Cześć. Przyznam, że zarejestrowałem się tutaj głównie w celu odnalezienia rozwiązania problemu, który nastąpił dziś rano. Wczoraj wieczorem dokonałem aktualizacji Windows 7 na swoim laptopie. Niestety jeden z programów niezbędnych do pracy z domu przestał działać toteż postanowiłem przywrócić system do ustawień sprzed aktualizacji. Po restarcie widzę blue screen z błędem wymienionym w temacie. Próbowałem już kilku rzeczy w tym przywracanie do innych dat, ale nic z tego. Pojawia się komunikat, o uszkodzonych plikach itd. Przed chwilą zrobiłem skan programem FRST, Poniżej log - dacie radę mi pomóc?
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 02.01.2018
Ran by SYSTEM on MININT-MKQT3OQ (05-01-2018 13:00:58)
Running from f:\
Platform: Windows 7 Home Premium Service Pack 1 (X64) Language: English (United States)
Internet Explorer Version 9
Boot Mode: Recovery
Default: ControlSet001
ATTENTION!:=====> If the system is bootable FRST must be run from normal or Safe mode to create a complete log.
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/
==================== Registry (Whitelisted) ===========================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RtHDVBg] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2226280 2011-05-16] (Realtek Semiconductor)
HKLM\...\Run: [synTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2785064 2011-05-05] (Synaptics Incorporated)
HKLM\...\Run: [synAsusAcpi] => C:\Program Files\Synaptics\SynTP\SynAsusAcpi.exe [97064 2011-05-05] (Synaptics Incorporated)
HKLM\...\Run: [Logitech Download Assistant] => C:\Windows\system32\rundll32.exe C:\Windows\System32\LogiLDA.dll,LogiFetch
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [253344 2017-11-16] (AVAST Software)
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [446392 2012-04-03] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [ATKOSD2] => C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe [5732992 2010-08-17] (ASUS)
HKLM-x32\...\Run: [bCSSync] => C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe [91520 2010-03-13] (Microsoft Corporation)
HKLM-x32\...\Run: [switchBoard] => C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [AdobeCS6ServiceManager] => C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe [1073312 2012-03-09] (Adobe Systems Incorporated)
HKLM\...\RunOnce: [*Restore] => C:\Windows\system32\rstrui.exe [296960 2010-11-20] (Microsoft Corporation)
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKU\Default\...\Run: [sidebar] => %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun
HKU\Default User\...\Run: [sidebar] => %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun
HKU\Gość\...\Run: [sidebar] => C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
HKU\Małgo\...\Run: [Google Update] => C:\Users\Małgo\AppData\Local\Google\Update\1.3.33.7\GoogleUpdateCore.exe [601680 2017-11-17] (Google Inc.)
HKU\Małgo\...\Run: [AdobeBridge] => [X]
HKU\MSSQL$SQLEXPRESS\...\Run: [sidebar] => %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun
HKU\UpdatusUser\...\Run: [sidebar] => %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun
HKU\UpdatusUser\...\Run: [iSUSPM] => C:\ProgramData\FLEXnet\Connect\11\ISUSPM.exe -scheduler
AppInit_DLLs: C:\Windows\system32\nvinitx.dll => C:\Windows\system32\nvinitx.dll [247144 2012-10-08] (NVIDIA Corporation)
AppInit_DLLs-x32: c:\windows\syswow64\nvinit.dll => c:\windows\syswow64\nvinit.dll [202600 2012-10-08] (NVIDIA Corporation)
==================== Services (Whitelisted) ====================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [77104 2015-10-07] (Apple Inc.)
S3 aswbIDSAgent; C:\Program Files\AVAST Software\Avast\x64\aswidsagenta.exe [7549928 2017-11-16] (AVAST Software)
S2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [281416 2017-11-16] (AVAST Software)
S2 MySQL56; C:\ProgramData\MySQL\MySQL Server 5.6\my.ini [14232 2017-12-18] ()
S4 OracleJobSchedulerXE; c:\oraclexe\app\oracle\product\11.2.0\server\Bin\extjob.exe [45568 2014-05-29] ()
S3 OracleMTSRecoveryService; C:\oraclexe\app\oracle\product\11.2.0\server\BIN\omtsreco.exe [81408 2014-05-29] (Oracle Corporation)
S2 OracleServiceXE; c:\oraclexe\app\oracle\product\11.2.0\server\bin\ORACLE.EXE [147110912 2014-05-29] (Oracle Corporation)
S3 OracleXEClrAgent; C:\oraclexe\app\oracle\product\11.2.0\server\bin\OraClrAgnt.exe [83968 2014-05-29] (Oracle Corporation)
S2 OracleXETNSListener; C:\oraclexe\app\oracle\product\11.2.0\server\BIN\tnslsnr.exe [522240 2014-05-29] (Oracle Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2009-07-13] (Microsoft Corporation)
S2 BrowserDefendert; C:\ProgramData\BrowserDefender\2.6.1519.190\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BrowserDefender.exe [X]
===================== Drivers (Whitelisted) ======================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S1 aswArPot; C:\Windows\System32\drivers\aswArPot.sys [183584 2017-11-16] (AVAST Software)
S1 aswbidsdriver; C:\Windows\System32\drivers\aswbidsdrivera.sys [321032 2017-11-16] (AVAST Software s.r.o.)
S0 aswbidsh; C:\Windows\System32\drivers\aswbidsha.sys [198968 2017-11-16] (AVAST Software s.r.o.)
S0 aswblog; C:\Windows\System32\drivers\aswbloga.sys [343288 2017-11-16] (AVAST Software s.r.o.)
S0 aswbuniv; C:\Windows\System32\drivers\aswbuniva.sys [57728 2017-11-16] (AVAST Software s.r.o.)
S3 aswHwid; C:\Windows\System32\drivers\aswHwid.sys [47008 2017-11-16] (AVAST Software)
S1 aswKbd; C:\Windows\system32\drivers\aswKbd.sys [41832 2017-09-07] (AVAST Software)
S2 aswMonFlt; C:\Windows\System32\drivers\aswMonFlt.sys [148288 2017-11-16] (AVAST Software)
S1 aswRdr; C:\Windows\System32\drivers\aswRdr2.sys [110376 2017-11-16] (AVAST Software)
S0 aswRvrt; C:\Windows\System32\drivers\aswRvrt.sys [84416 2017-11-16] (AVAST Software)
S1 aswSnx; C:\Windows\System32\drivers\aswSnx.sys [1026232 2017-11-16] (AVAST Software)
S1 aswSP; C:\Windows\System32\drivers\aswSP.sys [455376 2017-11-16] (AVAST Software)
S2 aswStm; C:\Windows\System32\drivers\aswStm.sys [203976 2017-11-16] (AVAST Software)
S0 aswVmm; C:\Windows\System32\drivers\aswVmm.sys [364464 2017-11-16] (AVAST Software)
S1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283200 2012-03-11] (DT Soft Ltd)
S3 kbfiltr; C:\Windows\System32\DRIVERS\kbfiltr.sys [15416 2009-07-20] ( )
S3 qcusbnet; C:\Windows\System32\DRIVERS\qcusbnet.sys [428600 2017-03-14] (QUALCOMM Incorporated)
S3 qcusbser; C:\Windows\System32\DRIVERS\qcusbser.sys [254520 2017-03-14] (QUALCOMM Incorporated)
S3 RimUsb; C:\Windows\System32\Drivers\RimUsb_AMD64.sys [28416 2008-04-16] (Research In Motion Limited)
S3 AthBTPort; system32\DRIVERS\btath_flt.sys [X]
S3 BTATH_A2DP; system32\drivers\btath_a2dp.sys [X]
S3 BTATH_BUS; system32\DRIVERS\btath_bus.sys [X]
S3 BTATH_HCRP; system32\DRIVERS\btath_hcrp.sys [X]
S3 BTATH_LWFLT; system32\DRIVERS\btath_lwflt.sys [X]
S3 BTATH_RCP; system32\DRIVERS\btath_rcp.sys [X]
S3 BtFilter; system32\DRIVERS\btfilter.sys [X]
S3 MBAMSwissArmy; \??\C:\Windows\system32\drivers\MBAMSwissArmy.sys [X]
S3 WinRing0_1_2_0; \??\C:\Program Files (x86)\IObit\Game Booster 3\Driver\WinRing0x64.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2018-01-05 13:00 - 2018-01-05 13:00 - 000000000 ____D C:\FRST
2018-01-04 23:31 - 2018-01-04 23:31 - 000000000 ____D C:\Users\Małgo\AppData\Roaming\Juniper Networks
2018-01-04 20:19 - 2018-01-05 00:35 - 000000000 ___SD C:\Windows\System32\CompatTel
2018-01-04 20:19 - 2018-01-05 00:35 - 000000000 ____D C:\Windows\System32\appraiser
2018-01-04 12:00 - 2018-01-04 12:00 - 000000000 ____D C:\Windows\System32\MRT
2018-01-04 11:26 - 2009-07-13 17:41 - 001393152 _____ (Microsoft Corporation) C:\Windows\System32\WMALFXGFXDSP.dll
2018-01-02 07:42 - 2018-01-02 07:42 - 000210056 _____ C:\Users\Małgo\Desktop\Formularz-rekrutacyjny.pdf
2017-12-28 14:52 - 2017-12-28 15:09 - 271106338 _____ C:\Users\Małgo\Downloads\CameraRaw_9_1_1.zip
2017-12-27 09:42 - 2017-12-27 09:42 - 002219562 _____ C:\Users\Małgo\Downloads\Astrofotografia dla początkującego.pdf
2017-12-27 09:42 - 2017-12-27 09:42 - 001682907 _____ C:\Users\Małgo\Downloads\Łączenie.pdf
2017-12-27 05:26 - 2017-12-27 05:27 - 000127284 _____ C:\Users\Małgo\Downloads\GradientXTerminatorWin64.zip
2017-12-27 03:28 - 2017-12-27 03:28 - 003540049 _____ C:\Users\Małgo\Downloads\Obróbka DSS w PS5.pdf
2017-12-27 03:26 - 2017-12-27 03:27 - 002814685 _____ C:\Users\Małgo\Downloads\PS w obróbce DSS.pdf
2017-12-27 01:48 - 2018-01-03 06:53 - 000003496 _____ C:\Windows\System32\Tasks\AdobeAAMUpdater-1.0-GOSIA-Małgo
2017-12-27 01:41 - 2017-12-27 01:41 - 000000000 ____D C:\ProgramData\regid.1986-12.com.adobe
2017-12-27 01:38 - 2017-12-27 01:42 - 000000000 ____D C:\Program Files\Adobe
2017-12-27 01:33 - 2017-12-27 01:41 - 000000000 ____D C:\Program Files\Common Files\Adobe
2017-12-26 13:26 - 2017-12-26 13:27 - 000566792 _____ C:\Users\Małgo\Downloads\Deep_Sky_Stacker_-_opis.pdf
2017-12-26 13:26 - 2017-12-26 13:27 - 000504296 _____ C:\Users\Małgo\Downloads\Kalibracja i stackowanie w DeepSkyStacker.pdf
2017-12-26 12:32 - 2017-12-26 12:32 - 000002591 _____ C:\Users\Public\Desktop\DeepSkyStacker.lnk
2017-12-26 12:32 - 2017-12-26 12:32 - 000000000 ____D C:\Users\Małgo\Downloads\DeepSkyStacker
2017-12-26 12:32 - 2017-12-26 12:32 - 000000000 ____D C:\Program Files (x86)\DeepSkyStacker
2017-12-26 12:24 - 2017-12-26 12:25 - 010754751 _____ C:\Users\Małgo\Downloads\DeepSkyStacker.zip
2017-12-21 23:51 - 2017-12-22 02:05 - 000000000 ____D C:\Users\Małgo\Desktop\My Cpp
2017-12-19 03:50 - 2017-12-19 03:50 - 000000445 _____ C:\Users\Małgo\Desktop\carrot.cpp
2017-12-18 09:06 - 2017-12-18 09:07 - 000000000 ____D C:\Program Files (x86)\CodeBlocks
2017-12-18 09:06 - 2017-12-18 09:06 - 000001097 _____ C:\Users\Małgo\Desktop\CodeBlocks.lnk
2017-12-18 09:03 - 2017-12-18 09:04 - 083783938 _____ (The Code::Blocks Team) C:\Users\Małgo\Downloads\codeblocks-16.01mingw-setup.exe
2017-12-18 08:35 - 2017-12-26 13:13 - 000000000 ____D C:\Users\Małgo\AppData\Roaming\CodeBlocks
2017-12-18 08:34 - 2017-12-18 08:34 - 034486727 _____ (The Code::Blocks Team) C:\Users\Małgo\Downloads\codeblocks-16.01-setup.exe
2017-12-18 08:17 - 2017-12-18 08:17 - 008075834 _____ C:\Users\Małgo\Desktop\Cpp_Primer_Plus_6th_Edition.pdf
2017-12-18 06:47 - 2017-12-18 06:47 - 002193834 _____ C:\Users\Małgo\Downloads\flyer.pdf
2017-12-18 01:49 - 2017-12-18 01:49 - 000279583 _____ C:\Users\Małgo\Downloads\CV_Malgorzata Dobosz_eng 2017-2.pdf
2017-12-18 01:32 - 2017-12-18 07:02 - 000001424 _____ C:\Users\Małgo\Downloads\MrBuggy.cfg
2017-12-18 01:24 - 2017-12-18 01:24 - 000000000 ____D C:\Program Files\MySQL
2017-12-18 01:20 - 2017-12-18 01:24 - 000000000 ____D C:\Program Files (x86)\MySQL
2017-12-18 01:13 - 2017-12-18 01:14 - 188518400 _____ C:\Users\Małgo\Downloads\mysql-installer-community-5.6.12.0.msi
2017-12-18 01:13 - 2017-12-18 01:13 - 001638912 _____ (21CN) C:\Users\Małgo\Downloads\MrBuggy.exe
2017-12-15 13:41 - 2017-12-15 13:41 - 000000004 _____ C:\Users\Małgo\Desktop\karta edenred.txt
2017-12-06 22:56 - 2017-12-06 22:56 - 000000000 ____D C:\Program Files\Common Files\Avast Software
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2018-01-05 12:48 - 2009-07-13 23:45 - 000000000 ____D C:\Program Files\Windows Journal
2018-01-05 02:47 - 2017-09-10 11:04 - 000535442 _____ C:\Windows\ntbtlog.txt
2018-01-05 00:46 - 2016-04-07 12:41 - 000000000 ____D C:\users\MSSQL$SQLEXPRESS
2018-01-05 00:46 - 2015-05-25 06:57 - 000000000 ____D C:\users\Gość
2018-01-05 00:46 - 2012-03-09 04:11 - 000000000 ____D C:\users\Małgo
2018-01-05 00:46 - 2011-11-11 11:34 - 000000000 ____D C:\users\UpdatusUser
2018-01-05 00:46 - 2009-07-13 23:45 - 000000000 ____D C:\Windows\ShellNew
2018-01-05 00:46 - 2009-07-13 21:32 - 000000000 ____D C:\Windows\Offline Web Pages
2018-01-05 00:46 - 2009-07-13 21:32 - 000000000 ____D C:\Windows\Downloaded Program Files
2018-01-05 00:46 - 2009-07-13 21:32 - 000000000 ____D C:\Program Files\Windows Defender
2018-01-05 00:46 - 2009-07-13 21:32 - 000000000 ____D C:\Program Files\DVD Maker
2018-01-05 00:46 - 2009-07-13 21:32 - 000000000 ____D C:\Program Files (x86)\Windows Defender
2018-01-05 00:46 - 2009-07-13 19:20 - 000000000 ____D C:\Windows\SysWOW64\Setup
2018-01-05 00:46 - 2009-07-13 19:20 - 000000000 ____D C:\Windows\SysWOW64\migwiz
2018-01-05 00:46 - 2009-07-13 19:20 - 000000000 ____D C:\Windows\SysWOW64\lv-LV
2018-01-05 00:46 - 2009-07-13 19:20 - 000000000 ____D C:\Windows\SysWOW64\lt-LT
2018-01-05 00:46 - 2009-07-13 19:20 - 000000000 ____D C:\Windows\SysWOW64\et-EE
2018-01-05 00:46 - 2009-07-13 19:20 - 000000000 ____D C:\Windows\SysWOW64\Dism
2018-01-05 00:46 - 2009-07-13 19:20 - 000000000 ____D C:\Windows\System32\Setup
2018-01-05 00:46 - 2009-07-13 19:20 - 000000000 ____D C:\Windows\System32\migwiz
2018-01-05 00:46 - 2009-07-13 19:20 - 000000000 ____D C:\Windows\System32\lv-LV
2018-01-05 00:46 - 2009-07-13 19:20 - 000000000 ____D C:\Windows\System32\lt-LT
2018-01-05 00:46 - 2009-07-13 19:20 - 000000000 ____D C:\Windows\System32\et-EE
2018-01-05 00:46 - 2009-07-13 19:20 - 000000000 ____D C:\Windows\System32\Dism
2018-01-05 00:46 - 2009-07-13 19:20 - 000000000 ____D C:\Windows\System32\AdvancedInstallers
2018-01-05 00:46 - 2009-07-13 19:20 - 000000000 ____D C:\Windows\rescache
2018-01-05 00:46 - 2009-07-13 19:20 - 000000000 ____D C:\Windows\PolicyDefinitions
2018-01-05 00:46 - 2009-07-13 19:20 - 000000000 ____D C:\Windows\L2Schemas
2018-01-05 00:46 - 2009-07-13 19:20 - 000000000 ____D C:\Windows\inf
2018-01-05 00:44 - 2015-07-29 09:42 - 000000000 ____D C:\Windows\System32\Tasks\AVAST Software
2018-01-05 00:44 - 2011-02-18 21:30 - 000000000 ____D C:\Windows\SysWOW64\XPSViewer
2018-01-05 00:44 - 2009-07-13 19:20 - 000000000 ____D C:\Windows\tracing
2018-01-05 00:44 - 2009-07-13 19:20 - 000000000 ____D C:\Windows\SysWOW64\MUI
2018-01-05 00:44 - 2009-07-13 19:20 - 000000000 ____D C:\Windows\System32\MUI
2018-01-05 00:44 - 2009-07-13 19:20 - 000000000 ____D C:\Windows\servicing
2018-01-05 00:44 - 2009-07-13 19:20 - 000000000 ____D C:\Windows\schemas
2018-01-05 00:41 - 2017-10-04 10:36 - 000000000 ___RD C:\Users\Małgo\Virtual Machines
2018-01-05 00:41 - 2017-08-12 09:01 - 000000000 ____D C:\Program Files\Java
2018-01-05 00:41 - 2017-05-24 23:30 - 000000000 ____D C:\Users\Małgo\AppData\Roaming\ICAClient
2018-01-05 00:41 - 2013-03-13 00:49 - 000000000 ____D C:\Program Files\Microsoft Silverlight
2018-01-05 00:41 - 2011-11-11 11:43 - 000000000 ____D C:\ProgramData\P4G
2018-01-05 00:41 - 2009-07-13 19:20 - 000000000 ____D C:\Program Files\Common Files\Microsoft Shared
2018-01-05 00:40 - 2017-05-24 23:28 - 000000000 ____D C:\Program Files (x86)\Citrix
2018-01-05 00:40 - 2013-03-13 00:49 - 000000000 ____D C:\Program Files (x86)\Microsoft Silverlight
2018-01-05 00:40 - 2012-03-18 04:29 - 000000000 ____D C:\Program Files (x86)\Java
2018-01-05 00:38 - 2009-07-13 23:44 - 000000000 ___RD C:\Users\Public\Recorded TV
2018-01-05 00:26 - 2009-07-13 19:20 - 000000000 ____D C:\Windows\registration
2018-01-05 00:16 - 2009-07-13 19:20 - 000000000 ____D C:\Windows\AppCompat
2018-01-05 00:05 - 2009-07-13 20:45 - 000009920 ____H C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2018-01-05 00:05 - 2009-07-13 20:45 - 000009920 ____H C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2018-01-04 23:50 - 2016-08-10 01:14 - 000000000 ____D C:\Users\Małgo\.oracle_jre_usage
2018-01-04 23:32 - 2012-03-09 04:11 - 000000000 ____D C:\Users\Małgo\AppData\Local\VirtualStore
2018-01-04 20:50 - 2009-07-28 22:03 - 000000000 ____D C:\Windows\Panther
2018-01-04 07:04 - 2013-07-08 11:04 - 000000288 _____ C:\Windows\Tasks\DSite.job
2018-01-04 00:40 - 2012-03-09 04:45 - 000001006 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1853744613-2716420291-1059564960-1001Core.job
2018-01-04 00:24 - 2012-04-16 07:42 - 000000000 ____D C:\Users\Małgo\AppData\Local\Adobe
2018-01-03 06:53 - 2017-08-01 01:07 - 000003154 _____ C:\Windows\System32\Tasks\{6CA1A2D6-4D75-49D0-B0F7-5AC62CF71E90}
2018-01-03 06:53 - 2017-07-07 05:22 - 000003944 _____ C:\Windows\System32\Tasks\SafeZone scheduled Autoupdate 1468514181
2018-01-03 06:53 - 2016-08-16 05:27 - 000004476 _____ C:\Windows\System32\Tasks\Adobe Acrobat Update Task
2018-01-03 06:53 - 2015-12-21 09:20 - 000004412 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
2018-01-03 06:53 - 2015-08-29 12:53 - 000003386 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1853744613-2716420291-1059564960-1001Core1d0bf89ddf8de40
2018-01-03 06:53 - 2013-12-17 14:31 - 000002772 _____ C:\Windows\System32\Tasks\CCleanerSkipUAC
2018-01-03 06:53 - 2013-07-08 11:04 - 000003222 _____ C:\Windows\System32\Tasks\DSite
2018-01-03 06:53 - 2013-03-16 04:34 - 000003160 _____ C:\Windows\System32\Tasks\Game_Booster_AutoUpdate
2018-01-03 06:53 - 2013-01-30 10:56 - 000003480 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2018-01-03 06:53 - 2013-01-30 10:56 - 000003352 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2018-01-03 06:53 - 2012-03-18 03:15 - 000003170 _____ C:\Windows\System32\Tasks\{4F0D66D6-DA8E-4B9A-A0F5-D3E3790E0EA9}
2018-01-03 06:53 - 2012-03-18 03:15 - 000003170 _____ C:\Windows\System32\Tasks\{2A247AC1-279A-4D6B-B03C-E93E28C307FF}
2018-01-03 06:53 - 2012-03-11 01:06 - 000003018 _____ C:\Windows\System32\Tasks\ASUS Live Update
2018-01-03 06:53 - 2012-03-09 04:45 - 000003658 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1853744613-2716420291-1059564960-1001UA
2018-01-03 06:53 - 2012-03-09 04:45 - 000003642 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1853744613-2716420291-1059564960-1001Core
2018-01-03 06:53 - 2011-11-11 11:43 - 000003148 _____ C:\Windows\System32\Tasks\SidebarExecute
2018-01-01 13:20 - 2011-02-18 21:31 - 000753644 _____ C:\Windows\System32\perfh015.dat
2018-01-01 13:20 - 2011-02-18 21:31 - 000160164 _____ C:\Windows\System32\perfc015.dat
2018-01-01 13:20 - 2009-07-13 21:13 - 001701542 _____ C:\Windows\System32\PerfStringBackup.INI
2018-01-01 06:34 - 2013-02-02 02:45 - 000065536 _____ C:\Windows\System32\Ikeext.etl
2018-01-01 06:34 - 2011-11-11 11:47 - 000045056 _____ C:\Windows\System32\acovcnt.exe
2018-01-01 06:34 - 2009-07-13 21:08 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2017-12-31 07:55 - 2017-03-08 13:51 - 000004172 _____ C:\Windows\System32\Tasks\Avast Emergency Update
2017-12-29 13:49 - 2009-07-13 19:20 - 000000000 ____D C:\Windows\System32\NDF
2017-12-29 10:11 - 2016-08-26 09:01 - 000000000 _____ C:\Windows\SysWOW64\last.dump
2017-12-29 10:09 - 2011-11-11 11:47 - 000002816 _____ C:\Windows\System32\AutoRunFilter.ini
2017-12-29 10:08 - 2009-07-13 20:45 - 005042464 _____ C:\Windows\System32\FNTCACHE.DAT
2017-12-28 15:06 - 2012-03-09 04:43 - 000000000 ____D C:\Users\Małgo\AppData\Roaming\Adobe
2017-12-28 14:35 - 2012-03-18 14:45 - 000000000 ____D C:\Users\Małgo\AppData\Local\CrashDumps
2017-12-27 09:02 - 2012-04-16 07:40 - 000000000 ____D C:\ProgramData\Adobe
2017-12-27 01:47 - 2015-11-07 11:01 - 000000000 ____D C:\Users\Małgo\AppData\Roaming\NVIDIA
2017-12-27 01:44 - 2012-03-09 04:11 - 000110880 _____ C:\Users\Małgo\AppData\Local\GDIPFONTCACHEV1.DAT
2017-12-27 01:42 - 2012-04-16 07:42 - 000000000 ____D C:\Program Files (x86)\Adobe
2017-12-27 01:27 - 2012-03-09 05:35 - 000000000 ____D C:\Users\Małgo\AppData\Roaming\uTorrent
2017-12-26 13:16 - 2016-08-15 10:12 - 000000000 ____D C:\Users\Małgo\Downloads\TORRENTS
2017-12-18 01:24 - 2016-11-22 09:02 - 000000000 ____D C:\ProgramData\MySQL
2017-12-18 01:24 - 2014-06-29 07:35 - 001730104 _____ C:\Windows\SysWOW64\PerfStringBackup.INI
2017-12-18 01:04 - 2012-08-01 08:23 - 000000000 ____D C:\Users\Małgo\AppData\Local\ElevatedDiagnostics
2017-12-12 23:32 - 2015-12-21 09:20 - 000803328 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2017-12-12 23:32 - 2015-12-21 09:20 - 000144896 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2017-12-12 23:32 - 2015-12-21 09:20 - 000000000 ____D C:\Windows\System32\Macromed
2017-12-12 23:32 - 2011-04-01 01:19 - 000000000 ____D C:\Windows\SysWOW64\Macromed
Some files in TEMP:
====================
2017-09-10 10:45 - 2016-07-21 10:14 - 006913648 _____ (Spotify Ltd) C:\Users\Małgo\AppData\Local\Temp\SpotifyUninstall.exe
==================== Known DLLs (Whitelisted) =========================
==================== Bamital & volsnap ======================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\rpcss.dll => MD5 is legit
C:\Windows\System32\dnsapi.dll => MD5 is legit
C:\Windows\SysWOW64\dnsapi.dll => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit
==================== Association (Whitelisted) =============
==================== Restore Points =========================
==================== Memory info ===========================
Percentage of memory in use: 14%
Total physical RAM: 4006.7 MB
Available physical RAM: 3418.41 MB
Total Virtual: 4004.85 MB
Available Virtual: 3411.5 MB
==================== Drives ================================
Drive c: (OS) (Fixed) (Total:186.3 GB) (Free:44.24 GB) NTFS ==>[system with boot components (obtained from drive)]
Drive d: (DATA) (Fixed) (Total:254.46 GB) (Free:72.06 GB) NTFS
Drive f: (INTENSO) (Removable) (Total:7.83 GB) (Free:5.22 GB) exFAT
Drive x: (Boot) (Fixed) (Total:0.03 GB) (Free:0.03 GB) NTFS
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: 496B9619)
Partition 1: (Not Active) - (Size=25 GB) - (Type=1C)
Partition 2: (Active) - (Size=186.3 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=254.5 GB) - (Type=07 NTFS)
========================================================
Disk: 1 (Size: 7.8 GB) (Disk ID: 00000000)
Partition: GPT.
LastRegBack: 2017-12-29 08:08
==================== End of FRST.txt ============================