wklejto.pl

Dodane przez: ~Anonim (2019-11-17 12:22) -> text
1.
2.
3.
4.
5.
6.
7.
8.
9.
10.
11.
12.
13.
14.
15.
16.
17.
18.
19.
20.
21.
22.
23.
24.
25.
26.
27.
28.
29.
30.
31.
32.
33.
34.
35.
36.
37.
38.
39.
40.
41.
42.
43.
44.
45.
46.
47.
48.
49.
50.
51.
52.
53.
54.
55.
56.
57.
58.
59.
60.
61.
62.
63.
64.
65.
66.
67.
68.
69.
70.
71.
72.
73.
74.
75.
76.
77.
78.
79.
80.
81.
82.
83.
84.
85.
86.
87.
88.
89.
90.
91.
92.
93.
94.
95.
96.
97.
98.
99.
100.
101.
102.
103.
104.
105.
106.
107.
108.
109.
110.
111.
112.
113.
114.
115.
116.
117.
118.
119.
120.
121.
122.
123.
124.
125.
126.
127.
128.
129.
130.
131.
132.
133.
134.
135.
136.
137.
138.
139.
140.
141.
142.
143.
144.
145.
146.
147.
148.
149.
150.
151.
152.
153.
154.
155.
156.
157.
158.
159.
160.
161.
162.
163.
164.
165.
166.
167.
168.
169.
170.
171.
172.
173.
174.
175.
176.
177.
178.
179.
180.
181.
182.
183.
184.
185.
186.
187.
188.
189.
190.
191.
192.
193.
194.
195.
196.
197.
198.
199.
200.
201.
202.
203.
204.
205.
206.
207.
208.
209.
210.
211.
212.
213.
214.
215.
216.
217.
218.
219.
220.
221.
222.
223.
224.
225.
226.
227.
228.
229.
230.
231.
232.
233.
234.
235.
236.
237.
238.
239.
240.
241.
242.
243.
244.
245.
246.
247.
248.
249.
250.
251.
252.
253.
254.
255.
256.
257.
258.
259.
260.
261.
262.
263.
264.
265.
266.
267.
268.
269.
270.
271.
272.
273.
274.
275.
276.
277.
278.
279.
280.
281.
282.
283.
284.
285.
286.
287.
288.
289.
290.
291.
292.
293.
294.
295.
296.
297.
298.
299.
300.
301.
302.
303.
304.
305.
306.
307.
308.
309.
310.
311.
312.
313.
314.
315.
316.
317.
318.
319.
320.
321.
322.
323.
324.
325.
326.
327.
328.
329.
330.
331.
332.
333.
334.
335.
336.
337.
338.
339.
340.
341.
342.
343.
344.
345.
346.
347.
348.
349.
350.
351.
352.
353.
354.
355.
356.
357.
358.
359.
360.
361.
362.
363.
364.
365.
366.
367.
368.
369.
370.
371.
372.
373.
374.
375.
376.
377.
378.
379.
380.
381.
382.
383.
384.
385.
386.
387.
388.
389.
390.
391.
392.
393.
394.
395.
396.
397.
398.
399.
400.
401.
402.
403.
404.
405.
406.
407.
408.
409.
410.
411.
412.
413.
414.
415.
416.
417.
418.
419.
420.
421.
422.
423.
424.
425.
426.
427.
428.
429.
430.
431.
432.
433.
434.
435.
436.
437.
438.
439.
440.
441.
442.
443.
444.
445.
446.
447.
448.
449.
450.
451.
452.
453.
454.
455.
456.
457.
458.
459.
460.
461.
462.
463.
464.
465.
466.
467.
468.
469.
470.
471.
472.
473.
474.
475.
476.
477.
478.
479.
480.
481.
482.
483.
484.
485.
486.
487.
488.
489.
490.
491.
492.
493.
494.
495.
496.
497.
498.
499.
500.
501.
502.
503.
504.
505.
506.
507.
508.
509.
510.
511.
512.
513.
514.
515.
516.
517.
518.
519.
520.
521.
522.
523.
524.
525.
526.
527.
528.
529.
530.
531.
532.
533.
534.
535.
536.
537.
538.
Rezultaty skanowania Farbar Recovery Scan Tool (FRST) (x64) Wersja: 14-11-2019
Uruchomiony przez Jarecki (administrator)  LENOVO-JR (LENOVO 20354) (17-11-2019 13:09:11)
Uruchomiony z C:\Users\Jarecki\Downloads
Załadowane profile: Jarecki (Dostępne profile: Jarecki)
Platform: Windows 10 Home Wersja 1903 18362.418 (X64) Język: Polski (Polska)
Domyślna przeglądarka: Chrome
Tryb startu: Normal
Instrukcja obsługi Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/
 
==================== Procesy (filtrowane) =================
 
(Załączenie wejścia w fixlist spowoduje zamknięcie procesu. Powiązany plik nie zostanie przeniesiony.)
 
(Adobe Inc. -> Adobe Systems) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(Adobe Inc. -> Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe
(Adobe Inc. -> Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe
(Adobe Systems Incorporated -> Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe
(Brother Industries, Ltd.) [Brak podpisu cyfrowego] C:\Program Files (x86)\Browny02\BrYNSvc.exe
(Brother Industries, Ltd.) [Brak podpisu cyfrowego] C:\Program Files (x86)\BrownyInd\Brother\BrIndicator.exe
(Crossgate Consulting Limited -> ) C:\Users\Jarecki\AppData\Roaming\SteamServerBrowser\SteamServerBrowser.exe
(ELAN Microelectronics Corporation -> ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrl.exe
(ELAN Microelectronics Corporation -> ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrlHelper.exe
(ELAN Microelectronics Corporation -> ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDIntelligent.exe
(ELAN Microelectronics Corporation -> ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDService.exe
(Intel Corporation-Wireless Connectivity Solutions -> Intel Corporation) C:\Windows\System32\ibtsiva.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxEM.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxHK.exe
(Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft SQL Server\90\Shared\sqlbrowser.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft SQL Server\MSSQL10_50.INSERTGT\MSSQL\Binn\sqlservr.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\CastSrv.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(Photodex Corporation -> ) C:\Program Files (x86)\Photodex\ProShow Producer\scsiaccess.exe
(Realtek Semiconductor Corp -> Realtek semiconductor) C:\Windows\RTFTrack.exe
(ResolveDevOps Limited -> ResolveDevOps Limited) C:\Users\Jarecki\AppData\Roaming\ProductAuthenticationService\pas.exe
 
==================== Rejestr (filtrowane) ===================
 
(Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.)
 
HKLM\...\Run: [RtsFT] => C:\WINDOWS\RTFTrack.exe [5060864 2015-06-16] (Realtek Semiconductor Corp -> Realtek semiconductor)
HKLM\...\Run: [ETDCtrl] => C:\Program Files\Elantech\ETDCtrl.exe [3805928 2016-08-15] (ELAN Microelectronics Corporation -> ELAN Microelectronics Corp.)
HKLM\...\Run: [AdobeGCInvoker-1.0] => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [2872400 2019-10-08] (Adobe Inc. -> Adobe Systems, Incorporated)
HKLM-x32\...\Run: [ControlCenter3] => C:\Program Files (x86)\Brother\ControlCenter3\brctrcen.exe [114688 2008-12-24] (Brother Industries, Ltd.) [Brak podpisu cyfrowego]
HKLM-x32\...\Run: [BrStsMon00] => C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe [4509184 2012-12-27] (Brother Industries, Ltd.) [Brak podpisu cyfrowego]
HKLM-x32\...\Run: [Adobe Creative Cloud] => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe [2383040 2016-10-25] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
HKLM-x32\...\Run: [BrStsInd00] => C:\Program Files (x86)\BrownyInd\Brother\BrIndicator.exe [1885184 2012-12-18] (Brother Industries, Ltd.) [Brak podpisu cyfrowego]
HKU\S-1-5-21-2179863463-2490515380-3909065564-1001\...\Run: [EADM] => C:\Program Files (x86)\Origin\Origin.exe [3112744 2018-09-06] (Electronic Arts, Inc. -> Electronic Arts)
HKU\S-1-5-21-2179863463-2490515380-3909065564-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [3146016 2019-03-06] (Valve -> Valve Corporation)
HKU\S-1-5-21-2179863463-2490515380-3909065564-1001\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [27831240 2018-03-13] (Skype Software Sarl -> Skype Technologies S.A.)
HKU\S-1-5-21-2179863463-2490515380-3909065564-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [18630056 2018-09-10] (Piriform Ltd -> Piriform Ltd)
HKU\S-1-5-21-2179863463-2490515380-3909065564-1001\...\Run: [SteamServerBrowser] => C:\Users\Jarecki\AppData\Roaming\SteamServerBrowser\SteamServerBrowser.exe [172488 2019-01-13] (Crossgate Consulting Limited -> )
HKU\S-1-5-21-2179863463-2490515380-3909065564-1001\...\Run: [ProductAuthenticationService] => C:\Users\Jarecki\AppData\Roaming\ProductAuthenticationService\pas.exe [1004072 2019-05-07] (ResolveDevOps Limited -> ResolveDevOps Limited)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\78.0.3904.97\Installer\chrmstp.exe [2019-11-11] (Google LLC -> Google LLC)
HKLM\Software\...\Authentication\Credential Providers: [{65CD7F9B-E8F3-4bb0-82EB-6F6875B745DF}] -> C:\WINDOWS\system32\LMIinit.dll [2016-05-21] (LogMeIn, Inc. -> LogMeIn, Inc.)
 
==================== Zaplanowane zadania (filtrowane) ============
 
(Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)
 
Task: {1090B7FC-4EDA-416C-8DC2-9CD02FA21E38} - System32\Tasks\Microsoft\Windows\Media Center\PeriodicScanRetry => C:\WINDOWS\ehome\MCUpdate.exe [168448 2017-03-07] (Microsoft Corporation) [Brak podpisu cyfrowego]
Task: {17B9D3C4-33F7-404F-94F5-DA2A54400806} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [13797712 2018-09-10] (Piriform Ltd -> Piriform Ltd)
Task: {18AB8685-EDA4-4D67-891E-482BB4DB7242} - System32\Tasks\AdobeAAMUpdater-1.0-DESKTOP-E381V73-Jarecki => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [508128 2016-07-01] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
Task: {1DEA7690-2A3B-49F9-B93D-F98C0C60D9AD} - System32\Tasks\Microsoft\Windows\Media Center\ReindexSearchRoot => C:\WINDOWS\ehome\ehPrivJob.exe [264704 2017-03-07] (Microsoft Corporation) [Brak podpisu cyfrowego]
Task: {3342BD49-BBBA-4CE9-BC96-68F78C92CD17} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate_scheduled => C:\WINDOWS\ehome\mcupdate.exe [168448 2017-03-07] (Microsoft Corporation) [Brak podpisu cyfrowego]
Task: {3687BBA4-1139-44A1-8353-7407D1BE980E} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW2 => C:\WINDOWS\ehome\ehPrivJob.exe [264704 2017-03-07] (Microsoft Corporation) [Brak podpisu cyfrowego]
Task: {36D29372-DC24-4F52-B2D4-B58910391FE8} - System32\Tasks\SmartShare => C:\Program Files (x86)\LG Software\LG Smart Share\SmartShareStart.exe
Task: {4335D8AE-28DC-4F28-A0C4-938E43DC7355} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office\Office15\msoia.exe [376496 2014-01-23] (Microsoft Corporation -> Microsoft Corporation)
Task: {462B4EDC-8062-44DE-B502-ED40560B9CDF} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW1 => C:\WINDOWS\ehome\ehPrivJob.exe [264704 2017-03-07] (Microsoft Corporation) [Brak podpisu cyfrowego]
Task: {4677C4FD-EE16-40CE-ABDC-94D86AEB4056} - System32\Tasks\Microsoft\Windows\Media Center\ConfigureInternetTimeService => C:\WINDOWS\ehome\ehPrivJob.exe [264704 2017-03-07] (Microsoft Corporation) [Brak podpisu cyfrowego]
Task: {4CF2324D-E620-4D62-BD47-CB8DA9BE42B6} - System32\Tasks\Microsoft\Windows\Media Center\ehDRMInit => C:\WINDOWS\ehome\ehPrivJob.exe [264704 2017-03-07] (Microsoft Corporation) [Brak podpisu cyfrowego]
Task: {4DD555F5-789F-4313-882D-C3F575AB2937} - System32\Tasks\Microsoft\Windows\Media Center\ObjectStoreRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe [168448 2017-03-07] (Microsoft Corporation) [Brak podpisu cyfrowego]
Task: {5DEE5B3B-F438-4ADC-A768-0F7FFAE002F3} - System32\Tasks\Microsoft\Windows\Media Center\OCURActivate => C:\WINDOWS\ehome\ehPrivJob.exe [264704 2017-03-07] (Microsoft Corporation) [Brak podpisu cyfrowego]
Task: {640A87FB-B400-4130-8C8D-D2D137AE90B5} - System32\Tasks\Microsoft\Windows\Media Center\PvrScheduleTask => C:\WINDOWS\ehome\mcupdate.exe [168448 2017-03-07] (Microsoft Corporation) [Brak podpisu cyfrowego]
Task: {705EA054-AD45-4C6B-89AE-E3B065737B1C} - System32\Tasks\Microsoft\Windows\Media Center\InstallPlayReady => C:\WINDOWS\ehome\ehPrivJob.exe [264704 2017-03-07] (Microsoft Corporation) [Brak podpisu cyfrowego]
Task: {7530F84C-83B0-42E4-8589-1ABCEDB9B24A} - System32\Tasks\Microsoft\Windows\Media Center\PvrRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe [168448 2017-03-07] (Microsoft Corporation) [Brak podpisu cyfrowego]
Task: {79EF2561-86FB-43F8-885D-B4D100CF726B} - System32\Tasks\Microsoft\Windows\Media Center\DispatchRecoveryTasks => C:\WINDOWS\ehome\ehPrivJob.exe [264704 2017-03-07] (Microsoft Corporation) [Brak podpisu cyfrowego]
Task: {860408A1-9840-4179-A919-4216170E2AD2} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office\Office15\msoia.exe [376496 2014-01-23] (Microsoft Corporation -> Microsoft Corporation)
Task: {8B259E35-837C-4D34-B228-46AA2B2A5625} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2017-05-17] (Google Inc -> Google Inc.)
Task: {8EED535E-46DF-4430-BEA3-FFD92563D383} - System32\Tasks\Microsoft\Windows\Media Center\OCURDiscovery => C:\WINDOWS\ehome\ehPrivJob.exe [264704 2017-03-07] (Microsoft Corporation) [Brak podpisu cyfrowego]
Task: {92DD9E08-B468-4FE7-ACA8-49784C246DF4} - System32\Tasks\Microsoft\Windows\Media Center\MediaCenterRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe [168448 2017-03-07] (Microsoft Corporation) [Brak podpisu cyfrowego]
Task: {968B0513-B843-4AE2-AFD5-FA2ED03F2349} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscovery => C:\WINDOWS\ehome\ehPrivJob.exe [264704 2017-03-07] (Microsoft Corporation) [Brak podpisu cyfrowego]
Task: {99E85005-19B0-4781-BA77-C1A8EC8AEE01} - System32\Tasks\AdobeGCInvoker-1.0 => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [2872400 2019-10-08] (Adobe Inc. -> Adobe Systems, Incorporated)
Task: {9BA3392D-CC1E-4A17-A8EC-5EE42AD0E71C} - System32\Tasks\Microsoft\Windows\Media Center\RecordingRestart => C:\WINDOWS\ehome\ehrec.exe [78336 2017-03-07] (Microsoft Corporation) [Brak podpisu cyfrowego]
Task: {9DB028B8-FE13-4FF3-A04E-7809DF8CECBA} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [619416 2019-02-04] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {9FD4C4C0-3BD8-4775-A5A9-B9B6AB1EEECD} - System32\Tasks\Microsoft\Windows\Media Center\SqlLiteRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe [168448 2017-03-07] (Microsoft Corporation) [Brak podpisu cyfrowego]
Task: {A292A7CF-AFAE-42E8-8601-639DAE79B7DB} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office15\OLicenseHeartbeat.exe [1626328 2014-01-23] (Microsoft Corporation -> Microsoft Corporation)
Task: {A6B8A8EC-76B8-415C-8C5F-B4B8BCA0B242} - System32\Tasks\AutoKMS => C:\WINDOWS\AutoKMS\AutoKMS.exe
Task: {B0567E47-A504-49C2-AC8D-9DB67EA1A8D2} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2017-05-17] (Google Inc -> Google Inc.)
Task: {C0CF30CA-BD91-46CB-8A9B-1EFBC0B0CF9A} - System32\Tasks\Microsoft\Windows\Media Center\RegisterSearch => C:\WINDOWS\ehome\ehPrivJob.exe [264704 2017-03-07] (Microsoft Corporation) [Brak podpisu cyfrowego]
Task: {D9F3DE88-5048-4AC1-BB72-3203E6B23754} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate => C:\WINDOWS\ehome\mcupdate.exe [168448 2017-03-07] (Microsoft Corporation) [Brak podpisu cyfrowego]
Task: {DC9409D1-BADC-49E0-AC49-D2694D3AA2E3} - System32\Tasks\Microsoft\Windows\Media Center\StartRecording => C:\WINDOWS\ehome\ehrec.exe [78336 2017-03-07] (Microsoft Corporation) [Brak podpisu cyfrowego]
Task: {E1D29A9E-5CC2-43F3-9553-93F1F805B0ED} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1240656 2019-09-10] (Adobe Inc. -> Adobe Systems)
Task: {E395C0B5-B80C-48A6-916D-F2A413670B32} - System32\Tasks\Microsoft\Windows\Media Center\ActivateWindowsSearch => C:\WINDOWS\ehome\ehPrivJob.exe [264704 2017-03-07] (Microsoft Corporation) [Brak podpisu cyfrowego]
Task: {E95F1BC7-38F2-47B1-BA5C-D5710F4E78FF} - System32\Tasks\Microsoft\Windows\Media Center\UpdateRecordPath => C:\WINDOWS\ehome\ehPrivJob.exe [264704 2017-03-07] (Microsoft Corporation) [Brak podpisu cyfrowego]
 
(Załączenie wejścia w fixlist spowoduje przesunięcie pliku zadania (.job). Plik uruchamiany docelowo przez zadanie nie zostanie przeniesiony.)
 
 
==================== Internet (filtrowane) ====================
 
(Załączenie wejścia w fixlist, w przypadku gdy jest to obiekt rejestru, spowoduje usunięcie go z rejestru lub przywrócenie jego domyślnej postaci.)
 
Tcpip\..\Interfaces\{00137a80-b8ad-413d-9445-a46c4d426bd5}: [NameServer] 8.8.8.8
Tcpip\..\Interfaces\{26b11a49-585f-4b43-a90c-9af3c3d7b25b}: [NameServer] 8.8.8.8
Tcpip\..\Interfaces\{3b76fe6b-e273-4f25-97fe-b8e4d0c4e11a}: [NameServer] 8.8.8.8
Tcpip\..\Interfaces\{6f895341-561f-481d-a49f-c06cd18eb890}: [NameServer] 8.8.8.8
Tcpip\..\Interfaces\{6f895341-561f-481d-a49f-c06cd18eb890}: [DhcpNameServer] 8.8.8.8
Tcpip\..\Interfaces\{a6278c51-d83a-49fb-b5b1-59c8fe81d349}: [NameServer] 8.8.8.8
Tcpip\..\Interfaces\{a9c7dbc6-8ccb-483f-a317-6c8598a1884b}: [NameServer] 8.8.8.8
Tcpip\..\Interfaces\{dae8e268-d592-4820-a271-e4320ac75ab0}: [NameServer] 8.8.8.8
Tcpip\..\Interfaces\{dae8e268-d592-4820-a271-e4320ac75ab0}: [DhcpNameServer] 8.8.8.8
Tcpip\..\Interfaces\{e348dbc5-ade3-4633-b97a-0d9056cb71ed}: [NameServer] 8.8.8.8
Tcpip\..\Interfaces\{e348dbc5-ade3-4633-b97a-0d9056cb71ed}: [DhcpNameServer] 91.207.185.19 91.207.185.20
 
Internet Explorer:
==================
HKU\S-1-5-21-2179863463-2490515380-3909065564-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.pl/
BHO-x32: FlashGetBHO -> {b070d3e3-fec0-47d9-8e8a-99d4eeb3d3b0} -> C:\Users\Jarecki\AppData\Roaming\FlashGetBHO\FlashGetBHO.dll [2012-11-01] (Trend Media Corporation Limited -> Trend Media Group)
BHO-x32: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL [2018-05-15] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office\Office15\MSOSB.DLL [2017-08-15] (Microsoft Corporation -> Microsoft Corporation)
 
FireFox:
========
FF DefaultProfile: 37wqittu.default
FF ProfilePath: C:\Users\Jarecki\AppData\Roaming\Mozilla\Firefox\Profiles\1npsv6oy.default-release [2019-11-17]
FF Homepage: Mozilla\Firefox\Profiles\1npsv6oy.default-release -> hxxps://www.google.com/
FF Extension: (Adblock Plus - darmowy adblocker) - C:\Users\Jarecki\AppData\Roaming\Mozilla\Firefox\Profiles\1npsv6oy.default-release\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2019-11-04]
FF ProfilePath: C:\Users\Jarecki\AppData\Roaming\Mozilla\Firefox\Profiles\37wqittu.default [2019-11-17]
FF Notifications: Mozilla\Firefox\Profiles\37wqittu.default -> hxxps://web.skype.com
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\Office15\NPSPWRAP.DLL [2014-01-23] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll [2016-10-25] (Adobe Systems Incorporated -> Adobe Systems)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\Office15\NPSPWRAP.DLL [2014-01-22] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.35.342\npGoogleUpdate3.dll [2019-11-05] (Google Inc -> Google LLC)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.35.342\npGoogleUpdate3.dll [2019-11-05] (Google Inc -> Google LLC)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2019-07-31] (Adobe Inc. -> Adobe Systems Inc.)
FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect32.dll [2016-10-25] (Adobe Systems Incorporated -> Adobe Systems)
FF Plugin HKU\S-1-5-21-2179863463-2490515380-3909065564-1001: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\Jarecki\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2016-01-22] (Unity Technologies SF -> Unity Technologies ApS)
 
Chrome: 
=======
CHR DefaultProfile: Default
CHR HomePage: Default -> hxxps://www.google.com/
CHR Profile: C:\Users\Jarecki\AppData\Local\Google\Chrome\User Data\Default [2019-11-17]
CHR Extension: (Dysk Google) - C:\Users\Jarecki\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2017-05-17]
CHR Extension: (Bloker reklam AdGuard) - C:\Users\Jarecki\AppData\Local\Google\Chrome\User Data\Default\Extensions\bgnkhhnnamicmpeenaelnjfhikgbkllg [2019-10-27]
CHR Extension: (YouTube) - C:\Users\Jarecki\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2017-05-17]
CHR Extension: (Dokumenty Google offline) - C:\Users\Jarecki\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2018-08-15]
CHR Extension: (Video DownloadHelper) - C:\Users\Jarecki\AppData\Local\Google\Chrome\User Data\Default\Extensions\lmjnegcaeklhafolokijcfjliaokphfk [2019-09-15]
CHR Extension: (Sadza + metal srebrny) - C:\Users\Jarecki\AppData\Local\Google\Chrome\User Data\Default\Extensions\lodhggoaglindpoejnjldimdlikkphph [2017-05-17]
CHR Extension: (Płatności w sklepie Chrome Web Store) - C:\Users\Jarecki\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2019-10-04]
CHR Extension: (Gmail) - C:\Users\Jarecki\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2019-04-30]
CHR Extension: (Chrome Media Router) - C:\Users\Jarecki\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2019-11-08]
CHR Profile: C:\Users\Jarecki\AppData\Local\Google\Chrome\User Data\Guest Profile [2018-07-13]
CHR Profile: C:\Users\Jarecki\AppData\Local\Google\Chrome\User Data\Profile 1 [2018-07-13]
CHR Extension: (Prezentacje) - C:\Users\Jarecki\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2017-11-11]
CHR Extension: (Dokumenty) - C:\Users\Jarecki\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aohghmighlieiainnegkcijnfilokake [2017-11-11]
CHR Extension: (Dysk Google) - C:\Users\Jarecki\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\apdfllckaahabafndbhieahigkjlhalf [2017-11-11]
CHR Extension: (YouTube) - C:\Users\Jarecki\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2017-11-11]
CHR Extension: (Adobe Acrobat) - C:\Users\Jarecki\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2017-11-11]
CHR Extension: (Arkusze) - C:\Users\Jarecki\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-11-11]
CHR Extension: (Dokumenty Google offline) - C:\Users\Jarecki\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2017-12-17]
CHR Extension: (Płatności w sklepie Chrome Web Store) - C:\Users\Jarecki\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2017-11-11]
CHR Extension: (Gmail) - C:\Users\Jarecki\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2017-11-11]
CHR Extension: (Chrome Media Router) - C:\Users\Jarecki\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2017-12-17]
CHR Profile: C:\Users\Jarecki\AppData\Local\Google\Chrome\User Data\System Profile [2018-07-13]
CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj]
 
==================== Usługi (filtrowane) ===================
 
(Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)
 
R2 AdobeUpdateService; C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe [744640 2016-10-25] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
R2 AGMService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe [3147344 2019-10-08] (Adobe Inc. -> Adobe Systems, Incorporated)
R2 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [2914896 2019-10-08] (Adobe Inc. -> Adobe Systems, Incorporated)
S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [5708808 2018-03-31] (BattlEye Innovations e.K. -> )
R3 BrYNSvc; C:\Program Files (x86)\Browny02\BrYNSvc.exe [282112 2012-10-26] (Brother Industries, Ltd.) [Brak podpisu cyfrowego]
S3 ehRecvr; C:\WINDOWS\ehome\ehRecvr.exe [697856 2015-09-09] (Microsoft Corporation) [Brak podpisu cyfrowego]
S3 ehSched; C:\WINDOWS\ehome\ehsched.exe [176128 2015-09-09] (Microsoft Corporation) [Brak podpisu cyfrowego]
R2 ETDService; C:\Program Files\Elantech\ETDService.exe [134888 2016-08-15] (ELAN Microelectronics Corporation -> ELAN Microelectronics Corp.)
R2 ibtsiva; C:\WINDOWS\system32\ibtsiva.exe [184064 2016-12-12] (Intel Corporation-Wireless Connectivity Solutions -> Intel Corporation)
R2 igfxCUIService2.0.0.0; C:\WINDOWS\system32\igfxCUIService.exe [373688 2017-06-12] (Intel(R) pGFX -> Intel Corporation)
U3 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe [6960640 2019-11-17] (Malwarebytes Inc -> Malwarebytes)
R2 MSSQL$INSERTGT; c:\Program Files\Microsoft SQL Server\MSSQL10_50.INSERTGT\MSSQL\Binn\sqlservr.exe [62111072 2011-06-17] (Microsoft Corporation -> Microsoft Corporation)
S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2213696 2018-09-06] (Electronic Arts, Inc. -> Electronic Arts)
S2 Origin Web Helper Service; C:\Program Files (x86)\Origin\OriginWebHelperService.exe [3084104 2018-09-06] (Electronic Arts, Inc. -> Electronic Arts)
S3 Rockstar Service; C:\Program Files\Rockstar Games\Launcher\RockstarService.exe [471696 2019-09-12] (Rockstar Games, Inc. -> Rockstar Games)
R2 ScsiAccess; C:\Program Files (x86)\Photodex\ProShow Producer\ScsiAccess.exe [186760 2016-07-24] (Photodex Corporation -> )
S4 SQLAgent$INSERTGT; c:\Program Files\Microsoft SQL Server\MSSQL10_50.INSERTGT\MSSQL\Binn\SQLAGENT.EXE [431456 2011-06-17] (Microsoft Corporation -> Microsoft Corporation)
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1910.4-0\NisSrv.exe [3201616 2019-10-28] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1910.4-0\MsMpEng.exe [103168 2019-10-28] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 NVDisplay.ContainerLocalSystem; "C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -s NVDisplay.ContainerLocalSystem -f "C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem"
 
===================== Sterowniki (filtrowane) ===================
 
(Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)
 
S3 dtlitescsibus; C:\WINDOWS\System32\drivers\dtlitescsibus.sys [30264 2015-12-31] (Disc Soft Ltd -> Disc Soft Ltd)
S3 dtliteusbbus; C:\WINDOWS\System32\drivers\dtliteusbbus.sys [47672 2016-02-11] (Disc Soft Ltd -> Disc Soft Ltd)
S3 dtscsibus; C:\WINDOWS\system32\DRIVERS\dtscsibus.sys [29864 2015-08-11] (Disc Soft Ltd -> Disc Soft Ltd)
S3 dtultrascsibus; C:\WINDOWS\System32\drivers\dtultrascsibus.sys [30264 2016-08-28] (Disc Soft Ltd -> Disc Soft Ltd)
S3 dtultrausbbus; C:\WINDOWS\System32\drivers\dtultrausbbus.sys [47672 2016-08-28] (Disc Soft Ltd -> Disc Soft Ltd)
R3 ETDSMBus; C:\WINDOWS\system32\DRIVERS\ETDSMBus.sys [32344 2016-08-15] (ELAN MICROELECTRONICS CORPORATION -> ELAN Microelectronic Corp.)
R3 ibtusb; C:\WINDOWS\system32\DRIVERS\ibtusb.sys [230656 2016-12-12] (Intel Corporation-Wireless Connectivity Solutions -> Intel Corporation)
R2 MBAMChameleon; C:\WINDOWS\System32\Drivers\MbamChameleon.sys [248480 2019-11-16] (Malwarebytes Inc -> Malwarebytes)
S0 MbamElam; C:\WINDOWS\System32\DRIVERS\MbamElam.sys [20936 2019-11-17] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes)
R3 MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [278344 2019-11-17] (Malwarebytes Inc -> Malwarebytes)
R3 MEIx64; C:\WINDOWS\system32\DRIVERS\TeeDriverx64.sys [99288 2013-12-19] (Intel Corporation - Intel® Management Engine Firmware -> Intel Corporation)
R3 NETwNb64; C:\WINDOWS\System32\drivers\Netwbw02.sys [3485696 2019-03-19] (Microsoft Windows -> Intel Corporation)
R3 nvlddmkm; C:\WINDOWS\System32\DriverStore\FileRepository\nvlt.inf_amd64_8ce2e93d564b086f\nvlddmkm.sys [14240184 2017-03-24] (NVIDIA Corporation -> NVIDIA Corporation)
R3 rt640x64; C:\WINDOWS\System32\drivers\rt640x64.sys [895256 2015-06-18] (Realtek Semiconductor Corp -> Realtek )
R3 RTSUER; C:\WINDOWS\system32\Drivers\RtsUer.sys [410880 2015-07-03] (Realtek Semiconductor Corp -> Realsil Semiconductor Corporation)
R3 rtsuvc; C:\WINDOWS\system32\DRIVERS\rtsuvc.sys [3068160 2015-06-16] (Realtek Semiconductor Corp -> Realtek Semiconductor Corp.)
S3 tap0901; C:\WINDOWS\System32\drivers\tap0901.sys [27136 2016-04-21] (OpenVPN Technologies, Inc. -> The OpenVPN Project)
S3 uvhid; C:\WINDOWS\System32\drivers\uvhid.sys [25592 2016-01-04] (Unified Intents AB -> Windows (R) Win 7 DDK provider)
S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [46472 2019-10-28] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WDC_SAM; C:\WINDOWS\System32\drivers\wdcsam64.sys [26880 2015-11-12] (WDKTestCert wdclab,130885612892544312 -> Western Digital Technologies, Inc.)
R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [351968 2019-10-28] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [53984 2019-10-28] (Microsoft Windows -> Microsoft Corporation)
U3 ffdyypod; C:\Users\Jarecki\AppData\Local\Temp\ffdyypod.sys [56584 2019-11-17] (GMEREK Systemy Komputerowe Przemyslaw Gmerek -> GMER) [Brak podpisu cyfrowego] <==== UWAGA
 
==================== NetSvcs (filtrowane) ===================
 
(Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)
 
 
==================== Jeden miesiąc (utworzone) ===================
 
(Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.)
 
2019-11-17 13:09 - 2019-11-17 13:13 - 000028757 _____ C:\Users\Jarecki\Downloads\FRST.txt
2019-11-17 11:01 - 2019-11-17 11:39 - 000020936 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MbamElam.sys
2019-11-16 22:40 - 2019-11-17 11:57 - 000000000 ____D C:\Users\Jarecki\AppData\LocalLow\IGDump
2019-11-16 22:24 - 2019-11-17 11:43 - 000002032 _____ C:\Users\Public\Desktop\Malwarebytes.lnk
2019-11-16 22:24 - 2019-11-16 22:24 - 000000000 ____D C:\Users\Jarecki\AppData\Local\mbamtray
2019-11-16 22:24 - 2019-11-16 22:24 - 000000000 ____D C:\Users\Jarecki\AppData\Local\mbam
2019-11-16 22:24 - 2019-11-16 22:24 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes
2019-11-16 22:23 - 2019-11-17 13:01 - 000278344 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamswissarmy.sys
2019-11-16 22:23 - 2019-11-17 11:40 - 000153312 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbae64.sys
2019-11-16 22:23 - 2019-11-16 22:23 - 000248480 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MbamChameleon.sys
2019-11-16 22:15 - 2019-11-16 22:15 - 001883976 _____ (Malwarebytes) C:\Users\Jarecki\Downloads\MBSetup.exe
2019-11-16 22:13 - 2019-11-16 22:13 - 007622344 _____ (Malwarebytes) C:\Users\Jarecki\Downloads\adwcleaner_7.4.2.exe
2019-11-16 21:54 - 2019-11-16 22:04 - 000007033 _____ C:\Users\Jarecki\Downloads\Fixlog.txt
2019-11-16 21:53 - 2019-11-16 21:53 - 000000000 ____D C:\Users\Jarecki\Downloads\FRST-OlderVersion
2019-11-11 23:57 - 2019-11-12 00:05 - 000000000 ____D C:\Users\Jarecki\Desktop\Exescope do edytowania programów
2019-11-11 20:21 - 2019-11-11 20:23 - 000000000 ____D C:\Users\Jarecki\Downloads\movie
2019-11-11 18:28 - 2019-11-11 18:28 - 000001299 _____ C:\Users\Jarecki\Desktop\singstar — skrót .lnk
2019-11-11 16:14 - 2016-03-11 14:53 - 000380928 _____ C:\Users\Jarecki\Downloads\gmer.exe
2019-11-11 15:34 - 2019-11-17 13:11 - 000000000 ____D C:\FRST
2019-11-11 15:19 - 2019-11-16 21:53 - 002260480 _____ (Farbar) C:\Users\Jarecki\Downloads\FRST64.exe
2019-11-10 22:12 - 2019-11-10 22:12 - 000058021 _____ C:\Users\Jarecki\Downloads\Cennik-klienta-42.pdf
2019-11-08 22:26 - 2019-11-08 22:26 - 000482323 _____ C:\Users\Jarecki\Downloads\ŹRÓDŁA-FINANSOWANIAI.pptm
2019-11-08 22:02 - 2019-11-08 22:07 - 000000000 ____D C:\Users\Jarecki\Desktop\zawody
2019-11-04 20:17 - 2019-11-07 23:01 - 000010178 _____ C:\Users\Jarecki\Desktop\Lista stałych klientów.xlsx
2019-11-03 22:46 - 2019-11-03 22:46 - 000000000 ____D C:\Users\Jarecki\Documents\Nowy folder
2019-10-31 23:45 - 2019-11-04 19:43 - 000000000 ____D C:\Program Files\Mozilla Firefox
2019-10-31 20:17 - 2019-10-31 20:17 - 000001782 _____ C:\Users\Jarecki\Desktop\Counter-Strike 1.6 v43.lnk
2019-10-31 20:17 - 2019-10-31 20:17 - 000000000 ____D C:\Users\Jarecki\AppData\Roaming\ProductAuthenticationService
2019-10-31 20:17 - 2019-10-31 20:17 - 000000000 ____D C:\Users\Jarecki\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Counter-Strike 1.6 v43
2019-10-31 20:14 - 2019-10-31 20:17 - 000000000 ____D C:\Users\Jarecki\AppData\Roaming\SteamServerBrowser
2019-10-31 20:14 - 2019-10-31 20:14 - 000000000 ____D C:\Gry
2019-10-28 22:27 - 2019-11-01 16:28 - 001640451 _____ C:\Users\Jarecki\Documents\System bankowy - prezentacja na prawo gospodarcze u mecenasa 2019.pptx
2019-10-28 21:42 - 2019-10-28 21:42 - 000012756 _____ C:\Users\Jarecki\Desktop\Pawlicki analiza pionowa i pozioma 20,10,2019.xlsx
2019-10-28 20:11 - 2019-10-28 20:11 - 001150743 _____ C:\Users\Jarecki\Downloads\44_PDFsam_Zeszyty-naukowe-63_2018.pdf
2019-10-27 15:29 - 2019-10-26 09:49 - 124632727 _____ C:\Users\Jarecki\Desktop\forma nunczako.mp4
2019-10-20 20:56 - 2019-11-16 22:33 - 000001628 _____ C:\Users\Jarecki\Desktop\Impreza Sylwester — skrót .lnk
2019-10-20 19:30 - 2019-10-20 19:30 - 025443840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Hydrogen.dll
2019-10-20 19:30 - 2019-10-20 19:30 - 019849216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2019-10-20 19:30 - 2019-10-20 19:30 - 019811840 _____ (Microsoft Corporation) C:\WINDOWS\system32\HologramWorld.dll
2019-10-20 19:30 - 2019-10-20 19:30 - 018019840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2019-10-20 19:30 - 2019-10-20 19:30 - 008010752 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll
2019-10-20 19:30 - 2019-10-20 19:30 - 007015936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll
2019-10-20 19:30 - 2019-10-20 19:30 - 006232064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2019-10-20 19:30 - 2019-10-20 19:30 - 005915648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2019-10-20 19:30 - 2019-10-20 19:30 - 004129616 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2019-10-20 19:30 - 2019-10-20 19:30 - 003525592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll
2019-10-20 19:30 - 2019-10-20 19:30 - 003365376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xpsrchvw.exe
2019-10-20 19:30 - 2019-10-20 19:30 - 002755584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.tlb
2019-10-20 19:30 - 2019-10-20 19:30 - 002494440 _____ (Microsoft Corporation) C:\WINDOWS\system32\msmpeg2vdec.dll
2019-10-20 19:30 - 2019-10-20 19:30 - 002422592 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMVCORE.DLL
2019-10-20 19:30 - 2019-10-20 19:30 - 002314648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msmpeg2vdec.dll
2019-10-20 19:30 - 2019-10-20 19:30 - 002236144 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfasfsrcsnk.dll
2019-10-20 19:30 - 2019-10-20 19:30 - 002138472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMVCORE.DLL
2019-10-20 19:30 - 2019-10-20 19:30 - 001610752 _____ (Microsoft Corporation) C:\WINDOWS\system32\HologramCompositor.dll
2019-10-20 19:30 - 2019-10-20 19:30 - 001273392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfasfsrcsnk.dll
2019-10-20 19:30 - 2019-10-20 19:30 - 001214976 _____ (Microsoft Corporation) C:\WINDOWS\system32\reseteng.dll
2019-10-20 19:30 - 2019-10-20 19:30 - 001152016 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2019-10-20 19:30 - 2019-10-20 19:30 - 001098712 _____ (Microsoft Corporation) C:\WINDOWS\system32\DolbyDecMFT.dll
2019-10-20 19:30 - 2019-10-20 19:30 - 001012792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmpeg2srcsnk.dll
2019-10-20 19:30 - 2019-10-20 19:30 - 000952416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DolbyDecMFT.dll
2019-10-20 19:30 - 2019-10-20 19:30 - 000882688 _____ (Microsoft Corporation) C:\WINDOWS\system32\CPFilters.dll
2019-10-20 19:30 - 2019-10-20 19:30 - 000843776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webplatstorageserver.dll
2019-10-20 19:30 - 2019-10-20 19:30 - 000690176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll
2019-10-20 19:30 - 2019-10-20 19:30 - 000689152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CPFilters.dll
2019-10-20 19:30 - 2019-10-20 19:30 - 000667136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EdgeManager.dll
2019-10-20 19:30 - 2019-10-20 19:30 - 000537600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mf.dll
2019-10-20 19:30 - 2019-10-20 19:30 - 000516544 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf.dll
2019-10-20 19:30 - 2019-10-20 19:30 - 000429568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\werui.dll
2019-10-20 19:30 - 2019-10-20 19:30 - 000353792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msrd3x40.dll
2019-10-20 19:30 - 2019-10-20 19:30 - 000241152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msltus40.dll
2019-10-20 19:30 - 2019-10-20 19:30 - 000186880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWWIN.EXE
2019-10-20 19:30 - 2019-10-20 19:30 - 000175616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\IndexedDbLegacy.dll
2019-10-20 19:30 - 2019-10-20 19:30 - 000117248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakradiag.dll
2019-10-20 19:30 - 2019-10-20 19:30 - 000105472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakrathunk.dll
2019-10-20 19:30 - 2019-10-20 19:30 - 000090624 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsgqec.dll
2019-10-20 19:30 - 2019-10-20 19:30 - 000070144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tsgqec.dll
2019-10-20 19:30 - 2019-10-20 19:30 - 000063488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iemigplugin.dll
2019-10-20 19:29 - 2019-10-20 19:29 - 025900544 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2019-10-20 19:29 - 2019-10-20 19:29 - 022628352 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2019-10-20 19:29 - 2019-10-20 19:29 - 014816256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2019-10-20 19:29 - 2019-10-20 19:29 - 007754240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2019-10-20 19:29 - 2019-10-20 19:29 - 007195648 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2019-10-20 19:29 - 2019-10-20 19:29 - 006517640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll
2019-10-20 19:29 - 2019-10-20 19:29 - 005041664 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2019-10-20 19:29 - 2019-10-20 19:29 - 004538880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2019-10-20 19:29 - 2019-10-20 19:29 - 002861568 _____ (Microsoft Corporation) C:\WINDOWS\system32\xpsservices.dll
2019-10-20 19:29 - 2019-10-20 19:29 - 002755584 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.tlb
2019-10-20 19:29 - 2019-10-20 19:29 - 002703360 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebRuntimeManager.dll
2019-10-20 19:29 - 2019-10-20 19:29 - 002095104 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExplorerFrame.dll
2019-10-20 19:29 - 2019-10-20 19:29 - 001952360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6.dll
2019-10-20 19:29 - 2019-10-20 19:29 - 001847808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xpsservices.dll
2019-10-20 19:29 - 2019-10-20 19:29 - 001730560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallService.dll
2019-10-20 19:29 - 2019-10-20 19:29 - 001687040 _____ (Microsoft Corporation) C:\WINDOWS\system32\XpsPrint.dll
2019-10-20 19:29 - 2019-10-20 19:29 - 001664928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user32.dll
2019-10-20 19:29 - 2019-10-20 19:29 - 001563648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExplorerFrame.dll
2019-10-20 19:29 - 2019-10-20 19:29 - 001562424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpserverbase.dll
2019-10-20 19:29 - 2019-10-20 19:29 - 001394488 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe
2019-10-20 19:29 - 2019-10-20 19:29 - 001319936 _____ (Microsoft Corporation) C:\WINDOWS\system32\webplatstorageserver.dll
2019-10-20 19:29 - 2019-10-20 19:29 - 001283072 _____ (Microsoft Corporation) C:\WINDOWS\system32\werconcpl.dll
2019-10-20 19:29 - 2019-10-20 19:29 - 001217904 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipUp.exe
2019-10-20 19:29 - 2019-10-20 19:29 - 001072952 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe
2019-10-20 19:29 - 2019-10-20 19:29 - 000923136 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeManager.dll
2019-10-20 19:29 - 2019-10-20 19:29 - 000904208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ReAgent.dll
2019-10-20 19:29 - 2019-10-20 19:29 - 000856576 _____ C:\WINDOWS\system32\MBR2GPT.EXE
2019-10-20 19:29 - 2019-10-20 19:29 - 000842752 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
2019-10-20 19:29 - 2019-10-20 19:29 - 000829536 _____ (Microsoft Corporation) C:\WINDOWS\system32\BioIso.exe
2019-10-20 19:29 - 2019-10-20 19:29 - 000818688 _____ (Microsoft Corporation) C:\WINDOWS\system32\LogonController.dll
2019-10-20 19:29 - 2019-10-20 19:29 - 000814080 _____ (Microsoft Corporation) C:\WINDOWS\system32\comdlg32.dll
2019-10-20 19:29 - 2019-10-20 19:29 - 000774672 _____ (Microsoft Corporation) C:\WINDOWS\system32\securekernel.exe
2019-10-20 19:29 - 2019-10-20 19:29 - 000701952 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.FileExplorer.dll
2019-10-20 19:29 - 2019-10-20 19:29 - 000691712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comdlg32.dll
2019-10-20 19:29 - 2019-10-20 19:29 - 000679880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wer.dll
2019-10-20 19:29 - 2019-10-20 19:29 - 000669496 _____ (Microsoft Corporation) C:\WINDOWS\system32\computecore.dll
2019-10-20 19:29 - 2019-10-20 19:29 - 000598024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wimgapi.dll
2019-10-20 19:29 - 2019-10-20 19:29 - 000595456 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2019-10-20 19:29 - 2019-10-20 19:29 - 000531968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2019-10-20 19:29 - 2019-10-20 19:29 - 000496640 _____ (Microsoft Corporation) C:\WINDOWS\system32\werui.dll
2019-10-20 19:29 - 2019-10-20 19:29 - 000487424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.FileExplorer.dll
2019-10-20 19:29 - 2019-10-20 19:29 - 000462848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\schannel.dll
2019-10-20 19:29 - 2019-10-20 19:29 - 000452408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WerFault.exe
2019-10-20 19:29 - 2019-10-20 19:29 - 000422008 _____ (Microsoft Corporation) C:\WINDOWS\system32\SgrmEnclave_secure.dll
2019-10-20 19:29 - 2019-10-20 19:29 - 000404392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Faultrep.dll
2019-10-20 19:29 - 2019-10-20 19:29 - 000380216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msv1_0.dll
2019-10-20 19:29 - 2019-10-20 19:29 - 000300184 _____ (Microsoft Corporation) C:\WINDOWS\system32\skci.dll
2019-10-20 19:29 - 2019-10-20 19:29 - 000227840 _____ (Microsoft Corporation) C:\WINDOWS\system32\IndexedDbLegacy.dll
2019-10-20 19:29 - 2019-10-20 19:29 - 000224768 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWWIN.EXE
2019-10-20 19:29 - 2019-10-20 19:29 - 000199480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wermgr.exe
2019-10-20 19:29 - 2019-10-20 19:29 - 000193592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\weretw.dll
2019-10-20 19:29 - 2019-10-20 19:29 - 000179712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallServiceTasks.dll
2019-10-20 19:29 - 2019-10-20 19:29 - 000155136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll
2019-10-20 19:29 - 2019-10-20 19:29 - 000150328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WerFaultSecure.exe
2019-10-20 19:29 - 2019-10-20 19:29 - 000139776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakrathunk.dll
2019-10-20 19:29 - 2019-10-20 19:29 - 000122880 _____ (Microsoft Corporation) C:\WINDOWS\system32\wercplsupport.dll
2019-10-20 19:29 - 2019-10-20 19:29 - 000065536 _____ (Microsoft Corporation) C:\WINDOWS\system32\iemigplugin.dll
2019-10-20 19:29 - 2019-10-20 19:29 - 000052736 _____ (Microsoft Corporation) C:\WINDOWS\system32\jsproxy.dll
2019-10-20 19:29 - 2019-10-20 19:29 - 000045056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jsproxy.dll
2019-10-20 19:29 - 2019-10-20 19:29 - 000038912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\werdiagcontroller.dll
2019-10-20 19:29 - 2019-10-20 19:29 - 000033048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NtlmShared.dll
2019-10-20 19:29 - 2019-10-20 19:29 - 000013824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDJPN.DLL
2019-10-20 19:29 - 2019-10-20 19:29 - 000007680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kbd106.dll
2019-10-20 19:29 - 2019-10-20 19:29 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6r.dll
2019-10-20 19:28 - 2019-10-20 19:28 - 017787392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2019-10-20 19:28 - 2019-10-20 19:28 - 009928504 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2019-10-20 19:28 - 2019-10-20 19:28 - 007600664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2019-10-20 19:28 - 2019-10-20 19:28 - 004562688 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppsvc.exe
2019-10-20 19:28 - 2019-10-20 19:28 - 004012544 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeContent.dll
2019-10-20 19:28 - 2019-10-20 19:28 - 003771392 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll
2019-10-20 19:28 - 2019-10-20 19:28 - 003701760 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2019-10-20 19:28 - 2019-10-20 19:28 - 002762504 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
2019-10-20 19:28 - 2019-10-20 19:28 - 002723328 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2019-10-20 19:28 - 2019-10-20 19:28 - 002456064 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallService.dll
2019-10-20 19:28 - 2019-10-20 19:28 - 002448712 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll
2019-10-20 19:28 - 2019-10-20 19:28 - 002284032 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll
2019-10-20 19:28 - 2019-10-20 19:28 - 002114048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.CloudStore.dll
2019-10-20 19:28 - 2019-10-20 19:28 - 002081976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll
2019-10-20 19:28 - 2019-10-20 19:28 - 002000168 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2019-10-20 19:28 - 2019-10-20 19:28 - 001830200 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpserverbase.dll
2019-10-20 19:28 - 2019-10-20 19:28 - 001748480 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll
2019-10-20 19:28 - 2019-10-20 19:28 - 001743672 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll
2019-10-20 19:28 - 2019-10-20 19:28 - 001721144 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll
2019-10-20 19:28 - 2019-10-20 19:28 - 001656392 _____ (Microsoft Corporation) C:\WINDOWS\system32\user32.dll
2019-10-20 19:28 - 2019-10-20 19:28 - 001439744 _____ (Microsoft Corporation) C:\WINDOWS\system32\usocoreworker.exe
2019-10-20 19:28 - 2019-10-20 19:28 - 001149712 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplyTrustOffline.exe
2019-10-20 19:28 - 2019-10-20 19:28 - 001084432 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReAgent.dll
2019-10-20 19:28 - 2019-10-20 19:28 - 001066496 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusUpdateHandlers.dll
2019-10-20 19:28 - 2019-10-20 19:28 - 000890472 _____ (Microsoft Corporation) C:\WINDOWS\system32\ci.dll
2019-10-20 19:28 - 2019-10-20 19:28 - 000880088 _____ (Microsoft Corporation) C:\WINDOWS\system32\wer.dll
2019-10-20 19:28 - 2019-10-20 19:28 - 000844800 _____ (Microsoft Corporation) C:\WINDOWS\system32\winlogon.exe
2019-10-20 19:28 - 2019-10-20 19:28 - 000758584 _____ (Microsoft Corporation) C:\WINDOWS\system32\wimgapi.dll
2019-10-20 19:28 - 2019-10-20 19:28 - 000717312 _____ (Microsoft Corporation) C:\WINDOWS\system32\mousocoreworker.exe
2019-10-20 19:28 - 2019-10-20 19:28 - 000596992 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotification.exe
2019-10-20 19:28 - 2019-10-20 19:28 - 000578560 _____ (Microsoft Corporation) C:\WINDOWS\system32\SppExtComObj.Exe
2019-10-20 19:28 - 2019-10-20 19:28 - 000533504 _____ (Microsoft Corporation) C:\WINDOWS\system32\schannel.dll
2019-10-20 19:28 - 2019-10-20 19:28 - 000530432 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppcext.dll
2019-10-20 19:28 - 2019-10-20 19:28 - 000520192 _____ (Microsoft Corporation) C:\WINDOWS\system32\usosvc.dll
2019-10-20 19:28 - 2019-10-20 19:28 - 000516408 _____ (Microsoft Corporation) C:\WINDOWS\system32\wimserv.exe
2019-10-20 19:28 - 2019-10-20 19:28 - 000515896 _____ (Microsoft Corporation) C:\WINDOWS\system32\WerFault.exe
2019-10-20 19:28 - 2019-10-20 19:28 - 000513536 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotificationUx.exe
2019-10-20 19:28 - 2019-10-20 19:28 - 000466416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Faultrep.dll
2019-10-20 19:28 - 2019-10-20 19:28 - 000462136 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll
2019-10-20 19:28 - 2019-10-20 19:28 - 000456504 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdbss.sys
2019-10-20 19:28 - 2019-10-20 19:28 - 000436536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pci.sys
2019-10-20 19:28 - 2019-10-20 19:28 - 000412152 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotifyIcon.exe
2019-10-20 19:28 - 2019-10-20 19:28 - 000355840 _____ (Microsoft Corporation) C:\WINDOWS\system32\WaaSMedicSvc.dll
2019-10-20 19:28 - 2019-10-20 19:28 - 000324408 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll
2019-10-20 19:28 - 2019-10-20 19:28 - 000261632 _____ (Microsoft Corporation) C:\WINDOWS\system32\WaaSMedicCapsule.dll
2019-10-20 19:28 - 2019-10-20 19:28 - 000247856 _____ (Microsoft Corporation) C:\WINDOWS\system32\weretw.dll
2019-10-20 19:28 - 2019-10-20 19:28 - 000231936 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallServiceTasks.dll
2019-10-20 19:28 - 2019-10-20 19:28 - 000225080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wof.sys
2019-10-20 19:28 - 2019-10-20 19:28 - 000224256 _____ (Microsoft Corporation) C:\WINDOWS\system32\wersvc.dll
2019-10-20 19:28 - 2019-10-20 19:28 - 000220472 _____ (Microsoft Corporation) C:\WINDOWS\system32\wermgr.exe
2019-10-20 19:28 - 2019-10-20 19:28 - 000202040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\appid.sys
2019-10-20 19:28 - 2019-10-20 19:28 - 000201728 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXApplicabilityBlob.dll
2019-10-20 19:28 - 2019-10-20 19:28 - 000197632 _____ (Microsoft Corporation) C:\WINDOWS\system32\Win32CompatibilityAppraiserCSP.dll
2019-10-20 19:28 - 2019-10-20 19:28 - 000165832 _____ (Microsoft Corporation) C:\WINDOWS\system32\WerFaultSecure.exe
2019-10-20 19:28 - 2019-10-20 19:28 - 000158720 _____ (Microsoft Corporation) C:\WINDOWS\system32\umpo.dll
2019-10-20 19:28 - 2019-10-20 19:28 - 000121856 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatecsp.dll
2019-10-20 19:28 - 2019-10-20 19:28 - 000117048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bindflt.sys
2019-10-20 19:28 - 2019-10-20 19:28 - 000108032 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmTasks.dll
2019-10-20 19:28 - 2019-10-20 19:28 - 000092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsqmcons.exe
2019-10-20 19:28 - 2019-10-20 19:28 - 000089088 _____ (Microsoft Corporation) C:\WINDOWS\system32\WaaSMedicAgent.exe
2019-10-20 19:28 - 2019-10-20 19:28 - 000077824 _____ (Microsoft Corporation) C:\WINDOWS\system32\CustomInstallExec.exe
2019-10-20 19:28 - 2019-10-20 19:28 - 000044544 _____ (Microsoft Corporation) C:\WINDOWS\system32\werdiagcontroller.dll
2019-10-20 19:28 - 2019-10-20 19:28 - 000039304 _____ (Microsoft Corporation) C:\WINDOWS\system32\NtlmShared.dll
2019-10-20 19:28 - 2019-10-20 19:28 - 000037176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wimmount.sys
2019-10-20 19:28 - 2019-10-20 19:28 - 000028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\WaaSMedicPS.dll
2019-10-20 19:28 - 2019-10-20 19:28 - 000017920 _____ (Microsoft Corporation) C:\WINDOWS\system32\bindflt.dll
2019-10-20 19:28 - 2019-10-20 19:28 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6r.dll
 
==================== Jeden miesiąc (zmodyfikowane) ==================
 
(Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.)
 
2019-11-17 13:10 - 2019-03-19 05:52 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2019-11-17 12:59 - 2017-09-03 14:58 - 000000180 _____ C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2019-11-17 12:59 - 2015-08-11 00:24 - 000000000 __SHD C:\Users\Jarecki\IntelGraphicsProfiles
2019-11-17 12:57 - 2019-08-16 01:08 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2019-11-17 12:57 - 2016-11-25 20:01 - 000000000 ____D C:\ProgramData\NVIDIA
2019-11-17 12:51 - 2016-11-30 23:07 - 000000000 ____D C:\Users\Jarecki\AppData\Roaming\FileZilla
2019-11-17 12:50 - 2019-08-05 20:20 - 000000000 ___DC C:\WINDOWS\Panther
2019-11-17 12:50 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\LiveKernelReports
2019-11-17 12:50 - 2019-03-19 05:50 - 000000000 ____D C:\WINDOWS\INF
2019-11-17 12:50 - 2016-12-08 15:46 - 000000000 ____D C:\Users\Jarecki\AppData\Local\CrashDumps
2019-11-17 12:46 - 2018-03-10 15:27 - 000000000 ____D C:\Program Files (x86)\Electronic Arts
2019-11-17 12:26 - 2015-12-26 11:12 - 000000000 ____D C:\Users\Jarecki\AppData\Local\Ubisoft Game Launcher
2019-11-17 12:24 - 2016-02-20 16:33 - 000000000 ____D C:\Users\Jarecki\Documents\My Games
2019-11-17 12:22 - 2016-02-02 13:37 - 000000000 ____D C:\Users\Jarecki\Documents\GTA San Andreas User Files
2019-11-17 12:15 - 2018-08-24 18:54 - 000002599 _____ C:\Users\Jarecki\Desktop\Do wszystkiego.txt
2019-11-17 11:37 - 2019-03-19 05:37 - 000262144 _____ C:\WINDOWS\system32\config\BBI
2019-11-17 11:10 - 2019-08-16 00:28 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2019-11-17 11:01 - 2019-03-19 05:52 - 000000000 ___HD C:\WINDOWS\ELAMBKUP
2019-11-16 22:15 - 2018-01-23 13:59 - 000000000 ____D C:\Program Files\Malwarebytes
2019-11-16 22:03 - 2015-08-11 09:44 - 000000000 ____D C:\Users\Jarecki\AppData\LocalLow\Temp
2019-11-16 21:53 - 2015-08-11 09:38 - 000748816 ____N (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe
2019-11-16 21:47 - 2019-10-03 15:30 - 000000000 ___HD C:\Users\Public\Documents\AdobeGCData
2019-11-16 21:47 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\AppReadiness
2019-11-16 21:47 - 2015-08-13 22:52 - 000000000 ____D C:\Users\Jarecki\AppData\Local\Adobe
2019-11-11 23:44 - 2019-05-06 12:22 - 000000000 ____D C:\Users\Jarecki\AppData\Local\DOSBox
2019-11-11 23:02 - 2017-05-17 22:48 - 000002318 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2019-11-11 23:02 - 2017-05-17 22:48 - 000002277 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2019-11-11 22:12 - 2019-08-30 14:08 - 000000000 ____D C:\Users\Jarecki\Desktop\t5
2019-11-11 21:59 - 2019-09-04 19:47 - 000000000 ____D C:\Users\Jarecki\AppData\LocalLow\Mozilla
2019-11-11 20:57 - 2015-08-23 18:07 - 000000000 ____D C:\Users\Jarecki\AppData\Roaming\BITS
2019-11-11 17:56 - 2019-03-19 05:52 - 000000000 ___HD C:\Program Files\WindowsApps
2019-11-11 15:03 - 2019-09-04 19:47 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2019-11-10 21:56 - 2016-09-10 18:41 - 000000000 ____D C:\Users\Jarecki\AppData\Local\ChomikBox
2019-11-10 21:53 - 2019-02-14 21:29 - 000000000 ____D C:\Users\Jarecki\Downloads\ChomikBox
2019-11-10 20:18 - 2016-09-10 18:41 - 000000000 ____D C:\Users\Jarecki\.gstreamer-0.10
2019-11-09 18:09 - 2016-09-10 18:40 - 000000000 ____D C:\Program Files (x86)\ChomikBox
2019-11-08 22:26 - 2017-11-12 22:54 - 000000000 ____D C:\Users\Jarecki\AppData\Local\Packages
2019-11-08 21:53 - 2019-08-16 01:08 - 000004210 _____ C:\WINDOWS\system32\Tasks\CCleaner Update
2019-11-07 19:51 - 2018-07-22 14:23 - 000000000 ____D C:\ProgramData\Packages
2019-11-05 14:51 - 2019-08-16 01:08 - 000003570 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA
2019-11-05 14:51 - 2019-08-16 01:08 - 000003446 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore
2019-11-05 14:51 - 2017-05-17 22:47 - 000000000 ____D C:\Program Files (x86)\Google
2019-11-04 19:42 - 2019-09-04 19:47 - 000001016 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk
2019-10-29 18:18 - 2019-08-16 00:42 - 000000000 ____D C:\Users\Jarecki
2019-10-29 17:54 - 2019-08-16 00:51 - 002650920 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2019-10-29 17:54 - 2019-08-16 00:05 - 000732482 _____ C:\WINDOWS\system32\perfh007.dat
2019-10-29 17:54 - 2019-08-16 00:05 - 000149784 _____ C:\WINDOWS\system32\perfc007.dat
2019-10-29 17:54 - 2019-03-19 13:23 - 000785588 _____ C:\WINDOWS\system32\perfh015.dat
2019-10-29 17:54 - 2019-03-19 13:23 - 000152350 _____ C:\WINDOWS\system32\perfc015.dat
2019-10-29 17:46 - 2019-08-16 00:28 - 005103816 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2019-10-28 22:04 - 2018-03-05 21:13 - 000000000 ____D C:\Users\Jarecki\Downloads\Studia
2019-10-28 19:27 - 2018-02-23 22:34 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd
2019-10-27 17:06 - 2019-10-10 09:37 - 000000000 ____D C:\Users\Jarecki\Desktop\Rach. MiŚP
2019-10-23 20:32 - 2019-10-03 15:30 - 000003518 _____ C:\WINDOWS\system32\Tasks\AdobeGCInvoker-1.0
2019-10-20 21:24 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe
2019-10-20 21:24 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2019-10-20 21:23 - 2019-03-19 05:52 - 000000000 ___RD C:\WINDOWS\PrintDialog
2019-10-20 21:23 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\SystemResources
2019-10-20 21:23 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\system32\SystemResetPlatform
2019-10-20 21:23 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\system32\oobe
2019-10-20 21:23 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\system32\Dism
2019-10-20 21:23 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\bcastdvr
2019-10-20 20:06 - 2019-03-19 05:37 - 000000000 ____D C:\WINDOWS\CbsTemp
2019-10-20 20:03 - 2015-08-13 21:04 - 000000000 ____D C:\WINDOWS\system32\MRT
2019-10-20 19:48 - 2015-08-13 21:04 - 127230528 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2019-10-20 19:46 - 2015-08-11 10:04 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013
2019-10-20 19:42 - 2015-07-10 12:04 - 000000269 _____ C:\WINDOWS\win.ini
 
==================== Pliki w katalogu głównym wybranych folderów ========
 
2016-02-13 13:04 - 2016-02-13 13:11 - 000001150 _____ () C:\Users\Jarecki\AppData\Roaming\droid4xinstaller.log
2016-01-11 19:04 - 2016-01-11 19:39 - 000000115 _____ () C:\Users\Jarecki\AppData\Roaming\LogFile.txt
2017-03-26 20:06 - 2017-03-26 20:06 - 000000000 _____ () C:\Users\Jarecki\AppData\Roaming\__test
2018-09-30 21:09 - 2018-09-30 21:09 - 000000000 _____ () C:\Users\Jarecki\AppData\Local\oobelibMkey.log
2019-08-15 19:54 - 2019-08-15 20:03 - 000000600 _____ () C:\Users\Jarecki\AppData\Local\PUTTY.RND
2019-09-02 23:12 - 2019-09-02 23:12 - 000043997 _____ () C:\Users\Jarecki\AppData\Local\recently-used.xbel
2018-02-04 22:23 - 2018-02-04 22:23 - 000007606 _____ () C:\Users\Jarecki\AppData\Local\Resmon.ResmonCfg
2017-02-14 10:32 - 2016-11-23 14:37 - 000000570 _____ () C:\Users\Jarecki\AppData\Local\TroubleshooterConfig.json
2015-12-09 21:10 - 2015-12-09 21:10 - 000000000 _____ () C:\Users\Jarecki\AppData\Local\{22DFF706-11FF-4F38-96C9-36BE6CAC6E35}
2015-12-04 14:59 - 2015-12-04 14:59 - 000000000 _____ () C:\Users\Jarecki\AppData\Local\{407234C8-F94C-44D3-8AEA-DD9FEE4D144A}
2015-12-02 21:21 - 2015-12-02 21:21 - 000000000 _____ () C:\Users\Jarecki\AppData\Local\{ADADD4D9-A497-4A70-8BF8-7680C3B33AC2}
2016-04-20 21:38 - 2016-04-20 21:38 - 000000000 _____ () C:\Users\Jarecki\AppData\Local\{BAA83AC1-DF39-4CF1-9E7E-4CD24DEA87B6}
 
==================== SigCheck ============================
 
(Brak automatycznej naprawy dla plików które nie przeszły weryfikacji.)
 
==================== Koniec  FRST.txt ========================
Wygenerowano w 0.012s, przy pomocy GeSHi 1.0.8
'
Podziel się na Facebook Podziel się na BLIP Podziel się na Twitter Podziel się na Buzz Podziel się na Flaker Dodaj zakładkę Google Podziel się na Delicious Wykop to!

Nowy Komentarz:

Komentarze:

Brak Komentarzy!