ADVERTISEMENT

FRST.txt

Prosze sprawdzenia loga Mozila dziwnie się zachowuje

Prosze sprawdzenia loga Mozila dziwnie się zachowuje połaczenie Właściciel witryny tpc.googlesyndication.com niepoprawnie ją skonfigurował. Program Firefox nie połączył się z nią, aby chronić użytkownika przed kradzieżą informacji. Ta strona określa poprzez HSTS (HTTP Strict Transport Security), że program Firefox ma się z nią łączyć jedynie w sposób bezpieczny. W związku z tym, dodanie wyjątku dla tego certyfikatu jest niemożliwe.


Download file - link to post

Rezultaty skanowania Farbar Recovery Scan Tool (FRST) (x64) Wersja: 17-10-2016
Uruchomiony przez Krzyß (administrator) DESKTOP-0H75Q80 (18-10-2016 19:07:45)
Uruchomiony z C:\Users\Krzyß\Downloads\Programs
Załadowane profile: Krzyß (Dostępne profile: kopa- & Krzyß)
Platform: Windows 10 Home Wersja 1511 (X64) Język: Polski (Polska)
Internet Explorer Wersja 11 (Domyślna przeglądarka: Edge)
Tryb startu: Normal
Instrukcja obsługi Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Procesy (filtrowane) =================

(Załączenie wejścia w fixlist spowoduje zamknięcie procesu. Powiązany plik nie zostanie przeniesiony.)

(ESET) C:\Program Files\ESET\ESET Smart Security\ekrn.exe
(AMD) C:\Windows\System32\atiesrxx.exe
(AMD) C:\Windows\System32\atieclxx.exe
(Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(Intel Corporation) C:\Windows\SysWOW64\IntelCpHeciSvc.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe
(Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\utilities\ibtsiva.exe
(Waves Audio Ltd.) C:\Program Files\Waves\MaxxAudio\WavesSysSvc64.exe
() C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
(Intel® Corporation) C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe
() C:\Program Files (x86)\Photodex\ProShow Producer\scsiaccess.exe
(Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe
(Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(ESET) C:\Program Files\ESET\ESET Smart Security\egui.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.31.5\GoogleCrashHandler.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.31.5\GoogleCrashHandler64.exe
(Intel Corporation) C:\Windows\System32\igfxEM.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Intel Corporation) C:\Windows\System32\igfxHK.exe
() C:\Windows\System32\igfxTray.exe
() C:\Program Files (x86)\Dropbox\DropboxOEM\DropboxOEM.exe
(CyberLink) C:\Program Files (x86)\CyberLink\CyberLink Media Suite\Power2Go8\CLMLSvc_P2G8.exe
(Dell Inc.) C:\Program Files\Dell\QuickSet\quickset.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Waves Audio Ltd.) C:\Program Files\Waves\MaxxAudio\WavesSvc64.exe
(Tonec Inc.) C:\Program Files (x86)\Internet Download Manager\IDMan.exe
(Power Software Ltd) C:\Program Files (x86)\PowerISO\PWRISOVM.EXE
(Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe
(Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(Internet Download Manager, Tonec Inc.) C:\Program Files (x86)\Internet Download Manager\IDMIntegrator64.exe
(Tonec Inc.) C:\Program Files (x86)\Internet Download Manager\IEMonitor.exe
(Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
(Dell Inc.) C:\Program Files (x86)\Dell Customer Connect\DCCService.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\HEX\Adobe CEF Helper.exe
(Dell) C:\Program Files\Dell\Dell Foundation Services\DFSSvc.exe
(Dell Products, LP.) C:\Program Files (x86)\Dell Digital Delivery\DeliveryService.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\IPC\AdobeIPCBroker.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ADS\Adobe Desktop Service.exe
(Dell) C:\Program Files\Dell\Dell Foundation Services\DFS.Common.Agent.exe
() C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSync\CoreSync.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCXProcess\CCXProcess.exe
(Node.js) C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCXProcess\libs\node.exe
() C:\Program Files\WindowsApps\Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe\SkypeHost.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\HEX\Adobe CEF Helper.exe
(Dell Inc.) C:\Program Files (x86)\Dell Update\DellUpService.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
(Dell Inc.) C:\Program Files (x86)\Dell Update\DellUpTray.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Dell) C:\Program Files\Dell\Dell Product Registration\PRSvc.exe
(Nero AG) C:\Program Files (x86)\Nero\Update\NASvc.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Security Assist\isa.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_23_0_0_185.exe
(Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_23_0_0_185.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe


==================== Rejestr (filtrowane) ====================

(Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.)

HKLM\...\Run: [QuickSet] = & gt; c:\Program Files\Dell\QuickSet\QuickSet.exe [7823824 2015-09-22] (Dell Inc.)
HKLM\...\Run: [IAStorIcon] = & gt; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [322472 2015-06-24] (Intel Corporation)
HKLM\...\Run: [RTHDVCPL] = & gt; C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [8712960 2015-10-07] (Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg_MAXX6] = & gt; C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1407744 2015-10-07] (Realtek Semiconductor)
HKLM\...\Run: [WavesSvc] = & gt; C:\Program Files\Waves\MaxxAudio\WavesSvc64.exe [714160 2015-09-22] (Waves Audio Ltd.)
HKLM\...\Run: [TNOD UP] = & gt; C:\Program Files (x86)\TNod\TNODUP.exe [5592576 2015-12-20] (Tukero[X]Team)
HKLM\...\Run: [AdobeAAMUpdater-1.0] = & gt; C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [508128 2016-07-01] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [StartCCC] = & gt; c:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [767176 2015-08-07] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [PWRISOVM.EXE] = & gt; C:\Program Files (x86)\PowerISO\PWRISOVM.EXE [337432 2013-01-27] (Power Software Ltd)
HKLM-x32\...\Run: [Adobe Creative Cloud] = & gt; C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe [2383040 2016-08-24] (Adobe Systems Incorporated)
HKU\S-1-5-21-1207897182-3386719458-4232747932-1002\...\Run: [IDMan] = & gt; C:\Program Files (x86)\Internet Download Manager\IDMan.exe [3487128 2016-10-17] (Tonec Inc.)
HKU\S-1-5-21-1207897182-3386719458-4232747932-1002\...\RunOnce: [Uninstall C:\Users\Krzy�\AppData\Local\Microsoft\OneDrive\17.3.6390.0509_2\amd64] = & gt; C:\Windows\system32\cmd.exe /q /c rmdir /s /q " C:\Users\Krzyß\AppData\Local\Microsoft\OneDrive\17.3.6390.0509_2\amd64 "
ShellIconOverlayIdentifiers: [ AccExtIco1] - & gt; {AB9CF9F8-8A96-4F9D-BF21-CE85714C3A47} = & gt; C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll [2016-05-22] ()
ShellIconOverlayIdentifiers: [ AccExtIco2] - & gt; {853B7E05-C47D-4985-909A-D0DC5C6D7303} = & gt; C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll [2016-05-22] ()
ShellIconOverlayIdentifiers: [ AccExtIco3] - & gt; {42D38F2E-98E9-4382-B546-E24E4D6D04BB} = & gt; C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll [2016-05-22] ()
ShellIconOverlayIdentifiers: [IDM Shell Extension] - & gt; {CDC95B92-E27C-4745-A8C5-64A52A78855D} = & gt; C:\Program Files (x86)\Internet Download Manager\IDMShellExt64.dll [2012-02-08] (Tonec Inc.)

==================== Internet (filtrowane) ====================

(Załączenie wejścia w fixlist, w przypadku gdy jest to obiekt rejestru, spowoduje usunięcie go z rejestru lub przywrócenie jego domyślnej postaci.)

Hosts: W pliku Hosts jest więcej niż jedno wejście. Sprawdź sekcję Hosts w Addition.txt
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{def01ef3-4ce6-4bee-9c35-388dea4e7923}: [DhcpNameServer] 192.168.0.1

Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKU\S-1-5-21-1207897182-3386719458-4232747932-1002\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKU\S-1-5-21-1207897182-3386719458-4232747932-1002\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://dell15.msn.com/?pc=DCTE
BHO: IDM integration (IDMIEHlprObj Class) - & gt; {0055C089-8582-441B-A0BF-17B458C2A3A8} - & gt; C:\Program Files (x86)\Internet Download Manager\IDMIECC64.dll [2012-05-02] (Internet Download Manager, Tonec Inc.)
BHO: Lync Browser Helper - & gt; {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - & gt; C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\OCHelper.dll [2016-10-17] (Microsoft Corporation)
BHO: Microsoft OneDrive for Business Browser Helper - & gt; {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - & gt; C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\GROOVEEX.DLL [2016-10-17] (Microsoft Corporation)
BHO-x32: IDM integration (IDMIEHlprObj Class) - & gt; {0055C089-8582-441B-A0BF-17B458C2A3A8} - & gt; C:\Program Files (x86)\Internet Download Manager\IDMIECC.dll [2012-05-02] (Internet Download Manager, Tonec Inc.)
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2016-10-17] (Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2016-10-17] (Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2016-10-17] (Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2016-10-17] (Microsoft Corporation)

FireFox:
========
FF ProfilePath: C:\Users\Krzyß\AppData\Roaming\Mozilla\Firefox\Profiles\k6ossk1y.default-1476802953728 [nie znaleziono]
FF DefaultProfile: bf6fypv4.default-1476808608626
FF ProfilePath: C:\Users\Krzyß\AppData\Roaming\Mozilla\Firefox\Profiles\bf6fypv4.default-1476808608626 [2016-10-18]
FF Homepage: Mozilla\Firefox\Profiles\bf6fypv4.default-1476808608626 - & gt; hxxp://nk.pl/?logout=t
hxxps://www.google.pl/webhp?ie=utf-8 & oe=utf-8 & client=firefox-b & gfe_rd=cr & ei=RFIGWIG1LdGv8wes9paoAQ
FF HKU\S-1-5-21-1207897182-3386719458-4232747932-1002\...\Firefox\Extensions: [mozilla_cc@internetdownloadmanager.com] - C:\Users\Krzyß\AppData\Roaming\IDM\idmmzcc5
FF Extension: (IDM CC) - C:\Users\Krzyß\AppData\Roaming\IDM\idmmzcc5 [2016-10-17] [Brak podpisu cyfrowego]
FF HKU\S-1-5-21-1207897182-3386719458-4232747932-1002\...\SeaMonkey\Extensions: [mozilla_cc@internetdownloadmanager.com] - C:\Users\Krzyß\AppData\Roaming\IDM\idmmzcc5
FF Plugin: @adobe.com/FlashPlayer - & gt; C:\Windows\system32\Macromed\Flash\NPSWF64_23_0_0_185.dll [2016-10-18] ()
FF Plugin: adobe.com/AdobeAAMDetect - & gt; C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll [2016-08-24] (Adobe Systems)
FF Plugin-x32: @adobe.com/FlashPlayer - & gt; C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_23_0_0_185.dll [2016-10-18] ()
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.68 - & gt; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2015-08-25] (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater - & gt; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2015-08-25] (Intel Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - & gt; C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2016-10-17] (Microsoft Corporation)
FF Plugin-x32: @Nero.com/KM - & gt; C:\PROGRA~2\COMMON~1\Nero\BROWSE~1\NPBROW~1.DLL [2015-08-28] (Nero AG)
FF Plugin-x32: @photodex.com/PhotodexPresenter - & gt; C:\Program Files (x86)\Photodex Presenter\npPxPlay.dll [2016-10-17] ( )
FF Plugin-x32: @tools.google.com/Google Update;version=3 - & gt; C:\Program Files (x86)\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-10-17] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 - & gt; C:\Program Files (x86)\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-10-17] (Google Inc.)
FF Plugin-x32: adobe.com/AdobeAAMDetect - & gt; C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect32.dll [2016-08-24] (Adobe Systems)

Chrome:
=======
CHR Profile: C:\Users\Krzyß\AppData\Local\Google\Chrome\User Data\Default [2016-10-18]
CHR Extension: (Prezentacje Google) - C:\Users\Krzyß\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2016-10-17]
CHR Extension: (Dokumenty Google) - C:\Users\Krzyß\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2016-10-17]
CHR Extension: (Dysk Google) - C:\Users\Krzyß\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2016-10-17]
CHR Extension: (YouTube) - C:\Users\Krzyß\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2016-10-17]
CHR Extension: (Adblock Plus) - C:\Users\Krzyß\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2016-10-17]
CHR Extension: (Arkusze Google) - C:\Users\Krzyß\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2016-10-17]
CHR Extension: (Dokumenty Google offline) - C:\Users\Krzyß\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-10-17]
CHR Extension: (Local SWF Player) - C:\Users\Krzyß\AppData\Local\Google\Chrome\User Data\Default\Extensions\kdmbckedabpbgjagmkgcejooabcdnone [2016-10-17]
CHR Extension: (IDM Integration Module) - C:\Users\Krzyß\AppData\Local\Google\Chrome\User Data\Default\Extensions\ngpampappnmepgilojfohadhhmbhlaek [2016-10-18]
CHR Extension: (Płatności w sklepie Chrome Web Store) - C:\Users\Krzyß\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-10-17]
CHR Extension: (Gmail) - C:\Users\Krzyß\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2016-10-17]
CHR Extension: (Chrome Media Router) - C:\Users\Krzyß\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2016-10-17]
CHR HKLM\...\Chrome\Extension: [ngpampappnmepgilojfohadhhmbhlaek] - C:\Program Files (x86)\Internet Download Manager\IDMGCExt.crx [2015-04-02]
CHR HKLM-x32\...\Chrome\Extension: [ngpampappnmepgilojfohadhhmbhlaek] - C:\Program Files (x86)\Internet Download Manager\IDMGCExt.crx [2015-04-02]

==================== Usługi (filtrowane) ====================

(Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)

R2 AdobeUpdateService; C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe [744640 2016-08-24] (Adobe Systems Incorporated)
R2 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [2207960 2016-09-26] (Adobe Systems, Incorporated)
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [3291848 2016-10-08] (Microsoft Corporation)
S3 cplspcon; C:\Windows\system32\IntelCpHDCPSvc.exe [595560 2015-11-16] (Intel Corporation)
S2 dbupdate; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [139504 2016-02-28] (Dropbox, Inc.)
S3 dbupdatem; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [139504 2016-02-28] (Dropbox, Inc.)
R2 Dell Customer Connect; C:\Program Files (x86)\Dell Customer Connect\DCCService.exe [153328 2015-06-15] (Dell Inc.)
R2 Dell Foundation Services; C:\Program Files\Dell\Dell Foundation Services\DFSSvc.exe [119656 2016-01-15] (Dell)
R2 DellUpdate; C:\Program Files (x86)\Dell Update\DellUpService.exe [237272 2015-06-10] (Dell Inc.)
R2 ekrn; C:\Program Files\ESET\ESET Smart Security\ekrn.exe [2780160 2016-10-17] (ESET)
R2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [18856 2015-06-24] (Intel Corporation)
R2 ibtsiva; C:\Program Files (x86)\Intel\Bluetooth\utilities\ibtsiva.exe [150256 2015-06-10] (Intel Corporation)
R2 igfxCUIService2.0.0.0; C:\Windows\system32\igfxCUIService.exe [353896 2015-11-16] (Intel Corporation)
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [881152 2015-05-22] (Intel(R) Corporation)
R3 Intel(R) Security Assist; C:\Program Files (x86)\Intel\Intel(R) Security Assist\isa.exe [335872 2015-05-19] (Intel Corporation) [Brak podpisu cyfrowego]
S2 isaHelperSvc; C:\Program Files (x86)\Intel\Intel(R) Security Assist\isaHelperService.exe [7680 2015-05-19] () [Brak podpisu cyfrowego]
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [207648 2015-09-19] (Intel Corporation)
S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [268192 2015-06-12] ()
R2 Product Registration; C:\Program Files\Dell\Dell Product Registration\PRSvc.exe [80208 2016-09-22] (Dell)
R2 RichVideo; C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe [253776 2014-04-15] ()
R2 RtkAudioService; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [307456 2015-10-07] (Realtek Semiconductor)
R2 ScsiAccess; C:\Program Files (x86)\Photodex\ProShow Producer\ScsiAccess.exe [186760 2016-10-17] ()
S3 vmicvss; C:\Windows\System32\ICSvc.dll [511488 2015-10-30] (Microsoft Corporation)
R2 WavesSysSvc; C:\Program Files\Waves\MaxxAudio\WavesSysSvc64.exe [566192 2015-08-20] (Waves Audio Ltd.)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [364464 2015-10-30] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [24864 2015-10-30] (Microsoft Corporation)
R2 ZeroConfigService; C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [3831200 2015-06-12] (Intel® Corporation)

===================== Sterowniki (filtrowane) ======================

(Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)

R1 CLVirtualDrive; C:\Windows\system32\DRIVERS\CLVirtualDrive.sys [91912 2013-11-13] (CyberLink)
R3 DellRbtn; C:\Windows\System32\drivers\DellRbtn.sys [19440 2015-05-08] (OSR Open Systems Resources, Inc.)
R1 eamonm; C:\Windows\System32\DRIVERS\eamonm.sys [263296 2016-10-17] (ESET)
R0 edevmon; C:\Windows\System32\DRIVERS\edevmon.sys [199328 2016-06-28] (ESET)
S0 eelam; C:\Windows\System32\DRIVERS\eelam.sys [15488 2016-06-28] (ESET)
R1 ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys [197288 2016-06-28] (ESET)
R2 ekbdflt; C:\Windows\system32\DRIVERS\ekbdflt.sys [153248 2016-10-17] (ESET)
R1 epfw; C:\Windows\system32\DRIVERS\epfw.sys [208552 2016-06-28] (ESET)
R1 EpfwLWF; C:\Windows\system32\DRIVERS\EpfwLWF.sys [61608 2016-06-28] (ESET)
R0 epfwwfp; C:\Windows\System32\DRIVERS\epfwwfp.sys [84640 2016-06-28] (ESET)
R3 iaLPSS2_GPIO2; C:\Windows\System32\drivers\iaLPSS2_GPIO2.sys [84264 2015-06-16] (Intel Corporation)
R3 iaLPSS2_I2C; C:\Windows\System32\drivers\iaLPSS2_I2C.sys [185128 2015-06-16] (Intel Corporation)
R3 ibtusb; C:\Windows\system32\DRIVERS\ibtusb.sys [255728 2015-06-10] (Intel Corporation)
R3 NETwNb64; C:\Windows\System32\drivers\Netwbw02.sys [3776792 2015-06-22] (Intel Corporation)
R3 rt640x64; C:\Windows\System32\drivers\rt640x64.sys [886528 2015-05-29] (Realtek )
R3 RTSUER; C:\Windows\system32\Drivers\RtsUer.sys [402136 2015-05-28] (Realsil Semiconductor Corporation)
S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [44568 2015-10-30] (Microsoft Corporation)
S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [293216 2015-10-30] (Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [118112 2015-10-30] (Microsoft Corporation)

==================== NetSvcs (filtrowane) ===================

(Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)


==================== Jeden miesiąc - utworzone pliki i foldery ========

(Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.)

2016-10-18 19:07 - 2016-10-18 19:07 - 00000000 ____D C:\FRST
2016-10-18 18:32 - 2016-10-18 19:00 - 00001234 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2016-10-18 18:32 - 2016-10-18 19:00 - 00001222 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk
2016-10-18 18:32 - 2016-10-18 19:00 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2016-10-18 18:32 - 2016-10-18 19:00 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2016-10-18 18:28 - 2016-10-18 18:28 - 00004072 _____ C:\Windows\System32\Tasks\Adobe Flash Player PPAPI Notifier
2016-10-18 18:28 - 2016-10-18 18:28 - 00000992 _____ C:\Windows\Tasks\Adobe Flash Player PPAPI Notifier.job
2016-10-18 18:00 - 2016-10-18 18:10 - 00000000 ____D C:\Users\Public\Documents\AdobeGC
2016-10-18 17:56 - 2016-10-18 17:57 - 00000000 ____D C:\AdwCleaner
2016-10-18 17:55 - 2016-10-18 17:56 - 03874368 _____ C:\Users\Krzyß\Downloads\adwcleaner_6.021.exe
2016-10-18 17:35 - 2016-10-18 17:35 - 00001304 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Creative Cloud.lnk
2016-10-18 17:35 - 2016-10-18 17:35 - 00001292 _____ C:\Users\Public\Desktop\Adobe Creative Cloud.lnk
2016-10-18 17:32 - 2016-10-18 17:32 - 00000000 ____D C:\Program Files (x86)\Adobe
2016-10-18 17:13 - 2016-10-18 17:13 - 00000000 ____D C:\Users\Krzyß\AppData\Roaming\PDAppFlex
2016-10-18 17:05 - 2016-10-18 17:05 - 00000000 ____D C:\ProgramData\regid.1986-12.com.adobe
2016-10-18 17:03 - 2016-10-18 17:03 - 00001031 _____ C:\Users\Krzyß\Desktop\Adobe Lightroom.lnk
2016-10-18 17:03 - 2016-10-18 17:03 - 00001031 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Lightroom.lnk
2016-10-18 16:51 - 2016-10-18 16:51 - 00000000 ____D C:\Users\Krzyß\Desktop\Adobe
2016-10-18 16:50 - 2016-10-18 16:50 - 00000000 ____D C:\Users\Krzyß\Documents\Adobe
2016-10-18 16:49 - 2016-10-18 16:49 - 00001087 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Photoshop CC 2015.lnk
2016-10-18 16:44 - 2016-10-18 17:08 - 00000000 ____D C:\Program Files\Adobe
2016-10-18 16:42 - 2016-10-18 16:49 - 00000000 ____D C:\Program Files\Common Files\Adobe
2016-10-18 14:48 - 2016-10-18 14:48 - 00004136 _____ C:\Windows\System32\Tasks\PCDoctorBackgroundMonitorTask
2016-10-18 14:48 - 2016-10-18 14:48 - 00003560 _____ C:\Windows\System32\Tasks\PCDEventLauncherTask
2016-10-18 14:48 - 2016-10-18 14:48 - 00003422 _____ C:\Windows\System32\Tasks\PCDDataUploadTask
2016-10-18 14:48 - 2016-10-18 14:48 - 00003308 _____ C:\Windows\System32\Tasks\SystemToolsDailyTest
2016-10-18 14:48 - 2016-10-18 14:48 - 00000000 ____D C:\ProgramData\PC-Doctor for Windows
2016-10-18 14:48 - 2016-10-18 14:48 - 00000000 ____D C:\Program Files\Dell Support Center
2016-10-18 14:42 - 2016-10-18 14:48 - 00000000 ____D C:\Users\Krzyß\AppData\Roaming\PCDr
2016-10-18 13:40 - 2016-10-18 17:37 - 00000000 ____D C:\ProgramData\Adobe
2016-10-18 09:30 - 2016-10-18 09:30 - 00003342 _____ C:\Windows\System32\Tasks\OneDrive Standalone Update Task
2016-10-18 09:29 - 2016-10-18 09:29 - 00000000 ____D C:\Users\Krzyß\AppData\Roaming\Skype
2016-10-17 22:23 - 2016-10-17 22:23 - 00001084 _____ C:\Users\Krzyß\Desktop\Internet Download Manager.lnk
2016-10-17 22:23 - 2016-10-17 22:23 - 00000000 ____D C:\Users\Krzyß\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Download Manager
2016-10-17 22:23 - 2016-10-17 22:23 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Internet Download Manager
2016-10-17 22:22 - 2016-10-17 22:22 - 05091962 _____ C:\Users\Krzyß\Downloads\idm.6.11.7.rar
2016-10-17 22:22 - 2012-05-04 11:54 - 00000000 ____D C:\Users\Krzyß\Downloads\idm.6.11.7
2016-10-17 22:15 - 2016-10-18 17:23 - 00000000 ____D C:\Program Files (x86)\Internet Download Manager
2016-10-17 22:15 - 2016-10-18 10:55 - 00000000 ____D C:\Users\Krzyß\AppData\Roaming\IDM
2016-10-17 22:02 - 2015-04-05 19:57 - 00000000 ____D C:\Users\Krzyß\Downloads\IDM Internet Download Manager 6.23 build 10 PL+patch
2016-10-17 17:31 - 2016-10-17 17:31 - 00153248 _____ (ESET) C:\Windows\system32\Drivers\ekbdflt.sys
2016-10-17 17:14 - 2016-10-17 17:14 - 01873592 _____ C:\Users\Krzyß\Downloads\TNod-1.6.0-final-setup.rar
2016-10-17 17:14 - 2016-10-17 17:14 - 00001812 _____ C:\Users\Public\Desktop\Actualizar licencia de NOD32.lnk
2016-10-17 17:14 - 2016-10-17 17:14 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TNod User & Password Finder
2016-10-17 17:14 - 2016-10-17 17:14 - 00000000 ____D C:\Program Files (x86)\TNod
2016-10-17 16:58 - 2016-10-17 16:58 - 00000000 ____D C:\Users\Krzyß\AppData\Local\ESET
2016-10-17 16:57 - 2016-07-27 21:25 - 00504488 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
2016-10-17 16:56 - 2016-10-17 16:56 - 00002102 _____ C:\Users\Public\Desktop\ESET Ochrona bankowości internetowej.lnk
2016-10-17 16:56 - 2016-10-17 16:56 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ESET
2016-10-17 16:56 - 2016-10-17 16:56 - 00000000 ____D C:\Program Files\ESET
2016-10-17 16:54 - 2016-10-17 16:54 - 00000000 ____D C:\Users\Krzyß\AppData\Roaming\Dell
2016-10-17 16:41 - 2016-10-17 16:41 - 00001160 _____ C:\Users\Krzyß\Desktop\Cheat Engine.lnk
2016-10-17 16:41 - 2016-10-17 16:41 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Cheat Engine 6.6
2016-10-17 16:41 - 2016-10-17 16:41 - 00000000 ____D C:\Program Files (x86)\Cheat Engine 6.6
2016-10-17 16:14 - 2016-10-17 16:36 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Narzędzia pakietu Microsoft Office 2016
2016-10-17 16:14 - 2016-10-17 16:14 - 00002515 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Word 2016.lnk
2016-10-17 16:14 - 2016-10-17 16:14 - 00002503 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outlook 2016.lnk
2016-10-17 16:14 - 2016-10-17 16:14 - 00002488 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerPoint 2016.lnk
2016-10-17 16:14 - 2016-10-17 16:14 - 00002449 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Excel 2016.lnk
2016-10-17 16:14 - 2016-10-17 16:14 - 00002439 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Publisher 2016.lnk
2016-10-17 16:07 - 2016-10-17 16:07 - 00000000 ____D C:\Program Files\Microsoft Office 15
2016-10-17 12:21 - 2016-10-17 12:21 - 00000000 ____D C:\Users\Krzyß\AppData\Local\NetworkTiles
2016-10-17 12:10 - 2016-10-17 12:10 - 00002220 _____ C:\Users\Public\Desktop\ProShow Producer.lnk
2016-10-17 12:10 - 2016-10-17 12:10 - 00000000 ____D C:\Users\Krzyß\AppData\Roaming\Netscape
2016-10-17 12:10 - 2016-10-17 12:10 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ProShow Producer
2016-10-17 12:09 - 2016-10-17 12:09 - 00000000 ____D C:\Users\Krzyß\AppData\Roaming\Photodex
2016-10-17 11:07 - 2016-10-17 11:07 - 00001161 _____ C:\Users\Krzyß\Desktop\Your Unin-staller!.lnk
2016-10-17 11:07 - 2016-10-17 11:07 - 00000000 ____D C:\Users\Krzyß\Downloads\Your.Uninstaller.2010.Pro.7.0.2010.12.PL.Serial
2016-10-17 11:07 - 2016-10-17 11:07 - 00000000 ____D C:\Users\Krzyß\AppData\Roaming\URSoft
2016-10-17 11:02 - 2016-10-17 11:02 - 00000000 ____D C:\Users\Krzyß\AppData\Local\Macromedia
2016-10-17 10:51 - 2016-10-18 17:22 - 00000000 ____D C:\Users\Krzyß\AppData\Roaming\DMCache
2016-10-17 10:51 - 2016-10-18 16:43 - 00000000 ____D C:\Users\Krzyß\Downloads\Compressed
2016-10-17 10:51 - 2016-10-18 11:30 - 00000000 ____D C:\Users\Krzyß\Downloads\Video
2016-10-17 10:51 - 2016-10-17 18:05 - 00000000 ____D C:\Users\Krzyß\Downloads\Internet Download Manager 6.16.2 [PL][Zarejestrowany]
2016-10-17 10:47 - 2016-10-17 10:47 - 00000000 ____D C:\Users\Krzyß\AppData\Roaming\WinRAR
2016-10-17 10:47 - 2015-02-26 18:52 - 00000000 ____D C:\Users\Krzyß\Downloads\WinRAR 5.21 -32x64 bit pl-full
2016-10-17 10:47 - 2014-12-09 17:41 - 00003055 _____ C:\Users\Krzyß\Desktop\Bot Lets Fish Na Ryby.au3
2016-10-17 10:46 - 2016-10-17 10:47 - 00000000 ____D C:\Users\Krzyß\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2016-10-17 10:46 - 2016-10-17 10:47 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2016-10-17 10:38 - 2016-10-17 10:38 - 00000000 ____D C:\Program Files (x86)\AutoIt3
2016-10-17 10:32 - 2016-10-17 10:32 - 00000000 ____H C:\Windows\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf
2016-10-17 10:12 - 2016-10-17 10:12 - 00002929 _____ C:\Users\Public\Desktop\Nero 2016.lnk
2016-10-17 10:12 - 2016-10-17 10:12 - 00000000 ____D C:\Windows\System32\Tasks\Nero
2016-10-17 10:09 - 2016-10-17 10:12 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nero 2016
2016-10-17 10:09 - 2016-10-17 10:12 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nero
2016-10-17 10:07 - 2010-05-26 11:41 - 02106216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_43.dll
2016-10-17 10:07 - 2010-05-26 11:41 - 01998168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_43.dll
2016-10-17 10:07 - 2010-05-26 11:41 - 01868128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dcsx_43.dll
2016-10-17 10:07 - 2010-05-26 11:41 - 00470880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_43.dll
2016-10-17 10:07 - 2010-05-26 11:41 - 00248672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx11_43.dll
2016-10-17 10:01 - 2016-10-17 10:01 - 00001082 _____ C:\Users\Public\Desktop\PowerISO.lnk
2016-10-17 10:01 - 2016-10-17 10:01 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerISO
2016-10-17 10:01 - 2013-01-27 15:35 - 00127384 _____ (Power Software Ltd) C:\Windows\system32\Drivers\scdemu.sys
2016-10-17 09:59 - 2016-10-17 10:38 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AutoIt v3
2016-10-17 09:59 - 2016-10-17 09:59 - 12273456 _____ (AutoIt Team) C:\Users\Krzyß\Downloads\autoit-v3-setup.exe
2016-10-17 09:58 - 2016-10-17 09:58 - 00000000 ____D C:\Users\Krzyß\Documents\My Cheat Tables
2016-10-17 09:57 - 2016-10-17 09:58 - 11863360 _____ (Cheat Engine ) C:\Users\Krzyß\Downloads\CheatEngine66.exe
2016-10-17 09:56 - 2016-10-18 18:43 - 00000930 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2016-10-17 09:56 - 2016-10-17 10:41 - 00003916 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
2016-10-17 09:55 - 2016-10-18 18:42 - 00000000 ____D C:\Users\Krzyß\AppData\Local\Adobe
2016-10-17 09:54 - 2016-10-17 09:54 - 00000000 ____D C:\Users\Krzyß\AppData\Local\Comms
2016-10-17 09:46 - 2016-10-17 12:10 - 00000000 ____D C:\Users\Krzyß\AppData\Roaming\Mozilla
2016-10-17 09:46 - 2016-10-17 09:52 - 00000000 ____D C:\Users\Krzyß\AppData\Local\Mozilla
2016-10-17 09:44 - 2016-10-17 09:44 - 00002356 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2016-10-17 09:44 - 2016-10-17 09:44 - 00002344 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2016-10-17 09:42 - 2016-10-18 18:47 - 00001078 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2016-10-17 09:42 - 2016-10-18 17:59 - 00001074 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2016-10-17 09:42 - 2016-10-17 10:48 - 00000000 ____D C:\Users\Krzyß\AppData\Local\Google
2016-10-17 09:42 - 2016-10-17 09:42 - 00004136 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2016-10-17 09:42 - 2016-10-17 09:42 - 00003904 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2016-10-17 09:41 - 2016-10-17 09:41 - 00000440 _____ C:\Users\Krzyß\Desktop\Ten komputer.lnk
2016-10-17 09:31 - 2016-10-17 09:31 - 00000000 ____D C:\Users\Krzyß\AppData\Roaming\Macromedia
2016-10-17 09:29 - 2016-10-18 09:30 - 00002413 _____ C:\Users\Krzyß\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2016-10-17 09:29 - 2016-10-18 09:30 - 00000000 ___RD C:\Users\Krzyß\OneDrive
2016-10-17 09:29 - 2016-10-17 09:29 - 00000000 ____D C:\Users\Krzyß\AppData\Roaming\Intel Corporation
2016-10-17 09:28 - 2016-10-17 09:42 - 00000000 ____D C:\Users\Krzyß\AppData\Local\MicrosoftEdge
2016-10-17 09:26 - 2016-10-17 09:26 - 00000000 ____D C:\Users\Krzyß\AppData\Local\ActiveSync
2016-10-17 09:25 - 2016-10-17 09:25 - 00000000 ____D C:\Users\Krzyß\AppData\Roaming\DropboxOEM
2016-10-17 09:25 - 2016-10-17 09:25 - 00000000 ____D C:\Users\Krzyß\AppData\Local\Publishers
2016-10-17 09:25 - 2016-10-17 09:25 - 00000000 ____D C:\Users\Krzyß\AppData\Local\Power2Go8
2016-10-17 09:25 - 2016-10-17 09:25 - 00000000 ____D C:\Users\Krzyß\AppData\Local\DropboxOEM
2016-10-17 09:24 - 2016-10-18 17:59 - 00000000 __SHD C:\Users\Krzyß\IntelGraphicsProfiles
2016-10-17 09:24 - 2016-10-18 17:59 - 00000000 ____D C:\Users\Krzyß
2016-10-17 09:24 - 2016-10-18 17:37 - 00000000 ____D C:\Users\Krzyß\AppData\Roaming\Adobe
2016-10-17 09:24 - 2016-10-18 09:25 - 00000000 ____D C:\Users\Krzyß\AppData\Local\Packages
2016-10-17 09:24 - 2016-10-17 12:48 - 00000000 ____D C:\Users\Krzyß\AppData\Local\VirtualStore
2016-10-17 09:24 - 2016-10-17 09:24 - 00000020 ___SH C:\Users\Krzyß\ntuser.ini
2016-10-17 09:24 - 2016-10-17 09:24 - 00000000 _SHDL C:\Users\Krzyß\Ustawienia lokalne
2016-10-17 09:24 - 2016-10-17 09:24 - 00000000 _SHDL C:\Users\Krzyß\Szablony
2016-10-17 09:24 - 2016-10-17 09:24 - 00000000 _SHDL C:\Users\Krzyß\Moje dokumenty
2016-10-17 09:24 - 2016-10-17 09:24 - 00000000 _SHDL C:\Users\Krzyß\Menu Start
2016-10-17 09:24 - 2016-10-17 09:24 - 00000000 _SHDL C:\Users\Krzyß\Documents\Moje wideo
2016-10-17 09:24 - 2016-10-17 09:24 - 00000000 _SHDL C:\Users\Krzyß\Documents\Moje obrazy
2016-10-17 09:24 - 2016-10-17 09:24 - 00000000 _SHDL C:\Users\Krzyß\Documents\Moja muzyka
2016-10-17 09:24 - 2016-10-17 09:24 - 00000000 _SHDL C:\Users\Krzyß\Dane aplikacji
2016-10-17 09:24 - 2016-10-17 09:24 - 00000000 _SHDL C:\Users\Krzyß\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2016-10-17 09:24 - 2016-10-17 09:24 - 00000000 _SHDL C:\Users\Krzyß\AppData\Local\Historia
2016-10-17 09:24 - 2016-10-17 09:24 - 00000000 _SHDL C:\Users\Krzyß\AppData\Local\Dane aplikacji
2016-10-17 09:24 - 2016-10-17 09:24 - 00000000 ____D C:\Users\Krzyß\AppData\Roaming\Intel
2016-10-17 09:24 - 2016-10-17 09:24 - 00000000 ____D C:\Users\Krzyß\AppData\Local\TileDataLayer
2016-10-17 09:24 - 2016-10-15 22:06 - 00000000 ____D C:\Users\Krzyß\AppData\Roaming\ATI
2016-10-17 09:24 - 2016-10-15 22:06 - 00000000 ____D C:\Users\Krzyß\AppData\Local\ATI
2016-10-17 09:21 - 2016-10-17 09:21 - 00000020 ___SH C:\Users\kopa-\ntuser.ini
2016-10-17 09:21 - 2016-10-17 09:21 - 00000000 _SHDL C:\Users\kopa-\Ustawienia lokalne
2016-10-17 09:21 - 2016-10-17 09:21 - 00000000 _SHDL C:\Users\kopa-\Szablony
2016-10-17 09:21 - 2016-10-17 09:21 - 00000000 _SHDL C:\Users\kopa-\Moje dokumenty
2016-10-17 09:21 - 2016-10-17 09:21 - 00000000 _SHDL C:\Users\kopa-\Menu Start
2016-10-17 09:21 - 2016-10-17 09:21 - 00000000 _SHDL C:\Users\kopa-\Documents\Moje wideo
2016-10-17 09:21 - 2016-10-17 09:21 - 00000000 _SHDL C:\Users\kopa-\Documents\Moje obrazy
2016-10-17 09:21 - 2016-10-17 09:21 - 00000000 _SHDL C:\Users\kopa-\Documents\Moja muzyka
2016-10-17 09:21 - 2016-10-17 09:21 - 00000000 _SHDL C:\Users\kopa-\Dane aplikacji
2016-10-17 09:21 - 2016-10-17 09:21 - 00000000 _SHDL C:\Users\kopa-\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2016-10-17 09:21 - 2016-10-17 09:21 - 00000000 _SHDL C:\Users\kopa-\AppData\Local\Historia
2016-10-17 09:21 - 2016-10-17 09:21 - 00000000 _SHDL C:\Users\kopa-\AppData\Local\Dane aplikacji
2016-10-17 09:21 - 2016-10-17 09:21 - 00000000 ____D C:\Users\kopa-
2016-10-17 09:21 - 2016-10-15 22:06 - 00000000 ____D C:\Users\kopa-\AppData\Roaming\ATI
2016-10-17 09:21 - 2016-10-15 22:06 - 00000000 ____D C:\Users\kopa-\AppData\Local\ATI
2016-10-17 09:19 - 2016-10-18 17:59 - 00000180 _____ C:\Windows\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2016-10-17 08:14 - 2016-10-17 08:49 - 00000000 ____D C:\Users\Krzys\AppData\Roaming\Plus Internet
2016-10-17 08:13 - 2016-10-17 08:51 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Plus Internet
2016-10-17 08:12 - 2016-10-17 08:52 - 00000000 ____D C:\Program Files (x86)\Plus Internet
2016-10-17 08:01 - 2016-10-17 08:01 - 00000000 ____D C:\Users\Krzys\AppData\Local\ElevatedDiagnostics
2016-10-17 07:58 - 2016-10-17 07:58 - 00000000 ____D C:\ProgramData\ESET
2016-10-17 07:49 - 2016-10-17 07:49 - 00000000 ____D C:\Users\Krzys\AppData\Local\ESET
2016-10-16 12:59 - 2016-10-16 12:59 - 00000000 ____D C:\Users\Krzys\AppData\Roaming\CyberLink
2016-10-16 12:45 - 2016-10-17 10:01 - 00000000 ____D C:\Program Files (x86)\PowerISO
2016-10-16 12:35 - 2016-10-17 08:49 - 00000000 ____D C:\Users\Krzys\Downloads\Internet Download Manager 6.17.7 [PL][Zarejestrowany]
2016-10-16 12:34 - 2016-10-16 12:34 - 10995407 _____ C:\Users\Krzys\Downloads\Internet Download Manager 6.17.7 [PL][Zarejestrowany].rar
2016-10-16 12:31 - 2016-10-17 11:07 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Your Uninstaller 2010
2016-10-16 12:31 - 2016-10-17 11:07 - 00000000 ____D C:\Program Files (x86)\Your Uninstaller 2010
2016-10-16 12:31 - 2016-10-16 12:31 - 00000000 ____D C:\Users\Krzys\AppData\Roaming\URSoft
2016-10-16 12:09 - 2016-10-17 08:49 - 00000000 ____D C:\Users\Krzys\AppData\Roaming\IDM
2016-10-16 11:01 - 2016-10-17 08:49 - 00000000 ____D C:\Users\Krzys\Downloads\Compressed
2016-10-16 11:01 - 2016-10-17 08:28 - 00000000 ____D C:\Users\Krzys\AppData\Roaming\DMCache
2016-10-16 11:01 - 2016-10-16 11:01 - 00000000 ____D C:\Users\Krzys\Downloads\Video
2016-10-16 11:01 - 2016-10-16 11:01 - 00000000 ____D C:\ProgramData\IDM
2016-10-16 11:00 - 2016-10-17 10:47 - 00000000 ____D C:\Program Files\WinRAR
2016-10-16 11:00 - 2016-10-16 11:00 - 00000000 ____D C:\Users\Krzys\AppData\Roaming\WinRAR
2016-10-16 10:53 - 2016-10-17 12:10 - 00000000 ____D C:\Program Files (x86)\Photodex Presenter
2016-10-16 10:53 - 2016-10-16 10:53 - 00000000 ____D C:\Users\Krzys\AppData\Roaming\Netscape
2016-10-16 10:53 - 2016-10-16 10:53 - 00000000 ____D C:\Program Files (x86)\Photodex
2016-10-16 10:52 - 2016-10-16 10:53 - 00000000 ____D C:\ProgramData\Photodex
2016-10-16 10:52 - 2016-10-16 10:52 - 00000000 ____D C:\Users\Krzys\AppData\Roaming\Photodex
2016-10-16 10:00 - 2016-10-16 10:00 - 00000000 ____D C:\Users\Krzys\AppData\Roaming\Nero
2016-10-16 09:53 - 2016-10-17 10:13 - 00000000 ____D C:\Program Files (x86)\Nero
2016-10-16 09:53 - 2016-10-16 09:55 - 00000000 ____D C:\ProgramData\Nero
2016-10-16 07:55 - 2016-10-16 07:55 - 00000000 ____D C:\Users\Krzys\AppData\Local\Macromedia
2016-10-16 07:54 - 2016-10-16 15:10 - 00000000 ____D C:\Users\Krzys\AppData\Local\Adobe
2016-10-15 22:24 - 2016-10-15 22:24 - 00000000 _SHDL C:\Users\Public\Documents\Moje wideo
2016-10-15 22:24 - 2016-10-15 22:24 - 00000000 _SHDL C:\Users\Public\Documents\Moje obrazy
2016-10-15 22:24 - 2016-10-15 22:24 - 00000000 _SHDL C:\Users\Public\Documents\Moja muzyka
2016-10-15 22:24 - 2016-10-15 22:24 - 00000000 _SHDL C:\Users\Default\Ustawienia lokalne
2016-10-15 22:24 - 2016-10-15 22:24 - 00000000 _SHDL C:\Users\Default\Szablony
2016-10-15 22:24 - 2016-10-15 22:24 - 00000000 _SHDL C:\Users\Default\Moje dokumenty
2016-10-15 22:24 - 2016-10-15 22:24 - 00000000 _SHDL C:\Users\Default\Menu Start
2016-10-15 22:24 - 2016-10-15 22:24 - 00000000 _SHDL C:\Users\Default\Documents\Moje wideo
2016-10-15 22:24 - 2016-10-15 22:24 - 00000000 _SHDL C:\Users\Default\Documents\Moje obrazy
2016-10-15 22:24 - 2016-10-15 22:24 - 00000000 _SHDL C:\Users\Default\Documents\Moja muzyka
2016-10-15 22:24 - 2016-10-15 22:24 - 00000000 _SHDL C:\Users\Default\Dane aplikacji
2016-10-15 22:24 - 2016-10-15 22:24 - 00000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2016-10-15 22:24 - 2016-10-15 22:24 - 00000000 _SHDL C:\Users\Default\AppData\Local\Historia
2016-10-15 22:24 - 2016-10-15 22:24 - 00000000 _SHDL C:\Users\Default\AppData\Local\Dane aplikacji
2016-10-15 22:24 - 2016-10-15 22:24 - 00000000 _SHDL C:\Users\Default User\Documents\Moje wideo
2016-10-15 22:24 - 2016-10-15 22:24 - 00000000 _SHDL C:\Users\Default User\Documents\Moje obrazy
2016-10-15 22:24 - 2016-10-15 22:24 - 00000000 _SHDL C:\Users\Default User\Documents\Moja muzyka
2016-10-15 22:24 - 2016-10-15 22:24 - 00000000 _SHDL C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2016-10-15 22:24 - 2016-10-15 22:24 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Historia
2016-10-15 22:24 - 2016-10-15 22:24 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Dane aplikacji
2016-10-15 22:24 - 2016-10-15 22:24 - 00000000 _SHDL C:\ProgramData\Szablony
2016-10-15 22:24 - 2016-10-15 22:24 - 00000000 _SHDL C:\ProgramData\Pulpit
2016-10-15 22:24 - 2016-10-15 22:24 - 00000000 _SHDL C:\ProgramData\Microsoft\Windows\Start Menu\Programy
2016-10-15 22:24 - 2016-10-15 22:24 - 00000000 _SHDL C:\ProgramData\Menu Start
2016-10-15 22:24 - 2016-10-15 22:24 - 00000000 _SHDL C:\ProgramData\Dokumenty
2016-10-15 22:24 - 2016-10-15 22:24 - 00000000 _SHDL C:\ProgramData\Dane aplikacji
2016-10-15 22:24 - 2016-10-15 22:24 - 00000000 _SHDL C:\Documents and Settings
2016-10-15 22:07 - 2016-10-15 22:07 - 00000000 ____D C:\Program Files (x86)\VulkanRT
2016-10-15 22:06 - 2016-10-15 22:06 - 00000000 ____D C:\Users\Krzys\AppData\Local\AMD
2016-10-15 22:06 - 2016-10-15 22:06 - 00000000 ____D C:\Users\Default\AppData\Roaming\ATI
2016-10-15 22:06 - 2016-10-15 22:06 - 00000000 ____D C:\Users\Default\AppData\Local\ATI
2016-10-15 22:06 - 2016-10-15 22:06 - 00000000 ____D C:\Users\Default User\AppData\Roaming\ATI
2016-10-15 22:06 - 2016-10-15 22:06 - 00000000 ____D C:\Users\Default User\AppData\Local\ATI
2016-10-15 22:06 - 2016-10-15 22:06 - 00000000 ____D C:\ProgramData\ATI
2016-10-15 22:06 - 2016-10-15 22:06 - 00000000 ____D C:\Program Files (x86)\AMD
2016-10-15 22:03 - 2016-10-17 08:47 - 00000000 ____D C:\Windows\system32\RTCOM
2016-10-15 22:03 - 2016-10-16 10:53 - 00000000 ____D C:\Users\Krzys\AppData\Roaming\Mozilla
2016-10-15 22:03 - 2016-10-15 22:48 - 00000000 ____D C:\Users\Krzys\AppData\Local\Mozilla
2016-10-15 21:53 - 2016-10-15 21:53 - 00000000 ____D C:\Users\Krzys\Documents\My Cheat Tables
2016-10-15 21:43 - 2016-10-17 08:52 - 00000000 ____D C:\Program Files (x86)\Skype
2016-10-15 21:43 - 2016-10-17 08:49 - 00000000 ____D C:\Users\Krzys\AppData\Roaming\Skype
2016-10-15 21:43 - 2016-10-15 21:43 - 00000000 ____D C:\Users\Krzys\Tracing
2016-10-15 21:00 - 2016-10-15 21:00 - 00000000 ____D C:\Users\Krzys\AppData\Local\Comms
2016-10-15 20:48 - 2016-10-16 14:14 - 00000000 ____D C:\Users\Krzys\AppData\Local\Google
2016-10-15 20:48 - 2016-10-16 13:35 - 00000000 ____D C:\Program Files (x86)\Google
2016-10-15 20:46 - 2016-10-15 20:47 - 00000000 ____D C:\Users\Krzys\AppData\Local\MicrosoftEdge
2016-10-15 20:45 - 2016-10-15 20:45 - 00000000 ____D C:\Users\Krzys\AppData\Roaming\Macromedia
2016-10-15 20:45 - 2016-10-15 20:45 - 00000000 ____D C:\Users\Krzys\AppData\Local\NetworkTiles
2016-10-15 20:44 - 2016-10-17 08:02 - 00000000 ___RD C:\Users\Krzys\OneDrive
2016-10-15 20:44 - 2016-10-15 20:44 - 00000000 ____D C:\Users\Krzys\AppData\Roaming\Intel Corporation
2016-10-15 20:43 - 2016-10-15 20:43 - 00000000 ____D C:\Users\Krzys\AppData\Roaming\ATI
2016-10-15 20:43 - 2016-10-15 20:43 - 00000000 ____D C:\Users\Krzys\AppData\Local\ATI
2016-10-15 20:42 - 2016-10-15 20:42 - 00000000 ____D C:\Users\Krzys\AppData\Local\ActiveSync
2016-10-15 20:41 - 2016-10-16 11:14 - 00000000 ____D C:\Users\Krzys\AppData\Local\VirtualStore
2016-10-15 20:41 - 2016-10-15 20:41 - 00000000 ____D C:\Users\Krzys\AppData\Roaming\DropboxOEM
2016-10-15 20:41 - 2016-10-15 20:41 - 00000000 ____D C:\Users\Krzys\AppData\Roaming\Adobe
2016-10-15 20:41 - 2016-10-15 20:41 - 00000000 ____D C:\Users\Krzys\AppData\Local\Publishers
2016-10-15 20:41 - 2016-10-15 20:41 - 00000000 ____D C:\Users\Krzys\AppData\Local\Power2Go8
2016-10-15 20:40 - 2016-10-17 09:09 - 00000000 ____D C:\Users\Krzys
2016-10-15 20:40 - 2016-10-17 08:04 - 00000000 __SHD C:\Users\Krzys\IntelGraphicsProfiles
2016-10-15 20:40 - 2016-10-15 21:35 - 00000000 ____D C:\Users\Krzys\AppData\Local\Packages
2016-10-15 20:40 - 2016-10-15 20:40 - 00000000 _SHDL C:\Users\Krzys\Ustawienia lokalne
2016-10-15 20:40 - 2016-10-15 20:40 - 00000000 _SHDL C:\Users\Krzys\Szablony
2016-10-15 20:40 - 2016-10-15 20:40 - 00000000 _SHDL C:\Users\Krzys\Moje dokumenty
2016-10-15 20:40 - 2016-10-15 20:40 - 00000000 _SHDL C:\Users\Krzys\Menu Start
2016-10-15 20:40 - 2016-10-15 20:40 - 00000000 _SHDL C:\Users\Krzys\Documents\Moje wideo
2016-10-15 20:40 - 2016-10-15 20:40 - 00000000 _SHDL C:\Users\Krzys\Documents\Moje obrazy
2016-10-15 20:40 - 2016-10-15 20:40 - 00000000 _SHDL C:\Users\Krzys\Documents\Moja muzyka
2016-10-15 20:40 - 2016-10-15 20:40 - 00000000 _SHDL C:\Users\Krzys\Dane aplikacji
2016-10-15 20:40 - 2016-10-15 20:40 - 00000000 _SHDL C:\Users\Krzys\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2016-10-15 20:40 - 2016-10-15 20:40 - 00000000 _SHDL C:\Users\Krzys\AppData\Local\Historia
2016-10-15 20:40 - 2016-10-15 20:40 - 00000000 _SHDL C:\Users\Krzys\AppData\Local\Dane aplikacji
2016-10-15 20:40 - 2016-10-15 20:40 - 00000000 ____D C:\Users\Krzys\AppData\Roaming\Intel
2016-10-15 20:30 - 2016-10-15 20:30 - 00002138 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dropbox 20 GB.lnk
2016-10-07 22:52 - 2016-10-07 22:52 - 00443632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcp140.dll
2016-10-07 22:52 - 2016-10-07 22:52 - 00394496 _____ (Microsoft Corporation) C:\Windows\system32\vccorlib140.dll
2016-10-07 22:52 - 2016-10-07 22:52 - 00334608 _____ (Microsoft Corporation) C:\Windows\system32\concrt140.dll
2016-10-07 22:52 - 2016-10-07 22:52 - 00089328 _____ (Microsoft Corporation) C:\Windows\system32\vcruntime140.dll
2016-10-07 22:52 - 2016-10-07 22:52 - 00085744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vcruntime140.dll
2016-10-07 22:49 - 2016-10-07 22:49 - 00639728 _____ (Microsoft Corporation) C:\Windows\system32\msvcp140.dll
2016-10-07 22:49 - 2016-10-07 22:49 - 00244504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\concrt140.dll
2016-10-07 22:45 - 2016-10-07 22:45 - 00271112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vccorlib140.dll
2016-10-05 08:27 - 2014-12-09 16:41 - 00003055 _____ C:\Users\Krzys\Desktop\Bot Lets Fish Na Ryby.au3
2016-10-04 11:38 - 2016-10-16 11:10 - 00025351 _____ C:\Users\Krzys\Desktop\Hasła-20140609-064636.txt
2016-10-04 11:38 - 2016-10-16 08:01 - 00000904 _____ C:\Users\Krzys\Desktop\Nowy dokument tekstowy.txt

==================== Jeden miesiąc - zmodyfikowane pliki i foldery ========

(Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.)

2016-10-18 18:41 - 2015-10-30 09:24 - 00000000 ____D C:\Windows\SysWOW64\Macromed
2016-10-18 18:41 - 2015-10-30 09:24 - 00000000 ____D C:\Windows\system32\Macromed
2016-10-18 18:29 - 2016-02-28 05:24 - 00000934 _____ C:\Windows\Tasks\DropboxUpdateTaskMachineUA.job
2016-10-18 18:22 - 2016-02-28 05:06 - 00000000 ____D C:\ProgramData\Temp
2016-10-18 17:59 - 2016-02-28 05:24 - 00000930 _____ C:\Windows\Tasks\DropboxUpdateTaskMachineCore.job
2016-10-18 17:58 - 2016-02-28 04:56 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2016-10-18 17:57 - 2015-10-30 08:28 - 00262144 ___SH C:\Windows\system32\config\BBI
2016-10-18 17:34 - 2016-02-28 05:09 - 00000000 ____D C:\ProgramData\Package Cache
2016-10-18 16:45 - 2015-10-30 09:24 - 00000000 ____D C:\Program Files\Common Files\microsoft shared
2016-10-18 14:48 - 2016-02-28 05:20 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dell
2016-10-18 14:47 - 2016-02-28 05:24 - 00000000 ____D C:\ProgramData\PCDr
2016-10-18 14:43 - 2015-10-30 09:24 - 00000000 ____D C:\Windows\AppReadiness
2016-10-18 11:30 - 2015-10-30 09:24 - 00000000 ____D C:\Windows\LiveKernelReports
2016-10-18 11:00 - 2016-02-28 05:00 - 01849016 _____ C:\Windows\system32\PerfStringBackup.INI
2016-10-18 11:00 - 2015-11-07 04:02 - 00819340 _____ C:\Windows\system32\perfh015.dat
2016-10-18 11:00 - 2015-11-07 04:02 - 00158506 _____ C:\Windows\system32\perfc015.dat
2016-10-18 11:00 - 2015-10-30 09:21 - 00000000 ____D C:\Windows\INF
2016-10-18 09:25 - 2015-10-30 09:24 - 00000000 ___HD C:\Program Files\WindowsApps
2016-10-17 18:28 - 2016-02-28 05:20 - 00000000 ____D C:\Program Files\Dell
2016-10-17 18:25 - 2015-10-30 09:11 - 00000000 ____D C:\Windows\CbsTemp
2016-10-17 17:31 - 2016-06-28 17:30 - 00263296 _____ (ESET) C:\Windows\system32\Drivers\eamonm.sys
2016-10-17 16:57 - 2015-10-30 09:24 - 00000000 ___HD C:\Windows\ELAMBKUP
2016-10-17 16:51 - 2016-02-28 04:52 - 00341800 _____ C:\Windows\system32\FNTCACHE.DAT
2016-10-17 16:48 - 2015-10-30 08:28 - 00032768 ___SH C:\Windows\system32\config\ELAM
2016-10-17 16:46 - 2015-10-30 09:24 - 00000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2016-10-17 16:34 - 2016-02-28 05:25 - 00000000 ____D C:\Program Files (x86)\Microsoft Office
2016-10-17 16:01 - 2016-02-28 05:36 - 00000000 __RHD C:\Users\Public\AccountPictures
2016-10-17 10:38 - 2015-10-30 11:05 - 00000000 ____D C:\Windows\ShellNew
2016-10-17 09:43 - 2015-10-30 09:24 - 00000000 ___RD C:\Windows\DevicesFlow
2016-10-17 09:25 - 2016-02-28 05:06 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2016-10-17 09:25 - 2015-10-30 09:24 - 00000000 ___RD C:\Windows\PurchaseDialog
2016-10-17 09:25 - 2015-10-30 09:24 - 00000000 ___RD C:\Windows\PrintDialog
2016-10-17 09:25 - 2015-10-30 09:24 - 00000000 ___RD C:\Windows\MiracastView
2016-10-17 09:25 - 2015-10-30 09:24 - 00000000 ___RD C:\Windows\ImmersiveControlPanel
2016-10-17 09:22 - 2015-10-30 09:24 - 00000000 ____D C:\Windows\system32\WinBioDatabase
2016-10-17 09:21 - 2015-10-30 09:24 - 00000000 ____D C:\Windows\rescache
2016-10-17 09:05 - 2015-10-30 09:24 - 00000000 ___SD C:\Windows\SysWOW64\DiagSvcs
2016-10-17 09:05 - 2015-10-30 09:24 - 00000000 ___SD C:\Windows\system32\Nui
2016-10-17 09:05 - 2015-10-30 09:24 - 00000000 ___SD C:\Windows\system32\F12
2016-10-17 09:05 - 2015-10-30 09:24 - 00000000 ____D C:\Windows\SysWOW64\WinMetadata
2016-10-17 09:05 - 2015-10-30 09:24 - 00000000 ____D C:\Windows\SysWOW64\setup
2016-10-17 09:05 - 2015-10-30 09:24 - 00000000 ____D C:\Windows\SysWOW64\MailContactsCalendarSync
2016-10-17 09:05 - 2015-10-30 09:24 - 00000000 ____D C:\Windows\system32\WinMetadata
2016-10-17 09:05 - 2015-10-30 09:24 - 00000000 ____D C:\Windows\system32\WinBioPlugIns
2016-10-17 09:05 - 2015-10-30 09:24 - 00000000 ____D C:\Windows\system32\SystemResetPlatform
2016-10-17 09:05 - 2015-10-30 09:24 - 00000000 ____D C:\Windows\system32\setup
2016-10-17 09:05 - 2015-10-30 09:24 - 00000000 ____D C:\Windows\system32\oobe
2016-10-17 09:05 - 2015-10-30 09:24 - 00000000 ____D C:\Windows\system32\migwiz
2016-10-17 09:05 - 2015-10-30 09:24 - 00000000 ____D C:\Windows\system32\MailContactsCalendarSync
2016-10-17 09:05 - 2015-10-30 09:24 - 00000000 ____D C:\Windows\system32\icsxml
2016-10-17 09:05 - 2015-10-30 08:28 - 00000000 ____D C:\Windows\SysWOW64\Dism
2016-10-17 09:04 - 2015-10-30 09:24 - 00000000 __RSD C:\Windows\Media
2016-10-17 09:04 - 2015-10-30 09:24 - 00000000 ___SD C:\Windows\system32\DiagSvcs
2016-10-17 09:04 - 2015-10-30 09:24 - 00000000 ____D C:\Windows\Provisioning
2016-10-17 09:04 - 2015-10-30 09:24 - 00000000 ____D C:\Windows\PolicyDefinitions
2016-10-17 09:04 - 2015-10-30 09:24 - 00000000 ____D C:\Windows\L2Schemas
2016-10-17 09:04 - 2015-10-30 08:28 - 00000000 ____D C:\Windows\system32\Dism
2016-10-17 09:02 - 2015-10-30 11:05 - 00000000 ____D C:\Program Files\Windows Journal
2016-10-17 09:02 - 2015-10-30 09:24 - 00000000 ____D C:\Windows\IME
2016-10-17 09:02 - 2015-10-30 09:24 - 00000000 ____D C:\Program Files\Windows Defender
2016-10-17 08:59 - 2016-02-28 05:24 - 00000000 ___HD C:\Windows\system32\WLANProfiles
2016-10-17 08:59 - 2016-02-28 05:22 - 00000000 ____D C:\Windows\system32\SRSLabs
2016-10-17 08:59 - 2016-02-28 05:21 - 00000000 ____D C:\Windows\SysWOW64\RTCOM
2016-10-17 08:59 - 2015-10-30 08:28 - 00000000 ____D C:\Windows\system32\Sysprep
2016-10-17 08:55 - 2016-02-28 05:22 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dell Audio
2016-10-17 08:55 - 2016-02-28 05:20 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel
2016-10-17 08:55 - 2016-02-28 05:18 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Catalyst Control Center
2016-10-17 08:55 - 2015-10-30 09:24 - 00000000 ____D C:\Windows\appcompat
2016-10-17 08:54 - 2016-02-28 05:25 - 00000000 ____D C:\Program Files (x86)\Dell Customer Connect
2016-10-17 08:54 - 2016-02-28 05:23 - 00000000 ____D C:\ProgramData\Intel.sav
2016-10-17 08:54 - 2016-02-28 05:17 - 00000000 ____D C:\Program Files\AMD
2016-10-17 08:54 - 2016-02-28 05:13 - 00000000 ____D C:\Program Files (x86)\Intel
2016-10-17 08:39 - 2015-10-30 09:24 - 00000000 ____D C:\Windows\registration
2016-10-17 08:31 - 2016-02-28 05:22 - 00000000 ____D C:\Program Files\Waves
2016-10-17 08:31 - 2016-02-28 05:20 - 00000000 ____D C:\ProgramData\Intel
2016-10-17 08:31 - 2016-02-28 05:06 - 00000000 ____D C:\ProgramData\CyberLink
2016-10-17 08:31 - 2016-02-28 04:36 - 00000000 ____D C:\ProgramData\Dell
2016-10-17 08:30 - 2016-02-28 05:23 - 00000000 ____D C:\Program Files\Common Files\Intel
2016-10-17 08:30 - 2016-02-28 05:10 - 00000000 ____D C:\Program Files\Intel
2016-10-17 08:29 - 2016-02-28 05:23 - 00000000 ____D C:\Program Files (x86)\Cisco
2016-10-17 08:09 - 2015-10-30 09:24 - 00000000 ____D C:\Windows\system32\NDF
2016-10-15 22:25 - 2016-02-28 05:24 - 00003448 _____ C:\Windows\System32\Tasks\DropboxUpdateTaskMachineUA
2016-10-15 22:25 - 2016-02-28 05:24 - 00003224 _____ C:\Windows\System32\Tasks\DropboxUpdateTaskMachineCore
2016-10-15 22:25 - 2016-02-28 05:22 - 00002304 _____ C:\Windows\System32\Tasks\RtHDVBg_PushButton
2016-10-15 22:25 - 2016-02-28 05:07 - 00002528 _____ C:\Windows\System32\Tasks\CLVDLauncher
2016-10-15 22:25 - 2016-02-28 05:07 - 00002528 _____ C:\Windows\System32\Tasks\CLMLSvc_P2G8
2016-10-15 22:24 - 2015-10-30 09:24 - 00000000 ____D C:\Program Files\Windows NT
2016-10-15 22:03 - 2016-02-28 05:20 - 00000000 ___HD C:\Program Files (x86)\Temp
2016-10-15 20:30 - 2016-02-28 05:24 - 00003186 _____ C:\Windows\System32\Tasks\DropboxOEM
2016-10-15 20:30 - 2016-02-28 05:24 - 00000000 ____D C:\Program Files (x86)\Dropbox

==================== Pliki w katalogu głównym wybranych folderów =======

2016-02-28 05:22 - 2016-02-28 05:22 - 0000000 ____H () C:\ProgramData\DP45977C.lfl
2016-02-28 05:10 - 2016-02-28 05:10 - 0000121 _____ () C:\ProgramData\{1FBF6C24-C1fD-4101-A42B-0C564F9E8E79}.log
2016-02-28 05:06 - 2016-02-28 05:07 - 0000106 _____ () C:\ProgramData\{2A87D48D-3FDF-41fd-97CD-A1E370EFFFE2}.log
2016-02-28 05:09 - 2016-02-28 05:10 - 0000108 _____ () C:\ProgramData\{B46BEA36-0B71-4A4E-AE41-87241643FA0A}.log
2016-02-28 05:07 - 2016-02-28 05:08 - 0000113 _____ () C:\ProgramData\{E1646825-D391-42A0-93AA-27FA810DA093}.log

Niektóre pliki w TEMP:
====================
C:\Users\Krzyß\AppData\Local\Temp\AAMHelper.exe
C:\Users\Krzyß\AppData\Local\Temp\AdobeApplicationManager.exe
C:\Users\Krzyß\AppData\Local\Temp\libeay32.dll
C:\Users\Krzyß\AppData\Local\Temp\msvcr120.dll
C:\Users\Krzyß\AppData\Local\Temp\nsf6C77.tmp.exe
C:\Users\Krzyß\AppData\Local\Temp\safeguard.exe
C:\Users\Krzyß\AppData\Local\Temp\sqlite3.dll


==================== Bamital & volsnap ======================

(Brak automatycznej naprawy dla plików które nie przeszły weryfikacji.)

C:\Windows\system32\winlogon.exe = & gt; Plik podpisany cyfrowo
C:\Windows\system32\wininit.exe = & gt; Plik podpisany cyfrowo
C:\Windows\explorer.exe = & gt; Plik podpisany cyfrowo
C:\Windows\SysWOW64\explorer.exe = & gt; Plik podpisany cyfrowo
C:\Windows\system32\svchost.exe = & gt; Plik podpisany cyfrowo
C:\Windows\SysWOW64\svchost.exe = & gt; Plik podpisany cyfrowo
C:\Windows\system32\services.exe = & gt; Plik podpisany cyfrowo
C:\Windows\system32\User32.dll = & gt; Plik podpisany cyfrowo
C:\Windows\SysWOW64\User32.dll = & gt; Plik podpisany cyfrowo
C:\Windows\system32\userinit.exe = & gt; Plik podpisany cyfrowo
C:\Windows\SysWOW64\userinit.exe = & gt; Plik podpisany cyfrowo
C:\Windows\system32\rpcss.dll = & gt; Plik podpisany cyfrowo
C:\Windows\system32\dnsapi.dll = & gt; Plik podpisany cyfrowo
C:\Windows\SysWOW64\dnsapi.dll = & gt; Plik podpisany cyfrowo
C:\Windows\system32\Drivers\volsnap.sys = & gt; Plik podpisany cyfrowo


LastRegBack: 2016-02-28 04:52

==================== Koniec FRST.txt ============================