Rezultaty skanowania Farbar Recovery Scan Tool (FRST) (x64) Wersja: 21-08-2016 01 Uruchomiony przez Kamyk (administrator) LENOVO-PC (24-08-2016 19:59:24) Uruchomiony z C:\Users\Kamyk\Downloads Załadowane profile: Kamyk (Dostępne profile: Kamyk) Platform: Windows 8.1 Connected (Update) (X64) Język: Polski (Polska) Internet Explorer Wersja 11 (Domyślna przeglądarka: "C:\Users\Kamyk\AppData\Local\Vivaldi\Application\vivaldi.exe" -- "%1") Tryb startu: Normal Instrukcja obsługi Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Procesy (filtrowane) ================= (Załączenie wejścia w fixlist spowoduje zamknięcie procesu. Powiązany plik nie zostanie przeniesiony.) (Intel Corporation) C:\Windows\System32\igfxCUIService.exe (Microsoft Corporation) C:\Windows\System32\wlanext.exe () C:\Program Files (x86)\Realtek\Realtek Bluetooth\BTDevMgr.exe (Intel Corporation) C:\Windows\SysWOW64\IntelCpHeciSvc.exe (Intel Corporation) C:\Windows\System32\DptfParticipantProcessorService.exe (Intel Corporation) C:\Windows\System32\DptfPolicyCriticalService.exe (Intel(R) Corporation) C:\Program Files\Intel\TXE Components\TCS\HeciServer.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe (Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe (Intel Corporation) C:\Windows\System32\igfxEM.exe (Intel Corporation) C:\Windows\System32\igfxTray.exe (Intel Corporation) C:\Windows\System32\igfxHK.exe (Realtek Semiconductor Corporation) C:\Program Files (x86)\Realtek\Realtek Bluetooth\BTServer.exe (Microsoft Corporation) C:\Program Files\Windows Defender\NisSrv.exe (Microsoft Corporation) C:\Program Files\Windows Defender\MpCmdRun.exe (Microsoft Corporation) C:\Windows\System32\msiexec.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe ==================== Rejestr (filtrowane) =========================== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.) HKU\S-1-5-21-1059240088-3536501115-2251627806-1001\...\MountPoints2: {0e2efa33-2f82-11e5-8269-2c337a3c1a9e} - "F:\autoplay.exe" HKU\S-1-5-21-1059240088-3536501115-2251627806-1001\...\MountPoints2: {0e2efbf0-2f82-11e5-8269-2c337a3c1a9e} - "G:\SETUP.EXE" HKU\S-1-5-21-1059240088-3536501115-2251627806-1001\...\MountPoints2: {64ccf635-8b43-11e5-827f-2c337a3c1a9e} - "H:\setup.exe" HKU\S-1-5-21-1059240088-3536501115-2251627806-1001\...\MountPoints2: {bb042f91-6602-11e6-82a1-2c337a3c1a9e} - "H:\autorun.exe" HKU\S-1-5-21-1059240088-3536501115-2251627806-1001\...\MountPoints2: {e9a5fb12-16aa-11e5-825c-2c337a3c1a9e} - "E:\autorun.exe" AppInit_DLLs: C:\PROGRA~2\LENOVO~1\LENOVO~1\bin\SPVC64~1.DLL => Brak pliku AppInit_DLLs: C:\PROGRA~2\Amazon\AMAZON~1\AMAZON~2.DLL => Brak pliku AppInit_DLLs-x32: C:\PROGRA~2\LENOVO~1\LENOVO~1\bin\SPVC32~1.DLL => Brak pliku AppInit_DLLs-x32: C:\PROGRA~2\Amazon\AMAZON~1\AMAZON~3.DLL => Brak pliku Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\lnk_disabled [2016-08-24] () Startup: C:\Users\Kamyk\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\lnk_disabled [2016-08-24] () ==================== Internet (filtrowane) ==================== (Załączenie wejścia w fixlist, w przypadku gdy jest to obiekt rejestru, spowoduje usunięcie go z rejestru lub przywrócenie jego domyślnej postaci.) Tcpip\Parameters: [DhcpNameServer] 10.0.0.1 Tcpip\..\Interfaces\{24BBBF8C-C4E6-46CF-A57B-1AC479A2A3A7}: [DhcpNameServer] 192.168.0.1 Tcpip\..\Interfaces\{56DE81BA-B765-4964-9CEC-B488DF7DA57E}: [DhcpNameServer] 10.0.0.1 Internet Explorer: ================== HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.com HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.com HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.google.com HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.google.com HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.google.com HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.google.com HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.google.com HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.google.com HKU\S-1-5-21-1059240088-3536501115-2251627806-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://go.microsoft.com/fwlink/p/?LinkId=619797&pc=UE07&ocid=UE07DHP HKU\S-1-5-21-1059240088-3536501115-2251627806-1001\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://www.msn.com/pl-pl/?pc=UE07&ocid=UE07DHP SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKLM-x32 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKLM-x32 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-21-1059240088-3536501115-2251627806-1001 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = FireFox: ======== FF ProfilePath: C:\Users\Kamyk\AppData\Roaming\Mozilla\Firefox\Profiles\oa98inh9.default FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_19_0_0_245.dll [2015-12-06] () FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_19_0_0_245.dll [2015-12-06] () FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation) FF Plugin-x32: @videolan.org/vlc,version=2.2.1 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [Brak pliku] FF Extension: "Comp Touch - C:\Users\Kamyk\AppData\Roaming\Mozilla\Firefox\Profiles\oa98inh9.default\Extensions\@479B8520BA88F8644C2585977C6054E4479B.xpi [2015-11-21] [Brak podpisu cyfrowego] FF ExtraCheck: C:\Program Files (x86)\mozilla firefox\defaults\pref\!479B8520BA88F8644C2585977C6054E4479B.js [2015-11-21] <==== UWAGA FF ExtraCheck: C:\Program Files (x86)\mozilla firefox\479B8520BA88F8644C2585977C6054E4479B [2015-11-21] <==== UWAGA Chrome: ======= CHR HKU\S-1-5-21-1059240088-3536501115-2251627806-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [lmjegmlicamnimmfhcmpkclmigmmcbeh] - hxxps://clients2.google.com/service/update2/crx ==================== Usługi (filtrowane) ======================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) R2 BTDevManager; C:\Program Files (x86)\REALTEK\Realtek Bluetooth\BTDevMgr.exe [84992 2014-01-22] () [Brak podpisu cyfrowego] R2 DptfParticipantAcpiProcessorService; C:\Windows\system32\DptfParticipantProcessorService.exe [117704 2013-09-17] (Intel Corporation) R2 DptfPolicyCriticalService; C:\Windows\system32\DptfPolicyCriticalService.exe [150760 2013-09-17] (Intel Corporation) R2 igfxCUIService1.0.0.0; C:\Windows\system32\igfxCUIService.exe [296432 2014-04-09] (Intel Corporation) R2 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\TXE Components\TCS\HeciServer.exe [733696 2013-07-01] (Intel(R) Corporation) [Brak podpisu cyfrowego] S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\TXE Components\TCS\SocketHeciServer.exe [822232 2013-07-01] (Intel(R) Corporation) R2 SynTPEnhService; C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe [190192 2014-01-21] (Synaptics Incorporated) S3 vmicvss; C:\Windows\System32\ICSvc.dll [524800 2014-10-29] (Microsoft Corporation) R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [366552 2015-07-07] (Microsoft Corporation) R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23824 2015-07-07] (Microsoft Corporation) ===================== Sterowniki (filtrowane) ========================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) R3 DptfDevAcpiProc; C:\Windows\system32\DRIVERS\DptfDevAcpiProc.sys [198808 2013-09-17] (Intel Corporation) R3 DptfManager; C:\Windows\system32\DRIVERS\DptfManager.sys [493240 2013-09-17] (Intel Corporation) S3 dtlitescsibus; C:\Windows\System32\drivers\dtlitescsibus.sys [30264 2016-08-19] (Disc Soft Ltd) S3 dtliteusbbus; C:\Windows\System32\drivers\dtliteusbbus.sys [47672 2016-08-19] (Disc Soft Ltd) S0 ebdrv; C:\Windows\System32\drivers\evbda.sys [3357024 2013-08-22] (Broadcom Corporation) R0 MBI; C:\Windows\System32\drivers\MBI.sys [29464 2013-10-10] (Intel Corporation) S0 mfeelamk; C:\Windows\System32\drivers\mfeelamk.sys [80920 2015-07-02] (McAfee, Inc.) S3 NETwNe64; C:\Windows\system32\DRIVERS\NETwew02.sys [4649440 2013-06-18] (Intel Corporation) R3 RtkBtFilter; C:\Windows\system32\DRIVERS\RtkBtfilter.sys [558296 2014-02-17] (Realtek Semiconductor Corporation) R3 RTWlanE; C:\Windows\system32\DRIVERS\rtwlane.sys [3301592 2014-02-20] (Realtek Semiconductor Corporation ) S4 secdrv; C:\Windows\SysWow64\Drivers\secdrv.sys [163644 2016-07-16] (Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K.) [Brak podpisu cyfrowego] R3 SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [31472 2014-01-21] (Synaptics Incorporated) R3 TXEIx64; C:\Windows\System32\drivers\TXEIx64.sys [88592 2014-01-15] (Intel Corporation) S3 USBAAPL64; C:\Windows\System32\Drivers\usbaapl64.sys [54784 2014-08-15] (Apple, Inc.) [Brak podpisu cyfrowego] S0 WdBoot; C:\Windows\System32\drivers\WdBoot.sys [44560 2015-07-07] (Microsoft Corporation) R0 WdFilter; C:\Windows\System32\drivers\WdFilter.sys [270168 2015-07-07] (Microsoft Corporation) R2 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [114520 2015-07-07] (Microsoft Corporation) S3 vmci; \SystemRoot\System32\drivers\vmci.sys [X] S3 VMnetAdapter; \SystemRoot\system32\DRIVERS\vmnetadapter.sys [X] U3 fxlyrpog; \??\C:\Users\Kamyk\AppData\Local\Temp\fxlyrpog.sys [X] ==================== NetSvcs (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) ==================== Jeden miesiąc - utworzone pliki i foldery ======== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2016-08-24 19:59 - 2016-08-24 20:00 - 00011103 _____ C:\Users\Kamyk\Downloads\FRST.txt 2016-08-24 19:59 - 2016-08-24 19:59 - 00000755 _____ C:\Users\Kamyk\Desktop\GMER.txt 2016-08-24 19:56 - 2016-08-24 19:56 - 02396672 _____ (Farbar) C:\Users\Kamyk\Downloads\FRST64.exe 2016-08-24 19:56 - 2016-08-24 19:56 - 00380928 _____ C:\Users\Kamyk\Downloads\fdvd54jt.exe 2016-08-24 19:28 - 2016-08-24 19:29 - 03784256 _____ C:\Users\Kamyk\Downloads\adwcleaner_6.000.exe 2016-08-24 19:19 - 2016-08-24 19:19 - 00000845 _____ C:\Users\Public\Desktop\CCleaner.lnk 2016-08-24 19:19 - 2016-08-24 19:19 - 00000000 ____D C:\Program Files\CCleaner 2016-08-24 19:17 - 2016-08-24 19:17 - 08227032 _____ (Piriform Ltd) C:\Users\Kamyk\Downloads\ccsetup521.exe 2016-08-24 18:20 - 2016-08-24 19:13 - 00000000 ____D C:\WINDOWS\LastGood.Tmp 2016-08-24 18:19 - 2014-04-09 10:03 - 04340720 _____ (Intel Corporation) C:\WINDOWS\system32\Gfxv4_0.exe 2016-08-24 18:19 - 2014-04-09 10:03 - 04337136 _____ (Intel Corporation) C:\WINDOWS\system32\Gfxv2_0.exe 2016-08-24 18:19 - 2014-04-09 10:03 - 02478640 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiVAD64.exe 2016-08-24 18:19 - 2014-04-09 10:03 - 00930288 _____ (Intel Corporation) C:\WINDOWS\system32\GfxUIEx.exe 2016-08-24 18:19 - 2014-04-09 10:03 - 00544240 _____ (Intel Corporation) C:\WINDOWS\system32\DPTopologyApp.exe 2016-08-24 18:19 - 2014-04-09 10:03 - 00543728 _____ (Intel Corporation) C:\WINDOWS\system32\DPTopologyAppv2_0.exe 2016-08-24 18:19 - 2014-04-09 10:03 - 00416240 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiUMS64.exe 2016-08-24 18:19 - 2014-04-09 10:03 - 00393200 _____ (Intel Corporation) C:\WINDOWS\system32\CustomModeApp.exe 2016-08-24 18:19 - 2014-04-09 10:03 - 00392688 _____ (Intel Corporation) C:\WINDOWS\system32\CustomModeAppv2_0.exe 2016-08-24 18:19 - 2014-04-09 10:03 - 00279024 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\IntelCpHeciSvc.exe 2016-08-24 18:19 - 2014-04-09 10:03 - 00191472 _____ (Intel Corporation) C:\WINDOWS\system32\igfxext.exe 2016-08-24 18:19 - 2014-04-09 10:03 - 00153072 _____ (Intel Corporation) C:\WINDOWS\system32\difx64.exe 2016-08-24 18:19 - 2014-03-31 13:28 - 00450520 _____ (Intel(R) Corporation) C:\WINDOWS\system32\Drivers\IntcDAud.sys 2016-08-24 18:19 - 2014-03-31 13:26 - 27006552 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igd10iumd32.dll 2016-08-24 18:19 - 2014-03-31 13:26 - 26175360 _____ (Intel Corporation) C:\WINDOWS\system32\igdumdim64.dll 2016-08-24 18:19 - 2014-03-31 13:26 - 25714944 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdumdim32.dll 2016-08-24 18:19 - 2014-03-31 13:26 - 03645112 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdusc32.dll 2016-08-24 18:19 - 2014-03-31 13:26 - 01137080 _____ (Intel Corporation) C:\WINDOWS\system32\iglhsip64.dll 2016-08-24 18:19 - 2014-03-31 13:26 - 01132960 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\iglhsip32.dll 2016-08-24 18:19 - 2014-03-31 13:26 - 00428416 _____ C:\WINDOWS\system32\igdmd64.dll 2016-08-24 18:19 - 2014-03-31 13:26 - 00344480 _____ C:\WINDOWS\SysWOW64\igdmd32.dll 2016-08-24 18:19 - 2014-03-31 13:26 - 00218808 _____ (Intel Corporation) C:\WINDOWS\system32\iglhcp64.dll 2016-08-24 18:19 - 2014-03-31 13:26 - 00187408 _____ (Intel Corporation) C:\WINDOWS\system32\igfxcmrt64.dll 2016-08-24 18:19 - 2014-03-31 13:26 - 00183800 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\iglhcp32.dll 2016-08-24 18:19 - 2014-03-31 13:26 - 00158032 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igfxcmrt32.dll 2016-08-24 18:19 - 2014-03-31 13:26 - 00080312 _____ C:\WINDOWS\system32\igfxexps.dll 2016-08-24 18:19 - 2014-03-31 13:26 - 00002568 _____ C:\WINDOWS\system32\iglhxs64.vp 2016-08-24 18:19 - 2014-03-31 13:24 - 08107520 _____ (Intel Corporation) C:\WINDOWS\system32\ig7icd64.dll 2016-08-24 18:19 - 2014-03-31 13:24 - 06379008 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\ig7icd32.dll 2016-08-24 18:19 - 2014-03-31 13:24 - 03785216 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\igdkmd64.sys 2016-08-24 18:19 - 2014-03-31 13:24 - 00373248 _____ (Intel Corporation) C:\WINDOWS\system32\igfxOSP.dll 2016-08-24 18:19 - 2014-03-31 13:24 - 00223744 _____ C:\WINDOWS\system32\igdde64.dll 2016-08-24 18:19 - 2014-03-31 13:24 - 00187348 _____ C:\WINDOWS\system32\resTHA.cui 2016-08-24 18:19 - 2014-03-31 13:24 - 00183296 _____ C:\WINDOWS\SysWOW64\igdde32.dll 2016-08-24 18:19 - 2014-03-31 13:24 - 00180164 _____ C:\WINDOWS\system32\resELL.cui 2016-08-24 18:19 - 2014-03-31 13:24 - 00176020 _____ C:\WINDOWS\system32\resRUS.cui 2016-08-24 18:19 - 2014-03-31 13:24 - 00161876 _____ C:\WINDOWS\system32\resARA.cui 2016-08-24 18:19 - 2014-03-31 13:24 - 00161332 _____ C:\WINDOWS\system32\resHEB.cui 2016-08-24 18:19 - 2014-03-31 13:24 - 00161268 _____ C:\WINDOWS\system32\resJPN.cui 2016-08-24 18:19 - 2014-03-31 13:24 - 00160256 _____ C:\WINDOWS\system32\igdail64.dll 2016-08-24 18:19 - 2014-03-31 13:24 - 00156692 _____ C:\WINDOWS\system32\resFRA.cui 2016-08-24 18:19 - 2014-03-31 13:24 - 00156676 _____ C:\WINDOWS\system32\resHUN.cui 2016-08-24 18:19 - 2014-03-31 13:24 - 00154980 _____ C:\WINDOWS\system32\resKOR.cui 2016-08-24 18:19 - 2014-03-31 13:24 - 00154884 _____ C:\WINDOWS\system32\resITA.cui 2016-08-24 18:19 - 2014-03-31 13:24 - 00154884 _____ C:\WINDOWS\system32\resDEU.cui 2016-08-24 18:19 - 2014-03-31 13:24 - 00154724 _____ C:\WINDOWS\system32\resROM.cui 2016-08-24 18:19 - 2014-03-31 13:24 - 00154612 _____ C:\WINDOWS\system32\resESN.cui 2016-08-24 18:19 - 2014-03-31 13:24 - 00154180 _____ C:\WINDOWS\system32\resPLK.cui 2016-08-24 18:19 - 2014-03-31 13:24 - 00154036 _____ C:\WINDOWS\system32\resSKY.cui 2016-08-24 18:19 - 2014-03-31 13:24 - 00153844 _____ C:\WINDOWS\system32\resNLD.cui 2016-08-24 18:19 - 2014-03-31 13:24 - 00153284 _____ C:\WINDOWS\system32\resPTB.cui 2016-08-24 18:19 - 2014-03-31 13:24 - 00153140 _____ C:\WINDOWS\system32\resTRK.cui 2016-08-24 18:19 - 2014-03-31 13:24 - 00153108 _____ C:\WINDOWS\system32\resCSY.cui 2016-08-24 18:19 - 2014-03-31 13:24 - 00152980 _____ C:\WINDOWS\system32\resPTG.cui 2016-08-24 18:19 - 2014-03-31 13:24 - 00152564 _____ C:\WINDOWS\system32\resFIN.cui 2016-08-24 18:19 - 2014-03-31 13:24 - 00152132 _____ C:\WINDOWS\system32\resHRV.cui 2016-08-24 18:19 - 2014-03-31 13:24 - 00151684 _____ C:\WINDOWS\system32\resSVE.cui 2016-08-24 18:19 - 2014-03-31 13:24 - 00151508 _____ C:\WINDOWS\system32\resSLV.cui 2016-08-24 18:19 - 2014-03-31 13:24 - 00150580 _____ C:\WINDOWS\system32\resNOR.cui 2016-08-24 18:19 - 2014-03-31 13:24 - 00150068 _____ C:\WINDOWS\system32\resDAN.cui 2016-08-24 18:19 - 2014-03-31 13:24 - 00148756 _____ C:\WINDOWS\system32\resENU.cui 2016-08-24 18:19 - 2014-03-31 13:24 - 00146980 _____ C:\WINDOWS\system32\resCHT.cui 2016-08-24 18:19 - 2014-03-31 13:24 - 00146148 _____ C:\WINDOWS\system32\resCHS.cui 2016-08-24 18:19 - 2014-03-31 13:24 - 00142848 _____ C:\WINDOWS\SysWOW64\igdail32.dll 2016-08-24 18:19 - 2014-03-31 13:24 - 00068608 _____ C:\WINDOWS\SysWOW64\igfxexps32.dll 2016-08-24 18:19 - 2014-03-31 13:24 - 00010240 _____ ( ) C:\WINDOWS\system32\igfxEMLibv2_0.dll 2016-08-24 18:19 - 2014-03-31 13:24 - 00010240 _____ ( ) C:\WINDOWS\system32\igfxEMLib.dll 2016-08-24 18:19 - 2014-03-31 13:24 - 00005120 _____ ( ) C:\WINDOWS\system32\igfxLHMLibv2_0.dll 2016-08-24 18:19 - 2014-03-31 13:24 - 00005120 _____ ( ) C:\WINDOWS\system32\igfxLHMLib.dll 2016-08-24 18:19 - 2014-03-31 13:23 - 00734208 _____ (Intel Corporation) C:\WINDOWS\system32\MetroIntelGenericUIFramework.dll 2016-08-24 18:19 - 2014-03-31 13:23 - 00254976 _____ C:\WINDOWS\system32\igfxCPL.cpl 2016-08-24 18:19 - 2014-03-31 13:23 - 00209920 _____ (Intel Corporation) C:\WINDOWS\system32\igfxDTCM.dll 2016-08-24 18:19 - 2014-03-31 13:23 - 00069632 _____ C:\WINDOWS\system32\igfxCUIServicePS.dll 2016-08-24 18:19 - 2014-03-31 13:23 - 00069632 _____ ( ) C:\WINDOWS\system32\igfxDHLibv2_0.dll 2016-08-24 18:19 - 2014-03-31 13:23 - 00057344 _____ ( ) C:\WINDOWS\system32\igfxDHLib.dll 2016-08-24 18:19 - 2014-03-31 13:23 - 00010752 _____ ( ) C:\WINDOWS\system32\igfxDILib.dll 2016-08-24 18:19 - 2014-03-31 13:23 - 00010240 _____ ( ) C:\WINDOWS\system32\igfxDILibv2_0.dll 2016-08-24 18:19 - 2014-03-31 13:19 - 18030592 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdfcl32.dll 2016-08-24 18:19 - 2014-03-31 13:19 - 01553920 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdrcl32.dll 2016-08-24 18:19 - 2014-03-31 13:19 - 00291328 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdbcl32.dll 2016-08-24 18:19 - 2014-03-31 13:19 - 00265216 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\IntelOpenCL32.dll 2016-08-24 18:19 - 2014-03-31 13:18 - 23046656 _____ (Intel Corporation) C:\WINDOWS\system32\igdfcl64.dll 2016-08-24 18:19 - 2014-03-31 13:18 - 01674752 _____ (Intel Corporation) C:\WINDOWS\system32\igdrcl64.dll 2016-08-24 18:19 - 2014-03-31 13:18 - 00330240 _____ (Intel Corporation) C:\WINDOWS\system32\igdbcl64.dll 2016-08-24 18:19 - 2014-03-31 13:18 - 00320512 _____ (Intel Corporation) C:\WINDOWS\system32\IntelOpenCL64.dll 2016-08-24 18:19 - 2014-03-31 13:13 - 04011168 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiAAC64.dll 2016-08-24 18:19 - 2014-03-31 13:13 - 01455776 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiSecureSourceFilter64.dll 2016-08-24 18:19 - 2014-03-31 13:13 - 00790688 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiWinNextAgent64.dll 2016-08-24 18:19 - 2014-03-31 13:13 - 00646304 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiAudioFilter64.dll 2016-08-24 18:19 - 2014-03-31 13:13 - 00603296 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiMux64.dll 2016-08-24 18:19 - 2014-03-31 13:13 - 00344736 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiSilenceFilter64.dll 2016-08-24 18:19 - 2014-03-31 13:13 - 00210592 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiUtils64.dll 2016-08-24 18:19 - 2014-03-31 13:13 - 00177824 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiDDEAgent64.dll 2016-08-24 18:19 - 2014-03-31 13:13 - 00128672 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiMCUMD64.dll 2016-08-24 18:19 - 2014-03-31 13:13 - 00094368 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiLogServer64.dll 2016-08-24 18:19 - 2014-03-28 19:06 - 02019840 _____ (Intel Corporation) C:\WINDOWS\system32\igfxcmjit64.dll 2016-08-24 18:19 - 2014-03-28 19:06 - 01753088 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igfxcmjit32.dll 2016-08-24 18:19 - 2014-03-28 19:06 - 00182784 _____ (Intel Corporation) C:\WINDOWS\system32\igfx11cmrt64.dll 2016-08-24 18:19 - 2014-03-28 19:06 - 00155136 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igfx11cmrt32.dll 2016-08-24 17:55 - 2016-08-24 17:55 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_Kernel_ldiagio_uefi_01009.Wdf 2016-08-24 17:54 - 2016-08-24 17:54 - 00000000 ____D C:\Users\Kamyk\.QtWebEngineProcess 2016-08-24 17:54 - 2016-08-24 17:54 - 00000000 ____D C:\Users\Kamyk\.LSC 2016-08-24 17:02 - 2016-08-24 19:16 - 00000000 ____D C:\Users\Kamyk\AppData\Roaming\Soft4Boost 2016-08-24 17:02 - 2016-08-24 17:02 - 00000000 ____D C:\WINDOWS\$$$Temp_&&&_Hives 2016-08-24 17:02 - 2016-08-24 17:02 - 00000000 ____D C:\Users\Kamyk\AppData\Roaming\ActiveX 2016-08-24 17:02 - 2016-08-24 17:02 - 00000000 ____D C:\Users\Kamyk\AppData\Local\MalwareScan 2016-08-24 17:02 - 2016-08-24 17:02 - 00000000 ____D C:\ActiveX 2016-08-24 16:40 - 2016-08-24 16:40 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games 2016-08-24 16:37 - 2016-08-24 19:16 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Soft4Boost 2016-08-24 16:37 - 2016-08-24 19:16 - 00000000 ____D C:\Program Files (x86)\Soft4Boost 2016-08-24 16:37 - 2016-08-24 16:37 - 00001277 _____ C:\Users\Kamyk\Desktop\Any Uninstaller.lnk 2016-08-24 16:37 - 2016-02-17 15:13 - 00038504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml3a.dll 2016-08-22 19:21 - 2016-08-22 19:21 - 00000000 ____D C:\Users\Kamyk\AppData\Roaming\Sports Interactive 2016-08-22 19:08 - 2016-08-22 19:08 - 00000000 ___HD C:\Program Files (x86)\Zero G Registry 2016-08-22 19:07 - 2016-08-22 19:07 - 00000000 ___HD C:\Users\Kamyk\InstallAnywhere 2016-08-22 17:30 - 2016-08-22 17:30 - 00000000 ____D C:\Users\Kamyk\Documents\Puzzle Quest 2016-08-19 20:42 - 2016-08-19 20:42 - 00047672 _____ (Disc Soft Ltd) C:\WINDOWS\system32\Drivers\dtliteusbbus.sys 2016-08-19 20:42 - 2016-08-19 20:42 - 00030264 _____ (Disc Soft Ltd) C:\WINDOWS\system32\Drivers\dtlitescsibus.sys 2016-08-19 20:42 - 2016-08-19 20:42 - 00000000 ____D C:\Users\Public\Documents\Daemon Tools Images 2016-08-18 19:53 - 2016-08-24 19:59 - 00000000 ____D C:\FRST 2016-08-16 16:20 - 2016-08-16 16:20 - 00000184 _____ C:\WINDOWS\AutoKMS.ini 2016-08-16 16:07 - 2016-08-16 16:11 - 00000000 ____D C:\Users\Kamyk\Desktop\Dokumenty 2016-08-11 22:21 - 2016-08-11 22:21 - 00000000 ____D C:\Users\Kamyk\AppData\Local\Chromium 2016-08-11 22:20 - 2016-08-11 22:20 - 00002280 _____ C:\Users\Kamyk\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Vivaldi.lnk 2016-08-11 22:20 - 2016-08-11 22:20 - 00000000 ____D C:\Users\Kamyk\AppData\Local\Vivaldi 2016-08-10 11:37 - 2016-06-18 22:06 - 00590688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fvevol.sys 2016-08-10 11:37 - 2016-06-11 18:50 - 00987136 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll 2016-08-10 11:37 - 2016-06-11 18:37 - 00796672 _____ (Microsoft Corporation) C:\WINDOWS\system32\winhttp.dll 2016-08-10 11:37 - 2016-06-11 18:16 - 00626176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winhttp.dll 2016-08-10 11:37 - 2016-06-10 21:04 - 03547136 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcorets.dll 2016-08-10 11:37 - 2016-06-10 20:11 - 06521800 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppsvc.exe 2016-08-10 11:37 - 2016-06-10 20:11 - 01487992 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll 2016-08-10 11:37 - 2016-06-10 20:11 - 00261376 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppwinob.dll 2016-08-10 11:37 - 2016-06-04 02:38 - 01613528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\crypt32.dll 2016-08-10 11:37 - 2016-06-04 02:37 - 01970968 _____ (Microsoft Corporation) C:\WINDOWS\system32\crypt32.dll 2016-08-10 11:37 - 2016-05-29 09:08 - 22361344 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll 2016-08-10 11:37 - 2016-05-28 20:31 - 19788688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll 2016-08-10 11:37 - 2016-05-18 22:28 - 02635264 _____ (Microsoft Corporation) C:\WINDOWS\system32\CertEnroll.dll 2016-08-10 11:37 - 2016-05-18 22:16 - 02317824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CertEnroll.dll 2016-08-10 11:37 - 2016-05-14 07:19 - 01134768 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll 2016-08-10 11:37 - 2016-05-13 23:42 - 03667968 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll 2016-08-10 11:37 - 2016-05-13 23:26 - 00897024 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll 2016-08-10 11:37 - 2016-05-06 19:13 - 00138240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dfsc.sys 2016-08-10 11:37 - 2016-05-05 20:28 - 01661072 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole32.dll 2016-08-10 11:37 - 2016-04-16 15:56 - 01080320 _____ (Microsoft Corporation) C:\WINDOWS\system32\IKEEXT.DLL 2016-08-10 11:37 - 2016-04-10 00:10 - 00816128 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcss.dll 2016-08-10 11:37 - 2016-04-06 23:21 - 00114528 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mup.sys 2016-08-10 11:37 - 2016-04-06 20:20 - 00402432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdbss.sys 2016-08-10 11:37 - 2016-04-06 20:17 - 18825216 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll 2016-08-10 11:37 - 2016-04-06 18:25 - 15158272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll 2016-08-10 11:37 - 2016-04-06 00:37 - 00205824 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndiswan.sys 2016-08-10 11:36 - 2016-06-18 22:06 - 00072408 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dumpfve.sys 2016-08-10 11:36 - 2016-06-11 21:52 - 00379232 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storport.sys 2016-08-10 11:36 - 2016-06-11 21:52 - 00057184 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\stornvme.sys 2016-08-10 11:36 - 2016-06-11 20:05 - 00216576 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpresult.exe 2016-08-10 11:36 - 2016-06-11 19:14 - 00192512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gpresult.exe 2016-08-10 11:36 - 2016-06-11 18:46 - 00482304 _____ (Microsoft Corporation) C:\WINDOWS\system32\tpmvsc.dll 2016-08-10 11:36 - 2016-06-11 18:44 - 00509440 _____ (Microsoft Corporation) C:\WINDOWS\system32\webio.dll 2016-08-10 11:36 - 2016-06-11 18:24 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll 2016-08-10 11:36 - 2016-06-11 18:20 - 00413184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webio.dll 2016-08-10 11:36 - 2016-06-11 05:44 - 00107984 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncryptsslp.dll 2016-08-10 11:36 - 2016-06-11 05:44 - 00091416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ncryptsslp.dll 2016-08-10 11:36 - 2016-06-10 22:07 - 03820544 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcore.dll 2016-08-10 11:36 - 2016-06-10 22:03 - 00432128 _____ (Microsoft Corporation) C:\WINDOWS\system32\schannel.dll 2016-08-10 11:36 - 2016-06-10 20:11 - 00125024 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptxml.dll 2016-08-10 11:36 - 2016-06-10 20:10 - 00099136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cryptxml.dll 2016-08-10 11:36 - 2016-06-10 20:07 - 03273728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpcore.dll 2016-08-10 11:36 - 2016-06-10 20:04 - 00357376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\schannel.dll 2016-08-10 11:36 - 2016-06-09 21:32 - 00228864 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebClnt.dll 2016-08-10 11:36 - 2016-06-09 20:18 - 00199168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WebClnt.dll 2016-08-10 11:36 - 2016-06-07 20:10 - 00083456 _____ (Microsoft Corporation) C:\WINDOWS\system32\hbaapi.dll 2016-08-10 11:36 - 2016-06-07 19:13 - 00066560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hbaapi.dll 2016-08-10 11:36 - 2016-05-18 23:54 - 00053248 _____ (Microsoft Corporation) C:\WINDOWS\system32\certenc.dll 2016-08-10 11:36 - 2016-05-18 23:15 - 00044032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\certenc.dll 2016-08-10 11:36 - 2016-05-18 22:56 - 01291776 _____ (Microsoft Corporation) C:\WINDOWS\system32\certutil.exe 2016-08-10 11:36 - 2016-05-18 22:33 - 01060352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\certutil.exe 2016-08-10 11:36 - 2016-05-14 22:26 - 00136904 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe 2016-08-10 11:36 - 2016-05-14 01:08 - 00111616 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidclass.sys 2016-08-10 11:36 - 2016-05-14 01:08 - 00032768 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidusb.sys 2016-08-10 11:36 - 2016-05-14 01:08 - 00032512 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidparse.sys 2016-08-10 11:36 - 2016-05-14 00:24 - 00862720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll 2016-08-10 11:36 - 2016-05-13 23:29 - 00140288 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuwebv.dll 2016-08-10 11:36 - 2016-05-13 23:27 - 00409088 _____ (Microsoft Corporation) C:\WINDOWS\system32\WUSettingsProvider.dll 2016-08-10 11:36 - 2016-05-13 23:27 - 00095744 _____ (Microsoft Corporation) C:\WINDOWS\system32\wudriver.dll 2016-08-10 11:36 - 2016-05-13 23:26 - 02230784 _____ (Microsoft Corporation) C:\WINDOWS\system32\wucltux.dll 2016-08-10 11:36 - 2016-05-13 23:18 - 00124928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuwebv.dll 2016-08-10 11:36 - 2016-05-13 23:16 - 00727040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapi.dll 2016-08-10 11:36 - 2016-05-13 23:16 - 00081920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wudriver.dll 2016-08-10 11:36 - 2016-05-12 20:36 - 00034600 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserAccountBroker.exe 2016-08-10 11:36 - 2016-05-12 19:39 - 00030984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserAccountBroker.exe 2016-08-10 11:36 - 2016-05-06 23:59 - 00331608 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Classpnp.sys 2016-08-10 11:36 - 2016-05-05 19:39 - 01212256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ole32.dll 2016-08-10 11:36 - 2016-05-05 19:18 - 00065024 _____ (Microsoft Corporation) C:\WINDOWS\system32\msiexec.exe 2016-08-10 11:36 - 2016-05-05 19:02 - 03320832 _____ (Microsoft Corporation) C:\WINDOWS\system32\msi.dll 2016-08-10 11:36 - 2016-05-05 18:37 - 00059904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msiexec.exe 2016-08-10 11:36 - 2016-05-05 18:34 - 00086016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\olepro32.dll 2016-08-10 11:36 - 2016-05-05 18:29 - 03607040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msi.dll 2016-08-10 11:36 - 2016-05-05 17:28 - 02778624 _____ (Microsoft Corporation) C:\WINDOWS\system32\authui.dll 2016-08-10 11:36 - 2016-04-10 07:35 - 00551256 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vhdmp.sys 2016-08-10 11:36 - 2016-04-10 00:15 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\wfapigp.dll 2016-08-10 11:36 - 2016-04-10 00:14 - 00306176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Geolocation.dll 2016-08-10 11:36 - 2016-04-10 00:09 - 00754176 _____ (Microsoft Corporation) C:\WINDOWS\system32\FirewallAPI.dll 2016-08-10 11:36 - 2016-04-10 00:02 - 00346112 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationApi.dll 2016-08-10 11:36 - 2016-04-09 23:59 - 00218112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Geolocation.dll 2016-08-10 11:36 - 2016-04-09 23:59 - 00020480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wfapigp.dll 2016-08-10 11:36 - 2016-04-09 23:56 - 00543232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FirewallAPI.dll 2016-08-10 11:36 - 2016-04-09 23:55 - 00881152 _____ (Microsoft Corporation) C:\WINDOWS\system32\MPSSVC.dll 2016-08-10 11:36 - 2016-04-09 23:52 - 00281088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LocationApi.dll 2016-08-10 11:36 - 2016-04-07 18:06 - 00927744 _____ (Microsoft Corporation) C:\WINDOWS\system32\iphlpsvc.dll 2016-08-10 11:36 - 2016-04-02 15:58 - 00108032 _____ (Microsoft Corporation) C:\WINDOWS\system32\BdeHdCfgLib.dll 2016-08-10 11:36 - 2016-04-01 19:40 - 00322048 _____ (Microsoft Corporation) C:\WINDOWS\system32\fvecpl.dll 2016-08-10 11:36 - 2016-04-01 18:53 - 00348672 _____ (Microsoft Corporation) C:\WINDOWS\system32\bdesvc.dll 2016-08-10 11:36 - 2016-04-01 18:50 - 00737280 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapi.dll 2016-08-10 11:36 - 2016-02-04 18:57 - 00018944 _____ (Microsoft Corporation) C:\WINDOWS\system32\httpprxp.dll 2016-08-10 11:36 - 2016-02-04 18:49 - 00125440 _____ (Microsoft Corporation) C:\WINDOWS\system32\httpprxm.dll 2016-08-10 11:36 - 2016-02-04 18:39 - 00077824 _____ (Microsoft Corporation) C:\WINDOWS\system32\adhsvc.dll 2016-08-10 11:35 - 2016-05-13 23:30 - 00035840 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapp.exe 2016-08-10 11:35 - 2016-05-13 23:18 - 00029696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapp.exe 2016-08-10 11:35 - 2016-05-05 17:16 - 02464768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\authui.dll 2016-08-10 11:16 - 2016-07-08 16:18 - 04169216 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys 2016-08-10 11:15 - 2016-08-02 08:54 - 25808384 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 2016-08-10 11:15 - 2016-08-02 08:32 - 02894336 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll 2016-08-10 11:15 - 2016-08-02 08:31 - 00572416 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll 2016-08-10 11:15 - 2016-08-02 08:20 - 00615936 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieui.dll 2016-08-10 11:15 - 2016-08-02 08:18 - 06047744 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll 2016-08-10 11:15 - 2016-08-02 08:18 - 00817664 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll 2016-08-10 11:15 - 2016-08-02 07:55 - 00092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll 2016-08-10 11:15 - 2016-08-02 07:54 - 20343808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll 2016-08-10 11:15 - 2016-08-02 07:51 - 00497664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll 2016-08-10 11:15 - 2016-08-02 07:47 - 02286592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll 2016-08-10 11:15 - 2016-08-02 07:46 - 01032704 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcomm.dll 2016-08-10 11:15 - 2016-08-02 07:41 - 00663552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll 2016-08-10 11:15 - 2016-08-02 07:40 - 00262144 _____ (Microsoft Corporation) C:\WINDOWS\system32\webcheck.dll 2016-08-10 11:15 - 2016-08-02 07:39 - 00378880 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll 2016-08-10 11:15 - 2016-08-02 07:38 - 00806400 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll 2016-08-10 11:15 - 2016-08-02 07:38 - 00724992 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe 2016-08-10 11:15 - 2016-08-02 07:36 - 02131456 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl 2016-08-10 11:15 - 2016-08-02 07:28 - 15412224 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll 2016-08-10 11:15 - 2016-08-02 07:23 - 02868224 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll 2016-08-10 11:15 - 2016-08-02 07:21 - 04608000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll 2016-08-10 11:15 - 2016-08-02 07:20 - 00880128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcomm.dll 2016-08-10 11:15 - 2016-08-02 07:15 - 00692736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll 2016-08-10 11:15 - 2016-08-02 07:15 - 00330752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iedkcs32.dll 2016-08-10 11:15 - 2016-08-02 07:14 - 02055680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl 2016-08-10 11:15 - 2016-08-02 07:11 - 13808128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll 2016-08-10 11:15 - 2016-08-02 07:10 - 01550848 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll 2016-08-10 11:15 - 2016-08-02 06:59 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll 2016-08-10 11:15 - 2016-08-02 06:56 - 02393088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll 2016-08-10 11:15 - 2016-08-02 06:53 - 01316352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll 2016-08-10 11:15 - 2016-08-02 06:51 - 00710144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll 2016-08-10 11:11 - 2016-07-09 02:09 - 00442712 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll 2016-08-10 11:11 - 2016-07-09 02:08 - 00332632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msv1_0.dll 2016-08-10 11:11 - 2016-07-08 16:19 - 00840704 _____ (Microsoft Corporation) C:\WINDOWS\system32\netlogon.dll 2016-08-10 11:11 - 2016-07-08 16:17 - 00696832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netlogon.dll 2016-08-10 11:11 - 2016-07-06 16:26 - 07793152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll 2016-08-10 11:11 - 2016-07-06 16:26 - 07075328 _____ (Microsoft Corporation) C:\WINDOWS\system32\glcndFilter.dll 2016-08-10 11:11 - 2016-07-06 16:23 - 05270016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\glcndFilter.dll 2016-08-10 11:11 - 2016-07-06 16:21 - 05265920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll 2016-08-10 11:10 - 2016-07-08 16:32 - 01753600 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll 2016-08-10 11:10 - 2016-07-08 16:25 - 01491456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GdiPlus.dll 2016-08-10 11:10 - 2016-07-08 16:22 - 01445376 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll 2016-08-10 11:10 - 2016-07-08 00:33 - 00201728 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb20.sys 2016-08-10 11:10 - 2016-07-07 23:53 - 00445440 _____ (Microsoft Corporation) C:\WINDOWS\system32\certcli.dll 2016-08-10 11:10 - 2016-07-07 22:06 - 00324096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\certcli.dll 2016-08-10 11:10 - 2016-05-19 01:18 - 00563024 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys 2016-08-10 11:10 - 2016-05-19 01:18 - 00397232 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcryptprimitives.dll 2016-08-10 11:10 - 2016-05-19 01:16 - 00178016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys 2016-08-10 11:10 - 2016-05-19 00:28 - 00340880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcryptprimitives.dll 2016-08-10 11:07 - 2016-07-12 16:08 - 00175616 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmTasks.dll 2016-07-31 22:12 - 2016-07-31 22:12 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sierra 2016-07-31 22:10 - 2016-07-31 22:12 - 00000303 _____ C:\WINDOWS\SIERRA.INI 2016-07-31 22:10 - 2016-07-31 22:10 - 00000000 ____D C:\SIERRA 2016-07-31 22:10 - 2016-07-31 22:10 - 00000000 ____D C:\Program Files (x86)\Sierra On-Line 2016-07-31 22:10 - 1998-10-07 12:54 - 00327168 _____ (InstallShield Software Corporation) C:\WINDOWS\IsUn0415.exe ==================== Jeden miesiąc - zmodyfikowane pliki i foldery ======== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2016-08-24 19:58 - 2013-08-22 15:36 - 00000000 ____D C:\WINDOWS\Inf 2016-08-24 19:54 - 2015-06-19 17:41 - 00003988 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{2779F3EC-BCDD-4502-A116-81764A1C9B3F} 2016-08-24 19:30 - 2016-01-30 13:24 - 00000000 ____D C:\AdwCleaner 2016-08-24 19:21 - 2015-06-19 17:50 - 00000000 ____D C:\Users\Kamyk\AppData\Local\Google 2016-08-24 19:21 - 2015-06-19 17:50 - 00000000 ____D C:\Program Files (x86)\Google 2016-08-24 19:13 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\Performance 2016-08-24 19:12 - 2015-01-25 16:44 - 00000000 ____D C:\ProgramData\Lenovo 2016-08-24 19:12 - 2015-01-25 16:42 - 00000000 ____D C:\WINDOWS\System32\Tasks\Lenovo 2016-08-24 19:06 - 2015-06-20 11:36 - 00000000 __RHD C:\MSOCache 2016-08-24 19:06 - 2015-01-25 15:50 - 00000000 ___HD C:\Intel 2016-08-24 19:05 - 2014-04-02 19:34 - 00000000 ____D C:\WINDOWS\Panther 2016-08-24 18:30 - 2016-06-20 13:39 - 00000451 _____ C:\WINDOWS\system32\{F33C3B9B-72AF-418A-B3FD-560646F7CDA2}.bat 2016-08-24 18:30 - 2015-01-25 16:02 - 00017398 _____ C:\WINDOWS\system32\results.xml 2016-08-24 18:29 - 2013-08-22 16:45 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT 2016-08-24 18:24 - 2015-01-25 15:51 - 00000728 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel(R) HD Graphics Control Panel.lnk 2016-08-24 18:16 - 2015-06-19 19:49 - 00000000 __SHD C:\Users\Kamyk\IntelGraphicsProfiles 2016-08-24 18:11 - 2013-08-22 15:25 - 00262144 ___SH C:\WINDOWS\system32\config\BBI 2016-08-24 17:54 - 2015-06-20 00:41 - 00000000 ____D C:\Users\Kamyk\AppData\Local\Lenovo 2016-08-24 17:54 - 2015-06-19 19:48 - 00000000 ____D C:\Users\Kamyk 2016-08-24 17:53 - 2015-01-25 16:42 - 00000000 ____D C:\WINDOWS\Downloaded Installations 2016-08-24 17:47 - 2016-06-29 10:24 - 00000000 ____D C:\Program Files (x86)\Glarysoft 2016-08-24 17:47 - 2015-07-31 11:21 - 00000000 ____D C:\Program Files (x86)\Foxit Software 2016-08-24 17:47 - 2015-06-22 18:04 - 00000000 ____D C:\Users\Kamyk\Documents\Outlook Files 2016-08-24 17:15 - 2015-10-06 22:31 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN 2016-08-24 17:14 - 2013-08-22 17:36 - 00000000 ___SD C:\WINDOWS\Downloaded Program Files 2016-08-24 17:00 - 2016-06-23 15:37 - 00000000 ____D C:\Program Files (x86)\Adobe 2016-08-24 16:59 - 2016-06-18 00:44 - 00000000 ____D C:\ProgramData\VMware 2016-08-24 16:59 - 2015-01-26 00:13 - 00808708 _____ C:\WINDOWS\system32\perfh015.dat 2016-08-24 16:59 - 2015-01-26 00:13 - 00164328 _____ C:\WINDOWS\system32\perfc015.dat 2016-08-24 16:58 - 2015-07-20 18:42 - 00000000 ____D C:\ProgramData\Skype 2016-08-24 16:56 - 2016-07-07 20:20 - 00000000 ____D C:\Users\Kamyk\AppData\Local\My Games 2016-08-24 16:55 - 2015-01-25 15:52 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information 2016-08-24 16:53 - 2016-07-16 16:44 - 00000000 ____D C:\Program Files (x86)\Firefly Studios 2016-08-24 16:47 - 2015-07-31 11:31 - 00000000 ____D C:\Program Files (x86)\ControlCenter4 2016-08-24 16:46 - 2015-10-06 22:31 - 00000000 ____D C:\Program Files (x86)\VideoLAN 2016-08-24 16:44 - 2015-07-31 11:22 - 00000000 ____D C:\Users\Kamyk\AppData\Roaming\Foxit Software 2016-08-24 16:42 - 2016-06-29 10:25 - 00000000 ____D C:\ProgramData\Glarysoft 2016-08-24 16:42 - 2016-06-29 10:23 - 00000000 ____D C:\Users\Kamyk\AppData\Roaming\GlarySoft 2016-08-24 16:40 - 2016-07-07 20:19 - 00000000 ____D C:\Users\Kamyk\Documents\My Games 2016-08-23 23:10 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\rescache 2016-08-22 19:41 - 2015-11-20 23:05 - 00000000 ____D C:\Program Files (x86)\Sports Interactive 2016-08-22 19:21 - 2015-11-20 23:13 - 00000000 ____D C:\Users\Public\Documents\Sports Interactive 2016-08-22 19:21 - 2015-11-20 23:13 - 00000000 ____D C:\Users\Kamyk\Documents\Sports Interactive 2016-08-19 20:52 - 2016-07-12 00:15 - 00000000 ____D C:\Program Files (x86)\Championship Manager 01-02 2016-08-19 13:45 - 2013-08-22 17:36 - 00000000 ___RD C:\WINDOWS\ToastData 2016-08-19 13:45 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\SecureBootUpdates 2016-08-17 06:21 - 2013-08-22 17:20 - 00000000 ____D C:\WINDOWS\CbsTemp 2016-08-16 16:10 - 2015-07-27 10:19 - 00000000 ____D C:\Users\Kamyk\Desktop\Klient 2016-08-11 17:51 - 2015-06-20 12:08 - 00000000 ____D C:\WINDOWS\system32\MRT 2016-08-11 17:44 - 2015-06-20 12:08 - 147640136 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2016-08-10 10:46 - 2013-08-22 17:36 - 00000000 ___HD C:\Program Files\WindowsApps 2016-08-10 10:46 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\AppReadiness 2016-07-27 21:25 - 2015-09-04 09:47 - 00504488 ____N (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe ==================== Pliki w katalogu głównym wybranych folderów ======= 2015-06-19 19:49 - 2016-08-24 18:49 - 0609264 _____ () C:\Users\Kamyk\AppData\Local\BTServer.log 2015-01-25 15:55 - 2015-01-25 15:55 - 0000000 ____H () C:\ProgramData\DP45977C.lfl ==================== Bamital & volsnap ================= (Brak automatycznej naprawy dla plików które nie przeszły weryfikacji.) C:\WINDOWS\system32\winlogon.exe => Plik podpisany cyfrowo C:\WINDOWS\system32\wininit.exe => Plik podpisany cyfrowo C:\WINDOWS\explorer.exe => Plik podpisany cyfrowo C:\WINDOWS\SysWOW64\explorer.exe => Plik podpisany cyfrowo C:\WINDOWS\system32\svchost.exe => Plik podpisany cyfrowo C:\WINDOWS\SysWOW64\svchost.exe => Plik podpisany cyfrowo C:\WINDOWS\system32\services.exe => Plik podpisany cyfrowo C:\WINDOWS\system32\User32.dll => Plik podpisany cyfrowo C:\WINDOWS\SysWOW64\User32.dll => Plik podpisany cyfrowo C:\WINDOWS\system32\userinit.exe => Plik podpisany cyfrowo C:\WINDOWS\SysWOW64\userinit.exe => Plik podpisany cyfrowo C:\WINDOWS\system32\rpcss.dll => Plik podpisany cyfrowo C:\WINDOWS\system32\dnsapi.dll => Plik podpisany cyfrowo C:\WINDOWS\SysWOW64\dnsapi.dll => Plik podpisany cyfrowo C:\WINDOWS\system32\Drivers\volsnap.sys => Plik podpisany cyfrowo LastRegBack: 2016-08-24 19:01 ==================== Koniec FRST.txt ============================