892-1DAF-4CA7-80C9-B3CA5FA44FCA} URL = hxxp://www.google.com/search?sourceid=ie7&q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&rlz=1I7TSEA; SearchScopes: HKLM -> {0DB75892-1DAF-4CA7-80C9-B3CA5FA44FCA} URL = hxxp://www.google.com/search?sourceid=ie7&q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&rlz=1I7TSEA; BHO: Adobe PDF Reader Link Helper -> {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} -> C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll [2006-10-22] (Adobe Systems Incorporated) BHO: PDF Architect 4 Helper -> {38279E1A-7019-40C1-B579-E99DFB3312E8} -> C:\Program Files\PDF Architect 4\creator-ie-helper.dll [2015-10-19] (pdfforge GmbH) BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> D:\office\Office14\GROOVEEX.DLL [2013-12-18] (Microsoft Corporation) BHO: SSVHelper Class -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.6.0_06\bin\ssv.dll [2008-03-25] (Sun Microsystems, Inc.) BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> D:\office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation) Toolbar: HKLM - PDF Architect 4 Toolbar - {23FD9C33-A9E1-48A1-8404-E5925CF1C8E1} - C:\Program Files\PDF Architect 4\creator-ie-plugin.dll [2015-10-19] (pdfforge GmbH) Handler: ms-itss - {0A9007C0-4076-11D3-8789-0000F8105754} - c:\Program Files\Common Files\Microsoft Shared\Information Retrieval\msitss.dll [2007-06-08] (Microsoft Corporation) FireFox: ======== FF ProfilePath: C:\Users\Ja\AppData\Roaming\Mozilla\Firefox\Profiles\t00zlbxx.default FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.41105.0\npctrl.dll [2015-11-04] ( Microsoft Corporation) FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> D:\office\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation) FF Plugin: @microsoft.com/SharePoint,version=14.0 -> D:\office\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation) FF Plugin: @microsoft.com/WPF,version=3.5 -> C:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll [2008-07-29] (Microsoft Corporation) FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.29.1\npGoogleUpdate3.dll [2015-12-29] (Google Inc.) FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.29.1\npGoogleUpdate3.dll [2015-12-29] (Google Inc.) FF Plugin: PDF Architect 4 -> C:\Program Files\PDF Architect 4\np-previewer.dll [2015-10-19] (pdfforge GmbH) FF HKLM\...\Firefox\Extensions: [{20a82645-c095-46ed-80e3-08825760534b}] - C:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension FF Extension: Microsoft .NET Framework Assistant - C:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension [2015-07-01] [Brak podpisu cyfrowego] FF HKLM\...\Firefox\Extensions: [pdf_architect_4_conv@pdfarchitect.org] - C:\Program Files\PDF Architect 4\resources\pdfarchitect4firefoxextension FF Extension: Brak nazwy - C:\Program Files\PDF Architect 4\resources\pdfarchitect4firefoxextension [2015-12-29] [Brak podpisu cyfrowego] Chrome: ======= CHR Profile: C:\Users\Ja\AppData\Local\Google\Chrome\User Data\Default CHR Extension: (Prezentacje Google) - C:\Users\Ja\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-12-06] CHR Extension: (Dokumenty Google) - C:\Users\Ja\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-12-06] CHR Extension: (Dysk Google) - C:\Users\Ja\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-12-06] CHR Extension: (YouTube) - C:\Users\Ja\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-12-06] CHR Extension: (Google Search) - C:\Users\Ja\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-12-06] CHR Extension: (Arkusze Google) - C:\Users\Ja\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-12-06] CHR Extension: (Dokumenty Google offline) - C:\Users\Ja\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2015-12-29] CHR Extension: (AdBlock) - C:\Users\Ja\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2015-12-06] CHR Extension: (Płatności w sklepie Chrome Web Store) - C:\Users\Ja\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-12-06] CHR Extension: (Gmail) - C:\Users\Ja\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-12-06] ==================== Usługi (filtrowane) ======================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) S3 AvgAMPS; C:\Program Files\AVG\Av\avgamps.exe [615584 2015-12-09] (AVG Technologies CZ, s.r.o.) S2 AVGIDSAgent; C:\Program Files\AVG\Av\avgidsagent.exe [3857272 2015-12-09] (AVG Technologies CZ, s.r.o.) R2 avgsvc; C:\Program Files\AVG\Framework\Common\avgsvcx.exe [862632 2015-11-12] (AVG Technologies CZ, s.r.o.) R2 avgwd; C:\Program Files\AVG\Av\avgwdsvcx.exe [579776 2015-12-09] (AVG Technologies CZ, s.r.o.) R2 ConfigFree Service; C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe [40960 2008-09-05] (TOSHIBA CORPORATION) [Brak podpisu cyfrowego] R3 Disc Soft Lite Bus Service; D:\deamon\DAEMON Tools Lite\DiscSoftBusService.exe [1034584 2015-06-18] (Disc Soft Ltd) S3 GoogleDesktopManager-022208-143751; C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe [29744 2008-12-08] (Google) S3 Microsoft SharePoint Workspace Audit Service; D:\office\Office14\GROOVE.EXE [30814400 2013-12-18] (Microsoft Corporation) R2 MSSQL$ELISOFT; C:\Program Files\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\sqlservr.exe [29293408 2010-12-10] (Microsoft Corporation) S4 MSSQLServerADHelper; C:\Program Files\Microsoft SQL Server\90\Shared\sqladhlp90.exe [44384 2010-12-10] (Microsoft Corporation) S3 PDF Architect 4; C:\Program Files\PDF Architect 4\ws.exe [2220768 2015-10-19] (pdfforge GmbH) S3 PDF Architect 4 CrashHandler; C:\Program Files\PDF Architect 4\crash-handler-ws.exe [970464 2015-10-19] (pdfforge GmbH) S2 PDF Architect 4 Creator; C:\Program Files\PDF Architect 4\creator-ws.exe [772832 2015-10-19] (pdfforge GmbH) R2 PDF Architect 4 Manager; C:\ProgramData\pdfforge\PDF Architect 4 Manager\PDF Architect 4\Architect Manager.exe [959248 2015-10-05] (© pdfforge GmbH.) R3 SmartFaceVWatchSrv; C:\Program Files\Toshiba\SmartFaceV\SmartFaceVWatchSrv.exe [77824 2008-08-25] (Toshiba) [Brak podpisu cyfrowego] R2 TempoMonitoringService; C:\Program Files\Toshiba TEMPRO\TempoSVC.exe [99720 2008-08-26] (Toshiba Europe GmbH) R2 TOSHIBA SMART Log Service; C:\Program Files\TOSHIBA\SMARTLogService\TosIPCSrv.exe [106496 2008-07-15] (TOSHIBA Corporation) [Brak podpisu cyfrowego] R2 UleadBurningHelper; C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe [49152 2006-08-23] (Ulead Systems, Inc.) [Brak podpisu cyfrowego] S2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [272952 2008-01-21] (Microsoft Corporation) ===================== Sterowniki (filtrowane) ========================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) R1 Avgdiskx; C:\Windows\System32\DRIVERS\avgdiskx.sys [149936 2015-11-06] (AVG Technologies CZ, s.r.o.) R1 AVGIDSDriver; C:\Windows\System32\DRIVERS\avgidsdriverx.sys [255920 2015-11-06] (AVG Technologies CZ, s.r.o.) R0 AVGIDSHX; C:\Windows\System32\DRIVERS\avgidshx.sys [231344 2015-08-20] (AVG Technologies CZ, s.r.o.) R1 AVGIDSShim; C:\Windows\System32\DRIVERS\avgidsshimx.sys [31664 2015-11-20] (AVG Technologies CZ, s.r.o.) R1 Avgldx86; C:\Windows\System32\DRIVERS\avgldx86.sys [229296 2015-10-21] (AVG Technologies CZ, s.r.o.) R0 Avglogx; C:\Windows\System32\DRIVERS\avglogx.sys [308656 2015-08-14] (AVG Technologies CZ, s.r.o.) R0 Avgmfx86; C:\Windows\System32\DRIVERS\avgmfx86.sys [193968 2015-11-06] (AVG Technologies CZ, s.r.o.) R0 Avgrkx86; C:\Windows\System32\DRIVERS\avgrkx86.sys [36784 2015-08-10] (AVG Technologies CZ, s.r.o.) R1 Avgtdix; C:\Windows\System32\DRIVERS\avgtdix.sys [231856 2015-10-08] (AVG Technologies CZ, s.r.o.) R3 dtlitescsibus; C:\Windows\System32\DRIVERS\dtlitescsibus.sys [25016 2015-07-01] (Disc Soft Ltd) R0 LPCFilter; C:\Windows\System32\DRIVERS\LPCFilter.sys [25896 2008-05-07] (COMPAL ELECTRONIC INC.) S4 secdrv; C:\Windows\system32\Drivers\secdrv.sys [163644 2015-11-10] (Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K.) [Brak podpisu cyfrowego] R3 UVCFTR; C:\Windows\System32\Drivers\UVCFTR_S.SYS [17960 2008-07-15] (Chicony Electronics Co., Ltd.) S3 IpInIp; system32\DRIVERS\ipinip.sys [X] S3 NwlnkFlt; system32\DRIVERS\nwlnkflt.sys [X] S3 NwlnkFwd; system32\DRIVERS\nwlnkfwd.sys [X] S3 TpChoice; system32\DRIVERS\TpChoice.sys [X] ==================== NetSvcs (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) ==================== Jeden miesiąc - utworzone pliki i foldery ======== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2015-12-29 23:31 - 2015-12-29 23:34 - 00007745 _____ C:\Users\Ja\Downloads\Fixlog.txt 2015-12-29 21:49 - 2015-12-29 21:49 - 00380416 _____ C:\Users\Ja\Downloads\vm8kp3wb.exe 2015-12-29 21:42 - 2015-12-29 21:42 - 00380416 _____ C:\Users\Ja\Downloads\xeiw5f1i.exe 2015-12-29 21:42 - 2015-12-29 21:42 - 00380416 _____ C:\Users\Ja\Downloads\lif3qie1.exe 2015-12-29 21:25 - 2015-12-29 21:25 - 00380416 _____ C:\Users\Ja\Downloads\j7bhw8yb.exe 2015-12-29 21:16 - 2015-12-29 21:16 - 00380416 _____ C:\Users\Ja\Downloads\xx06vqdi.exe 2015-12-29 21:13 - 2015-12-29 21:13 - 00380416 _____ C:\Users\Ja\Downloads\8sz73qck.exe 2015-12-29 18:30 - 2015-12-29 18:30 - 00053755 _____ C:\Users\Ja\Downloads\Shortcut.txt 2015-12-29 18:28 - 2015-12-29 18:30 - 00032583 _____ C:\Users\Ja\Downloads\Addition.txt 2015-12-29 18:27 - 2015-12-29 23:39 - 00018738 _____ C:\Users\Ja\Downloads\FRST.txt 2015-12-29 18:24 - 2015-12-29 23:39 - 00000000 ____D C:\FRST 2015-12-29 18:24 - 2015-12-29 18:24 - 01721856 _____ (Farbar) C:\Users\Ja\Downloads\FRST.exe 2015-12-29 15:54 - 2015-12-29 17:14 - 00000000 ____D C:\Users\Ja\AppData\Roaming\Systweak 2015-12-29 15:53 - 2015-12-29 15:53 - 05822720 _____ (Advanced System Protector ) C:\Users\Ja\Downloads\aspsetup.exe 2015-12-29 14:49 - 2015-12-29 14:49 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome 2015-12-29 14:47 - 2015-12-29 23:34 - 00001024 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2015-12-29 14:47 - 2015-12-29 22:52 - 00001028 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2015-12-29 14:47 - 2015-12-29 14:47 - 00000000 ____D C:\Users\Ja\AppData\Local\Deployment 2015-12-29 14:47 - 2015-12-29 14:47 - 00000000 ____D C:\Users\Ja\AppData\Local\Apps\2.0 2015-12-29 14:23 - 2015-12-29 21:03 - 00000000 ____D C:\Program Files\Mozilla Firefox 2015-12-29 14:22 - 2015-12-29 14:23 - 02924856 _____ (AVG Technologies CZ, s.r.o.) C:\Users\Ja\Downloads\AVG_Protection_Free_1025.exe 2015-12-22 18:34 - 2015-12-29 14:32 - 00000000 ___HD C:\$AVG 2015-12-22 18:07 - 2015-12-29 14:23 - 00000000 ____D C:\Users\Ja\AppData\Local\AvgSetupLog 2015-12-22 18:05 - 2015-12-22 18:05 - 00000000 ____D C:\ProgramData\pdfforge(36) 2015-12-21 20:27 - 2015-12-21 20:27 - 00328524 _____ C:\Users\Ja\Downloads\108 - published.pdf 2015-12-21 20:03 - 2015-12-21 20:03 - 00147968 _____ C:\Users\Ja\Downloads\PL9999999995 (1).xls 2015-12-21 20:01 - 2015-12-21 20:01 - 00065536 _____ C:\Users\Ja\Downloads\PL9999999995.xls 2015-12-21 19:45 - 2015-12-22 01:04 - 01277383 _____ C:\Users\Ja\Downloads\Wycena Spółki Protea Sp. z o.o. ver 4.xlsx 2015-12-20 23:14 - 2015-12-20 23:15 - 02294296 _____ C:\Users\Ja\Downloads\ads (1) 2015-12-20 23:12 - 2015-12-20 23:12 - 02294296 _____ C:\Users\Ja\Downloads\ads 2015-12-19 14:35 - 2015-12-19 14:35 - 00035139 _____ C:\Users\Ja\Downloads\Karolina Trojanowska i Kamil Bloch T3 (2).pdf 2015-12-17 18:22 - 2015-12-17 18:22 - 00035989 _____ C:\Users\Ja\Downloads\Oświadczenie (1).pdf 2015-12-16 21:31 - 2015-12-16 21:32 - 01248114 _____ C:\Users\Ja\Downloads\Wycena Spółki Protea Sp. z o.o. ver 3 (1).xlsx 2015-12-16 20:30 - 2015-12-16 20:30 - 00035989 _____ C:\Users\Ja\Downloads\Oświadczenie.pdf 2015-12-16 20:12 - 2015-12-16 20:12 - 00063488 _____ C:\Users\Ja\Downloads\betaEurope.xls 2015-12-16 18:51 - 2015-12-16 21:31 - 01248114 _____ C:\Users\Ja\Downloads\Wycena Spółki Protea Sp. z o.o. ver 3.xlsx 2015-12-16 18:50 - 2015-12-20 21:03 - 00000000 ____D C:\Users\Ja\Desktop\wesele 2015-12-15 21:10 - 2015-12-15 21:10 - 00094142 _____ C:\Users\Ja\Downloads\bilans i RZiS za III kw 2015 (1).pdf 2015-12-15 20:41 - 2015-12-15 23:01 - 01233810 _____ C:\Users\Ja\Downloads\Wycena Spółki Protea Sp. z o.o. ver 1.xlsx 2015-12-15 20:24 - 2015-12-15 20:24 - 00000000 ____D C:\ProgramData\Microsoft OneDrive 2015-12-14 18:58 - 2015-12-14 18:58 - 00000000 ____D C:\Users\Ja\AppData\Roaming\AVG 2015-12-14 18:50 - 2015-12-29 13:48 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG Zen 2015-12-14 18:48 - 2015-12-14 18:50 - 00000000 ____D C:\ProgramData\Avg 2015-12-14 18:48 - 2015-12-14 18:50 - 00000000 ____D C:\Program Files\AVG 2015-12-13 19:38 - 2015-12-29 13:49 - 00000000 ____D C:\ProgramData\pdfforge 2015-12-13 19:37 - 2015-12-29 13:48 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDF Architect 4 2015-12-13 19:37 - 2015-12-13 19:41 - 00000000 ____D C:\Users\Ja\AppData\Roaming\PDF Architect 4 2015-12-13 19:36 - 2015-12-29 13:51 - 00000000 ____D C:\Program Files\PDF Architect 4 2015-12-13 19:36 - 2015-12-29 13:48 - 00000000 ____D C:\Program Files\Common Files\PDF Software 2015-12-13 19:35 - 2015-12-13 19:41 - 00000000 ____D C:\ProgramData\PDF Architect 4 2015-12-13 19:35 - 2015-12-13 19:35 - 00101256 _____ (pdfforge GmbH) C:\Windows\system32\pdfcmon.dll 2015-12-13 19:34 - 2015-12-29 23:31 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDFCreator 2015-12-13 19:34 - 2015-12-29 13:51 - 00000000 ____D C:\Program Files\PDFCreator 2015-12-13 19:33 - 2015-12-13 19:33 - 27005440 _____ (pdfforge GmbH) C:\Users\Ja\Downloads\PDFCreator-2_2_2-setup.exe 2015-12-13 13:24 - 2015-12-19 15:34 - 00000000 ____D C:\Users\Ja\AppData\LocalLow\uTorrent 2015-12-09 21:26 - 2015-12-09 21:26 - 01177933 _____ C:\Users\Ja\Downloads\Obrotówki zmodyfikowane (1).xlsx 2015-12-09 20:23 - 2015-12-09 21:18 - 01177933 _____ C:\Users\Ja\Downloads\Obrotówki zmodyfikowane .xlsx 2015-12-09 20:23 - 2015-12-09 20:23 - 00094142 _____ C:\Users\Ja\Downloads\bilans i RZiS za III kw 2015.pdf 2015-12-09 20:22 - 2015-12-09 21:23 - 00426285 _____ C:\Users\Ja\Downloads\Wycena Spółki Protea Sp. z o.o..xlsx 2015-12-09 19:57 - 2015-11-06 18:05 - 00627712 _____ (Microsoft Corporation) C:\Windows\system32\user32.dll 2015-12-09 19:57 - 2015-11-06 17:32 - 01029120 _____ (Microsoft Corporation) C:\Windows\system32\d3d10.dll 2015-12-09 19:57 - 2015-11-06 17:32 - 00219648 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1core.dll 2015-12-09 19:57 - 2015-11-06 17:32 - 00189952 _____ (Microsoft Corporation) C:\Windows\system32\d3d10core.dll 2015-12-09 19:57 - 2015-11-06 17:32 - 00160768 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1.dll 2015-12-09 19:57 - 2015-11-06 16:27 - 01172480 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll 2015-12-09 19:57 - 2015-11-06 16:26 - 00486400 _____ (Microsoft Corporation) C:\Windows\system32\d3d10level9.dll 2015-12-09 19:57 - 2015-11-06 16:24 - 02068480 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2015-12-09 19:57 - 2015-11-06 16:20 - 01073152 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll 2015-12-09 19:57 - 2015-11-06 16:20 - 00682496 _____ (Microsoft Corporation) C:\Windows\system32\d2d1.dll 2015-12-09 19:57 - 2015-11-06 16:19 - 00802304 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll 2015-12-09 19:51 - 2015-11-02 18:04 - 00179200 _____ (Microsoft Corporation) C:\Windows\system32\els.dll 2015-12-09 19:47 - 2015-11-05 08:26 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll 2015-12-09 19:45 - 2015-11-10 18:03 - 01208832 _____ (Microsoft Corporation) C:\Windows\system32\comsvcs.dll 2015-12-09 19:45 - 2015-11-10 18:03 - 00488448 _____ (Microsoft Corporation) C:\Windows\system32\catsrvut.dll 2015-12-09 19:45 - 2015-11-05 08:34 - 00113664 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rmcast.sys 2015-12-08 21:12 - 2015-12-08 21:12 - 00035139 _____ C:\Users\Ja\Downloads\Karolina Trojanowska i Kamil Bloch T3.pdf 2015-12-08 21:12 - 2015-12-08 21:12 - 00035139 _____ C:\Users\Ja\Downloads\Karolina Trojanowska i Kamil Bloch T3 (1).pdf 2015-12-06 21:46 - 2015-12-06 21:46 - 00501597 _____ C:\Users\Ja\Downloads\PRZYKŁADOWE TEKSTY ZAPROSZEŃ -T- Bella-Arte (2).pdf 2015-12-06 20:34 - 2015-12-06 20:34 - 00501597 _____ C:\Users\Ja\Downloads\PRZYKŁADOWE TEKSTY ZAPROSZEŃ -T- Bella-Arte (1).pdf 2015-12-06 20:18 - 2015-12-06 20:18 - 00000165 ____H C:\Users\Ja\Desktop\~$taniec.xlsx 2015-12-06 15:27 - 2015-12-06 15:28 - 00084998 _____ C:\Users\Ja\Downloads\Facet_pelen_uroku_ _Good_Luck_Chuck_ 2007 _[DVDRip]_[xvid-AC3]_[C79TeaM]_[Lektor_PL][Torrenty.org].torrent 2015-12-06 15:25 - 2015-12-06 15:25 - 00015044 _____ C:\Users\Ja\Downloads\Misery_ 1990 _[DVDRip XviD-NoGrp]_[Lektor_PL][Torrenty.org].torrent 2015-12-06 15:22 - 2015-12-06 15:22 - 00019996 _____ C:\Users\Ja\Downloads\Pokerowa_noc_-_Poker_Night_ 2014 _[480p]_[BRRip]_[XViD]_[AC3-LEGAL]_[Lektor_PL]_[dabrjarek][Torrenty.org].torrent 2015-12-06 15:21 - 2015-12-06 15:21 - 00056619 _____ C:\Users\Ja\Downloads\Rozgrywka_ _The_Two_Faces_of_January_ 2014 _[BRRip]_[XviD-J25]_[Lektor_PL][Torrenty.org].torrent 2015-12-06 15:19 - 2015-12-06 15:19 - 00014392 _____ C:\Users\Ja\Downloads\Hiena_-_Hyena_ 2014 _[BDRip]_[XviD-KiT]_[Lektor_PL]_[Predator][Torrenty.org].torrent 2015-12-06 00:20 - 2015-12-06 00:22 - 00000000 ____D C:\TGSoft 2015-12-06 00:20 - 2015-12-06 00:20 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TGSoft 2015-12-06 00:10 - 2015-12-06 00:10 - 00000000 ____D C:\Users\Ja\AppData\Local\WhittlesLaboriously 2015-12-04 08:39 - 2015-12-04 08:39 - 00610065 _____ C:\Users\Ja\Downloads\selection (34).pdf 2015-12-04 08:39 - 2015-12-04 08:39 - 00521133 _____ C:\Users\Ja\Downloads\selection (33).pdf 2015-12-04 08:38 - 2015-12-04 08:39 - 00639649 _____ C:\Users\Ja\Downloads\selection (32).pdf 2015-12-04 08:38 - 2015-12-04 08:38 - 00639649 _____ C:\Users\Ja\Downloads\selection (31).pdf 2015-12-04 08:37 - 2015-12-04 08:37 - 00629472 _____ C:\Users\Ja\Downloads\selection (27).pdf 2015-12-04 08:37 - 2015-12-04 08:37 - 00559872 _____ C:\Users\Ja\Downloads\selection (30).pdf 2015-12-04 08:37 - 2015-12-04 08:37 - 00559872 _____ C:\Users\Ja\Downloads\selection (29).pdf 2015-12-04 08:37 - 2015-12-04 08:37 - 00559872 _____ C:\Users\Ja\Downloads\selection (28).pdf 2015-12-04 08:36 - 2015-12-04 08:36 - 00540433 _____ C:\Users\Ja\Downloads\selection (24).pdf 2015-12-04 08:36 - 2015-12-04 08:36 - 00498812 _____ C:\Users\Ja\Downloads\selection (26).pdf 2015-12-04 08:36 - 2015-12-04 08:36 - 00399553 _____ C:\Users\Ja\Downloads\selection (25).pdf 2015-12-04 08:35 - 2015-12-04 08:35 - 00572621 _____ C:\Users\Ja\Downloads\selection (23).pdf 2015-12-04 08:34 - 2015-12-04 08:34 - 00981202 _____ C:\Users\Ja\Downloads\selection (22).pdf 2015-12-04 08:34 - 2015-12-04 08:34 - 00458032 _____ C:\Users\Ja\Downloads\selection (21).pdf 2015-12-04 08:33 - 2015-12-04 08:33 - 00520141 _____ C:\Users\Ja\Downloads\selection (20).pdf 2015-12-04 08:32 - 2015-12-04 08:32 - 00453169 _____ C:\Users\Ja\Downloads\selection (19).pdf 2015-12-04 08:32 - 2015-12-04 08:32 - 00453169 _____ C:\Users\Ja\Downloads\selection (18).pdf 2015-12-04 08:31 - 2015-12-04 08:31 - 00983569 _____ C:\Users\Ja\Downloads\selection (17).pdf 2015-12-04 08:30 - 2015-12-04 08:30 - 00583337 _____ C:\Users\Ja\Downloads\selection (15).pdf 2015-12-04 08:30 - 2015-12-04 08:30 - 00490577 _____ C:\Users\Ja\Downloads\selection (16).pdf 2015-12-04 08:29 - 2015-12-04 08:30 - 00427728 _____ C:\Users\Ja\Downloads\selection (14).pdf 2015-12-04 08:29 - 2015-12-04 08:29 - 01042914 _____ C:\Users\Ja\Downloads\selection (13).pdf 2015-12-04 08:28 - 2015-12-04 08:28 - 01055823 _____ C:\Users\Ja\Downloads\selection (11).pdf 2015-12-04 08:28 - 2015-12-04 08:28 - 01055823 _____ C:\Users\Ja\Downloads\selection (10).pdf 2015-12-04 08:28 - 2015-12-04 08:28 - 00773358 _____ C:\Users\Ja\Downloads\selection (12).pdf 2015-12-04 08:27 - 2015-12-04 08:27 - 00732285 _____ C:\Users\Ja\Downloads\selection (8).pdf 2015-12-04 08:27 - 2015-12-04 08:27 - 00732285 _____ C:\Users\Ja\Downloads\selection (7).pdf 2015-12-04 08:27 - 2015-12-04 08:27 - 00475553 _____ C:\Users\Ja\Downloads\selection (9).pdf 2015-12-04 08:26 - 2015-12-04 08:26 - 00693453 _____ C:\Users\Ja\Downloads\selection (5).pdf 2015-12-04 08:26 - 2015-12-04 08:26 - 00632129 _____ C:\Users\Ja\Downloads\selection (6).pdf 2015-12-04 08:26 - 2015-12-04 08:26 - 00482897 _____ C:\Users\Ja\Downloads\selection (4).pdf 2015-12-04 08:25 - 2015-12-04 08:25 - 00850289 _____ C:\Users\Ja\Downloads\selection (3).pdf 2015-12-04 08:25 - 2015-12-04 08:25 - 00595725 _____ C:\Users\Ja\Downloads\selection (2).pdf 2015-12-04 08:24 - 2015-12-04 08:24 - 02072192 _____ C:\Users\Ja\Downloads\selection.pdf 2015-12-04 08:24 - 2015-12-04 08:24 - 00633393 _____ C:\Users\Ja\Downloads\selection (1).pdf 2015-12-04 08:22 - 2015-12-04 08:22 - 02936353 _____ C:\Users\Ja\Downloads\7.pdf 2015-12-04 08:22 - 2015-12-04 08:22 - 02860538 _____ C:\Users\Ja\Downloads\4.pdf 2015-12-04 08:22 - 2015-12-04 08:22 - 02435602 _____ C:\Users\Ja\Downloads\6.pdf 2015-12-04 08:22 - 2015-12-04 08:22 - 02071477 _____ C:\Users\Ja\Downloads\1.pdf 2015-12-04 08:22 - 2015-12-04 08:22 - 01763288 _____ C:\Users\Ja\Downloads\10.pdf 2015-12-04 08:22 - 2015-12-04 08:22 - 01683530 _____ C:\Users\Ja\Downloads\2.pdf 2015-12-04 08:22 - 2015-12-04 08:22 - 01676943 _____ C:\Users\Ja\Downloads\8.pdf 2015-12-04 08:22 - 2015-12-04 08:22 - 01321806 _____ C:\Users\Ja\Downloads\3.pdf 2015-12-04 08:22 - 2015-12-04 08:22 - 01007296 _____ C:\Users\Ja\Downloads\5.pdf 2015-12-04 08:22 - 2015-12-04 08:22 - 00649540 _____ C:\Users\Ja\Downloads\11.pdf 2015-12-04 08:22 - 2015-12-04 08:22 - 00565844 _____ C:\Users\Ja\Downloads\9.pdf 2015-12-02 20:32 - 2015-12-02 20:32 - 00501597 _____ C:\Users\Ja\Downloads\PRZYKŁADOWE TEKSTY ZAPROSZEŃ -T- Bella-Arte.pdf 2015-12-02 20:22 - 2015-12-29 13:48 - 00000000 ____D C:\Program Files\Audacity 2015-12-02 20:22 - 2015-12-03 23:02 - 00000000 ____D C:\Users\Ja\AppData\Roaming\Audacity 2015-12-02 20:22 - 2015-12-02 20:22 - 00000821 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Audacity.lnk 2015-12-02 20:22 - 2015-12-02 20:22 - 00000809 _____ C:\Users\Public\Desktop\Audacity.lnk 2015-12-02 20:20 - 2015-12-02 20:20 - 24210616 _____ (Audacity Team ) C:\Users\Ja\Downloads\audacity-win-2.1.0.exe 2015-12-02 20:20 - 2015-12-02 20:20 - 00000000 ____D C:\Users\Ja\AppData\Local\PrecipitatenessTootsy 2015-12-01 21:10 - 2015-12-01 21:10 - 00137815 _____ C:\Users\Ja\Downloads\Asortyment (1).xlsx 2015-12-01 21:00 - 2015-12-01 21:00 - 00137815 _____ C:\Users\Ja\Downloads\Asortyment.xlsx 2015-12-01 11:42 - 2015-12-01 11:42 - 00761540 _____ C:\Users\Ja\Downloads\DOC243.pdf ==================== Jeden miesiąc - zmodyfikowane pliki i foldery ======== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2015-12-29 23:34 - 2015-06-29 22:23 - 00000000 ____D C:\ProgramData\MFAData 2015-12-29 23:33 - 2006-11-02 14:01 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2015-12-29 23:33 - 2006-11-02 13:47 - 00003616 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0 2015-12-29 23:33 - 2006-11-02 13:47 - 00003616 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0 2015-12-29 23:32 - 2006-11-02 14:01 - 00032548 _____ C:\Windows\Tasks\SCHEDLGU.TXT 2015-12-29 23:31 - 2015-08-08 08:43 - 00000000 ____D C:\Windows\Minidump 2015-12-29 21:03 - 2015-06-29 22:20 - 00000000 ____D C:\Program Files\Mozilla Maintenance Service 2015-12-29 18:25 - 2006-11-02 12:18 - 00000000 ____D C:\Windows 2015-12-29 14:48 - 2008-12-08 16:54 - 00000000 ____D C:\Program Files\Google 2015-12-29 14:38 - 2015-11-10 21:43 - 00000000 ____D C:\Users\Ja\AppData\Local\ApplicationHistory 2015-12-29 14:32 - 2015-06-30 17:31 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG 2015-12-29 13:51 - 2015-06-29 21:41 - 00000000 ____D C:\Users\Ja 2015-12-29 13:51 - 2006-11-02 12:18 - 00000000 ____D C:\Windows\system32\Msdtc 2015-12-29 13:51 - 2006-11-02 11:22 - 53739520 _____ C:\Windows\system32\config\software_previous 2015-12-29 13:51 - 2006-11-02 11:22 - 46923776 _____ C:\Windows\system32\config\components_previous 2015-12-29 13:51 - 2006-11-02 11:22 - 27000832 _____ C:\Windows\system32\config\system_previous 2015-12-29 13:51 - 2006-11-02 11:22 - 00524288 _____ C:\Windows\system32\config\default_previous 2015-12-29 13:51 - 2006-11-02 11:22 - 00262144 _____ C:\Windows\system32\config\security_previous 2015-12-29 13:51 - 2006-11-02 11:22 - 00262144 _____ C:\Windows\system32\config\sam_previous 2015-12-29 13:49 - 2015-07-01 21:35 - 00000000 ____D C:\Users\Ja\AppData\Local\Microsoft Help 2015-12-29 13:49 - 2015-07-01 19:54 - 00000000 ____D C:\Users\Ja\AppData\Roaming\uTorrent 2015-12-29 13:49 - 2006-11-02 12:18 - 00000000 ____D C:\Windows\system32\spool 2015-12-29 13:49 - 2006-11-02 12:18 - 00000000 ____D C:\Windows\inf 2015-12-29 13:48 - 2015-08-22 12:02 - 00000000 ____D C:\Program Files\drukarka 2015-12-29 13:48 - 2006-11-02 12:18 - 00000000 ____D C:\Windows\registration 2015-12-22 18:36 - 2015-07-09 16:55 - 00000000 ____D C:\Users\Ja\AppData\Local\Avg 2015-12-14 22:34 - 2015-08-18 20:11 - 00000000 ____D C:\Users\Ja\AppData\Roaming\Skype 2015-12-14 18:57 - 2015-06-30 17:30 - 00000000 ____D C:\ProgramData\AVG2015 2015-12-13 20:04 - 2015-08-18 20:11 - 00000000 ____D C:\ProgramData\Skype 2015-12-10 17:28 - 2006-11-02 12:18 - 00000000 ____D C:\Windows\rescache 2015-12-10 17:12 - 2006-11-02 13:47 - 00413544 _____ C:\Windows\system32\FNTCACHE.DAT 2015-12-10 17:10 - 2015-07-31 14:18 - 00000000 ____D C:\Program Files\Microsoft Silverlight 2015-12-09 22:45 - 2006-11-02 13:37 - 00000000 ____D C:\Windows\system32\XPSViewer 2015-12-09 20:00 - 2008-12-08 16:59 - 00000000 ____D C:\ProgramData\Microsoft Help 2015-12-09 19:59 - 2015-07-31 14:18 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight 2015-12-09 19:54 - 2008-01-21 07:24 - 01676762 _____ C:\Windows\system32\PerfStringBackup.INI 2015-12-09 19:54 - 2008-01-21 07:24 - 00728458 _____ C:\Windows\system32\perfh015.dat 2015-12-09 19:54 - 2008-01-21 07:24 - 00153492 _____ C:\Windows\system32\perfc015.dat 2015-12-09 19:44 - 2015-07-01 16:09 - 00000000 ____D C:\Windows\system32\MRT 2015-12-09 19:27 - 2006-11-02 11:24 - 137798368 _____ (Microsoft Corporation) C:\Windows\system32\mrt.exe 2015-12-06 22:52 - 2015-07-01 20:34 - 00000000 ____D C:\Users\Ja\Documents\wesele 2015-12-06 21:00 - 2015-08-08 08:43 - 313166658 _____ C:\Windows\MEMORY.DMP 2015-12-06 18:36 - 2015-06-29 22:20 - 00000863 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk 2015-12-06 18:36 - 2015-06-29 21:47 - 00000954 _____ C:\Users\Ja\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk ==================== Pliki w katalogu głównym wybranych folderów ======= 2015-10-26 22:02 - 2015-10-26 22:02 - 0000680 _____ () C:\Users\Ja\AppData\Local\d3d9caps.dat 2015-11-10 21:43 - 2015-11-10 21:43 - 0000090 _____ () C:\Users\Ja\AppData\Local\fusioncache.dat ==================== Bamital & volsnap ================= (Brak automatycznej naprawy dla plików które nie przeszły weryfikacji.) C:\Windows\explorer.exe => Plik podpisany cyfrowo C:\Windows\system32\winlogon.exe => Plik podpisany cyfrowo C:\Windows\system32\wininit.exe => Plik podpisany cyfrowo C:\Windows\system32\svchost.exe => Plik podpisany cyfrowo C:\Windows\system32\services.exe => Plik podpisany cyfrowo C:\Windows\system32\User32.dll => Plik podpisany cyfrowo C:\Windows\system32\userinit.exe => Plik podpisany cyfrowo C:\Windows\system32\rpcss.dll => Plik podpisany cyfrowo C:\Windows\system32\dnsapi.dll => Plik podpisany cyfrowo C:\Windows\system32\Drivers\volsnap.sys => Plik podpisany cyfrowo LastRegBack: 2015-12-29 23:41 ==================== Koniec FRST.txt ============================