Cześć chciałbym prosić o sprawdzenie logów z FRST. Powodem jest wyskakiwanie dziwnych okien na telefonie i komputerze podłączone do tego samego routera.
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 28-01-2015
Ran by Dyrektor (administrator) on DYREKTOR1 on 29-01-2015 00:00:09
Running from C:\Users\Dyrektor\Downloads
Loaded Profiles: Dyrektor (Available profiles: Dyrektor)
Platform: Windows 8.1 (X64) OS Language: Polski (Polska)
Internet Explorer Version 11 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(G Data Software AG) C:\Program Files (x86)\Common Files\G Data\GDScan\GDScan.exe
(G Data Software AG) C:\Program Files (x86)\G Data\AntiVirus\AVK\AVKWCtlx64.exe
(Windows (R) Win 7 DDK provider) C:\Program Files (x86)\Bluetooth Suite\AdminService.exe
(G Data Software AG) C:\Program Files (x86)\Common Files\G Data\AVKProxy\AVKProxy.exe
(G Data Software AG) C:\Program Files (x86)\G Data\AntiVirus\AVK\AVKService.exe
(Conexant Systems Inc.) C:\Windows\System32\CxAudMsg64.exe
(Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(Microsoft Corporation) C:\Windows\System32\dasHost.exe
() C:\Program Files\CyberLink\Shared files\RichVideo64.exe
(Conexant Systems, Inc.) C:\Windows\SysWOW64\SASrv.exe
() C:\Program Files (x86)\Lenovo\Lenovo VeriFace\VfConnectorService.exe
(Atheros) C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe
(G Data Software AG) C:\Program Files (x86)\Common Files\G Data\AVKProxy\AVKBap64.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(G Data Software AG) C:\Program Files (x86)\G Data\AntiVirus\AVKTray\AVKTray.exe
(G Data Software AG) C:\Program Files (x86)\Common Files\G Data\AVKProxy\GdBgInx64.exe
(G Data Software AG) C:\Program Files (x86)\Common Files\G Data\AVKProxy\GDKBFltExe32.exe
(Microsoft Corporation) C:\Windows\System32\SkyDrive.exe
(Intel Corporation) C:\Windows\System32\igfxsrvc.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Atheros Communications) C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe
() C:\Program Files (x86)\Bluetooth Suite\ActivateDesktop.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
(Realtek semiconductor) C:\Windows\RTFTrack.exe
(Lenovo (Beijing) Limited) C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe
(CyberLink Corp.) C:\Program Files (x86)\Lenovo\PowerDVD10\PDVD10Serv.exe
(Lenovo(beijing) Limited) C:\Program Files (x86)\Lenovo\Energy Management\utility.exe
(Conexant Systems, Inc.) C:\Program Files\CONEXANT\cAudioFilterAgent\CAudioFilterAgent64.exe
(Pokki) C:\Users\Dyrektor\AppData\Local\Pokki\Engine\HostAppServiceUpdater.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
(Lenovo) C:\Program Files\Lenovo\Lenovo Solution Center\LSCNotify.exe
(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(Pokki) C:\Users\Dyrektor\AppData\Local\Pokki\Engine\HostAppService.exe
(Pokki) C:\Users\Dyrektor\AppData\Local\Pokki\Engine\HostAppService.exe
(Pokki) C:\Users\Dyrektor\AppData\Local\Pokki\Engine\StartMenuIndexer.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exe
(G Data Software AG) C:\Program Files (x86)\G Data\AntiVirus\AVK\AVK.exe
(Microsoft Corporation) C:\Windows\SysWOW64\dllhost.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Lenovo) C:\Program Files\Lenovo\ExperienceImprovement\LenovoExperienceImprovement.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(Microsoft Corporation) C:\Windows\SysWOW64\WWAHost.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.20689_x64__8wekyb3d8bbwe\livecomm.exe
(Microsoft Corporation) C:\Windows\SysWOW64\backgroundTaskHost.exe
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [IAStorIcon] = & gt; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [287592 2013-08-07] (Intel Corporation)
HKLM\...\Run: [RtsFT] = & gt; C:\WINDOWS\RTFTrack.exe [6340312 2013-07-19] (Realtek semiconductor)
HKLM\...\Run: [Energy Management] = & gt; C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe [17111056 2014-06-19] (Lenovo (Beijing) Limited)
HKLM\...\Run: [EnergyUtility] = & gt; C:\Program Files (x86)\Lenovo\Energy Management\Utility.exe [193008 2014-06-19] (Lenovo(beijing) Limited)
HKLM\...\Run: [cAudioFilterAgent] = & gt; C:\Program Files\Conexant\cAudioFilterAgent\cAudioFilterAgent64.exe [903384 2013-07-24] (Conexant Systems, Inc.)
HKLM\...\Run: [SmartAudio] = & gt; C:\Program Files\CONEXANT\SAII\SACpl.exe [1647616 2012-06-13] (Conexant Systems, Inc.)
HKLM-x32\...\Run: [UpdateP2GShortCut] = & gt; C:\Program Files (x86)\Lenovo\Power2Go\MUITransfer\MUIStartMenu.exe [214312 2011-12-06] (CyberLink Corp.)
HKLM-x32\...\Run: [SunJavaUpdateSched] = & gt; C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [507776 2014-10-07] (Oracle Corporation)
HKLM\...\Winlogon: [Userinit] C:\Windows\system32\userinit.exe,C:\Program Files (x86)\G Data\AntiVirus\AVKTray\AVKTray.exe
Winlogon\Notify\igfxcui: C:\WINDOWS\system32\igfxdev.dll (Intel Corporation)
HKLM\...\Policies\Explorer\Run: [BtvStack] = & gt; C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe [132736 2013-09-07] ( (Atheros Communications))
HKU\S-1-5-21-3039287370-3472210782-1621285922-1001\...\Run: [Pokki] = & gt; " %LOCALAPPDATA%\Pokki\Engine\HostAppServiceUpdater.exe " /LOGON
HKU\S-1-5-21-3039287370-3472210782-1621285922-1001\...\Run: [Skype] = & gt; C:\Program Files (x86)\Skype\Phone\Skype.exe [30877280 2014-12-11] (Skype Technologies S.A.)
HKU\S-1-5-21-3039287370-3472210782-1621285922-1001\...\Run: [CCleaner Monitoring] = & gt; C:\Program Files\CCleaner\CCleaner64.exe [7404312 2015-01-20] (Piriform Ltd)
HKU\S-1-5-21-3039287370-3472210782-1621285922-1001\...\RunOnce: [Application Restart #1] = & gt; C:\Users\Dyrektor\AppData\Local\Pokki\Engine\HostAppService.exe [7843656 2015-01-01] (Pokki)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
HKU\S-1-5-21-3039287370-3472210782-1621285922-1001\Software\Microsoft\Internet Explorer\Main,Start Page = http://lenovo13.msn.com/?pc=LCJB
HKU\S-1-5-21-3039287370-3472210782-1621285922-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://lenovo13.msn.com/?pc=LCJB
HKU\S-1-5-21-3039287370-3472210782-1621285922-1001\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = http://www.lenovo.com
HKU\S-1-5-21-3039287370-3472210782-1621285922-1001\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = http://www.lenovo.com
SearchScopes: HKLM - & gt; {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM-x32 - & gt; {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-3039287370-3472210782-1621285922-1001 - & gt; DefaultScope {A9B30AEF-5425-4108-8436-7E9C7D0E1138} URL =
SearchScopes: HKU\S-1-5-21-3039287370-3472210782-1621285922-1001 - & gt; {A9B30AEF-5425-4108-8436-7E9C7D0E1138} URL =
BHO: Java(tm) Plug-In SSV Helper - & gt; {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - & gt; C:\Program Files\Java\jre1.8.0_25\bin\ssv.dll (Oracle Corporation)
BHO: Microsoft SkyDrive Pro Browser Helper - & gt; {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - & gt; C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper - & gt; {DBC80044-A445-435b-BC74-9C25C1C588A9} - & gt; C:\Program Files\Java\jre1.8.0_25\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: Microsoft SkyDrive Pro Browser Helper - & gt; {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - & gt; C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation)
Tcpip\Parameters: [DhcpNameServer] 8.8.8.8 8.8.4.4
FireFox:
========
FF ProfilePath: C:\Users\Dyrektor\AppData\Roaming\Mozilla\Firefox\Profiles\ova60pvj.default
FF Plugin: @adobe.com/FlashPlayer - & gt; C:\WINDOWS\system32\Macromed\Flash\NPSWF64_16_0_0_296.dll ()
FF Plugin: @java.com/DTPlugin,version=11.25.2 - & gt; C:\Program Files\Java\jre1.8.0_25\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.25.2 - & gt; C:\Program Files\Java\jre1.8.0_25\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - & gt; c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer - & gt; C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_16_0_0_296.dll ()
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 - & gt; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater - & gt; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - & gt; c:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - & gt; C:\PROGRA~2\MICROS~1\Office15\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 - & gt; C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 - & gt; C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: Adobe Reader - & gt; C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Extension: Adblock Plus - C:\Users\Dyrektor\AppData\Roaming\Mozilla\Firefox\Profiles\ova60pvj.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2015-01-11]
Chrome:
=======
CHR Profile: C:\Users\Dyrektor\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Dokumenty Google) - C:\Users\Dyrektor\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-11-19]
CHR Extension: (Dysk Google) - C:\Users\Dyrektor\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-11-19]
CHR Extension: (YouTube) - C:\Users\Dyrektor\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-11-19]
CHR Extension: (Adblock Plus) - C:\Users\Dyrektor\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2014-12-18]
CHR Extension: (Szukaj w Google) - C:\Users\Dyrektor\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-11-19]
CHR Extension: (Google Wallet) - C:\Users\Dyrektor\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-11-19]
CHR Extension: (Gmail) - C:\Users\Dyrektor\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-11-19]
==================== Services (Whitelisted) =================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R2 AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [312448 2013-09-07] (Windows (R) Win 7 DDK provider)
R2 AVKProxy; C:\Program Files (x86)\Common Files\G Data\AVKProxy\AVKProxy.exe [2250360 2014-10-14] (G Data Software AG)
R2 AVKService; C:\Program Files (x86)\G Data\AntiVirus\AVK\AVKService.exe [914552 2013-12-19] (G Data Software AG)
R2 AVKWCtl; C:\Program Files (x86)\G Data\AntiVirus\AVK\AVKWCtlx64.exe [2683760 2014-05-20] (G Data Software AG)
S3 BthHFSrv; C:\Windows\System32\BthHFSrv.dll [324608 2014-10-29] (Microsoft Corporation)
R3 GDScan; C:\Program Files (x86)\Common Files\G Data\GDScan\GDScan.exe [700536 2014-05-20] (G Data Software AG)
R2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [15720 2013-08-07] (Intel Corporation)
R2 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [733696 2013-05-11] (Intel(R) Corporation) [File not signed]
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [822232 2013-05-11] (Intel(R) Corporation)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432 2013-08-08] (Intel Corporation)
S3 LSCWinService; C:\Program Files\Lenovo\Lenovo Solution Center\App\LSCWinService.exe [272776 2014-10-16] ()
R2 RichVideo64; C:\Program Files\CyberLink\Shared files\RichVideo64.exe [390632 2012-04-24] ()
R2 VeriFaceSrv; C:\Program Files (x86)\Lenovo\Lenovo VeriFace\VfConnectorService.exe [68368 2014-06-19] ()
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [368632 2014-09-22] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23792 2014-09-22] (Microsoft Corporation)
R2 ZAtheros Bt and Wlan Coex Agent; C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe [323584 2013-09-07] (Atheros) [File not signed]
==================== Drivers (Whitelisted) ====================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R3 athr; C:\Windows\system32\DRIVERS\athwbx.sys [3837440 2013-07-14] (Qualcomm Atheros Communications, Inc.)
R3 BTATH_LWFLT; C:\Windows\system32\DRIVERS\btath_lwflt.sys [77464 2013-09-07] (Qualcomm Atheros)
R3 BthLEEnum; C:\Windows\System32\drivers\BthLEEnum.sys [226304 2013-12-04] (Microsoft Corporation)
R0 GDBehave; C:\Windows\System32\drivers\GDBehave.sys [55808 2014-11-19] (G Data Software AG)
R1 GDKBFlt; C:\WINDOWS\system32\drivers\GDKBFlt64.sys [20992 2015-01-08] (G Data Software AG)
R1 GDMnIcpt; C:\WINDOWS\system32\drivers\MiniIcpt.sys [142336 2014-11-19] (G Data Software AG)
R3 GDPkIcpt; C:\WINDOWS\system32\drivers\PktIcpt.sys [64000 2014-11-19] (G Data Software AG)
R1 gdwfpcd; C:\Windows\System32\drivers\gdwfpcd64.sys [68608 2015-01-08] (G Data Software AG)
R1 GRD; C:\WINDOWS\system32\drivers\GRD.sys [106272 2014-12-17] (G Data Software)
R1 HookCentre; C:\WINDOWS\system32\drivers\HookCentre.sys [61440 2014-11-19] (G Data Software AG)
R3 MEIx64; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [99288 2013-08-08] (Intel Corporation)
S3 NETwNe64; C:\Windows\system32\DRIVERS\NETwew00.sys [3344352 2013-07-08] (Intel Corporation)
R3 rtsuvc; C:\Windows\system32\DRIVERS\rtsuvc.sys [8247640 2013-07-19] (Realtek Semiconductor Corp.)
R3 SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [34544 2013-09-13] (Synaptics Incorporated)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [114496 2014-09-22] (Microsoft Corporation)
S3 wsvd; C:\Windows\system32\DRIVERS\wsvd.sys [102376 2012-06-13] ( " CyberLink)
==================== NetSvcs (Whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)
==================== One Month Created Files and Folders ========
(If an entry is included in the fixlist, the file\folder will be moved.)
2015-01-28 23:58 - 2015-01-28 23:59 - 00030677 _____ () C:\Users\Dyrektor\Downloads\Addition.txt
2015-01-28 23:54 - 2015-01-29 00:00 - 00016405 _____ () C:\Users\Dyrektor\Downloads\FRST.txt
2015-01-28 23:53 - 2015-01-29 00:00 - 00000000 ____D () C:\FRST
2015-01-28 23:49 - 2015-01-28 23:50 - 02130432 _____ (Farbar) C:\Users\Dyrektor\Downloads\FRST64.exe
2015-01-28 23:08 - 2015-01-28 23:08 - 00002778 _____ () C:\WINDOWS\System32\Tasks\CCleanerSkipUAC
2015-01-28 23:07 - 2015-01-28 23:08 - 00000000 ____D () C:\Program Files\CCleaner
2015-01-28 23:07 - 2015-01-28 23:07 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
2015-01-28 23:06 - 2015-01-28 23:06 - 05325208 _____ (Piriform Ltd) C:\Users\Dyrektor\Downloads\ccsetup502.exe
2015-01-24 10:32 - 2015-01-24 10:32 - 03551916 _____ () C:\Users\Dyrektor\Downloads\Polityka-wydanie42015.epub
2015-01-24 10:12 - 2015-01-24 10:12 - 01340258 _____ () C:\Users\Dyrektor\Downloads\ameksyka-wojna-wzdluz-granicy-ed-vulliamy-Ebookpoint.pl.epub
2015-01-24 10:11 - 2015-01-24 10:12 - 01308853 _____ () C:\Users\Dyrektor\Downloads\antologia-100-xx-tom-1-szczygiel-mariusz-Ebookpoint.pl.epub
2015-01-24 10:11 - 2015-01-24 10:11 - 02782792 _____ () C:\Users\Dyrektor\Downloads\angole-ewa-winnicka-Ebookpoint.pl.epub
2015-01-24 10:11 - 2015-01-24 10:11 - 01925620 _____ () C:\Users\Dyrektor\Downloads\cygan-to-cygan-lidia-ostalowska-Ebookpoint.pl.epub
2015-01-24 10:11 - 2015-01-24 10:11 - 01436702 _____ () C:\Users\Dyrektor\Downloads\przez-drogi-i-bezdroza-podroz-po-nowych-chinach-peter-hessler-Ebookpoint.pl.epub
2015-01-24 10:11 - 2015-01-24 10:11 - 01235263 _____ () C:\Users\Dyrektor\Downloads\toast-za-przodkow-wojciech-gorecki-Ebookpoint.pl.epub
2015-01-24 10:11 - 2015-01-24 10:11 - 00997238 _____ () C:\Users\Dyrektor\Downloads\pochowek-dla-rezuna-pawel-smolenski-Ebookpoint.pl.epub
2015-01-24 10:11 - 2015-01-24 10:11 - 00778931 _____ () C:\Users\Dyrektor\Downloads\abchazja-wojciech-gorecki-Ebookpoint.pl.epub
2015-01-24 10:11 - 2015-01-24 10:11 - 00642563 _____ () C:\Users\Dyrektor\Downloads\ostatni-swiadkowie-swietlana-aleksijewicz-Ebookpoint.pl.epub
2015-01-24 10:10 - 2015-01-24 10:11 - 11654724 _____ () C:\Users\Dyrektor\Downloads\ksiegi-jakubowe-olga-tokarczuk-Ebookpoint.pl.epub
2015-01-24 10:10 - 2015-01-24 10:11 - 06968328 _____ () C:\Users\Dyrektor\Downloads\sycylijski-mrok-peter-robb-Ebookpoint.pl.epub
2015-01-24 10:10 - 2015-01-24 10:11 - 01750558 _____ () C:\Users\Dyrektor\Downloads\planeta-kaukaz-wojciech-gorecki-Ebookpoint.pl.epub
2015-01-24 10:10 - 2015-01-24 10:11 - 00699064 _____ () C:\Users\Dyrektor\Downloads\irak-pieklo-w-raju-pawel-smolenski-Ebookpoint.pl.epub
2015-01-24 10:10 - 2015-01-24 10:10 - 02712644 _____ () C:\Users\Dyrektor\Downloads\czarnobylska-modlitwa-kronika-przyszlosci-swietlana-aleksijewicz-Ebookpoint.pl.epub
2015-01-24 10:10 - 2015-01-24 10:10 - 02411225 _____ () C:\Users\Dyrektor\Downloads\oczy-zasypane-piaskiem-pawel-smolenski-Ebookpoint.pl.epub
2015-01-24 10:09 - 2015-01-24 10:09 - 01357188 _____ () C:\Users\Dyrektor\Downloads\antologia-100-xx-tom-2-szczygiel-mariusz-Ebookpoint.pl.epub
2015-01-24 10:09 - 2015-01-24 10:09 - 00795094 _____ () C:\Users\Dyrektor\Downloads\czasy-secondhand-koniec-czerwonego-czlowieka-swietlana-aleksijewicz-Ebookpoint.pl.epub
2015-01-24 10:08 - 2015-01-24 10:08 - 01771057 _____ () C:\Users\Dyrektor\Downloads\izrael-juz-nie-frunie-pawel-smolenski-Ebookpoint.pl.epub
2015-01-24 10:08 - 2015-01-24 10:08 - 00000000 ____D () C:\Users\Dyrektor\Desktop\ksiazki ewa
2015-01-19 18:15 - 2015-01-19 18:18 - 00000001 ____R () C:\Users\Dyrektor\serverport
2015-01-19 18:15 - 2015-01-19 18:15 - 00000000 ____D () C:\Users\Dyrektor\.jivex
2015-01-14 19:13 - 2014-12-12 03:04 - 00087040 _____ (Microsoft Corporation) C:\WINDOWS\system32\TSWbPrxy.exe
2015-01-14 19:13 - 2014-12-09 02:50 - 00225280 _____ (Microsoft Corporation) C:\WINDOWS\system32\profsvc.dll
2015-01-14 19:13 - 2014-12-06 04:17 - 00360448 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncsi.dll
2015-01-14 19:13 - 2014-12-06 02:41 - 00391680 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlasvc.dll
2015-01-14 19:12 - 2014-12-19 07:26 - 00140800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxdav.sys
2015-01-14 19:12 - 2014-12-12 01:51 - 00075776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ahcache.sys
2015-01-14 19:12 - 2014-12-08 20:42 - 00535640 _____ (Microsoft Corporation) C:\WINDOWS\system32\wer.dll
2015-01-14 19:12 - 2014-12-08 20:42 - 00531616 _____ (Microsoft Corporation) C:\WINDOWS\system32\ci.dll
2015-01-14 19:12 - 2014-12-08 20:42 - 00448792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wer.dll
2015-01-14 19:12 - 2014-12-08 20:42 - 00413248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Faultrep.dll
2015-01-14 19:12 - 2014-12-08 20:42 - 00372408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Faultrep.dll
2015-01-14 19:12 - 2014-12-08 20:42 - 00108944 _____ (Microsoft Corporation) C:\WINDOWS\system32\EncDump.dll
2015-01-14 19:12 - 2014-12-08 20:42 - 00038264 _____ (Microsoft Corporation) C:\WINDOWS\system32\WerFaultSecure.exe
2015-01-14 19:12 - 2014-12-08 20:42 - 00033584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WerFaultSecure.exe
2015-01-14 19:12 - 2014-12-06 02:35 - 00229888 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll
2015-01-08 18:51 - 2015-01-08 18:51 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\G DATA ANTIVIRUS
2015-01-08 18:45 - 2015-01-08 18:45 - 00000000 ____H () C:\Users\Dyrektor\AppData\Local\BIT36E5.tmp
2015-01-08 18:43 - 2015-01-08 18:43 - 00000000 _____ () C:\Users\Dyrektor\AppData\Local\{6ED3326F-AF7B-40E1-A5A1-91E801C834C7}
2015-01-06 11:13 - 2015-01-06 11:13 - 00003886 _____ () C:\WINDOWS\System32\Tasks\Adobe Acrobat Update Task
==================== One Month Modified Files and Folders =======
(If an entry is included in the fixlist, the file\folder will be moved.)
2015-01-29 00:02 - 2014-11-19 20:57 - 00001072 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2015-01-29 00:00 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\system32\sru
2015-01-28 23:52 - 2014-11-19 20:56 - 00000930 _____ () C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2015-01-28 23:41 - 2014-12-24 11:45 - 00000000 ____D () C:\Users\Dyrektor\AppData\Roaming\Skype
2015-01-28 23:30 - 2014-06-19 02:09 - 01174727 _____ () C:\WINDOWS\WindowsUpdate.log
2015-01-28 23:25 - 2013-08-22 15:46 - 00039800 _____ () C:\WINDOWS\setupact.log
2015-01-28 23:19 - 2014-11-19 14:52 - 00003598 _____ () C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-3039287370-3472210782-1621285922-1001
2015-01-28 23:15 - 2014-11-19 20:57 - 00001068 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2015-01-28 23:14 - 2014-11-27 17:58 - 00000000 ___RD () C:\Users\Dyrektor\OneDrive
2015-01-28 23:13 - 2014-11-19 20:47 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service
2015-01-28 23:13 - 2013-08-22 15:45 - 00000006 ____H () C:\WINDOWS\Tasks\SA.DAT
2015-01-28 23:12 - 2014-06-19 03:30 - 00002560 _____ () C:\WINDOWS\system32\VfService.trf
2015-01-28 23:10 - 2014-11-19 17:23 - 03165058 _____ () C:\Users\Public\CAFADEBUG.log
2015-01-28 20:10 - 2013-08-22 16:20 - 00000000 ____D () C:\WINDOWS\CbsTemp
2015-01-28 19:27 - 2014-11-19 20:46 - 00004000 _____ () C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{112B6D38-10FD-4E17-8AD9-97B3F5432BDF}
2015-01-28 19:24 - 2014-11-19 14:45 - 00000000 ____D () C:\Users\Dyrektor\AppData\Local\Pokki
2015-01-27 17:05 - 2014-11-19 20:58 - 00002220 _____ () C:\Users\Public\Desktop\Google Chrome.lnk
2015-01-26 22:28 - 2014-12-02 18:55 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2015-01-26 21:44 - 2014-11-20 21:07 - 00000000 ____D () C:\Users\Dyrektor\AppData\Local\CrashDumps
2015-01-26 08:07 - 2014-06-19 11:56 - 00808198 _____ () C:\WINDOWS\system32\perfh015.dat
2015-01-26 08:07 - 2014-06-19 11:56 - 00164014 _____ () C:\WINDOWS\system32\perfc015.dat
2015-01-26 08:07 - 2013-10-07 19:27 - 01828496 _____ () C:\WINDOWS\system32\PerfStringBackup.INI
2015-01-24 22:27 - 2014-11-19 20:56 - 00003818 _____ () C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater
2015-01-24 21:20 - 2014-11-19 17:22 - 00714720 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2015-01-24 21:20 - 2014-11-19 17:22 - 00106976 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
2015-01-23 21:30 - 2013-08-22 14:25 - 00262144 ___SH () C:\WINDOWS\system32\config\BBI
2015-01-23 18:02 - 2014-11-28 10:59 - 00017408 ___SH () C:\Users\Dyrektor\Desktop\Thumbs.db
2015-01-23 13:34 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\AppReadiness
2015-01-21 22:52 - 2014-11-19 14:45 - 00000000 ____D () C:\Users\Dyrektor
2015-01-19 17:05 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\system32\NDF
2015-01-17 10:54 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\tracing
2015-01-15 21:45 - 2014-11-19 16:11 - 00000000 ____D () C:\WINDOWS\system32\MRT
2015-01-15 21:40 - 2014-11-19 16:11 - 113365784 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2015-01-12 20:16 - 2014-11-19 14:46 - 00000000 ____D () C:\Users\Dyrektor\AppData\Local\Packages
2015-01-10 10:22 - 2014-12-19 15:23 - 00000000 ___RD () C:\Program Files (x86)\Skype
2015-01-10 10:22 - 2014-12-19 15:23 - 00000000 ____D () C:\ProgramData\Skype
2015-01-08 18:51 - 2014-11-19 21:13 - 00068608 _____ (G Data Software AG) C:\WINDOWS\system32\Drivers\gdwfpcd64.sys
2015-01-08 18:51 - 2014-11-19 21:13 - 00020992 _____ (G Data Software AG) C:\WINDOWS\system32\Drivers\GDKBFlt64.sys
2015-01-08 18:51 - 2014-11-19 21:13 - 00001960 _____ () C:\Users\Public\Desktop\G DATA ANTIVIRUS.lnk
2015-01-06 11:13 - 2014-11-20 16:07 - 00002348 _____ () C:\Users\Dyrektor\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PC App Store.lnk
2015-01-03 22:55 - 2014-12-18 21:10 - 00000000 ____D () C:\Users\Dyrektor\Desktop\bmw
2015-01-02 10:37 - 2014-11-19 20:47 - 00000000 ____D () C:\Users\Dyrektor\AppData\Roaming\Mozilla
==================== Files in the root of some directories =======
2014-11-19 21:13 - 2014-11-19 21:13 - 0000779 _____ () C:\Users\Dyrektor\AppData\Roaming\gdscan.log
2015-01-08 18:45 - 2015-01-08 18:45 - 0000000 ____H () C:\Users\Dyrektor\AppData\Local\BIT36E5.tmp
2015-01-08 18:43 - 2015-01-08 18:43 - 0000000 _____ () C:\Users\Dyrektor\AppData\Local\{6ED3326F-AF7B-40E1-A5A1-91E801C834C7}
2014-06-19 02:49 - 2014-06-19 02:49 - 0000000 ____H () C:\ProgramData\DP45977C.lfl
Some content of TEMP:
====================
C:\Users\Dyrektor\AppData\Local\Temp\oct1125.tmp.exe
C:\Users\Dyrektor\AppData\Local\Temp\oct3067.tmp.exe
C:\Users\Dyrektor\AppData\Local\Temp\octC520.tmp.exe
C:\Users\Dyrektor\AppData\Local\Temp\octD0E.tmp.exe
C:\Users\Dyrektor\AppData\Local\Temp\ose00000.exe
C:\Users\Dyrektor\AppData\Local\Temp\SkypeSetup.exe
==================== Bamital & volsnap Check =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\System32\winlogon.exe = & gt; File is digitally signed
C:\Windows\System32\wininit.exe = & gt; File is digitally signed
C:\Windows\explorer.exe = & gt; File is digitally signed
C:\Windows\SysWOW64\explorer.exe = & gt; File is digitally signed
C:\Windows\System32\svchost.exe = & gt; File is digitally signed
C:\Windows\SysWOW64\svchost.exe = & gt; File is digitally signed
C:\Windows\System32\services.exe = & gt; File is digitally signed
C:\Windows\System32\User32.dll = & gt; File is digitally signed
C:\Windows\SysWOW64\User32.dll = & gt; File is digitally signed
C:\Windows\System32\userinit.exe = & gt; File is digitally signed
C:\Windows\SysWOW64\userinit.exe = & gt; File is digitally signed
C:\Windows\System32\rpcss.dll = & gt; File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys = & gt; File is digitally signed
LastRegBack: 2015-01-21 18:07
==================== End Of Log ============================