Rezultaty skanowania Farbar Recovery Scan Tool (FRST) (x64) Wersja: 31-08-2016 Uruchomiony przez Kacper (administrator) DESKTOP-IS7TQ90 (08-09-2016 22:10:56) Uruchomiony z C:\Users\Kacper\Desktop Załadowane profile: Kacper (Dostępne profile: Kacper) Platform: Windows 10 Home Wersja 1511 (X64) Język: Polski (Polska) Internet Explorer Wersja 11 (Domyślna przeglądarka: Chrome) Tryb startu: Normal Instrukcja obsługi Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Procesy (filtrowane) ================= (Załączenie wejścia w fixlist spowoduje zamknięcie procesu. Powiązany plik nie zostanie przeniesiony.) (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvscpapisvr.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe (AVG Secure Search) C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\40.3.5\ToolbarUpdater.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe () C:\Program Files\WindowsApps\Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe\SkypeHost.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Flux Software LLC) C:\Users\Kacper\AppData\Local\FluxSoftware\Flux\flux.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\ShadowPlay\nvspcaps64.exe (GIGABYTE Technology Co.,Ltd.) C:\Program Files (x86)\GIGABYTE\GIGABYTE OC_GURU II\OC_GURU.exe ==================== Rejestr (filtrowane) =========================== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.) HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2397120 2016-06-14] (NVIDIA Corporation) HKLM\...\Run: [ShadowPlay] => C:\Windows\system32\nvspcap64.dll [1767944 2016-06-14] (NVIDIA Corporation) HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [14021336 2015-06-18] (Realtek Semiconductor) HKLM-x32\...\Run: [SunJavaUpdateSched] => "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" HKU\S-1-5-21-3513594999-3195376513-185460270-1001\...\Run: [f.lux] => C:\Users\Kacper\AppData\Local\FluxSoftware\Flux\flux.exe [1017224 2013-10-24] (Flux Software LLC) HKU\S-1-5-21-3513594999-3195376513-185460270-1001\...\Run: [BitTorrent] => C:\Users\Kacper\AppData\Roaming\BitTorrent\BitTorrent.exe [2140680 2016-08-13] (BitTorrent Inc.) HKU\S-1-5-21-3513594999-3195376513-185460270-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [2857248 2016-08-23] (Valve Corporation) HKU\S-1-5-21-3513594999-3195376513-185460270-1001\...\MountPoints2: {9f82c852-5186-11e6-b8aa-94de80a6c404} - "I:\setup.exe" Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\GIGABYTE OC_GURU.lnk [2016-08-08] ShortcutTarget: GIGABYTE OC_GURU.lnk -> C:\Windows\System32\schtasks.exe (Microsoft Corporation) BootExecute: autocheck autochk * bootdelete ==================== Internet (filtrowane) ==================== (Załączenie wejścia w fixlist, w przypadku gdy jest to obiekt rejestru, spowoduje usunięcie go z rejestru lub przywrócenie jego domyślnej postaci.) Hosts: W pliku Hosts jest więcej niż jedno wejście. Sprawdź sekcję Hosts w Addition.txt Tcpip\Parameters: [DhcpNameServer] 192.168.0.1 Tcpip\..\Interfaces\{768ece06-f276-4591-8198-588ebc5e95e2}: [DhcpNameServer] 192.168.0.1 Internet Explorer: ================== SearchScopes: HKU\S-1-5-21-3513594999-3195376513-185460270-1001 -> {95B7759C-8C7F-4BF1-B163-73684A933233} URL = hxxps://mysearch.avg.com/search?cid={D4353300-F52C-47B6-B74E-89C85706DF5A}&mid=127b58e17c6a47cc9b1d4597c6422df7-bfb4412b9ab6be7577f051de40e00d9cd7bf9960&lang=pl&ds=AVG&coid=avgtbavg&cmpid=0816tb&pr=fr&d=2016-07-15 08:54:57&v=4.3.4.122&pid=wtu&sg=&sap=dsp&q={searchTerms} BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_101\bin\ssv.dll [2016-07-23] (Oracle Corporation) BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_101\bin\jp2ssv.dll [2016-07-23] (Oracle Corporation) FireFox: ======== FF Plugin-x32: @avg.com/AVG SiteSafety plugin,version=11.0.0.1,application/x-avg-sitesafety-plugin -> C:\Program Files (x86)\Common Files\AVG Secure Search\SiteSafetyInstaller\40.3.5\\npsitesafety.dll [Brak pliku] FF Plugin-x32: @java.com/DTPlugin,version=11.101.2 -> C:\Program Files (x86)\Java\jre1.8.0_101\bin\dtplugin\npDeployJava1.dll [2016-07-23] (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=11.101.2 -> C:\Program Files (x86)\Java\jre1.8.0_101\bin\plugin2\npjp2.dll [2016-07-23] (Oracle Corporation) FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2016-08-25] (NVIDIA Corporation) FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2016-08-25] (NVIDIA Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-08-02] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-08-02] (Google Inc.) Chrome: ======= CHR Profile: C:\Users\Kacper\AppData\Local\Google\Chrome\User Data\Default CHR Extension: (Dokumenty Google) - C:\Users\Kacper\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2016-07-15] CHR Extension: (Dysk Google) - C:\Users\Kacper\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2016-07-15] CHR Extension: (YouTube) - C:\Users\Kacper\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2016-07-15] CHR Extension: (uBlock Origin) - C:\Users\Kacper\AppData\Local\Google\Chrome\User Data\Default\Extensions\cjpalhdlnbpafiamejdnhcphjbkeiagm [2016-08-30] CHR Extension: (Custom JavaScript for Websites 2) - C:\Users\Kacper\AppData\Local\Google\Chrome\User Data\Default\Extensions\ddbjnfjiigjmcpcpkmhogomapikjbjdk [2016-08-11] CHR Extension: (Dokumenty Google offline) - C:\Users\Kacper\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-07-15] CHR Extension: (Płatności w sklepie Chrome Web Store) - C:\Users\Kacper\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-07-15] CHR Extension: (Gmail) - C:\Users\Kacper\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2016-07-15] CHR Extension: (Chrome Media Router) - C:\Users\Kacper\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2016-08-30] ==================== Usługi (filtrowane) ======================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) R2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1163712 2016-06-14] (NVIDIA Corporation) S3 IDriverT; C:\Program Files (x86)\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe [69632 2005-11-14] (Macrovision Corporation) [Brak podpisu cyfrowego] S2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe [1514464 2016-03-10] (Malwarebytes) S2 MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [1136608 2016-03-10] (Malwarebytes) R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1879488 2016-06-14] (NVIDIA Corporation) R3 NvStreamNetworkSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe [3632576 2016-06-14] (NVIDIA Corporation) R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe [2521024 2016-06-14] (NVIDIA Corporation) S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2122248 2016-07-15] (Electronic Arts) S3 vmicvss; C:\Windows\System32\ICSvc.dll [511488 2015-10-30] (Microsoft Corporation) R2 vToolbarUpdater40.3.5; C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\40.3.5\ToolbarUpdater.exe [1349704 2016-09-05] (AVG Secure Search) S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [364464 2015-10-30] (Microsoft Corporation) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [24864 2016-07-01] (Microsoft Corporation) ===================== Sterowniki (filtrowane) ========================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) S3 dg_ssudbus; C:\Windows\system32\DRIVERS\ssudbus.sys [130688 2016-07-22] (Samsung Electronics Co., Ltd.) S3 dtlitescsibus; C:\Windows\System32\drivers\dtlitescsibus.sys [30264 2016-07-25] (Disc Soft Ltd) S3 dtliteusbbus; C:\Windows\System32\drivers\dtliteusbbus.sys [47672 2016-07-25] (Disc Soft Ltd) R3 GPCIDrv; C:\Program Files (x86)\GIGABYTE\GIGABYTE OC_GURU II\GPCIDrv64.sys [14376 2014-08-28] () S3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [27008 2016-03-10] (Malwarebytes) S3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [65408 2016-03-10] (Malwarebytes Corporation) R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [26560 2016-06-14] (NVIDIA Corporation) R3 nvvad_WaveExtensible; C:\Windows\system32\drivers\nvvad64v.sys [56384 2016-04-14] (NVIDIA Corporation) S2 SecDrv; C:\Windows\SysWOW64\drivers\SECDRV.SYS [12400 2016-08-07] (Macrovision Europe Ltd) [Brak podpisu cyfrowego] S3 ssudmdm; C:\Windows\system32\DRIVERS\ssudmdm.sys [164992 2016-07-22] (Samsung Electronics Co., Ltd.) U3 TrueSight; C:\Windows\System32\drivers\TrueSight.sys [24688 2016-09-08] () S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [44568 2015-10-30] (Microsoft Corporation) S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [293216 2015-10-30] (Microsoft Corporation) S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [118112 2015-10-30] (Microsoft Corporation) U3 afldifog; C:\Users\Kacper\AppData\Local\Temp\afldifog.sys [56584 2016-09-08] (GMER) [Brak podpisu cyfrowego] ==================== NetSvcs (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) ==================== Jeden miesiąc - utworzone pliki i foldery ======== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2016-09-08 22:10 - 2016-09-08 22:11 - 00011512 _____ C:\Users\Kacper\Desktop\FRST.txt 2016-09-08 22:10 - 2016-09-08 22:10 - 00010631 _____ C:\Users\Kacper\Desktop\GMER.txt 2016-09-08 22:10 - 2016-09-08 22:10 - 00000000 ____D C:\FRST 2016-09-08 21:50 - 2016-09-08 21:44 - 02397696 _____ (Farbar) C:\Users\Kacper\Desktop\FRST64.exe 2016-09-08 20:52 - 2016-09-08 20:52 - 00000000 ____D C:\Users\Kacper\Documents\League of Legends 2016-09-08 20:38 - 2016-09-08 20:38 - 00000000 ____D C:\Users\Kacper\AppData\Roaming\LolClient 2016-09-08 20:25 - 2016-09-08 21:29 - 00024688 _____ C:\Windows\system32\Drivers\TrueSight.sys 2016-09-08 20:24 - 2016-09-08 20:24 - 00000000 ____D C:\ProgramData\RogueKiller 2016-09-08 20:21 - 2016-09-08 20:21 - 00017064 _____ C:\Windows\system32\.crusader 2016-09-08 19:43 - 2016-09-08 19:43 - 00002004 _____ C:\Users\Public\Desktop\HitmanPro.lnk 2016-09-08 19:42 - 2016-09-08 20:21 - 00000000 ____D C:\ProgramData\HitmanPro 2016-09-08 19:42 - 2016-09-08 19:43 - 00000000 ____D C:\Program Files\HitmanPro 2016-09-08 19:40 - 2016-09-08 21:50 - 00192216 _____ (Malwarebytes) C:\Windows\system32\Drivers\MBAMSwissArmy.sys 2016-09-08 19:40 - 2016-09-08 19:40 - 00001171 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk 2016-09-08 19:40 - 2016-09-08 19:40 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware 2016-09-08 19:40 - 2016-09-08 19:40 - 00000000 ____D C:\ProgramData\Malwarebytes 2016-09-08 19:40 - 2016-09-08 19:40 - 00000000 ____D C:\Program Files (x86)\Malwarebytes Anti-Malware 2016-09-08 19:40 - 2016-03-10 14:09 - 00065408 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys 2016-09-08 19:40 - 2016-03-10 14:08 - 00140672 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbamchameleon.sys 2016-09-08 19:40 - 2016-03-10 14:08 - 00027008 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbam.sys 2016-09-07 22:51 - 2016-09-07 22:51 - 00000000 ____D C:\Users\Kacper\Documents\CPY_SAVES 2016-09-07 22:46 - 2016-09-07 22:46 - 00001474 _____ C:\Users\Public\Desktop\DOOM.lnk 2016-09-07 22:46 - 2016-09-07 22:46 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DOOM 2016-09-07 22:32 - 2016-09-08 20:18 - 00000000 ____D C:\DOOM 2016-09-07 21:29 - 2016-09-07 21:29 - 00000000 ____D C:\ProgramData\Riot Games 2016-09-07 21:28 - 2016-09-07 21:28 - 00001585 _____ C:\Users\Public\Desktop\League of Legends.lnk 2016-09-07 21:28 - 2016-09-07 21:28 - 00000000 ____D C:\Riot Games 2016-09-07 21:28 - 2008-07-12 08:18 - 03851784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_39.dll 2016-09-07 21:28 - 2008-07-12 08:18 - 01493528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_39.dll 2016-09-07 21:28 - 2008-07-12 08:18 - 00467984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_39.dll 2016-09-07 21:27 - 2016-09-07 21:28 - 00000000 ____D C:\Users\Kacper\AppData\Roaming\Riot Games 2016-09-06 18:35 - 2016-09-06 18:36 - 00000000 ___HD C:\Program Files (x86)\Temp 2016-09-06 18:35 - 2016-09-06 18:35 - 00000000 ____D C:\Windows\SysWOW64\RTCOM 2016-09-06 18:35 - 2016-09-06 18:35 - 00000000 ____D C:\Program Files\Realtek 2016-09-06 18:35 - 2016-09-06 18:35 - 00000000 ____D C:\Program Files (x86)\Realtek 2016-09-06 18:35 - 2015-06-18 18:45 - 04496600 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RTKVHD64.sys 2016-09-06 18:35 - 2015-06-18 17:59 - 02862488 _____ C:\Windows\system32\Drivers\RTAIODAT.DAT 2016-09-06 18:35 - 2015-06-17 19:47 - 02930904 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RltkAPO64.dll 2016-09-06 18:35 - 2015-06-17 14:45 - 03234520 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkApi64.dll 2016-09-06 18:35 - 2015-06-15 17:39 - 01748184 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoInstII64.dll 2016-09-06 18:35 - 2015-05-27 17:38 - 02825944 _____ (Realtek Semiconductor Corp.) C:\Windows\RtlExUpd.dll 2016-09-06 18:35 - 2015-05-26 11:59 - 00166616 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCfg64.dll 2016-09-06 18:35 - 2015-05-25 15:18 - 03195416 _____ (Fortemedia Corporation) C:\Windows\system32\FMAPO64.dll 2016-09-06 18:35 - 2015-05-18 14:47 - 02702040 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTSnMg64.cpl 2016-09-06 18:35 - 2015-05-15 19:27 - 02918104 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtPgEx64.dll 2016-09-06 18:35 - 2015-05-15 16:32 - 01316056 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTCOM64.dll 2016-09-06 18:35 - 2014-11-11 13:44 - 00631000 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtDataProc64.dll 2016-09-06 18:35 - 2014-06-09 10:59 - 00560328 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAC64.dll 2016-09-06 18:35 - 2014-04-10 12:19 - 02041432 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioEQ64.dll 2016-09-06 18:35 - 2014-01-08 15:25 - 00397592 _____ (Creative Technology Ltd.) C:\Windows\system32\MBWrp64.dll 2016-09-06 18:35 - 2013-10-11 12:47 - 00113576 _____ (Real Sound Lab SIA) C:\Windows\system32\CONEQMSAPOGUILibrary.dll 2016-09-06 18:35 - 2012-06-08 16:21 - 00897152 _____ (Creative Technology Ltd.) C:\Windows\system32\MBAPO64.dll 2016-09-06 18:35 - 2012-06-08 16:21 - 00753280 _____ (Creative Technology Ltd.) C:\Windows\SysWOW64\MBAPO32.dll 2016-09-06 18:35 - 2012-03-08 11:47 - 00108640 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAR64.dll 2016-09-06 18:35 - 2011-12-20 15:32 - 00331880 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtlCPAPI64.dll 2016-09-06 18:35 - 2011-12-16 14:57 - 00065112 _____ (Creative Technology Ltd.) C:\Windows\system32\MBppld64.dll 2016-09-06 18:35 - 2011-11-22 16:28 - 00014952 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCoLDR64.dll 2016-09-06 18:35 - 2010-11-08 07:31 - 00375128 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEP64A.dll 2016-09-06 18:35 - 2010-11-08 07:31 - 00310104 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DHT64.dll 2016-09-06 18:35 - 2010-11-08 07:31 - 00310104 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DAA64.dll 2016-09-06 18:35 - 2010-11-08 07:31 - 00204120 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEED64A.dll 2016-09-06 18:35 - 2010-11-08 07:31 - 00101208 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEL64A.dll 2016-09-06 18:35 - 2010-11-08 07:31 - 00078680 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEG64A.dll 2016-09-06 18:35 - 2010-09-27 09:34 - 00318808 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO20.dll 2016-09-06 18:35 - 2009-11-24 09:55 - 00518896 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSX64.dll 2016-09-06 18:35 - 2009-11-24 09:55 - 00211184 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSH64.dll 2016-09-06 18:35 - 2009-11-24 09:55 - 00198896 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSHP64.dll 2016-09-06 18:35 - 2009-11-24 09:55 - 00155888 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSWOW64.dll 2016-09-06 18:35 - 2009-11-18 07:13 - 00060504 _____ (Creative Technology Ltd.) C:\Windows\system32\MBPPCn64.dll 2016-09-03 12:49 - 2016-09-03 12:49 - 00000000 ____D C:\Users\Kacper\AppData\Roaming\foobar2000 2016-09-02 18:22 - 2016-09-02 18:22 - 00000000 ____D C:\Users\Kacper\Documents\My Cheat Tables 2016-09-01 00:03 - 2016-09-01 00:03 - 00000000 ____D C:\Program Files (x86)\VulkanRT 2016-09-01 00:03 - 2016-08-25 22:53 - 00134712 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvStreaming.exe 2016-09-01 00:03 - 2016-05-04 04:23 - 00129824 _____ C:\Windows\SysWOW64\vulkan-1.dll 2016-09-01 00:03 - 2016-05-04 04:22 - 00130848 _____ C:\Windows\system32\vulkan-1.dll 2016-09-01 00:03 - 2016-05-04 04:22 - 00045344 _____ C:\Windows\system32\vulkaninfo.exe 2016-09-01 00:03 - 2016-05-04 04:22 - 00040224 _____ C:\Windows\SysWOW64\vulkaninfo.exe 2016-09-01 00:02 - 2016-08-26 01:27 - 40070200 _____ C:\Windows\system32\nvcompiler.dll 2016-09-01 00:02 - 2016-08-26 01:27 - 35180992 _____ C:\Windows\SysWOW64\nvcompiler.dll 2016-09-01 00:02 - 2016-08-26 01:27 - 34842680 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll 2016-09-01 00:02 - 2016-08-26 01:27 - 28238904 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll 2016-09-01 00:02 - 2016-08-26 01:27 - 10865888 _____ C:\Windows\system32\nvptxJitCompiler.dll 2016-09-01 00:02 - 2016-08-26 01:27 - 10746896 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll 2016-09-01 00:02 - 2016-08-26 01:27 - 10288040 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll 2016-09-01 00:02 - 2016-08-26 01:27 - 09094048 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll 2016-09-01 00:02 - 2016-08-26 01:27 - 08875408 _____ C:\Windows\SysWOW64\nvptxJitCompiler.dll 2016-09-01 00:02 - 2016-08-26 01:27 - 08687888 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll 2016-09-01 00:02 - 2016-08-26 01:27 - 02912192 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll 2016-09-01 00:02 - 2016-08-26 01:27 - 02549184 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll 2016-09-01 00:02 - 2016-08-26 01:27 - 01922616 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6437270.dll 2016-09-01 00:02 - 2016-08-26 01:27 - 01586560 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6437270.dll 2016-09-01 00:02 - 2016-08-26 01:27 - 01020472 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll 2016-09-01 00:02 - 2016-08-26 01:27 - 00958008 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll 2016-09-01 00:02 - 2016-08-26 01:27 - 00941504 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll 2016-09-01 00:02 - 2016-08-26 01:27 - 00894520 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll 2016-09-01 00:02 - 2016-08-26 01:27 - 00802584 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncMFTH264.dll 2016-09-01 00:02 - 2016-08-26 01:27 - 00686712 _____ C:\Windows\system32\nvfatbinaryLoader.dll 2016-09-01 00:02 - 2016-08-26 01:27 - 00644112 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncMFTH264.dll 2016-09-01 00:02 - 2016-08-26 01:27 - 00576168 _____ C:\Windows\SysWOW64\nvfatbinaryLoader.dll 2016-09-01 00:02 - 2016-08-26 01:27 - 00573424 _____ (NVIDIA Corporation) C:\Windows\system32\nvumdshimx.dll 2016-09-01 00:02 - 2016-08-26 01:27 - 00471608 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll 2016-09-01 00:02 - 2016-08-26 01:27 - 00439352 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFROpenGL.dll 2016-09-01 00:02 - 2016-08-26 01:27 - 00394704 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll 2016-09-01 00:02 - 2016-08-26 01:27 - 00388544 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFROpenGL.dll 2016-09-01 00:02 - 2016-08-26 01:27 - 00386104 _____ (NVIDIA Corporation) C:\Windows\system32\nvDecMFTMjpeg.dll 2016-09-01 00:02 - 2016-08-26 01:27 - 00347072 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvDecMFTMjpeg.dll 2016-09-01 00:02 - 2016-08-26 01:27 - 00327224 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll 2016-09-01 00:02 - 2016-08-26 01:27 - 00181488 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll 2016-09-01 00:02 - 2016-08-26 01:27 - 00159352 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll 2016-09-01 00:02 - 2016-08-26 01:27 - 00153184 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll 2016-09-01 00:02 - 2016-08-26 01:27 - 00131536 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll 2016-08-29 23:53 - 2016-08-30 00:20 - 00000000 ____D C:\Rainmeter 2016-08-29 00:29 - 2016-08-29 00:29 - 00000000 ____D C:\Users\Kacper\Documents\NFS Most Wanted 2016-08-29 00:22 - 2016-08-29 00:22 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mr DJ 2016-08-27 14:15 - 2016-08-27 14:15 - 00000000 ____D C:\Users\Kacper\AppData\Roaming\Grupa IMAGE 2016-08-27 14:14 - 2016-08-27 14:14 - 00001450 _____ C:\Users\Kacper\Desktop\Testy B 2016.lnk 2016-08-27 14:14 - 2016-08-27 14:14 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Grupa IMAGE 2016-08-27 14:02 - 2016-08-27 14:14 - 00000000 ____D C:\Program Files (x86)\Grupa IMAGE 2016-08-25 13:03 - 2016-09-07 22:31 - 00000000 ____D C:\Starbound 2016-08-25 03:17 - 2016-08-25 03:18 - 00000619 _____ C:\Windows\SIERRA.INI 2016-08-25 03:17 - 2016-08-25 03:18 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sierra 2016-08-18 12:03 - 2016-08-18 12:03 - 00000000 ____D C:\Users\Kacper\AppData\Roaming\Steam 2016-08-16 12:34 - 2016-08-26 01:27 - 17619464 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll 2016-08-16 12:34 - 2016-08-11 16:33 - 01922616 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6437254.dll 2016-08-16 12:34 - 2016-08-11 16:33 - 01585088 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6437254.dll 2016-08-16 12:34 - 2016-08-11 16:33 - 00054728 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdap64.dll 2016-08-16 12:34 - 2016-08-11 16:33 - 00000669 _____ C:\Windows\SysWOW64\nv-vk32.json 2016-08-16 12:34 - 2016-08-11 16:33 - 00000669 _____ C:\Windows\system32\nv-vk64.json 2016-08-13 13:58 - 2016-08-13 13:58 - 00000000 ____D C:\Users\Kacper\AppData\Roaming\HelloGames 2016-08-12 17:08 - 2016-08-12 17:08 - 00000000 ____D C:\Users\Kacper\Documents\SavedGames 2016-08-12 17:08 - 2016-08-12 17:08 - 00000000 ____D C:\Users\Kacper\AppData\Roaming\Rogue Legacy 2016-08-12 17:07 - 2016-09-07 22:31 - 00000000 ____D C:\Rogue Legacy 2016-08-12 17:07 - 2016-08-12 17:07 - 00000000 ____D C:\Program Files (x86)\Microsoft XNA 2016-08-10 10:41 - 2016-08-03 12:22 - 00808288 _____ (Microsoft Corporation) C:\Windows\system32\WWAHost.exe 2016-08-10 10:41 - 2016-08-03 12:21 - 00566112 _____ (Microsoft Corporation) C:\Windows\system32\SettingSyncHost.exe 2016-08-10 10:41 - 2016-08-03 12:19 - 00604928 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys 2016-08-10 10:41 - 2016-08-03 12:19 - 00161632 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys 2016-08-10 10:41 - 2016-08-03 11:51 - 00084480 _____ (Microsoft Corporation) C:\Windows\system32\rdpudd.dll 2016-08-10 10:41 - 2016-08-03 11:44 - 00189952 _____ (Microsoft Corporation) C:\Windows\system32\MusNotification.exe 2016-08-10 10:41 - 2016-08-03 11:40 - 00058880 _____ (Microsoft Corporation) C:\Windows\system32\MusNotificationUx.exe 2016-08-10 10:41 - 2016-08-03 11:30 - 00515072 _____ (Microsoft Corporation) C:\Windows\system32\OneDriveSettingSyncProvider.dll 2016-08-10 10:41 - 2016-08-03 11:29 - 14252544 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll 2016-08-10 10:41 - 2016-08-03 11:18 - 06974464 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Data.Pdf.dll 2016-08-10 10:41 - 2016-08-03 11:16 - 05123072 _____ (Microsoft Corporation) C:\Windows\system32\dbgeng.dll 2016-08-10 10:41 - 2016-08-03 11:11 - 04171264 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorets.dll 2016-08-10 10:41 - 2016-08-03 07:52 - 00034088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wldp.dll 2016-08-10 10:41 - 2016-08-03 07:34 - 00501592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NetSetupEngine.dll 2016-08-10 10:41 - 2016-08-03 07:34 - 00084832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NetSetupApi.dll 2016-08-10 10:41 - 2016-08-03 06:44 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.StateRepositoryClient.dll 2016-08-10 10:41 - 2016-08-03 06:44 - 00048128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.StateRepositoryBroker.dll 2016-08-10 10:41 - 2016-08-03 06:32 - 12585984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmp.dll 2016-08-10 10:41 - 2016-08-03 06:25 - 04078080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dbgeng.dll 2016-08-10 10:41 - 2016-08-03 06:19 - 02180096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.StateRepository.dll 2016-08-10 10:40 - 2016-08-03 13:14 - 01505984 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll 2016-08-10 10:40 - 2016-08-03 13:14 - 00092352 _____ (Microsoft Corporation) C:\Windows\system32\acmigration.dll 2016-08-10 10:40 - 2016-08-03 13:14 - 00050368 _____ (Microsoft Corporation) C:\Windows\system32\CompatTelRunner.exe 2016-08-10 10:40 - 2016-08-03 12:36 - 07469408 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe 2016-08-10 10:40 - 2016-08-03 12:36 - 00099680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pdc.sys 2016-08-10 10:40 - 2016-08-03 12:36 - 00037744 _____ (Microsoft Corporation) C:\Windows\system32\wldp.dll 2016-08-10 10:40 - 2016-08-03 12:30 - 00026408 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe 2016-08-10 10:40 - 2016-08-03 12:23 - 00693600 _____ (Microsoft Corporation) C:\Windows\system32\NetSetupEngine.dll 2016-08-10 10:40 - 2016-08-03 12:23 - 00115040 _____ (Microsoft Corporation) C:\Windows\system32\NetSetupApi.dll 2016-08-10 10:40 - 2016-08-03 12:22 - 01322760 _____ (Microsoft Corporation) C:\Windows\system32\ole32.dll 2016-08-10 10:40 - 2016-08-03 12:22 - 00465248 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storport.sys 2016-08-10 10:40 - 2016-08-03 12:22 - 00331616 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pci.sys 2016-08-10 10:40 - 2016-08-03 12:22 - 00058408 _____ (Microsoft Corporation) C:\Windows\system32\SensorsNativeApi.dll 2016-08-10 10:40 - 2016-08-03 12:21 - 22561256 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll 2016-08-10 10:40 - 2016-08-03 12:21 - 03675512 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2016-08-10 10:40 - 2016-08-03 12:21 - 00303216 _____ (Microsoft Corporation) C:\Windows\system32\LockAppHost.exe 2016-08-10 10:40 - 2016-08-03 12:20 - 01540224 _____ (Microsoft Corporation) C:\Windows\system32\sppobjs.dll 2016-08-10 10:40 - 2016-08-03 12:20 - 00692136 _____ (Microsoft Corporation) C:\Windows\system32\sppwinob.dll 2016-08-10 10:40 - 2016-08-03 12:13 - 01988448 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys 2016-08-10 10:40 - 2016-08-03 12:13 - 00576864 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms2.sys 2016-08-10 10:40 - 2016-08-03 12:13 - 00393056 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms1.sys 2016-08-10 10:40 - 2016-08-03 12:11 - 00422744 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdbss.sys 2016-08-10 10:40 - 2016-08-03 11:51 - 00123392 _____ (Microsoft Corporation) C:\Windows\system32\tdlrecover.exe 2016-08-10 10:40 - 2016-08-03 11:46 - 22384128 _____ (Microsoft Corporation) C:\Windows\system32\edgehtml.dll 2016-08-10 10:40 - 2016-08-03 11:44 - 00063488 _____ (Microsoft Corporation) C:\Windows\system32\wshbth.dll 2016-08-10 10:40 - 2016-08-03 11:44 - 00044544 _____ (Microsoft Corporation) C:\Windows\system32\musdialoghandlers.dll 2016-08-10 10:40 - 2016-08-03 11:43 - 16985088 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Xaml.dll 2016-08-10 10:40 - 2016-08-03 11:41 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\Windows.StateRepositoryClient.dll 2016-08-10 10:40 - 2016-08-03 11:41 - 00059904 _____ (Microsoft Corporation) C:\Windows\system32\Windows.StateRepositoryBroker.dll 2016-08-10 10:40 - 2016-08-03 11:40 - 00127488 _____ (Microsoft Corporation) C:\Windows\system32\VEDataLayerHelpers.dll 2016-08-10 10:40 - 2016-08-03 11:40 - 00091136 _____ (Microsoft Corporation) C:\Windows\system32\bthserv.dll 2016-08-10 10:40 - 2016-08-03 11:40 - 00047616 _____ (Microsoft Corporation) C:\Windows\system32\TpmTasks.dll 2016-08-10 10:40 - 2016-08-03 11:39 - 00218624 _____ (Microsoft Corporation) C:\Windows\system32\cdd.dll 2016-08-10 10:40 - 2016-08-03 11:39 - 00104448 _____ (Microsoft Corporation) C:\Windows\system32\BluetoothApis.dll 2016-08-10 10:40 - 2016-08-03 11:38 - 00412160 _____ (Microsoft Corporation) C:\Windows\system32\MusUpdateHandlers.dll 2016-08-10 10:40 - 2016-08-03 11:38 - 00379392 _____ (Microsoft Corporation) C:\Windows\system32\usocore.dll 2016-08-10 10:40 - 2016-08-03 11:37 - 00110080 _____ (Microsoft Corporation) C:\Windows\system32\IdCtrls.dll 2016-08-10 10:40 - 2016-08-03 11:36 - 00221696 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2016-08-10 10:40 - 2016-08-03 11:36 - 00211456 _____ (Microsoft Corporation) C:\Windows\system32\NetSetupSvc.dll 2016-08-10 10:40 - 2016-08-03 11:36 - 00198144 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll 2016-08-10 10:40 - 2016-08-03 11:35 - 00764928 _____ (Microsoft Corporation) C:\Windows\system32\Chakradiag.dll 2016-08-10 10:40 - 2016-08-03 11:35 - 00200192 _____ (Microsoft Corporation) C:\Windows\system32\WUDFPlatform.dll 2016-08-10 10:40 - 2016-08-03 11:34 - 00383488 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2016-08-10 10:40 - 2016-08-03 11:33 - 00339968 _____ (Microsoft Corporation) C:\Windows\system32\SensorService.dll 2016-08-10 10:40 - 2016-08-03 11:33 - 00285184 _____ (Microsoft Corporation) C:\Windows\system32\VEEventDispatcher.dll 2016-08-10 10:40 - 2016-08-03 11:31 - 00506880 _____ (Microsoft Corporation) C:\Windows\system32\tileobjserver.dll 2016-08-10 10:40 - 2016-08-03 11:31 - 00359936 _____ (Microsoft Corporation) C:\Windows\system32\SensorsApi.dll 2016-08-10 10:40 - 2016-08-03 11:31 - 00247296 _____ (Microsoft Corporation) C:\Windows\system32\wevtutil.exe 2016-08-10 10:40 - 2016-08-03 11:30 - 24613888 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2016-08-10 10:40 - 2016-08-03 11:30 - 00970752 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll 2016-08-10 10:40 - 2016-08-03 11:29 - 02127360 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2016-08-10 10:40 - 2016-08-03 11:29 - 01500160 _____ (Microsoft Corporation) C:\Windows\system32\RecoveryDrive.exe 2016-08-10 10:40 - 2016-08-03 11:29 - 01387520 _____ (Microsoft Corporation) C:\Windows\system32\win32kbase.sys 2016-08-10 10:40 - 2016-08-03 11:29 - 00784384 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2016-08-10 10:40 - 2016-08-03 11:28 - 01213440 _____ (Microsoft Corporation) C:\Windows\system32\wwansvc.dll 2016-08-10 10:40 - 2016-08-03 11:28 - 00848896 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll 2016-08-10 10:40 - 2016-08-03 11:28 - 00529920 _____ (Microsoft Corporation) C:\Windows\system32\LogonController.dll 2016-08-10 10:40 - 2016-08-03 11:27 - 07536640 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll 2016-08-10 10:40 - 2016-08-03 11:27 - 01752576 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2016-08-10 10:40 - 2016-08-03 11:27 - 01717760 _____ (Microsoft Corporation) C:\Windows\system32\GdiPlus.dll 2016-08-10 10:40 - 2016-08-03 11:27 - 00381952 _____ (Microsoft Corporation) C:\Windows\system32\wuuhext.dll 2016-08-10 10:40 - 2016-08-03 11:20 - 13390336 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2016-08-10 10:40 - 2016-08-03 11:18 - 02067968 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentExtensions.dll 2016-08-10 10:40 - 2016-08-03 11:18 - 01388032 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll 2016-08-10 10:40 - 2016-08-03 11:17 - 02175488 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentServer.dll 2016-08-10 10:40 - 2016-08-03 11:16 - 03589120 _____ (Microsoft Corporation) C:\Windows\system32\win32kfull.sys 2016-08-10 10:40 - 2016-08-03 11:16 - 02635776 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Logon.dll 2016-08-10 10:40 - 2016-08-03 11:16 - 01732096 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2016-08-10 10:40 - 2016-08-03 11:15 - 07833088 _____ (Microsoft Corporation) C:\Windows\system32\Chakra.dll 2016-08-10 10:40 - 2016-08-03 11:14 - 04895232 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2016-08-10 10:40 - 2016-08-03 11:14 - 01997824 _____ (Microsoft Corporation) C:\Windows\system32\ActiveSyncProvider.dll 2016-08-10 10:40 - 2016-08-03 11:13 - 03025920 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2016-08-10 10:40 - 2016-08-03 11:13 - 02280960 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll 2016-08-10 10:40 - 2016-08-03 11:12 - 02746368 _____ (Microsoft Corporation) C:\Windows\system32\Windows.StateRepository.dll 2016-08-10 10:40 - 2016-08-03 07:33 - 00051128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SensorsNativeApi.dll 2016-08-10 10:40 - 2016-08-03 07:31 - 02921368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2016-08-10 10:40 - 2016-08-03 07:31 - 00957608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ole32.dll 2016-08-10 10:40 - 2016-08-03 07:31 - 00703840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WWAHost.exe 2016-08-10 10:40 - 2016-08-03 07:30 - 21123320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll 2016-08-10 10:40 - 2016-08-03 07:30 - 00465760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SettingSyncHost.exe 2016-08-10 10:40 - 2016-08-03 07:30 - 00255168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\LockAppHost.exe 2016-08-10 10:40 - 2016-08-03 06:57 - 00091648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdlrecover.exe 2016-08-10 10:40 - 2016-08-03 06:48 - 00051712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wshbth.dll 2016-08-10 10:40 - 2016-08-03 06:47 - 13018112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Xaml.dll 2016-08-10 10:40 - 2016-08-03 06:42 - 00080896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\BluetoothApis.dll 2016-08-10 10:40 - 2016-08-03 06:40 - 00092160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IdCtrls.dll 2016-08-10 10:40 - 2016-08-03 06:39 - 19351040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2016-08-10 10:40 - 2016-08-03 06:37 - 00335872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2016-08-10 10:40 - 2016-08-03 06:37 - 00219136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\VEEventDispatcher.dll 2016-08-10 10:40 - 2016-08-03 06:35 - 00286208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SensorsApi.dll 2016-08-10 10:40 - 2016-08-03 06:35 - 00178688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wevtutil.exe 2016-08-10 10:40 - 2016-08-03 06:34 - 00792064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll 2016-08-10 10:40 - 2016-08-03 06:34 - 00400896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\OneDriveSettingSyncProvider.dll 2016-08-10 10:40 - 2016-08-03 06:33 - 18677760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\edgehtml.dll 2016-08-10 10:40 - 2016-08-03 06:33 - 02050048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2016-08-10 10:40 - 2016-08-03 06:33 - 00687616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2016-08-10 10:40 - 2016-08-03 06:32 - 01526272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2016-08-10 10:40 - 2016-08-03 06:32 - 01467392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\GdiPlus.dll 2016-08-10 10:40 - 2016-08-03 06:32 - 00434688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\LogonController.dll 2016-08-10 10:40 - 2016-08-03 06:31 - 06743040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll 2016-08-10 10:40 - 2016-08-03 06:31 - 00705536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll 2016-08-10 10:40 - 2016-08-03 06:29 - 12133376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2016-08-10 10:40 - 2016-08-03 06:28 - 03663360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2016-08-10 10:40 - 2016-08-03 06:25 - 05323776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Data.Pdf.dll 2016-08-10 10:40 - 2016-08-03 06:23 - 05660672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Chakra.dll 2016-08-10 10:40 - 2016-08-03 06:23 - 01799680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Logon.dll 2016-08-10 10:40 - 2016-08-03 06:22 - 02501120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2016-08-10 10:40 - 2016-08-03 06:22 - 01502208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2016-08-10 10:40 - 2016-08-03 06:21 - 01708032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ActiveSyncProvider.dll ==================== Jeden miesiąc - zmodyfikowane pliki i foldery ======== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2016-09-08 21:59 - 2016-07-15 08:44 - 00001088 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2016-09-08 21:56 - 2016-07-14 15:50 - 01845594 _____ C:\Windows\system32\PerfStringBackup.INI 2016-09-08 21:56 - 2016-04-27 07:04 - 00817060 _____ C:\Windows\system32\perfh015.dat 2016-09-08 21:56 - 2016-04-27 07:04 - 00157764 _____ C:\Windows\system32\perfc015.dat 2016-09-08 21:56 - 2015-10-30 09:21 - 00000000 ____D C:\Windows\INF 2016-09-08 21:54 - 2016-08-08 03:11 - 00000000 ____D C:\Users\Kacper\Documents\temp 2016-09-08 21:50 - 2016-07-15 08:44 - 00001084 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2016-09-08 21:50 - 2016-07-14 15:54 - 00000000 ____D C:\ProgramData\NVIDIA 2016-09-08 21:50 - 2016-07-14 13:36 - 00000000 ____D C:\Users\Kacper 2016-09-08 21:50 - 2016-04-27 07:27 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2016-09-08 21:39 - 2016-07-15 08:54 - 00000000 ____D C:\ProgramData\AVG Web TuneUp 2016-09-08 21:39 - 2016-07-15 08:54 - 00000000 ____D C:\Program Files (x86)\AVG Web TuneUp 2016-09-08 21:39 - 2015-10-30 08:28 - 00262144 ___SH C:\Windows\system32\config\BBI 2016-09-08 21:21 - 2016-07-18 01:47 - 00000000 ____D C:\Users\Kacper\AppData\Roaming\TS3Client 2016-09-08 20:35 - 2015-10-30 09:24 - 00000000 ___HD C:\Windows\system32\GroupPolicy 2016-09-08 19:41 - 2016-07-15 09:12 - 00004226 _____ C:\Windows\System32\Tasks\User_Feed_Synchronization-{AAB8F05F-AB5D-4F89-BAE3-BA29B6122852} 2016-09-08 19:31 - 2016-07-15 08:46 - 00000000 ____D C:\Program Files (x86)\AVG 2016-09-08 19:31 - 2016-07-15 08:45 - 00000000 ____D C:\Users\Kacper\AppData\Local\AvgSetupLog 2016-09-08 19:31 - 2016-07-15 08:45 - 00000000 ____D C:\ProgramData\Avg 2016-09-08 19:31 - 2015-10-30 09:24 - 00000000 ___HD C:\Windows\ELAMBKUP 2016-09-08 19:31 - 2015-10-30 08:28 - 00032768 ___SH C:\Windows\system32\config\ELAM 2016-09-07 23:58 - 2016-07-15 08:44 - 00000000 ____D C:\Users\Kacper\AppData\Roaming\BitTorrent 2016-09-07 23:03 - 2016-07-15 09:15 - 00000000 ____D C:\Program Files (x86)\Steam 2016-09-07 22:50 - 2016-08-08 16:26 - 00000000 ____D C:\Windows\SysWOW64\directx 2016-09-06 18:35 - 2016-08-08 03:11 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information 2016-09-04 10:40 - 2016-07-16 21:27 - 00000000 ____D C:\Users\Kacper\Documents\My Games 2016-09-04 10:08 - 2015-10-30 09:24 - 00000000 ____D C:\Windows\AppReadiness 2016-09-03 09:20 - 2016-07-14 13:36 - 00000000 ____D C:\Users\Kacper\AppData\Local\VirtualStore 2016-09-03 08:55 - 2015-10-30 09:24 - 00000000 ___HD C:\Program Files\WindowsApps 2016-09-01 13:29 - 2015-10-30 09:24 - 00000000 ____D C:\Windows\system32\appraiser 2016-09-01 13:29 - 2015-10-30 09:11 - 00000000 ____D C:\Windows\CbsTemp 2016-09-01 00:03 - 2016-07-15 08:52 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation 2016-09-01 00:03 - 2016-07-14 15:54 - 00000000 ____D C:\ProgramData\NVIDIA Corporation 2016-08-27 21:52 - 2016-07-15 09:05 - 14216760 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys 2016-08-27 11:09 - 2016-08-07 02:15 - 00000000 ____D C:\Users\Kacper\AppData\Local\CrashDumps 2016-08-26 01:27 - 2016-07-15 09:05 - 23715064 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2umx.dll 2016-08-26 01:27 - 2016-07-15 09:05 - 20220928 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll 2016-08-26 01:27 - 2016-07-15 09:05 - 14477600 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll 2016-08-26 01:27 - 2016-07-15 09:05 - 03906992 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll 2016-08-26 01:27 - 2016-07-15 09:05 - 03448808 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll 2016-08-26 01:27 - 2015-07-13 20:45 - 00040827 _____ C:\Windows\system32\nvinfo.pb 2016-08-25 23:12 - 2016-07-15 09:06 - 00548408 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshext.dll 2016-08-25 23:12 - 2016-07-15 09:06 - 00081856 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshextr.dll 2016-08-25 23:12 - 2016-07-14 15:54 - 06384064 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll 2016-08-25 23:12 - 2016-07-14 15:54 - 02475064 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc64.dll 2016-08-25 23:12 - 2016-07-14 15:54 - 01764408 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvcr.dll 2016-08-25 23:12 - 2016-07-14 15:54 - 01362368 _____ (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe 2016-08-25 23:12 - 2016-07-14 15:54 - 00392128 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll 2016-08-25 23:12 - 2016-07-14 15:54 - 00071224 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll 2016-08-25 13:05 - 2016-07-15 08:52 - 00000000 ____D C:\ProgramData\Package Cache 2016-08-22 17:17 - 2016-07-14 15:54 - 07320235 _____ C:\Windows\system32\nvcoproc.bin 2016-08-18 13:16 - 2016-07-14 13:37 - 00000000 ___RD C:\Users\Kacper\OneDrive 2016-08-15 11:57 - 2016-07-15 10:20 - 00000000 ____D C:\Users\Kacper\AppData\Roaming\NVIDIA 2016-08-12 11:29 - 2015-10-30 09:24 - 00000000 ____D C:\Windows\rescache 2016-08-11 16:33 - 2015-04-16 19:03 - 00223304 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvhda64v.sys 2016-08-11 16:33 - 2015-04-16 07:19 - 01588688 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdagenco6420103.dll 2016-08-11 09:02 - 2016-07-15 08:49 - 00000000 ___HD C:\$AVG 2016-08-11 09:02 - 2016-07-15 08:47 - 00000000 ____D C:\ProgramData\MFAData 2016-08-11 09:02 - 2016-07-15 08:45 - 00000000 ____D C:\Users\Kacper\AppData\Local\Avg 2016-08-11 08:37 - 2016-04-27 07:33 - 00000000 __RHD C:\Users\Public\AccountPictures 2016-08-11 03:30 - 2016-04-27 07:17 - 00000000 ____D C:\Program Files\Windows Journal 2016-08-11 03:30 - 2015-10-30 09:24 - 00000000 ___RD C:\Windows\ImmersiveControlPanel 2016-08-10 10:49 - 2016-07-15 11:43 - 00000000 ____D C:\Windows\system32\MRT 2016-08-10 10:49 - 2015-10-30 09:24 - 00000000 ____D C:\Windows\system32\SecureBootUpdates 2016-08-10 10:47 - 2016-07-15 11:43 - 147640136 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe ==================== Pliki w katalogu głównym wybranych folderów ======= 2016-07-25 08:32 - 2016-08-07 01:28 - 0000009 _____ () C:\Users\Kacper\AppData\Roaming\update.dat Niektóre pliki w TEMP: ==================== C:\Users\Kacper\AppData\Local\Temp\avguirn_082012977215.exe C:\Users\Kacper\AppData\Local\Temp\avguirn_08380513548.exe C:\Users\Kacper\AppData\Local\Temp\CmdLineExt02.dll C:\Users\Kacper\AppData\Local\Temp\dllnt_dump.dll C:\Users\Kacper\AppData\Local\Temp\jre-8u101-windows-au.exe C:\Users\Kacper\AppData\Local\Temp\nvSCPAPI.dll C:\Users\Kacper\AppData\Local\Temp\nvSCPAPI64.dll C:\Users\Kacper\AppData\Local\Temp\nvStInst.exe C:\Users\Kacper\AppData\Local\Temp\ReimagePackage.exe C:\Users\Kacper\AppData\Local\Temp\sfamcc00001.dll C:\Users\Kacper\AppData\Local\Temp\sfextra.dll C:\Users\Kacper\AppData\Local\Temp\SIntf16.dll C:\Users\Kacper\AppData\Local\Temp\SIntf32.dll C:\Users\Kacper\AppData\Local\Temp\SIntfNT.dll ==================== Bamital & volsnap ================= (Brak automatycznej naprawy dla plików które nie przeszły weryfikacji.) C:\Windows\system32\winlogon.exe => Plik podpisany cyfrowo C:\Windows\system32\wininit.exe => Plik podpisany cyfrowo C:\Windows\explorer.exe => Plik podpisany cyfrowo C:\Windows\SysWOW64\explorer.exe => Plik podpisany cyfrowo C:\Windows\system32\svchost.exe => Plik podpisany cyfrowo C:\Windows\SysWOW64\svchost.exe => Plik podpisany cyfrowo C:\Windows\system32\services.exe => Plik podpisany cyfrowo C:\Windows\system32\User32.dll => Plik podpisany cyfrowo C:\Windows\SysWOW64\User32.dll => Plik podpisany cyfrowo C:\Windows\system32\userinit.exe => Plik podpisany cyfrowo C:\Windows\SysWOW64\userinit.exe => Plik podpisany cyfrowo C:\Windows\system32\rpcss.dll => Plik podpisany cyfrowo C:\Windows\system32\dnsapi.dll => Plik podpisany cyfrowo C:\Windows\SysWOW64\dnsapi.dll => Plik podpisany cyfrowo C:\Windows\system32\Drivers\volsnap.sys => Plik podpisany cyfrowo LastRegBack: 2016-09-08 15:46 ==================== Koniec FRST.txt ============================