Proszę o pomoc w usunięciu z mojego komputera "yoursites123". Niestety wszystkie "proste" sposoby (tj. zmiany w ustawieniach Chrome, usuwanie podejrzanych plików z komputera) zawiodły. W ślad za innymi użytkownikami z podobnym problemem załączam pliki z FRST.
Rezultaty skanowania Farbar Recovery Scan Tool (FRST) (x64) Wersja:07-01-2015
Uruchomiony przez expert (administrator) EXPERT-KOMPUTER (08-01-2016 15:01:03)
Uruchomiony z C:\Users\expert\Desktop
Załadowane profile: UpdatusUser & expert (Dostępne profile: UpdatusUser & expert & Gość)
Platform: Windows 7 Home Premium Service Pack 1 (X64) Język: Polski (Polska)
Internet Explorer Wersja 11 (Domyślna przeglądarka: Chrome)
Tryb startu: Normal
Instrukcja obsługi Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/
==================== Procesy (filtrowane) =================
(Załączenie wejścia w fixlist spowoduje zamknięcie procesu. Powiązany plik nie zostanie przeniesiony.)
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\NvXDSync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(ASUSTeK Computer Inc.) C:\Windows\System32\FBAgent.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
(ASUS) C:\Program Files\P4G\BatteryLife.exe
(ASUS) C:\Program Files (x86)\ASUS\Splendid\ACMON.exe
(ASUSTeK) C:\Windows\SysWOW64\ACEngSvr.exe
(Atheros) C:\Program Files (x86)\Atheros\Ath_CoexAgent.exe
(Atheros Commnucations) C:\Program Files (x86)\Atheros\Bluetooth Suite\AdminService.exe
(ASUS) C:\Windows\AsScrPro.exe
() C:\ProgramData\DataCardService\HWDeviceService64.exe
(Huawei Technologies Co., Ltd.) C:\ProgramData\DataCardService\DCSHelper.exe
(tsvr.com) C:\Users\expert\AppData\Roaming\TSv\TSvr.exe
(CyberLink) C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe
() C:\Windows\SysWOW64\srvany.exe
() C:\Windows\KMService.exe
() C:\Windows\System32\rpcnetp.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Atheros Communications) C:\Program Files (x86)\Atheros\Bluetooth Suite\BtvStack.exe
(Atheros Commnucations) C:\Program Files (x86)\Atheros\Bluetooth Suite\AthBtTray.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrl.exe
(Samsung) C:\Program Files (x86)\Samsung\Kies\Kies.exe
(Samsung) C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe
(TODO: & lt; 公司名 & gt; ) C:\Windows\Temp\_avast_\unp134094572.tmp
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\Office14\MSOSYNC.EXE
(Microsoft Corporation) C:\Windows\System32\StikyNot.exe
(TODO: & lt; 公司名 & gt; ) C:\Windows\Temp\_avast_\unp134094572.tmp
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(Microsoft Corporation) C:\Windows\SysWOW64\runonce.exe
() C:\Windows\SysWOW64\C2MP\TrayMenu.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrlHelper.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\Office14\ONENOTEM.EXE
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Avast Software) C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\avastui.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
==================== Rejestr (filtrowane) ===========================
(Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.)
HKLM\...\Run: [RtHDVBg] = & gt; C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2188904 2011-03-21] (Realtek Semiconductor)
HKLM\...\Run: [AtherosBtStack] = & gt; C:\Program Files (x86)\Atheros\Bluetooth Suite\BtvStack.exe [613536 2010-11-26] (Atheros Communications)
HKLM\...\Run: [AthBtTray] = & gt; C:\Program Files (x86)\Atheros\Bluetooth Suite\AthBtTray.exe [379040 2010-11-26] (Atheros Commnucations)
HKLM\...\Run: [ETDCtrl] = & gt; C:\Program Files\Elantech\ETDCtrl.exe [2587944 2010-12-13] (ELAN Microelectronics Corp.)
HKLM-x32\...\Run: [UpdateLBPShortCut] = & gt; C:\Program Files (x86)\CyberLink\LabelPrint\MUITransfer\MUIStartMenu.exe [222504 2009-05-20] (CyberLink Corp.)
HKLM-x32\...\Run: [UpdateP2GoShortCut] = & gt; C:\Program Files (x86)\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe [222504 2009-05-20] (CyberLink Corp.)
HKLM-x32\...\Run: [ATKMEDIA] = & gt; C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe [170624 2010-10-07] (ASUS)
HKLM-x32\...\Run: [HControlUser] = & gt; C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe [105016 2009-06-19] (ASUS)
HKLM-x32\...\Run: [Wireless Console 3] = & gt; C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe [1601536 2010-09-24] ()
HKLM-x32\...\Run: [BCSSync] = & gt; C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe [89184 2012-11-05] (Microsoft Corporation)
HKLM-x32\...\Run: [ASUSWebStorage] = & gt; C:\Program Files (x86)\ASUS\ASUS WebStorage\3.0.108.222\AsusWSPanel.exe [737104 2011-08-17] (ecareme)
HKLM-x32\...\Run: [APSDaemon] = & gt; C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [59720 2013-04-21] (Apple Inc.)
HKLM-x32\...\Run: [iTunesHelper] = & gt; C:\Program Files (x86)\iTunes\iTunesHelper.exe [152392 2013-05-31] (Apple Inc.)
HKLM-x32\...\Run: [KiesTrayAgent] = & gt; C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe [310128 2013-02-13] (Samsung Electronics Co., Ltd.)
HKLM-x32\...\Run: [AvastUI.exe] = & gt; C:\Program Files\AVAST Software\Avast\AvastUI.exe [6108752 2015-11-10] (AVAST Software)
HKLM-x32\...\Run: [Adobe ARM] = & gt; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959176 2014-09-12] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [SunJavaUpdateSched] = & gt; " C:\Program Files (x86)\Java\jre1.8.0_51\bin\jusched.exe "
HKLM-x32\...\Run: [Plus Internet] = & gt; C:\Program Files (x86)\Plus Internet\PlusInternetChecker.exe [492864 2012-04-20] ()
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKU\S-1-5-21-1054956784-3089589168-1226077571-1000\...\Run: [ISUSPM] = & gt; C:\ProgramData\FLEXnet\Connect\11\ISUSPM.exe -scheduler
HKU\S-1-5-21-1054956784-3089589168-1226077571-1000\...\Run: [swg] = & gt; " C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe "
HKU\S-1-5-21-1054956784-3089589168-1226077571-1001\...\Run: [ALLUpdate] = & gt; " C:\Program Files (x86)\ALLPlayer\ALLUpdate.exe " " sleep "
HKU\S-1-5-21-1054956784-3089589168-1226077571-1001\...\Run: [KiesPreload] = & gt; C:\Program Files (x86)\Samsung\Kies\Kies.exe [1509232 2013-02-13] (Samsung)
HKU\S-1-5-21-1054956784-3089589168-1226077571-1001\...\Run: [KiesAirMessage] = & gt; C:\Program Files (x86)\Samsung\Kies\KiesAirMessage.exe -startup
HKU\S-1-5-21-1054956784-3089589168-1226077571-1001\...\Run: [] = & gt; C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe [844144 2013-02-13] (Samsung)
HKU\S-1-5-21-1054956784-3089589168-1226077571-1001\...\Run: [Tiny download manager] = & gt; " C:\Users\expert\AppData\Local\DM\TinyDM.exe " /M
HKU\S-1-5-21-1054956784-3089589168-1226077571-1001\...\Run: [OfficeSyncProcess] = & gt; C:\Program Files (x86)\Microsoft Office\Office14\MSOSYNC.EXE [720064 2014-10-14] (Microsoft Corporation)
HKU\S-1-5-21-1054956784-3089589168-1226077571-1001\...\Run: [RESTART_STICKY_NOTES] = & gt; C:\Windows\System32\StikyNot.exe [427520 2009-07-14] (Microsoft Corporation)
HKU\S-1-5-21-1054956784-3089589168-1226077571-1001\...\Run: [CCleaner Monitoring] = & gt; C:\Program Files\CCleaner\CCleaner64.exe [8591272 2015-11-16] (Piriform Ltd)
HKU\S-1-5-21-1054956784-3089589168-1226077571-1001\...\CurrentVersion\Windows: [Load] C:\Users\expert\LOCALS~1\Temp\ccalwm.exe & lt; ===== UWAGA
HKU\S-1-5-21-1054956784-3089589168-1226077571-1001\...\MountPoints2: F - F:\AutoRun.exe
HKU\S-1-5-21-1054956784-3089589168-1226077571-1001\...\MountPoints2: G - G:\AutoRun.exe
HKU\S-1-5-21-1054956784-3089589168-1226077571-1001\...\MountPoints2: {019991a4-f367-11e1-833b-e0b9a52f7ca6} - F:\AutoRun.exe
HKU\S-1-5-21-1054956784-3089589168-1226077571-1001\...\MountPoints2: {1b15f090-3011-11e2-b1d3-e0b9a52f7ca6} - F:\AutoRun.exe
HKU\S-1-5-21-1054956784-3089589168-1226077571-1001\...\MountPoints2: {1b15f095-3011-11e2-b1d3-e0b9a52f7ca6} - F:\AutoRun.exe
HKU\S-1-5-21-1054956784-3089589168-1226077571-1001\...\MountPoints2: {3d441fcb-5018-11e2-ac39-001e101fa1f5} - F:\AutoRun.exe
HKU\S-1-5-21-1054956784-3089589168-1226077571-1001\...\MountPoints2: {4f2c6c17-b216-11e5-944f-bcaec564cb2b} - F:\AutoRun.exe
HKU\S-1-5-21-1054956784-3089589168-1226077571-1001\...\MountPoints2: {50e497fd-f37f-11e1-a23b-e0b9a52f7ca6} - F:\AutoRun.exe
HKU\S-1-5-21-1054956784-3089589168-1226077571-1001\...\MountPoints2: {8749f390-f697-11e0-9bc2-e0b9a52f7ca6} - F:\AutoRun.exe
HKU\S-1-5-21-1054956784-3089589168-1226077571-1001\...\MountPoints2: {87a11e4f-f5a1-11e1-8372-001e101f1ed9} - F:\AutoRun.exe
HKU\S-1-5-21-1054956784-3089589168-1226077571-1001\...\MountPoints2: {8e0caa26-af16-11e5-917d-e0b9a52f7ca6} - F:\AutoRun.exe
HKU\S-1-5-21-1054956784-3089589168-1226077571-1001\...\MountPoints2: {8e0caa2b-af16-11e5-917d-e0b9a52f7ca6} - F:\AutoRun.exe
HKU\S-1-5-21-1054956784-3089589168-1226077571-1001\...\MountPoints2: {92bd3843-f368-11e1-bbcd-e0b9a52f7ca6} - F:\AutoRun.exe
HKU\S-1-5-21-1054956784-3089589168-1226077571-1001\...\MountPoints2: {9c02bffd-bbfc-11e4-963a-e0b9a52f7ca6} - F:\AutoRun.exe
HKU\S-1-5-21-1054956784-3089589168-1226077571-1001\...\MountPoints2: {baf15c8c-daad-11e0-8fa2-e0b9a52f7ca6} - F:\AutoRun.exe
HKU\S-1-5-21-1054956784-3089589168-1226077571-1001\...\MountPoints2: {baf15c9e-daad-11e0-8fa2-e0b9a52f7ca6} - F:\AutoRun.exe
HKU\S-1-5-21-1054956784-3089589168-1226077571-1001\...\MountPoints2: {e4d6cd37-eb34-11e0-b1f6-e0b9a52f7ca6} - F:\AutoRun.exe
HKU\S-1-5-21-1054956784-3089589168-1226077571-1001\...\MountPoints2: {e54e568f-ec1a-11e0-874f-e0b9a52f7ca6} - F:\AutoRun.exe
HKU\S-1-5-21-1054956784-3089589168-1226077571-1001\...\MountPoints2: {f215d576-001c-11e3-8840-001e101faa49} - F:\AutoRun.exe
AppInit_DLLs: C:\Windows\system32\nvinitx.dll = & gt; C:\Windows\system32\nvinitx.dll [226920 2011-03-21] (NVIDIA Corporation)
AppInit_DLLs-x32: C:\Windows\SysWOW64\nvinit.dll = & gt; C:\Windows\SysWOW64\nvinit.dll [192616 2011-03-21] (NVIDIA Corporation)
ShellIconOverlayIdentifiers: [00avast] - & gt; {472083B0-C522-11CF-8763-00608CC02F24} = & gt; C:\Program Files\AVAST Software\Avast\ashShA64.dll [2015-07-20] (AVAST Software)
ShellIconOverlayIdentifiers: [AsusWSShellExt_B] - & gt; {6D4133E5-0742-4ADC-8A8C-9303440F7190} = & gt; C:\Program Files (x86)\ASUS\ASUS WebStorage\3.0.108.222\ASUSWSShellExt64.dll [2011-05-25] (eCareme Technologies, Inc.)
ShellIconOverlayIdentifiers: [AsusWSShellExt_O] - & gt; {64174815-8D98-4CE6-8646-4C039977D808} = & gt; C:\Program Files (x86)\ASUS\ASUS WebStorage\3.0.108.222\ASUSWSShellExt64.dll [2011-05-25] (eCareme Technologies, Inc.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\CodecPackTrayMenu.lnk [2013-04-26]
ShortcutTarget: CodecPackTrayMenu.lnk - & gt; C:\Windows\SysWOW64\C2MP\TrayMenu.exe ()
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\CodecPackUpdateChecker.lnk [2013-04-26]
ShortcutTarget: CodecPackUpdateChecker.lnk - & gt; C:\Windows\SysWOW64\C2MP\UpdateChecker.exe ()
Startup: C:\Users\expert\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Tworzenie wycinków ekranu i uruchamianie programu OneNote 2010.lnk [2012-08-31]
ShortcutTarget: Tworzenie wycinków ekranu i uruchamianie programu OneNote 2010.lnk - & gt; C:\Program Files (x86)\Microsoft Office\Office14\ONENOTEM.EXE (Microsoft Corporation)
BootExecute: autocheck autochk * aswBoot.exe /M:6e8683bde /wow /dir: " C:\Program Files\AVAST Software\Avast "
==================== Internet (filtrowane) ====================
(Załączenie wejścia w fixlist, w przypadku gdy jest to obiekt rejestru, spowoduje usunięcie go z rejestru lub przywrócenie jego domyślnej postaci.)
Tcpip\Parameters: [DhcpNameServer] 62.179.1.63 62.179.1.62
Tcpip\..\Interfaces\{3CB50E7C-CE0D-45C8-876C-A09189FA5D3B}: [NameServer] 212.2.96.51 212.2.96.52
Tcpip\..\Interfaces\{5924B344-EABB-4FF7-8184-0BBE37202B9A}: [DhcpNameServer] 62.179.1.63 62.179.1.62
Tcpip\..\Interfaces\{94C02A04-D8DB-493E-A3A0-B583C82DE02D}: [NameServer] 212.2.96.51 212.2.96.52
Internet Explorer:
==================
HKU\S-1-5-21-1054956784-3089589168-1226077571-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://asus.msn.com
HKU\S-1-5-21-1054956784-3089589168-1226077571-1000\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://asus.msn.com
HKU\S-1-5-21-1054956784-3089589168-1226077571-1001\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://yoursites123.com/web?type=ds & ts=1452249234 & z=96b04a1e7e196b7f0046070gbzdwfo0o7zbt2oaccm & from=wpm01073 & uid=WDCXWD5000BPVT-80HXZT1_WD-WXD1EC0HE958HE958 & q={searchTerms}
HKU\S-1-5-21-1054956784-3089589168-1226077571-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.yoursites123.com/?type=hp & ts=1452249234 & z=96b04a1e7e196b7f0046070gbzdwfo0o7zbt2oaccm & from=wpm01073 & uid=WDCXWD5000BPVT-80HXZT1_WD-WXD1EC0HE958HE958
HKU\S-1-5-21-1054956784-3089589168-1226077571-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.yoursites123.com/?type=hp & ts=1452249234 & z=96b04a1e7e196b7f0046070gbzdwfo0o7zbt2oaccm & from=wpm01073 & uid=WDCXWD5000BPVT-80HXZT1_WD-WXD1EC0HE958HE958
HKU\S-1-5-21-1054956784-3089589168-1226077571-1001\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://yoursites123.com/web?type=ds & ts=1452249234 & z=96b04a1e7e196b7f0046070gbzdwfo0o7zbt2oaccm & from=wpm01073 & uid=WDCXWD5000BPVT-80HXZT1_WD-WXD1EC0HE958HE958 & q={searchTerms}
SearchScopes: HKLM - & gt; DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms} & form=ASUTDF & pc=MAAU & src=IE-SearchBox
SearchScopes: HKLM - & gt; {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms} & form=ASUTDF & pc=MAAU & src=IE-SearchBox
SearchScopes: HKLM-x32 - & gt; DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms} & form=ASUTDF & pc=MAAU & src=IE-SearchBox
SearchScopes: HKLM-x32 - & gt; {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms} & form=ASUTDF & pc=MAAU & src=IE-SearchBox
SearchScopes: HKLM-x32 - & gt; {67A2568C-7A0A-4EED-AECC-B5405DE63B64} URL = hxxp://www.google.com/search?sourceid=ie7 & q={searchTerms} & rls=com.microsoft:{language}:{referrer:source?} & ie={inputEncoding} & oe={outputEncoding} & rlz=1I7ASUT
SearchScopes: HKU\S-1-5-21-1054956784-3089589168-1226077571-1000 - & gt; DefaultScope {67A2568C-7A0A-4EED-AECC-B5405DE63B64} URL = hxxp://www.google.com/search?sourceid=ie7 & q={searchTerms} & rls=com.microsoft:{language}:{referrer:source?} & ie={inputEncoding} & oe={outputEncoding} & rlz=1I7ASUT
SearchScopes: HKU\S-1-5-21-1054956784-3089589168-1226077571-1000 - & gt; {67A2568C-7A0A-4EED-AECC-B5405DE63B64} URL = hxxp://www.google.com/search?sourceid=ie7 & q={searchTerms} & rls=com.microsoft:{language}:{referrer:source?} & ie={inputEncoding} & oe={outputEncoding} & rlz=1I7ASUT
SearchScopes: HKU\S-1-5-21-1054956784-3089589168-1226077571-1001 - & gt; DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://yoursites123.com/web?type=ds & ts=1452249234 & z=96b04a1e7e196b7f0046070gbzdwfo0o7zbt2oaccm & from=wpm01073 & uid=WDCXWD5000BPVT-80HXZT1_WD-WXD1EC0HE958HE958 & q={searchTerms}
SearchScopes: HKU\S-1-5-21-1054956784-3089589168-1226077571-1001 - & gt; {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-1054956784-3089589168-1226077571-1001 - & gt; {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://yoursites123.com/web?type=ds & ts=1452249234 & z=96b04a1e7e196b7f0046070gbzdwfo0o7zbt2oaccm & from=wpm01073 & uid=WDCXWD5000BPVT-80HXZT1_WD-WXD1EC0HE958HE958 & q={searchTerms}
SearchScopes: HKU\S-1-5-21-1054956784-3089589168-1226077571-1001 - & gt; {67A2568C-7A0A-4EED-AECC-B5405DE63B64} URL =
SearchScopes: HKU\S-1-5-21-1054956784-3089589168-1226077571-1001 - & gt; {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL =
BHO: Groove GFS Browser Helper - & gt; {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - & gt; C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL [2013-12-18] (Microsoft Corporation)
BHO: avast! Online Security - & gt; {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - & gt; C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2015-07-20] (AVAST Software)
BHO: Windows Live ID Sign-in Helper - & gt; {9030D464-4C02-4ABF-8ECC-5164760863C6} - & gt; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21] (Microsoft Corp.)
BHO: Office Document Cache Handler - & gt; {B4F3A835-0E21-4959-BA22-42B3008E02FF} - & gt; C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation)
BHO-x32: Groove GFS Browser Helper - & gt; {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - & gt; C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL [2013-12-18] (Microsoft Corporation)
BHO-x32: CIESpeechBHO Class - & gt; {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} - & gt; C:\Program Files (x86)\Atheros\Bluetooth Suite\IEPlugIn.dll [2010-11-26] (Atheros Commnucations)
BHO-x32: avast! Online Security - & gt; {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - & gt; C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2015-07-20] (AVAST Software)
BHO-x32: Windows Live ID Sign-in Helper - & gt; {9030D464-4C02-4ABF-8ECC-5164760863C6} - & gt; C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21] (Microsoft Corp.)
BHO-x32: Windows Live Messenger Companion Helper - & gt; {9FDDE16B-836F-4806-AB1F-1455CBEFF289} - & gt; C:\Program Files (x86)\Windows Live\Companion\companioncore.dll [2010-09-23] (Microsoft Corporation)
BHO-x32: Office Document Cache Handler - & gt; {B4F3A835-0E21-4959-BA22-42B3008E02FF} - & gt; C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation)
BHO-x32: IplexToALLPlayer - & gt; {DF925EF3-7A87-44E4-9CAF-8D7B280BF616} - & gt; C:\Program Files (x86)\ALLPlayer\Iplex\IplexToALLPlayer.dll [2011-02-09] (ALLCinema Ltd.)
FireFox:
========
FF ProfilePath: C:\Users\expert\AppData\Roaming\Mozilla\Firefox\Profiles\kzsedan1.default
FF Homepage: hxxp://www.wp.pl/
FF Plugin: @adobe.com/FlashPlayer - & gt; C:\Windows\system32\Macromed\Flash\NPSWF64_20_0_0_267.dll [2015-12-28] ()
FF Plugin: @microsoft.com/GENUINE - & gt; disabled [Brak pliku]
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - & gt; C:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll [2014-05-13] ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 - & gt; C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer - & gt; C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_20_0_0_267.dll [2015-12-28] ()
FF Plugin-x32: @Apple.com/iTunes,version=1.0 - & gt; C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll [2013-04-08] ()
FF Plugin-x32: @java.com/DTPlugin,version=11.51.2 - & gt; C:\Program Files (x86)\Java\jre1.8.0_51\bin\dtplugin\npDeployJava1.dll [2015-08-28] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin - & gt; C:\Program Files (x86)\Java\jre1.8.0_51\bin\new_plugin\npjp2.dll [Brak pliku]
FF Plugin-x32: @java.com/JavaPlugin,version=11.51.2 - & gt; C:\Program Files (x86)\Java\jre1.8.0_51\bin\plugin2\npjp2.dll [2015-08-28] (Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE - & gt; disabled [Brak pliku]
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - & gt; C:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll [2014-05-13] ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 - & gt; C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - & gt; C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 - & gt; C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2010-09-23] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 - & gt; C:\Program Files (x86)\Google\Update\1.3.29.1\npGoogleUpdate3.dll [2015-12-02] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 - & gt; C:\Program Files (x86)\Google\Update\1.3.29.1\npGoogleUpdate3.dll [2015-12-02] (Google Inc.)
FF Plugin-x32: Adobe Reader - & gt; C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2014-09-12] (Adobe Systems Inc.)
FF user.js: detected! = & gt; C:\Users\expert\AppData\Roaming\Mozilla\Firefox\Profiles\kzsedan1.default\user.js [2014-12-21]
FF Extension: Iplex to ALLPlayer - C:\Users\expert\AppData\Roaming\Mozilla\Firefox\Profiles\kzsedan1.default\Extensions\IplextoALL@ALLPlayer.org [2013-05-11] [Brak podpisu cyfrowego]
FF Extension: Iplex to ALLPlayer - C:\Users\expert\AppData\Roaming\Mozilla\Firefox\Profiles\kzsedan1.default\Extensions\IplextoALL@ALLPlayer.org.xpi [2012-07-11] [Brak podpisu cyfrowego]
FF Extension: Adblock Plus - C:\Users\expert\AppData\Roaming\Mozilla\Firefox\Profiles\kzsedan1.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2015-05-28]
FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2015-12-10]
Chrome:
=======
CHR StartupUrls: Default - & gt; " hxxps://www.google.pl/ "
CHR Profile: C:\Users\expert\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Prezentacje Google) - C:\Users\expert\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-12-14]
CHR Extension: (Dokumenty Google) - C:\Users\expert\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-12-14]
CHR Extension: (Dysk Google) - C:\Users\expert\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-12-14]
CHR Extension: (YouTube) - C:\Users\expert\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-12-14]
CHR Extension: (Google Search) - C:\Users\expert\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-12-14]
CHR Extension: (Arkusze Google) - C:\Users\expert\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-12-14]
CHR Extension: (Dokumenty Google offline) - C:\Users\expert\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2015-12-14]
CHR Extension: (AdBlock) - C:\Users\expert\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2015-12-14]
CHR Extension: (Avast Online Security) - C:\Users\expert\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2015-12-14]
CHR Extension: (Płatności w sklepie Chrome Web Store) - C:\Users\expert\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-12-14]
CHR Extension: (Gmail) - C:\Users\expert\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-12-14]
CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChromeSp.crx [2015-07-20]
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2015-07-20]
==================== Usługi (filtrowane) ========================
(Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)
R2 Atheros Bt & Wlan Coex Agent; C:\Program Files (x86)\Atheros\Ath_CoexAgent.exe [151552 2010-05-24] (Atheros) [Brak podpisu cyfrowego]
R2 AtherosSvc; C:\Program Files (x86)\Atheros\Bluetooth Suite\adminservice.exe [52896 2010-11-26] (Atheros Commnucations) [Brak podpisu cyfrowego]
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [146600 2015-07-20] (AVAST Software)
R3 AvastVBoxSvc; C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe [4047768 2015-07-20] (Avast Software)
R2 HWDeviceService64.exe; C:\ProgramData\DatacardService\HWDeviceService64.exe [346976 2011-03-14] ()
R2 IhPul; C:\Users\expert\AppData\Roaming\TSv\TSvr.exe [580752 2015-12-08] (tsvr.com)
R2 KMService; C:\Windows\SysWOW64\srvany.exe [8192 2011-12-15] () [Brak podpisu cyfrowego]
S3 NBService; C:\Program Files (x86)\Nero\Nero 7\Nero BackItUp\NBService.exe [774144 2006-11-10] (Nero AG) [Brak podpisu cyfrowego]
R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)
===================== Sterowniki (filtrowane) ==========================
(Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)
R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [28656 2015-07-20] (AVAST Software)
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [90968 2015-07-20] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93528 2015-07-20] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65224 2015-07-20] (AVAST Software)
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1059656 2015-11-10] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [449992 2015-11-10] (AVAST Software)
R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [150160 2015-07-20] (AVAST Software)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [274808 2015-07-20] (AVAST Software)
S3 ebdrv; C:\Windows\system32\DRIVERS\evbda.sys [3286016 2009-06-10] (Broadcom Corporation)
R0 ngvss; C:\Windows\System32\Drivers\ngvss.sys [115152 2015-07-20] (AVAST Software)
U5 UnlockerDriver5; C:\Program Files\Unlocker\UnlockerDriver5.sys [12352 2010-07-01] ()
R2 VBoxAswDrv; C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys [273824 2015-07-20] (Avast Software)
R1 {8aefbcaf-640f-4dca-9a92-ed05ee387238}w64; C:\Windows\System32\drivers\{8aefbcaf-640f-4dca-9a92-ed05ee387238}w64.sys [48776 2014-12-21] (StdLib)
S1 ccnfd_1_10_0_4; system32\drivers\ccnfd_1_10_0_4.sys [X]
S3 ewusbnet; system32\DRIVERS\ewusbnet.sys [X]
S3 hwusbdev; system32\DRIVERS\ewusbdev.sys [X]
========================== MD5 sterowników =======================
C:\Windows\system32\drivers\1394ohci.sys == & gt; MD5 jest poprawne
C:\Windows\System32\drivers\ACPI.sys == & gt; MD5 jest poprawne
C:\Windows\system32\drivers\acpipmi.sys == & gt; MD5 jest poprawne
C:\Windows\system32\DRIVERS\adp94xx.sys == & gt; MD5 jest poprawne
C:\Windows\system32\DRIVERS\adpahci.sys == & gt; MD5 jest poprawne
C:\Windows\system32\DRIVERS\adpu320.sys == & gt; MD5 jest poprawne
C:\Windows\system32\drivers\afd.sys FA886682CFC5D36718D3E436AACF10B9
C:\Windows\system32\drivers\agp440.sys == & gt; MD5 jest poprawne
C:\Windows\system32\drivers\aliide.sys == & gt; MD5 jest poprawne
C:\Windows\system32\drivers\amdide.sys == & gt; MD5 jest poprawne
C:\Windows\system32\DRIVERS\amdk8.sys == & gt; MD5 jest poprawne
C:\Windows\system32\DRIVERS\amdppm.sys == & gt; MD5 jest poprawne
C:\Windows\system32\drivers\amdsata.sys D4121AE6D0C0E7E13AA221AA57EF2D49
C:\Windows\system32\DRIVERS\amdsbs.sys == & gt; MD5 jest poprawne
C:\Windows\System32\drivers\amdxata.sys 540DAF1CEA6094886D72126FD7C33048
C:\Windows\system32\drivers\appid.sys == & gt; MD5 jest poprawne
C:\Windows\system32\DRIVERS\arc.sys == & gt; MD5 jest poprawne
C:\Windows\system32\DRIVERS\arcsas.sys == & gt; MD5 jest poprawne
C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\ASMMAP64.sys 4C016FD76ED5C05E84CA8CAB77993961
C:\Windows\system32\drivers\aswHwid.sys 25863B5A3AC02DD35063D77C1F1415FF
C:\Windows\system32\drivers\aswMonFlt.sys 2894AC8C6159201940C8CD5B33CC5203
C:\Windows\system32\drivers\aswRdr2.sys C384DC3DDF65F3E011DFBDFDB500F89A
C:\Windows\System32\Drivers\aswRvrt.sys 7F5ADFD9CA8EF06D020273B81BFFD731
C:\Windows\system32\drivers\aswSnx.sys D8AED327929029227447ADA450AA3AE8
C:\Windows\system32\drivers\aswSP.sys D96A7EE9F5E25A7941F2A2A2BED46339
C:\Windows\system32\drivers\aswStm.sys 82F2525A22A380AA977428490AA849E3
C:\Windows\System32\Drivers\aswVmm.sys 2F3F0B08EBF741FE22745BECC794CE34
C:\Windows\System32\DRIVERS\asyncmac.sys == & gt; MD5 jest poprawne
C:\Windows\System32\drivers\atapi.sys == & gt; MD5 jest poprawne
C:\Windows\System32\DRIVERS\btath_flt.sys CBE61B4494165F458BD87E37181EE934
C:\Windows\System32\DRIVERS\athrx.sys DE8B9C3E0E09D918B394207F34AC16DD
C:\Program Files (x86)\ASUS\ATK Package\ATK WMIACPI\atkwmiacpi64.sys 1F7238A37389ED92E9D8EEE975CABD54
C:\Windows\system32\DRIVERS\bxvbda.sys == & gt; MD5 jest poprawne
C:\Windows\System32\DRIVERS\b57nd60a.sys == & gt; MD5 jest poprawne
C:\Windows\System32\Drivers\Beep.sys == & gt; MD5 jest poprawne
C:\Windows\System32\DRIVERS\blbdrive.sys == & gt; MD5 jest poprawne
C:\Windows\System32\DRIVERS\bowser.sys == & gt; MD5 jest poprawne
C:\Windows\system32\DRIVERS\BrFiltLo.sys == & gt; MD5 jest poprawne
C:\Windows\system32\DRIVERS\BrFiltUp.sys == & gt; MD5 jest poprawne
C:\Windows\System32\Drivers\Brserid.sys == & gt; MD5 jest poprawne
C:\Windows\System32\Drivers\BrSerWdm.sys == & gt; MD5 jest poprawne
C:\Windows\System32\Drivers\BrUsbMdm.sys == & gt; MD5 jest poprawne
C:\Windows\System32\Drivers\BrUsbSer.sys == & gt; MD5 jest poprawne
C:\Windows\System32\drivers\btath_a2dp.sys 227C8F308DE4AF4808E587465CEAB838
C:\Windows\System32\DRIVERS\btath_bus.sys A83A91D07D1FE6BBE7A9DB46CA00434B
C:\Windows\System32\DRIVERS\btath_hcrp.sys C864FF85EE16D61C2BDD5EF76824625F
C:\Windows\System32\DRIVERS\btath_lwflt.sys 0DEA505EFB5D771826D177EF8B8A208F
C:\Windows\System32\DRIVERS\btath_rcp.sys 724C8088C96EFE7A3E63FEC21D4681C0
C:\Windows\System32\DRIVERS\btfilter.sys 486720DA2B3BB13D1080C83140C18B56
C:\Windows\system32\drivers\BthEnum.sys CF98190A94F62E405C8CB255018B2315
C:\Windows\system32\DRIVERS\bthmodem.sys == & gt; MD5 jest poprawne
C:\Windows\System32\DRIVERS\bthpan.sys 02DD601B708DD0667E1331FA8518E9FF
C:\Windows\System32\Drivers\BTHport.sys 738D0E9272F59EB7A1449C3EC118E6C4
C:\Windows\System32\Drivers\BTHUSB.sys F188B7394D81010767B6DF3178519A37
C:\Windows\System32\DRIVERS\cdfs.sys == & gt; MD5 jest poprawne
C:\Windows\System32\DRIVERS\cdrom.sys == & gt; MD5 jest poprawne
C:\Windows\system32\DRIVERS\circlass.sys == & gt; MD5 jest poprawne
C:\Windows\System32\CLFS.sys == & gt; MD5 jest poprawne
C:\Windows\System32\DRIVERS\CmBatt.sys == & gt; MD5 jest poprawne
C:\Windows\system32\drivers\cmdide.sys == & gt; MD5 jest poprawne
C:\Windows\System32\Drivers\cng.sys E45CDE1C8340DFEDF1D6724263F39E5B
C:\Windows\System32\DRIVERS\compbatt.sys == & gt; MD5 jest poprawne
C:\Windows\system32\drivers\CompositeBus.sys == & gt; MD5 jest poprawne
C:\Windows\system32\DRIVERS\crcdisk.sys == & gt; MD5 jest poprawne
C:\Windows\System32\Drivers\dfsc.sys == & gt; MD5 jest poprawne
C:\Windows\System32\DRIVERS\ssudbus.sys 73BDD44A6088916964945886F9025409
C:\Windows\System32\drivers\discache.sys == & gt; MD5 jest poprawne
C:\Windows\System32\DRIVERS\disk.sys == & gt; MD5 jest poprawne
C:\Windows\system32\drivers\drmkaud.sys == & gt; MD5 jest poprawne
C:\Windows\System32\drivers\dxgkrnl.sys 87CE5C8965E101CCCED1F4675557E868
C:\Windows\system32\DRIVERS\evbda.sys == & gt; MD5 jest poprawne
C:\Windows\system32\DRIVERS\elxstor.sys == & gt; MD5 jest poprawne
C:\Windows\system32\drivers\errdev.sys == & gt; MD5 jest poprawne
C:\Windows\System32\DRIVERS\ETD.sys 5B042AA9CEBDAB5B61E747DDCEBFF51B
C:\Windows\System32\DRIVERS\ewusbwwan.sys CA2E486FE6212FFD5FD171AC1A0B17BE
C:\Windows\System32\DRIVERS\ew_hwusbdev.sys 86F7951BBCEE4A86E79A97306BD14318
C:\Windows\System32\DRIVERS\ew_usbenumfilter.sys 55E0EDA185869F7EA67EA97FD0655B39
C:\Windows\System32\Drivers\exfat.sys == & gt; MD5 jest poprawne
C:\Windows\System32\Drivers\fastfat.sys == & gt; MD5 jest poprawne
C:\Windows\system32\DRIVERS\fdc.sys == & gt; MD5 jest poprawne
C:\Windows\System32\drivers\fileinfo.sys == & gt; MD5 jest poprawne
C:\Windows\System32\drivers\filetrace.sys == & gt; MD5 jest poprawne
C:\Windows\system32\DRIVERS\flpydisk.sys == & gt; MD5 jest poprawne
C:\Windows\System32\drivers\fltmgr.sys == & gt; MD5 jest poprawne
C:\Windows\System32\drivers\FsDepends.sys == & gt; MD5 jest poprawne
C:\Windows\System32\DRIVERS\fssfltr.sys 6C06701BF1DB05405804D7EB610991CE
C:\Windows\System32\Drivers\Fs_Rec.sys 6BD9295CC032DD3077C671FCCF579A7B
C:\Windows\System32\DRIVERS\fvevol.sys 8F6322049018354F45F05A2FD2D4E5E0
C:\Windows\system32\DRIVERS\gagp30kx.sys == & gt; MD5 jest poprawne
C:\Windows\System32\DRIVERS\GEARAspiWDM.sys 8E98D21EE06192492A5671A6144D092F
C:\Windows\system32\drivers\hcw85cir.sys == & gt; MD5 jest poprawne
C:\Windows\system32\drivers\HdAudio.sys 975761C778E33CD22498059B91E7373A
C:\Windows\system32\drivers\HDAudBus.sys == & gt; MD5 jest poprawne
C:\Windows\system32\DRIVERS\HidBatt.sys == & gt; MD5 jest poprawne
C:\Windows\system32\DRIVERS\hidbth.sys == & gt; MD5 jest poprawne
C:\Windows\system32\DRIVERS\hidir.sys == & gt; MD5 jest poprawne
C:\Windows\system32\drivers\hidusb.sys == & gt; MD5 jest poprawne
C:\Windows\system32\drivers\HpSAMD.sys == & gt; MD5 jest poprawne
C:\Windows\System32\drivers\HTTP.sys == & gt; MD5 jest poprawne
C:\Windows\System32\DRIVERS\ew_jubusenum.sys 1642C62F1FD5E1FF44608283994A7BB8
C:\Windows\System32\DRIVERS\ewusbmdm.sys 4B80AF36EE9F31361C1DCB2EE563719A
C:\Windows\System32\drivers\hwpolicy.sys == & gt; MD5 jest poprawne
C:\Windows\system32\drivers\i8042prt.sys == & gt; MD5 jest poprawne
C:\Windows\System32\DRIVERS\iaStor.sys F7CE9BE72EDAC499B713ECA6DAE5D26F
C:\Windows\system32\drivers\iaStorV.sys AAAF44DB3BD0B9D1FB6969B23ECC8366
C:\Windows\System32\DRIVERS\igdkmd64.sys EFE5A0AF39A8E179624117C521F1E012
C:\Windows\system32\DRIVERS\iirsp.sys == & gt; MD5 jest poprawne
C:\Windows\System32\drivers\RTKVHD64.sys 3E3926F4FA7C9162C5C3EC6BF1E4F349
C:\Windows\System32\DRIVERS\IntcDAud.sys FC727061C0F47C8059E88E05D5C8E381
C:\Windows\system32\drivers\intelide.sys == & gt; MD5 jest poprawne
C:\Windows\System32\DRIVERS\intelppm.sys == & gt; MD5 jest poprawne
C:\Windows\System32\DRIVERS\ipfltdrv.sys == & gt; MD5 jest poprawne
C:\Windows\system32\drivers\IPMIDrv.sys == & gt; MD5 jest poprawne
C:\Windows\System32\drivers\ipnat.sys == & gt; MD5 jest poprawne
C:\Windows\System32\drivers\irenum.sys == & gt; MD5 jest poprawne
C:\Windows\system32\drivers\isapnp.sys == & gt; MD5 jest poprawne
C:\Windows\system32\drivers\msiscsi.sys 96BB922A0981BC7432C8CF52B5410FE6
C:\Windows\system32\drivers\kbdclass.sys == & gt; MD5 jest poprawne
C:\Windows\system32\drivers\kbdhid.sys == & gt; MD5 jest poprawne
C:\Windows\System32\Drivers\ksecdd.sys C60C6B9A2E50B0404F6789C62B428C03
C:\Windows\System32\Drivers\ksecpkg.sys 78D152A9FD5747FF6AA89C79F0346F62
C:\Windows\system32\drivers\ksthunk.sys == & gt; MD5 jest poprawne
C:\Windows\System32\DRIVERS\lltdio.sys == & gt; MD5 jest poprawne
C:\Windows\system32\DRIVERS\lsi_fc.sys == & gt; MD5 jest poprawne
C:\Windows\system32\DRIVERS\lsi_sas.sys == & gt; MD5 jest poprawne
C:\Windows\system32\DRIVERS\lsi_sas2.sys == & gt; MD5 jest poprawne
C:\Windows\system32\DRIVERS\lsi_scsi.sys == & gt; MD5 jest poprawne
C:\Windows\system32\drivers\luafv.sys == & gt; MD5 jest poprawne
C:\Windows\system32\DRIVERS\megasas.sys == & gt; MD5 jest poprawne
C:\Windows\system32\DRIVERS\MegaSR.sys == & gt; MD5 jest poprawne
C:\Windows\System32\DRIVERS\HECIx64.sys 1C6E73FC46B509EFF9D0086AA37132DF
C:\Windows\System32\drivers\modem.sys == & gt; MD5 jest poprawne
C:\Windows\System32\DRIVERS\monitor.sys == & gt; MD5 jest poprawne
C:\Windows\System32\DRIVERS\mouclass.sys == & gt; MD5 jest poprawne
C:\Windows\System32\DRIVERS\mouhid.sys == & gt; MD5 jest poprawne
C:\Windows\System32\drivers\mountmgr.sys == & gt; MD5 jest poprawne
C:\Windows\system32\drivers\mpio.sys == & gt; MD5 jest poprawne
C:\Windows\System32\drivers\mpsdrv.sys == & gt; MD5 jest poprawne
C:\Windows\system32\drivers\mrxdav.sys AE3334958D8F631FF14A0AEB3D7EFB3A
C:\Windows\System32\DRIVERS\mrxsmb.sys A5D9106A73DC88564C825D317CAC68AC
C:\Windows\System32\DRIVERS\mrxsmb10.sys D711B3C1D5F42C0C2415687BE09FC163
C:\Windows\System32\DRIVERS\mrxsmb20.sys 9423E9D355C8D303E76B8CFBD8A5C30C
C:\Windows\System32\drivers\msahci.sys == & gt; MD5 jest poprawne
C:\Windows\system32\drivers\msdsm.sys == & gt; MD5 jest poprawne
C:\Windows\System32\Drivers\Msfs.sys == & gt; MD5 jest poprawne
C:\Windows\System32\drivers\mshidkmdf.sys == & gt; MD5 jest poprawne
C:\Windows\System32\drivers\msisadrv.sys == & gt; MD5 jest poprawne
C:\Windows\System32\drivers\MSKSSRV.sys == & gt; MD5 jest poprawne
C:\Windows\System32\drivers\MSPCLOCK.sys == & gt; MD5 jest poprawne
C:\Windows\System32\drivers\MSPQM.sys == & gt; MD5 jest poprawne
C:\Windows\System32\Drivers\MsRPC.sys == & gt; MD5 jest poprawne
C:\Windows\system32\drivers\mssmbios.sys == & gt; MD5 jest poprawne
C:\Windows\System32\drivers\MSTEE.sys == & gt; MD5 jest poprawne
C:\Windows\system32\DRIVERS\MTConfig.sys == & gt; MD5 jest poprawne
C:\Windows\System32\Drivers\mup.sys == & gt; MD5 jest poprawne
C:\Windows\System32\DRIVERS\nwifi.sys == & gt; MD5 jest poprawne
C:\Windows\System32\drivers\ndis.sys 760E38053BF56E501D562B70AD796B88
C:\Windows\System32\DRIVERS\ndiscap.sys == & gt; MD5 jest poprawne
C:\Windows\System32\DRIVERS\ndistapi.sys == & gt; MD5 jest poprawne
C:\Windows\System32\DRIVERS\ndisuio.sys == & gt; MD5 jest poprawne
C:\Windows\System32\DRIVERS\ndiswan.sys == & gt; MD5 jest poprawne
C:\Windows\System32\Drivers\NDProxy.sys == & gt; MD5 jest poprawne
C:\Windows\System32\DRIVERS\netbios.sys == & gt; MD5 jest poprawne
C:\Windows\System32\DRIVERS\netbt.sys == & gt; MD5 jest poprawne
C:\Windows\system32\DRIVERS\nfrd960.sys == & gt; MD5 jest poprawne
C:\Windows\System32\Drivers\ngvss.sys 531ABFAFAE0AFA2F3E9BBB2C08477ED1
C:\Windows\System32\Drivers\Npfs.sys == & gt; MD5 jest poprawne
C:\Windows\System32\drivers\nsiproxy.sys == & gt; MD5 jest poprawne
C:\Windows\System32\Drivers\Ntfs.sys 1A29A59A4C5BA6F8C85062A613B7E2B2
C:\Windows\System32\Drivers\Null.sys == & gt; MD5 jest poprawne
C:\Windows\System32\DRIVERS\nvlddmkm.sys 41A7C6ED2BAB4C304633B785C884A912
C:\Windows\System32\DRIVERS\nvpciflt.sys D542153CB23459B8AAD88CF17E36B670
C:\Windows\system32\drivers\nvraid.sys 0A92CB65770442ED0DC44834632F66AD
C:\Windows\system32\drivers\nvstor.sys DAB0E87525C10052BF65F06152F37E4A
C:\Windows\system32\drivers\nv_agp.sys == & gt; MD5 jest poprawne
C:\Windows\system32\drivers\ohci1394.sys == & gt; MD5 jest poprawne
C:\Windows\system32\DRIVERS\parport.sys == & gt; MD5 jest poprawne
C:\Windows\System32\drivers\partmgr.sys E9766131EEADE40A27DC27D2D68FBA9C
C:\Windows\System32\drivers\pci.sys == & gt; MD5 jest poprawne
C:\Windows\System32\drivers\pciide.sys == & gt; MD5 jest poprawne
C:\Windows\system32\DRIVERS\pcmcia.sys == & gt; MD5 jest poprawne
C:\Windows\System32\drivers\pcw.sys == & gt; MD5 jest poprawne
C:\Windows\System32\drivers\peauth.sys == & gt; MD5 jest poprawne
C:\Windows\System32\DRIVERS\raspptp.sys == & gt; MD5 jest poprawne
C:\Windows\system32\DRIVERS\processr.sys == & gt; MD5 jest poprawne
C:\Windows\System32\DRIVERS\pacer.sys == & gt; MD5 jest poprawne
C:\Windows\system32\DRIVERS\ql2300.sys == & gt; MD5 jest poprawne
C:\Windows\system32\DRIVERS\ql40xx.sys == & gt; MD5 jest poprawne
C:\Windows\system32\drivers\qwavedrv.sys == & gt; MD5 jest poprawne
C:\Windows\System32\DRIVERS\rasacd.sys == & gt; MD5 jest poprawne
C:\Windows\System32\DRIVERS\AgileVpn.sys == & gt; MD5 jest poprawne
C:\Windows\System32\DRIVERS\rasl2tp.sys == & gt; MD5 jest poprawne
C:\Windows\System32\DRIVERS\raspppoe.sys == & gt; MD5 jest poprawne
C:\Windows\System32\DRIVERS\rassstp.sys == & gt; MD5 jest poprawne
C:\Windows\System32\DRIVERS\rdbss.sys == & gt; MD5 jest poprawne
C:\Windows\system32\DRIVERS\rdpbus.sys == & gt; MD5 jest poprawne
C:\Windows\System32\DRIVERS\RDPCDD.sys == & gt; MD5 jest poprawne
C:\Windows\System32\drivers\rdpencdd.sys == & gt; MD5 jest poprawne
C:\Windows\System32\drivers\rdprefmp.sys == & gt; MD5 jest poprawne
C:\Windows\System32\Drivers\RDPWD.sys FE571E088C2D83619D2D48D4E961BF41
C:\Windows\System32\drivers\rdyboost.sys == & gt; MD5 jest poprawne
C:\Windows\System32\DRIVERS\rfcomm.sys 3DD798846E2C28102B922C56E71B7932
C:\Windows\System32\DRIVERS\rspndr.sys == & gt; MD5 jest poprawne
C:\Windows\System32\Drivers\RtsUVStor.sys E57FAC2CDB73F06586ED2ED310B80932
C:\Windows\System32\DRIVERS\Rt64win7.sys 20A466B9EA2BD828C0EC723F99B8CFE7
C:\Windows\system32\drivers\sbp2port.sys == & gt; MD5 jest poprawne
C:\Windows\System32\DRIVERS\scfilter.sys == & gt; MD5 jest poprawne
C:\Windows\System32\Drivers\secdrv.sys == & gt; MD5 jest poprawne
C:\Windows\system32\DRIVERS\serenum.sys == & gt; MD5 jest poprawne
C:\Windows\system32\DRIVERS\serial.sys == & gt; MD5 jest poprawne
C:\Windows\system32\DRIVERS\sermouse.sys == & gt; MD5 jest poprawne
C:\Windows\system32\drivers\sffdisk.sys == & gt; MD5 jest poprawne
C:\Windows\system32\drivers\sffp_mmc.sys == & gt; MD5 jest poprawne
C:\Windows\system32\drivers\sffp_sd.sys == & gt; MD5 jest poprawne
C:\Windows\system32\DRIVERS\sfloppy.sys == & gt; MD5 jest poprawne
C:\Windows\System32\DRIVERS\SiSG664.sys 1BC348CF6BAA90EC8E533EF6E6A69933
C:\Windows\system32\DRIVERS\SiSRaid2.sys == & gt; MD5 jest poprawne
C:\Windows\system32\DRIVERS\sisraid4.sys == & gt; MD5 jest poprawne
C:\Windows\System32\DRIVERS\smb.sys == & gt; MD5 jest poprawne
C:\Windows\System32\Drivers\spldr.sys == & gt; MD5 jest poprawne
C:\Windows\System32\DRIVERS\srv.sys 441FBA48BFF01FDB9D5969EBC1838F0B
C:\Windows\System32\DRIVERS\srv2.sys B4ADEBBF5E3677CCE9651E0F01F7CC28
C:\Windows\System32\DRIVERS\srvnet.sys 27E461F0BE5BFF5FC737328F749538C3
C:\Windows\System32\DRIVERS\ssudmdm.sys 5252D7BC56E5E0ED715AEA8FE173A455
C:\Windows\system32\DRIVERS\stexstor.sys == & gt; MD5 jest poprawne
C:\Windows\system32\drivers\swenum.sys == & gt; MD5 jest poprawne
C:\Windows\System32\drivers\tcpip.sys 04ADD18EE5CC9FBEDAEC1DD1CD0CB45E
C:\Windows\System32\DRIVERS\tcpip.sys 04ADD18EE5CC9FBEDAEC1DD1CD0CB45E
C:\Windows\System32\drivers\tcpipreg.sys 1B16D0BD9841794A6E0CDE0CEF744ABC
C:\Windows\System32\drivers\tdpipe.sys == & gt; MD5 jest poprawne
C:\Windows\System32\drivers\tdtcp.sys 51C5ECEB1CDEE2468A1748BE550CFBC8
C:\Windows\System32\DRIVERS\tdx.sys 70988118145F5F10EF24720B97F35F65
C:\Windows\system32\drivers\termdd.sys == & gt; MD5 jest poprawne
C:\Windows\System32\DRIVERS\tssecsrv.sys E232A3B43A894BB327FC161529BD9ED1
C:\Windows\System32\drivers\tsusbflt.sys == & gt; MD5 jest poprawne
C:\Windows\System32\DRIVERS\tunnel.sys == & gt; MD5 jest poprawne
C:\Windows\system32\DRIVERS\uagp35.sys == & gt; MD5 jest poprawne
C:\Windows\System32\DRIVERS\udfs.sys == & gt; MD5 jest poprawne
C:\Windows\system32\drivers\uliagpkx.sys == & gt; MD5 jest poprawne
C:\Windows\system32\drivers\umbus.sys == & gt; MD5 jest poprawne
C:\Windows\system32\DRIVERS\umpass.sys == & gt; MD5 jest poprawne
C:\Windows\System32\Drivers\usbaapl64.sys C9E9D59C0099A9FF51697E9306A44240
C:\Windows\System32\DRIVERS\usbccgp.sys DCA68B0943D6FA415F0C56C92158A83A
C:\Windows\system32\drivers\usbcir.sys 80B0F7D5CCF86CEB5D402EAAF61FEC31
C:\Windows\system32\drivers\usbehci.sys 18A85013A3E0F7E1755365D287443965
C:\Windows\System32\DRIVERS\usbhub.sys 8D1196CFBB223621F2C67D45710F25BA
C:\Windows\system32\drivers\usbohci.sys 765A92D428A8DB88B960DA5A8D6089DC
C:\Windows\System32\DRIVERS\usbprint.sys == & gt; MD5 jest poprawne
C:\Windows\system32\drivers\usbscan.sys 9661DA76B4531B2DA272ECCE25A8AF24
C:\Windows\System32\DRIVERS\USBSTOR.SYS FED648B01349A3C8395A5169DB5FB7D6
C:\Windows\system32\drivers\usbuhci.sys DD253AFC3BC6CBA412342DE60C3647F3
C:\Windows\System32\Drivers\usbvideo.sys 1F775DA4CF1A3A1834207E975A72E9D7
C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys 2D8A86BE49A1AD9D05678A2A10F64CE7
C:\Windows\System32\drivers\vdrvroot.sys == & gt; MD5 jest poprawne
C:\Windows\System32\DRIVERS\vgapnp.sys == & gt; MD5 jest poprawne
C:\Windows\System32\drivers\vga.sys == & gt; MD5 jest poprawne
C:\Windows\system32\drivers\vhdmp.sys == & gt; MD5 jest poprawne
C:\Windows\system32\drivers\viaide.sys == & gt; MD5 jest poprawne
C:\Windows\System32\drivers\volmgr.sys == & gt; MD5 jest poprawne
C:\Windows\System32\drivers\volmgrx.sys == & gt; MD5 jest poprawne
C:\Windows\System32\drivers\volsnap.sys == & gt; MD5 jest poprawne
C:\Windows\system32\DRIVERS\vsmraid.sys == & gt; MD5 jest poprawne
C:\Windows\System32\DRIVERS\vwifibus.sys == & gt; MD5 jest poprawne
C:\Windows\System32\DRIVERS\vwififlt.sys == & gt; MD5 jest poprawne
C:\Windows\system32\DRIVERS\wacompen.sys == & gt; MD5 jest poprawne
C:\Windows\System32\DRIVERS\wanarp.sys == & gt; MD5 jest poprawne
C:\Windows\System32\DRIVERS\wanarp.sys == & gt; MD5 jest poprawne
C:\Windows\system32\DRIVERS\wd.sys == & gt; MD5 jest poprawne
C:\Windows\System32\drivers\Wdf01000.sys E2C933EDBC389386EBE6D2BA953F43D8
C:\Windows\System32\DRIVERS\wfplwf.sys == & gt; MD5 jest poprawne
C:\Windows\System32\DRIVERS\wimfltr.sys 52DED146E4797E6CCF94799E8E22BB2A
C:\Windows\System32\drivers\wimmount.sys == & gt; MD5 jest poprawne
C:\Windows\SysWOW64\drivers\wimmount.sys == & gt; MD5 jest poprawne
C:\Windows\System32\DRIVERS\WinUsb.sys FE88B288356E7B47B74B13372ADD906D
C:\Windows\system32\drivers\wmiacpi.sys == & gt; MD5 jest poprawne
C:\Windows\system32\drivers\ws2ifsl.sys == & gt; MD5 jest poprawne
C:\Windows\System32\drivers\WudfPf.sys AB886378EEB55C6C75B4F2D14B6C869F
C:\Windows\System32\DRIVERS\WUDFRd.sys DDA4CAF29D8C0A297F886BFE561E6659
C:\Windows\System32\drivers\{8aefbcaf-640f-4dca-9a92-ed05ee387238}w64.sys AD43CBB72DC782342C8EFF0ED5876598
==================== NetSvcs (filtrowane) ===================
(Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)
==================== Trzy miesiące - utworzone pliki i foldery ========
(Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.)
2016-01-08 15:01 - 2016-01-08 15:01 - 00046386 _____ C:\Users\expert\Desktop\FRST.txt
2016-01-08 14:59 - 2016-01-08 15:01 - 00000000 ____D C:\FRST
2016-01-08 14:57 - 2016-01-08 14:58 - 02370560 _____ (Farbar) C:\Users\expert\Desktop\FRST64.exe
2016-01-08 14:36 - 2016-01-08 14:36 - 00000001 _____ C:\Windows\SysWOW64\pl.html
2016-01-08 12:36 - 2016-01-08 12:36 - 00000000 ___RD C:\Users\expert\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BT Devices
2016-01-08 11:34 - 2016-01-08 15:00 - 00000000 ____D C:\Program Files (x86)\SFK
2016-01-08 11:34 - 2016-01-08 11:44 - 00000000 ____D C:\Program Files (x86)\WinZipper
2016-01-08 11:34 - 2016-01-08 11:34 - 00000000 ____D C:\Users\expert\AppData\Roaming\WinZipper
2016-01-08 11:34 - 2016-01-08 11:34 - 00000000 ____D C:\Users\expert\AppData\Roaming\TSv
2016-01-08 11:33 - 2016-01-08 11:34 - 00000000 ____D C:\ProgramData\aWdMa
2016-01-08 11:33 - 2016-01-08 11:33 - 00000074 _____ C:\ProgramData\{262E20B8-6E20-4CEF-B1FD-D022AB1085F5}.dat
2016-01-06 18:00 - 2016-01-06 18:00 - 00670862 _____ C:\Users\expert\Downloads\POKonk-15.16-komplet (1).pdf
2016-01-03 21:36 - 2016-01-03 21:36 - 00056436 _____ C:\Users\expert\Downloads\PD-_Menu_na_przyszły_tydzień_.zip
2015-12-30 19:37 - 2015-12-30 19:38 - 00000000 ____D C:\Users\expert\AppData\Roaming\Plus Internet
2015-12-30 19:37 - 2015-12-30 19:37 - 00001073 _____ C:\Users\Public\Desktop\Plus Internet.lnk
2015-12-30 19:37 - 2015-12-30 19:37 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Plus Internet
2015-12-30 19:37 - 2015-12-30 19:37 - 00000000 ____D C:\Program Files (x86)\Plus Internet
2015-12-30 19:37 - 2012-04-20 12:00 - 01001472 _____ (DiBcom SA) C:\Windows\system32\Drivers\mod7700.sys
2015-12-30 19:37 - 2012-04-20 12:00 - 00415744 _____ (Huawei Technologies Co., Ltd.) C:\Windows\system32\Drivers\ewusbwwan.sys
2015-12-30 19:37 - 2012-04-20 12:00 - 00222464 _____ (Huawei Technologies Co., Ltd.) C:\Windows\system32\Drivers\ewusbmdm.sys
2015-12-30 19:37 - 2012-04-20 12:00 - 00212992 _____ (Huawei Technologies Co., Ltd.) C:\Windows\system32\Drivers\ew_juwwanecm.sys
2015-12-30 19:37 - 2012-04-20 12:00 - 00117248 _____ (Huawei Technologies Co., Ltd.) C:\Windows\system32\Drivers\ew_hwusbdev.sys
2015-12-30 19:37 - 2012-04-20 12:00 - 00098816 _____ (Huawei Technologies Co., Ltd.) C:\Windows\system32\Drivers\ew_jucdcacm.sys
2015-12-30 19:37 - 2012-04-20 12:00 - 00086016 _____ (Huawei Technologies Co., Ltd.) C:\Windows\system32\Drivers\ew_jubusenum.sys
2015-12-30 19:37 - 2012-04-20 12:00 - 00069632 _____ (Huawei Technologies Co., Ltd.) C:\Windows\system32\Drivers\ew_jucdcecm.sys
2015-12-30 19:37 - 2012-04-20 12:00 - 00032768 _____ (Huawei Tech. Co., Ltd.) C:\Windows\system32\Drivers\ewdcsc.sys
2015-12-30 19:37 - 2012-04-20 12:00 - 00028672 _____ (Huawei Technologies Co., Ltd.) C:\Windows\system32\Drivers\ew_juextctrl.sys
2015-12-30 19:37 - 2012-04-20 12:00 - 00022016 _____ (Huawei Technologies Co., Ltd.) C:\Windows\system32\Drivers\ew_hwupgrade.sys
2015-12-30 19:37 - 2012-04-20 12:00 - 00013952 _____ (Huawei Technologies Co., Ltd.) C:\Windows\system32\Drivers\ew_usbenumfilter.sys
2015-12-14 12:37 - 2015-12-14 12:37 - 00002806 _____ C:\Windows\System32\Tasks\CCleanerSkipUAC
2015-12-14 12:37 - 2015-12-14 12:37 - 00000000 ____D C:\ProgramData\Package Cache
2015-12-14 12:37 - 2015-12-14 12:37 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
2015-12-14 12:36 - 2016-01-08 11:33 - 00000000 ____D C:\ProgramData\Tmp0x0x
2015-12-14 12:36 - 2015-12-14 13:05 - 00000000 ____D C:\Users\expert\AppData\Roaming\istartpageing
2015-12-14 12:35 - 2015-12-14 12:35 - 06801752 _____ (Piriform Ltd) C:\Users\expert\Downloads\ccsetup512.exe
2015-12-12 17:24 - 2015-12-12 17:30 - 00000000 ____D C:\Program Files (x86)\KeyBoardWindow
2015-12-12 17:23 - 2015-12-12 17:23 - 01433105 _____ C:\Users\expert\Downloads\kbw11.zip
2015-12-12 17:23 - 2005-08-05 16:51 - 01455713 _____ (XPSoft ) C:\Users\expert\Downloads\setup.exe
2015-12-12 17:23 - 2004-09-08 11:59 - 00000955 _____ C:\Users\expert\Downloads\czytaj.html
2015-12-08 20:25 - 2015-12-08 20:25 - 00292587 _____ C:\Users\expert\Downloads\Prawo konkurencji - Ochrona konkurencji.pdf
2015-12-07 17:06 - 2015-12-07 17:06 - 00263880 _____ C:\Users\expert\Downloads\EAP_2015_2016_Wykład_5_2015_12_02.pptx
2015-12-07 13:27 - 2015-12-07 13:27 - 00351220 _____ C:\Users\expert\Downloads\B Ekonomiczna analiza prawa (1).pdf
2015-12-07 12:42 - 2015-12-07 12:42 - 00351220 _____ C:\Users\expert\Downloads\B Ekonomiczna analiza prawa.pdf
2015-12-07 12:20 - 2015-12-07 12:20 - 00271360 _____ C:\Users\expert\Downloads\pseapiiiseminarium6mat.ppt
2015-12-07 11:56 - 2015-12-07 11:56 - 04156027 _____ C:\Users\expert\Downloads\ppio_analiza_danych_zastanych.pdf
2015-12-03 14:39 - 2015-12-03 14:39 - 00000000 ____D C:\Windows\System32\Tasks\AVAST Software
2015-12-03 14:39 - 2015-12-03 14:39 - 00000000 ____D C:\Program Files\Common Files\AV
2015-12-03 13:26 - 2016-01-03 13:37 - 00000000 ____D C:\Users\expert\Desktop\System Prawa Prywatnego, Prawo Konkurencji - Kępiński [2014]
2015-12-01 22:07 - 2015-12-01 22:07 - 00325968 _____ C:\Users\expert\Downloads\Spis_treci_Zasady_prawa_Studium_teoretycznoprawne.pdf
2015-12-01 19:06 - 2015-12-01 21:01 - 00000000 ____D C:\Users\expert\Desktop\Nowy folder
2015-11-30 21:31 - 2015-11-30 21:31 - 00987539 _____ C:\Users\expert\Downloads\uokik_wyjasnienia_szczegolowe_uzasadnienie_zarzutow_20150901.pdf
2015-11-30 21:30 - 2015-11-30 21:30 - 00193050 _____ C:\Users\expert\Downloads\uokik_wyjasnienia_w_sprawie_kar_pien_ogr_konk_20081216.pdf
2015-11-30 14:01 - 2015-11-30 14:01 - 00227099 _____ C:\Users\expert\Downloads\DWolski.pdf
2015-11-30 13:28 - 2015-11-30 13:28 - 00305759 _____ C:\Users\expert\Downloads\Piszcz_Zasady_ustalani.pdf
2015-11-07 13:49 - 2015-11-07 13:49 - 00000000 ____D C:\Users\Public\Documents\CrashDump
2015-11-03 20:41 - 2015-11-03 20:41 - 00000000 ____D C:\Users\expert\Tracing
2015-11-03 20:40 - 2015-11-03 20:40 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
==================== Trzy miesiące - zmodyfikowane pliki i foldery ========
(Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.)
2016-01-08 15:00 - 2011-03-21 16:11 - 00001048 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2016-01-08 14:59 - 2009-07-14 04:20 - 00000000 ____D C:\Windows
2016-01-08 14:47 - 2012-04-24 16:01 - 00000930 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2016-01-08 14:06 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\inf
2016-01-08 13:37 - 2011-09-13 23:47 - 00000000 ____D C:\Users\expert\AppData\Roaming\uTorrent
2016-01-08 12:43 - 2009-07-14 05:45 - 00019056 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2016-01-08 12:43 - 2009-07-14 05:45 - 00019056 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2016-01-08 12:35 - 2014-09-14 09:53 - 00017920 _____ C:\Windows\SysWOW64\rpcnetp.exe
2016-01-08 12:35 - 2014-09-14 09:53 - 00017920 _____ C:\Windows\SysWOW64\rpcnetp.dll
2016-01-08 12:35 - 2011-03-21 17:28 - 00045056 _____ C:\Windows\system32\acovcnt.exe
2016-01-08 12:35 - 2011-03-21 17:19 - 00000035 _____ C:\Users\Public\Documents\AtherosServiceConfig.ini
2016-01-08 12:35 - 2011-03-21 16:11 - 00001044 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2016-01-08 12:35 - 2011-03-21 15:20 - 00017920 _____ C:\Windows\system32\rpcnetp.exe
2016-01-08 12:35 - 2009-07-14 06:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2016-01-08 12:28 - 2011-03-21 17:24 - 00001529 _____ C:\Windows\system32\ServiceFilter.ini
2016-01-08 12:25 - 2015-07-01 19:48 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
2016-01-08 11:35 - 2009-08-03 20:55 - 15068132 _____ C:\Windows\system32\perfh015.dat
2016-01-08 11:35 - 2009-08-03 20:55 - 05358092 _____ C:\Windows\system32\perfc015.dat
2016-01-08 11:35 - 2009-07-14 06:13 - 00006560 _____ C:\Windows\system32\PerfStringBackup.INI
2016-01-08 11:34 - 2011-09-09 07:35 - 00001743 _____ C:\Users\expert\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2016-01-08 11:33 - 2014-12-23 21:22 - 00004182 _____ C:\Windows\System32\Tasks\avast! Emergency Update
2016-01-03 13:47 - 2012-04-24 16:01 - 00796864 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2016-01-03 13:47 - 2012-04-24 16:01 - 00003868 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
2016-01-03 13:47 - 2011-12-01 15:53 - 00142528 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2015-12-30 19:38 - 2012-08-31 13:27 - 00000000 ____D C:\ProgramData\DataCardService
2015-12-30 18:35 - 2011-10-08 16:18 - 00000000 ___RD C:\Users\expert\Desktop\Studia
2015-12-14 16:04 - 2011-03-21 17:24 - 00002544 _____ C:\Windows\system32\AutoRunFilter.ini
2015-12-14 12:42 - 2011-11-29 11:11 - 00000000 ____D C:\Users\expert\AppData\Roaming\PhotoScape
2015-12-14 12:39 - 2011-09-09 22:37 - 00000000 ____D C:\Users\expert\AppData\Local\CrashDumps
2015-12-14 12:37 - 2012-11-21 14:24 - 00000000 ____D C:\Program Files\CCleaner
==================== Pliki w katalogu głównym wybranych folderów =======
2013-09-13 15:12 - 2013-09-13 15:12 - 0003584 _____ () C:\Users\expert\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2014-12-21 16:19 - 2014-12-21 16:19 - 0000859 _____ () C:\Users\expert\AppData\Local\recently-used.xbel
2015-04-26 20:55 - 2015-04-26 20:55 - 0007597 _____ () C:\Users\expert\AppData\Local\Resmon.ResmonCfg
2011-03-21 16:35 - 2010-07-07 00:10 - 0131472 _____ () C:\ProgramData\FullRemove.exe
2016-01-08 11:33 - 2016-01-08 11:33 - 0000074 _____ () C:\ProgramData\{262E20B8-6E20-4CEF-B1FD-D022AB1085F5}.dat
2011-03-21 16:09 - 2011-03-21 16:10 - 0000105 _____ () C:\ProgramData\{40BF1E83-20EB-11D8-97C5-0009C5020658}.log
2011-03-21 16:09 - 2011-03-21 16:09 - 0000107 _____ () C:\ProgramData\{C59C179C-668D-49A9-B6EA-0121CCFC1243}.log
Pliki do przeniesienia lub usunięcia:
====================
C:\ProgramData\{262E20B8-6E20-4CEF-B1FD-D022AB1085F5}.dat
==================== Bamital & volsnap =================
(Brak automatycznej naprawy dla plików które nie przeszły weryfikacji.)
C:\Windows\system32\winlogon.exe = & gt; Plik podpisany cyfrowo
C:\Windows\system32\wininit.exe = & gt; Plik podpisany cyfrowo
C:\Windows\SysWOW64\wininit.exe = & gt; Plik podpisany cyfrowo
C:\Windows\explorer.exe = & gt; Plik podpisany cyfrowo
C:\Windows\SysWOW64\explorer.exe = & gt; Plik podpisany cyfrowo
C:\Windows\system32\svchost.exe = & gt; Plik podpisany cyfrowo
C:\Windows\SysWOW64\svchost.exe = & gt; Plik podpisany cyfrowo
C:\Windows\system32\services.exe = & gt; Plik podpisany cyfrowo
C:\Windows\system32\User32.dll = & gt; Plik podpisany cyfrowo
C:\Windows\SysWOW64\User32.dll = & gt; Plik podpisany cyfrowo
C:\Windows\system32\userinit.exe = & gt; Plik podpisany cyfrowo
C:\Windows\SysWOW64\userinit.exe = & gt; Plik podpisany cyfrowo
C:\Windows\system32\rpcss.dll = & gt; Plik podpisany cyfrowo
C:\Windows\system32\dnsapi.dll = & gt; Plik podpisany cyfrowo
C:\Windows\SysWOW64\dnsapi.dll = & gt; Plik podpisany cyfrowo
C:\Windows\system32\Drivers\volsnap.sys = & gt; Plik podpisany cyfrowo
==================== BCD ================================
Menedľer rozruchu systemu Windows
---------------------------------
Identyfikator {bootmgr}
device boot
description Windows Boot Manager
locale pl-PL
inherit {globalsettings}
default {current}
resumeobject {8cb2d9b0-7c05-11de-842e-b4611d44fefa}
displayorder {current}
toolsdisplayorder {memdiag}
timeout 30
Modu adujĄcy rozruchu systemu Windows
---------------------------------------
Identyfikator {572bcd56-ffa7-11d9-aae0-0007e994107d}
device ramdisk=[\Device\HarddiskVolume1]\winre.wim,{ad6c7bc8-fa0f-11da-8ddf-0013200354d8}
path \windows\system32\boot\winload.exe
description Windows Recovery Environment
osdevice ramdisk=[\Device\HarddiskVolume1]\winre.wim,{ad6c7bc8-fa0f-11da-8ddf-0013200354d8}
systemroot \windows
nx OptIn
detecthal Yes
winpe Yes
Modu adujĄcy rozruchu systemu Windows
---------------------------------------
Identyfikator {current}
device boot
path \Windows\system32\winload.exe
description Windows 7
locale pl-PL
inherit {bootloadersettings}
recoverysequence {8cb2d9b4-7c05-11de-842e-b4611d44fefa}
recoveryenabled Yes
osdevice boot
systemroot \Windows
resumeobject {8cb2d9b0-7c05-11de-842e-b4611d44fefa}
nx OptIn
Modu adujĄcy rozruchu systemu Windows
---------------------------------------
Identyfikator {8cb2d9b4-7c05-11de-842e-b4611d44fefa}
device ramdisk=[C:]\Recovery\8cb2d9b4-7c05-11de-842e-b4611d44fefa\Winre.wim,{8cb2d9b5-7c05-11de-842e-b4611d44fefa}
path \windows\system32\winload.exe
description Windows Recovery Environment
inherit {bootloadersettings}
osdevice ramdisk=[C:]\Recovery\8cb2d9b4-7c05-11de-842e-b4611d44fefa\Winre.wim,{8cb2d9b5-7c05-11de-842e-b4611d44fefa}
systemroot \windows
nx OptIn
winpe Yes
Wznawianie ze stanu hibernacji
------------------------------
Identyfikator {8cb2d9b0-7c05-11de-842e-b4611d44fefa}
device boot
path \Windows\system32\winresume.exe
description Windows Resume Application
locale pl-PL
inherit {resumeloadersettings}
filedevice partition=C:
filepath \hiberfil.sys
debugoptionenabled No
Modu testujĄcy pami©† systemu Windows
--------------------------------------
Identyfikator {memdiag}
device partition=C:
path \boot\memtest.exe
description Windows Memory Diagnostic
locale pl-PL
inherit {globalsettings}
badmemoryaccess Yes
Ustawienia usug EMS
--------------------
Identyfikator {emssettings}
bootems Yes
Ustawienia debugera
-------------------
Identyfikator {dbgsettings}
debugtype Serial
debugport 1
baudrate 115200
Uszkodzenia pami©ci RAM
-----------------------
Identyfikator {badmemory}
Ustawienia globalne
-------------------
Identyfikator {globalsettings}
inherit {dbgsettings}
{emssettings}
{badmemory}
Ustawienia moduu adujĄcego rozruchu
-------------------------------------
Identyfikator {bootloadersettings}
inherit {globalsettings}
{hypervisorsettings}
Ustawienia funkcji hypervisor
-----------------------------
Identyfikator {hypervisorsettings}
hypervisordebugtype Serial
hypervisordebugport 1
hypervisorbaudrate 115200
Ustawienia moduu adujĄcego wznawiania
---------------------------------------
Identyfikator {resumeloadersettings}
inherit {globalsettings}
Opcje urzĄdzenia
----------------
Identyfikator {8cb2d9b5-7c05-11de-842e-b4611d44fefa}
description Ramdisk Options
ramdisksdidevice partition=C:
ramdisksdipath \Recovery\8cb2d9b4-7c05-11de-842e-b4611d44fefa\boot.sdi
Opcje urzĄdzenia
----------------
Identyfikator {ad6c7bc8-fa0f-11da-8ddf-0013200354d8}
description Ramdisk Device Options
ramdisksdidevice partition=\Device\HarddiskVolume1
ramdisksdipath \boot.sdi
LastRegBack: 2015-12-30 10:14
==================== Koniec FRST.txt ============================