FRST.txt

Infekcja - Włamanie - Kradzież

Cześć Dziękuję za profesjonalną pomoc. Odinstalowałem, zaktualizowałem programy, a nawet zainstalowałem na nowo system tym razem w10. Przeskanowałem oboma programami. Odinstalowałem rozszerzenia i ogarniam właśnie BitWardena. Wyrzuciłem Adblocka. Na stronie have I been Pwned mam wynik: " Pwned in 12 data breaches and found no pastes (subscribe to search sensitive breaches)". Co mogę zrobić z tym więcej? Dostałem też powiadomienia o włamaniu na koncie Google. Zmieniłem hasło ustawiłem wszędzie nową dwuetapową weryfikację. Załączam 2 pliki z ponownego skanowania FRST nowego systemu. Dziękuję.


Rezultaty skanowania Farbar Recovery Scan Tool (FRST) (x64) Wersja: 20-06-2022
Uruchomiony przez DROZDZU_NEW (administrator) DROZDZUNEW (Gigabyte Technology Co., Ltd. B550 AORUS ELITE V2) (23-06-2022 01:05:32)
Uruchomiony z C:\Users\DROZDZU_NEW\Downloads
Załadowane profile: DROZDZU_NEW
Platform: Microsoft Windows 10 Pro Wersja 21H2 19044.1766 (X64) Język: Polski (Polska)
Domyślna przeglądarka: Chrome
Tryb startu: Normal

==================== Procesy (filtrowane) =================

(Załączenie wejścia w fixlist spowoduje zamknięcie procesu. Powiązany plik nie zostanie przeniesiony.)

(Adobe Inc. - & gt; Adobe Inc) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\IPCBox\AdobeIPCBroker.exe
(Adobe Inc. - & gt; Adobe Systems Incorporated) C:\Program Files\Adobe\Adobe Creative Cloud Experience\CCXProcess.exe
(Adobe Inc. - & gt; Adobe Systems Incorporated) C:\Program Files\Common Files\Adobe\Creative Cloud Libraries\CCLibrary.exe
(C:\Program Files\Adobe\Adobe Creative Cloud Experience\CCXProcess.exe - & gt; ) (OpenJS Foundation - & gt; Node.js) C:\Program Files\Adobe\Adobe Creative Cloud Experience\libs\node.exe
(C:\Program Files\Adobe\Adobe Photoshop 2022\Photoshop.exe - & gt; ) (Adobe Inc. - & gt; Adobe Inc.) C:\Program Files\Adobe\Adobe Photoshop 2022\Required\Plug-ins\Spaces\Adobe Spaces Helper.exe & lt; 2 & gt;
(C:\Program Files\Adobe\Adobe Photoshop 2022\Photoshop.exe - & gt; ) (DxO Labs S.A.S. - & gt; DxO) C:\Program Files\DxO\Nik Collection\bin\SelectiveToolApp.exe
(C:\Program Files\Adobe\Adobe Photoshop 2022\Photoshop.exe - & gt; ) (Microsoft Corporation - & gt; Microsoft Corporation) C:\Program Files\Common Files\Adobe\Microsoft\EdgeWebView\msedgewebview2.exe & lt; 7 & gt;
(C:\Program Files\Bitdefender Agent\ProductAgentService.exe - & gt; ) (Bitdefender SRL - & gt; Bitdefender) C:\Program Files\Bitdefender Agent\26.0.1.222_0\DiscoverySrv.exe
(C:\Program Files\Bitdefender\Bitdefender Security\bdservicehost.exe - & gt; ) (Bitdefender SRL - & gt; Bitdefender) C:\Program Files\Bitdefender\Bitdefender Security\bdagent.exe
(C:\Program Files\Bitdefender\Bitdefender Security\bdservicehost.exe - & gt; ) (Bitdefender SRL - & gt; Bitdefender) C:\Program Files\Bitdefender\Bitdefender Security\bdntwrk.exe
(C:\Program Files\Bitdefender\Bitdefender Security\bdservicehost.exe - & gt; ) (S.C. BITDEFENDER S.R.L. - & gt; Bitdefender) C:\Program Files\Bitdefender\Bitdefender Security\wsccommunicator.exe
(C:\Program Files\Common Files\Adobe\Creative Cloud Libraries\CCLibrary.exe - & gt; ) (OpenJS Foundation - & gt; Node.js) C:\Program Files\Common Files\Adobe\Creative Cloud Libraries\libs\node.exe
(DriverStore\FileRepository\u0376209.inf_amd64_b3bdffadea4def3f\B374968\atiesrxx.exe - & gt; ) (Advanced Micro Devices Inc. - & gt; AMD) C:\Windows\System32\DriverStore\FileRepository\u0376209.inf_amd64_b3bdffadea4def3f\B374968\atieclxx.exe
(explorer.exe - & gt; ) (Adobe Inc. - & gt; Adobe) [Brak podpisu cyfrowego] C:\Program Files\Adobe\Adobe Photoshop 2022\Photoshop.exe
(explorer.exe - & gt; ) (Google LLC - & gt; Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe & lt; 23 & gt;
(Microsoft Corporation - & gt; Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe & lt; 5 & gt;
(services.exe - & gt; ) (Advanced Micro Devices Inc. - & gt; AMD) C:\Windows\System32\DriverStore\FileRepository\u0376209.inf_amd64_b3bdffadea4def3f\B374968\atiesrxx.exe
(services.exe - & gt; ) (Bitdefender SRL - & gt; Bitdefender) C:\Program Files\Bitdefender Agent\ProductAgentService.exe
(services.exe - & gt; ) (Bitdefender SRL - & gt; Bitdefender) C:\Program Files\Bitdefender Agent\redline\bdredline.exe
(services.exe - & gt; ) (Bitdefender SRL - & gt; Bitdefender) C:\Program Files\Bitdefender\Bitdefender Security\bdservicehost.exe & lt; 3 & gt;
(services.exe - & gt; ) (Bitdefender SRL - & gt; Bitdefender) C:\Program Files\Bitdefender\Bitdefender Security\updatesrv.exe
(services.exe - & gt; ) (Bitdefender SRL - & gt; Bitdefender) C:\Program Files\Common Files\Bitdefender\SetupInformation\Bitdefender RedLine\bdredline.exe
(services.exe - & gt; ) (Microsoft Corporation - & gt; Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(services.exe - & gt; ) (Microsoft Windows - & gt; Microsoft Corporation) C:\Windows\System32\CredentialEnrollmentManager.exe
(services.exe - & gt; ) (Microsoft Windows Hardware Compatibility Publisher - & gt; Advanced Micro Devices, Inc.) C:\Windows\System32\amdfendrsr.exe
(services.exe - & gt; ) (Realtek Semiconductor Corp. - & gt; Realtek Semiconductor) C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_c51a65fb5ec70f9d\RtkAudUService64.exe & lt; 2 & gt;
(svchost.exe - & gt; ) (Google Inc - & gt; Google Inc.) C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
(svchost.exe - & gt; ) (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.549981C3F5F10_4.2204.13303.0_x64__8wekyb3d8bbwe\Cortana.exe
(svchost.exe - & gt; ) (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.MicrosoftStickyNotes_4.5.1.0_x64__8wekyb3d8bbwe\Microsoft.Notes.exe
(svchost.exe - & gt; ) (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_10.2103.8.0_x64__8wekyb3d8bbwe\Calculator.exe
(svchost.exe - & gt; ) (Microsoft Windows - & gt; Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(svchost.exe - & gt; ) (Microsoft Windows - & gt; Microsoft Corporation) C:\Windows\System32\dllhost.exe & lt; 2 & gt;
(svchost.exe - & gt; ) (Microsoft Windows - & gt; Microsoft Corporation) C:\Windows\System32\smartscreen.exe

==================== Rejestr (filtrowane) ===================

(Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.)

HKLM\...\Run: [RtkAudUService] = & gt; C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_c51a65fb5ec70f9d\RtkAudUService64.exe [1249848 2021-03-03] (Realtek Semiconductor Corp. - & gt; Realtek Semiconductor)
HKLM\...\Run: [Bdagent] = & gt; C:\Program Files\Bitdefender\Bitdefender Security\bdagent.exe [985224 2022-05-24] (Bitdefender SRL - & gt; Bitdefender)
HKLM-x32\...\Run: [Adobe CCXProcess] = & gt; C:\Program Files (x86)\Adobe\Adobe Creative Cloud Experience\CCXProcess.exe [129288 2022-06-15] (Adobe Inc. - & gt; )
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Ograniczenia & lt; ==== UWAGA
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Ograniczenia & lt; ==== UWAGA
HKU\S-1-5-21-2729293387-714797269-2225837306-1001\...\Run: [MicrosoftEdgeAutoLaunch_CDB8702FA4C1E3F1EAF65D2331BA9ACA] = & gt; " C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe " --no-startup-window --win-session-start /prefetch:5 [3595168 2022-06-16] (Microsoft Corporation - & gt; Microsoft Corporation)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] - & gt; C:\Program Files (x86)\Google\Chrome\Application\102.0.5005.115\Installer\chrmstp.exe [2022-06-18] (Google LLC - & gt; Google LLC)

==================== Zaplanowane zadania (filtrowane) ============

(Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)

Task: {1613590F-B0CC-40AD-9EB4-30DB07D290A8} - System32\Tasks\MicrosoftEdgeShadowStackRollbackTask = & gt; C:\Program Files (x86)\Microsoft\Edge\Application\102.0.1245.44\Installer\setup.exe [3256224 2022-06-18] (Microsoft Corporation - & gt; Microsoft Corporation)
Task: {24225AFE-89DB-4690-8ABB-339612614A22} - System32\Tasks\GoogleUpdateTaskMachineUA = & gt; C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2022-06-15] (Google Inc - & gt; Google Inc.)
Task: {2DB320E7-E19D-44F4-947A-4A8CC971B15B} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerLogon = & gt; C:\Program Files\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [2209272 2022-06-20] (Microsoft Corporation - & gt; Microsoft Corporation)
Task: {4889A506-419F-4983-87A7-518520786ADE} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 = & gt; C:\Program Files\Microsoft Office\root\Office16\msoia.exe [3513792 2022-06-20] (Microsoft Corporation - & gt; Microsoft Corporation)
Task: {6238F82E-C524-4A26-AB52-E05E2B281F3A} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 = & gt; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [23564752 2022-06-03] (Microsoft Corporation - & gt; Microsoft Corporation)
Task: {70E48BAB-EA5F-4EBB-863A-8970E1FC98E6} - System32\Tasks\avfree.migration = & gt; C:\Program Files\Bitdefender Antivirus Free\migration_tool\avfree.migration.exe /run (Brak pliku)
Task: {826830BB-146A-4D8F-95FB-30DCC5F005FA} - System32\Tasks\Bitdefender Agent WatchDog_65D6944A0EF74FDAB96E31112AD39864 = & gt; C:\Program Files\Bitdefender Agent\26.0.1.222_0\WatchDog.exe [1050728 2022-03-23] (Bitdefender SRL - & gt; Bitdefender)
Task: {8463498F-54BF-4667-95BA-02B371626B77} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor = & gt; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [23564752 2022-06-03] (Microsoft Corporation - & gt; Microsoft Corporation)
Task: {CDEBCEC8-8B5B-462C-BA1A-B2F32F4734A0} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerRegistration = & gt; C:\Program Files\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [2209272 2022-06-20] (Microsoft Corporation - & gt; Microsoft Corporation)
Task: {E647CEE2-C292-4CE3-BE1F-3915E8AA3FAB} - System32\Tasks\AMDLinkUpdate = & gt; C:\Program Files\AMD\CIM\BIN64\InstallManagerApp.exe [1709320 2021-02-10] (Advanced Micro Devices, Inc. - & gt; Advanced Micro Devices, Inc.)
Task: {EAC32423-F792-44A7-B091-CC24C603C1AF} - System32\Tasks\GoogleUpdateTaskMachineCore = & gt; C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2022-06-15] (Google Inc - & gt; Google Inc.)
Task: {FF490BB5-F9D8-4974-A674-780FE442D515} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 = & gt; C:\Program Files\Microsoft Office\root\Office16\msoia.exe [3513792 2022-06-20] (Microsoft Corporation - & gt; Microsoft Corporation)

(Załączenie wejścia w fixlist spowoduje przesunięcie pliku zadania (.job). Plik uruchamiany docelowo przez zadanie nie zostanie przeniesiony.)


==================== Internet (filtrowane) ====================

(Załączenie wejścia w fixlist, w przypadku gdy jest to obiekt rejestru, spowoduje usunięcie go z rejestru lub przywrócenie jego domyślnej postaci.)

Hosts: W pliku Hosts jest więcej niż jedno wejście. Sprawdź sekcję Hosts w Addition.txt
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{1ea9d331-486c-47ce-a2ab-2ee7d61bf60c}: [DhcpNameServer] 192.168.1.1

Edge:
=======
Edge Profile: C:\Users\DROZDZU_NEW\AppData\Local\Microsoft\Edge\User Data\Default [2022-06-22]
Edge StartupUrls: Default - & gt; " hxxp://www.google.com/ "

FireFox:
========
FF Plugin: @microsoft.com/SharePoint,version=14.0 - & gt; C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2022-06-20] (Microsoft Corporation - & gt; Microsoft Corporation)
FF Plugin: @videolan.org/vlc,version=3.0.17.4 - & gt; C:\Program Files\VideoLAN\VLC\npvlc.dll [2022-03-24] (VideoLAN - & gt; VideoLAN)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - & gt; C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2022-06-20] (Microsoft Corporation - & gt; Microsoft Corporation)

Chrome:
=======
CHR DefaultProfile: Profile 1
CHR Profile: C:\Users\DROZDZU_NEW\AppData\Local\Google\Chrome\User Data\Guest Profile [2022-06-20]
CHR Profile: C:\Users\DROZDZU_NEW\AppData\Local\Google\Chrome\User Data\Profile 1 [2022-06-23]
CHR HomePage: Profile 1 - & gt; hxxps://www.google.com/
CHR StartupUrls: Profile 1 - & gt; " hxxps://www.google.com/ " , " hxxp://websearch.simplespeedy.info/ " , " hxxps://www.google.com/ " , " hxxps://www.google.co.uk/ " , " hxxps://www.google.com/ " , " hxxp://www.google.com/ " , " hxxps://www.google.com/ " , " hxxps://www.google.com/ "
CHR Session Restore: Profile 1 - & gt; [funkcja włączona]
CHR Extension: (Tłumacz Google) - C:\Users\DROZDZU_NEW\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aapbdbdomjkkjkaonfhkkikfgjllcleb [2022-06-20]
CHR Extension: (uBlock Origin) - C:\Users\DROZDZU_NEW\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\cjpalhdlnbpafiamejdnhcphjbkeiagm [2022-06-20]
CHR Extension: (Dokumenty Google offline) - C:\Users\DROZDZU_NEW\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2022-06-20]
CHR Extension: (Kill News Feed) - C:\Users\DROZDZU_NEW\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\hjobfcedfgohjkaieocljfcppjbkglfd [2022-06-21]
CHR Extension: (Usługa zwrotu gotówki LetyShops) - C:\Users\DROZDZU_NEW\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\lphicbbhfmllgmomkkhjfkpbdlncafbn [2022-06-20]
CHR Extension: (Save Image As PNG) - C:\Users\DROZDZU_NEW\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nkokmeaibnajheohncaamjggkanfbphi [2022-06-20]
CHR Extension: (Płatności w sklepie Chrome Web Store) - C:\Users\DROZDZU_NEW\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2022-06-20]
CHR Extension: (Sprawdzanie ortografii i gramatyki - LanguageTool) - C:\Users\DROZDZU_NEW\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\oldceeleldhonbafppcapldpdifcinji [2022-06-20]
CHR Profile: C:\Users\DROZDZU_NEW\AppData\Local\Google\Chrome\User Data\System Profile [2022-06-20]

==================== Usługi (filtrowane) ===================

(Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)

R2 BDAuxSrv; C:\Program Files\Bitdefender\Bitdefender Security\bdservicehost.exe [819848 2022-05-24] (Bitdefender SRL - & gt; Bitdefender)
R2 BDProtSrv; C:\Program Files\Bitdefender\Bitdefender Security\bdservicehost.exe [819848 2022-05-24] (Bitdefender SRL - & gt; Bitdefender)
R2 bdredline; C:\Program Files\Common Files\Bitdefender\SetupInformation\Bitdefender RedLine\bdredline.exe [2993256 2022-01-28] (Bitdefender SRL - & gt; Bitdefender)
R2 bdredline_agent; C:\Program Files\Bitdefender Agent\redline\bdredline.exe [2454632 2022-02-10] (Bitdefender SRL - & gt; Bitdefender)
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [9483232 2022-06-03] (Microsoft Corporation - & gt; Microsoft Corporation)
R2 ProductAgentService; C:\Program Files\Bitdefender Agent\ProductAgentService.exe [787608 2022-05-03] (Bitdefender SRL - & gt; Bitdefender)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [6254368 2022-06-02] (Microsoft Windows Publisher - & gt; Microsoft Corporation)
R2 UPDATESRV; C:\Program Files\Bitdefender\Bitdefender Security\updatesrv.exe [279176 2022-05-24] (Bitdefender SRL - & gt; Bitdefender)
R2 VSSERV; C:\Program Files\Bitdefender\Bitdefender Security\bdservicehost.exe [819848 2022-05-24] (Bitdefender SRL - & gt; Bitdefender)
S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2203.5-0\NisSrv.exe [3116848 2022-06-18] (Microsoft Windows Publisher - & gt; Microsoft Corporation)
S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2203.5-0\MsMpEng.exe [133544 2022-06-18] (Microsoft Windows Publisher - & gt; Microsoft Corporation)

===================== Sterowniki (filtrowane) ===================

(Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)

R3 amdwddmg; C:\Windows\System32\DriverStore\FileRepository\u0376209.inf_amd64_b3bdffadea4def3f\B374968\amdkmdag.sys [80540576 2022-01-28] (Advanced Micro Devices Inc. - & gt; Advanced Micro Devices, Inc.)
R1 atc; C:\Windows\System32\DRIVERS\atc.sys [4802976 2022-03-10] (Microsoft Windows Hardware Compatibility Publisher - & gt; Bitdefender S.R.L. Bucharest, ROMANIA)
R2 BdDci; C:\Windows\system32\DRIVERS\bddci.sys [800672 2021-08-26] (Microsoft Windows Hardware Compatibility Publisher - & gt; Bitdefender)
S0 bdelam; C:\Windows\System32\drivers\bdelam.sys [22976 2020-12-18] (Microsoft Windows Early Launch Anti-malware Publisher - & gt; Bitdefender)
S3 bdprivmon; C:\Windows\System32\DRIVERS\bdprivmon.sys [33208 2022-02-01] (Microsoft Windows Hardware Compatibility Publisher - & gt; (C) Bitdefender SRL)
S3 bduefiscan; C:\Windows\system32\DRIVERS\bduefiscan.sys [55864 2021-07-09] (Bitdefender SRL - & gt; Bitdefender)
S3 BthA2dp; C:\Windows\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [Brak podpisu cyfrowego]
S3 BthHFEnum; C:\Windows\System32\drivers\bthhfenum.sys [144896 2019-12-07] (Microsoft Corporation) [Brak podpisu cyfrowego]
S3 gdrv2; C:\Windows\gdrv2.sys [32600 2022-06-15] (GIGA-BYTE Technology Co., Ltd. - & gt; GIGA-BYTE TECHNOLOGY CO., LTD.)
R0 Gemma; C:\Windows\System32\DRIVERS\gemma.sys [1262496 2022-03-15] (Microsoft Windows Hardware Compatibility Publisher - & gt; BitDefender S.R.L. Bucharest, ROMANIA)
S3 Ignis; C:\Windows\system32\DRIVERS\ignis.sys [185312 2020-10-07] (Bitdefender SRL - & gt; Bitdefender)
R0 trufos; C:\Windows\System32\DRIVERS\trufos.sys [633264 2022-04-16] (Microsoft Windows Hardware Compatibility Publisher - & gt; Bitdefender)
R0 vlflt; C:\Windows\System32\DRIVERS\vlflt.sys [474048 2022-03-01] (Microsoft Windows Hardware Compatibility Publisher - & gt; Bitdefender)
S3 WdBoot; C:\Windows\system32\drivers\wd\WdBoot.sys [49600 2022-06-18] (Microsoft Windows Early Launch Anti-malware Publisher - & gt; Microsoft Corporation)
S3 WdFilter; C:\Windows\system32\drivers\wd\WdFilter.sys [443664 2022-06-18] (Microsoft Windows - & gt; Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\drivers\wd\WdNisDrv.sys [90384 2022-06-18] (Microsoft Windows - & gt; Microsoft Corporation)

==================== NetSvcs (filtrowane) ===================

(Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)


==================== Jeden miesiąc (utworzone) (filtrowane) =========

(Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.)

2022-06-23 01:05 - 2022-06-23 01:05 - 000017787 _____ C:\Users\DROZDZU_NEW\Downloads\FRST.txt
2022-06-23 01:05 - 2022-06-23 01:05 - 000000000 ____D C:\FRST
2022-06-23 01:04 - 2022-06-23 01:04 - 002369024 _____ (Farbar) C:\Users\DROZDZU_NEW\Downloads\FRST64.exe
2022-06-22 17:59 - 2022-06-22 17:59 - 000000913 _____ C:\Users\DROZDZU_NEW\Desktop\DawidRojek.pl.lnk
2022-06-22 17:58 - 2022-06-22 17:58 - 000001593 _____ C:\Users\DROZDZU_NEW\Desktop\Strony WWW.lnk
2022-06-22 16:24 - 2022-06-22 16:24 - 000000000 ____D C:\Users\DROZDZU_NEW\Tracing
2022-06-22 15:14 - 2022-06-22 15:14 - 000039948 _____ C:\Users\DROZDZU_NEW\Downloads\faktura-fr-51-06-2022.pdf
2022-06-22 00:25 - 2022-06-22 17:59 - 000000803 _____ C:\Users\DROZDZU_NEW\Desktop\DO OBROBKI.lnk
2022-06-22 00:01 - 2022-06-22 00:10 - 000000000 ____D C:\Users\DROZDZU_NEW\AppData\Roaming\ObviousIdea
2022-06-22 00:01 - 2022-06-22 00:01 - 000000000 ____D C:\Users\DROZDZU_NEW\AppData\Roaming\Neos Eureka S.r.l
2022-06-21 21:32 - 2022-06-21 21:32 - 000000000 ____D C:\Users\DROZDZU_NEW\AppData\Roaming\JPEGminiPro
2022-06-21 21:28 - 2022-06-21 21:28 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ObviousIdea
2022-06-21 21:28 - 2022-06-21 21:28 - 000000000 ____D C:\Program Files (x86)\ObviousIdea
2022-06-21 18:37 - 2022-06-21 18:37 - 001991310 _____ C:\Users\DROZDZU_NEW\Downloads\Wideo_1.mov
2022-06-21 18:37 - 2022-06-21 18:37 - 001275813 _____ C:\Users\DROZDZU_NEW\Downloads\Wideo.mov
2022-06-21 18:32 - 2022-06-21 18:32 - 031580819 _____ C:\Users\DROZDZU_NEW\Downloads\Zaproszenie.mp4
2022-06-21 01:26 - 2022-06-22 19:11 - 037250048 _____ C:\Users\DROZDZU_NEW\AppData\Local\SageThumbs.db3
2022-06-21 01:26 - 2022-06-21 01:26 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SageThumbs
2022-06-21 01:26 - 2022-06-21 01:26 - 000000000 ____D C:\Program Files (x86)\SageThumbs
2022-06-21 00:27 - 2022-06-21 00:27 - 000088172 _____ C:\Users\DROZDZU_NEW\Downloads\GillSansMTPro-Medium.otf
2022-06-20 23:40 - 2022-06-20 23:40 - 000000661 _____ C:\Users\DROZDZU_NEW\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\R O B O T.lnk
2022-06-20 23:33 - 2022-06-21 23:06 - 000003588 _____ C:\Windows\system32\Tasks\OneDrive Reporting Task-S-1-5-21-2729293387-714797269-2225837306-1001
2022-06-20 23:17 - 2022-06-21 00:10 - 000001364 _____ C:\Users\DROZDZU_NEW\Desktop\A.txt
2022-06-20 23:09 - 2022-06-20 23:09 - 000000000 ____D C:\Users\DROZDZU_NEW\Documents\FundySoftware
2022-06-20 23:08 - 2022-06-20 23:08 - 000000000 ____D C:\Users\DROZDZU_NEW\AppData\Roaming\FundySoftware
2022-06-20 23:07 - 2022-06-20 23:07 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Fundy Designer
2022-06-20 23:07 - 2022-06-20 23:07 - 000000000 ____D C:\Program Files (x86)\Fundy Designer
2022-06-20 18:57 - 2022-06-21 23:06 - 000003380 _____ C:\Windows\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-2729293387-714797269-2225837306-1001
2022-06-20 18:57 - 2022-06-21 23:06 - 000002447 _____ C:\Users\DROZDZU_NEW\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2022-06-20 18:56 - 2022-06-20 18:56 - 000002477 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Word.lnk
2022-06-20 18:56 - 2022-06-20 18:56 - 000002465 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outlook.lnk
2022-06-20 18:56 - 2022-06-20 18:56 - 000002450 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerPoint.lnk
2022-06-20 18:56 - 2022-06-20 18:56 - 000002447 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneNote 2016.lnk
2022-06-20 18:56 - 2022-06-20 18:56 - 000002444 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Access.lnk
2022-06-20 18:56 - 2022-06-20 18:56 - 000002411 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Excel.lnk
2022-06-20 18:56 - 2022-06-20 18:56 - 000002401 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Publisher.lnk
2022-06-20 18:56 - 2022-06-20 18:56 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Narzędzia pakietu Microsoft Office
2022-06-20 18:55 - 2022-06-20 18:55 - 000000000 ____D C:\Program Files\Common Files\DESIGNER
2022-06-20 18:49 - 2022-06-20 18:56 - 000000000 ____D C:\Program Files\Microsoft Office
2022-06-20 18:49 - 2022-06-20 18:49 - 000000000 ____D C:\Program Files\Microsoft Office 15
2022-06-20 18:05 - 2022-06-22 02:16 - 000000000 ____D C:\Users\DROZDZU_NEW\AppData\Local\CrashDumps
2022-06-20 12:59 - 2022-06-22 02:15 - 000000000 ____D C:\Users\DROZDZU_NEW\AppData\Roaming\foobar2000
2022-06-20 12:59 - 2022-06-20 12:59 - 000001188 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\foobar2000.lnk
2022-06-20 12:59 - 2022-06-20 12:59 - 000000000 ____D C:\Program Files (x86)\foobar2000
2022-06-20 11:56 - 2022-06-20 11:56 - 000000000 ____D C:\Users\DROZDZU_NEW\AppData\Local\cache
2022-06-20 11:56 - 2022-06-20 11:56 - 000000000 ____D C:\ProgramData\Reprise
2022-06-20 11:56 - 2022-06-20 11:56 - 000000000 ____D C:\ProgramData\DxO Labs
2022-06-20 11:52 - 2022-06-20 11:56 - 000000000 ____D C:\Users\DROZDZU_NEW\AppData\Local\DxO
2022-06-20 11:52 - 2022-06-20 11:52 - 000000000 ____D C:\Users\DROZDZU_NEW\AppData\Roaming\DxO
2022-06-20 11:52 - 2022-06-20 11:52 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DxO Nik Collection
2022-06-20 11:52 - 2022-06-20 11:52 - 000000000 ____D C:\ProgramData\DxO
2022-06-20 11:52 - 2022-06-20 11:52 - 000000000 ____D C:\Program Files\DxO
2022-06-20 11:11 - 2022-06-20 11:17 - 000000000 ____D C:\ProgramData\Google
2022-06-20 11:11 - 2022-06-20 11:11 - 000000000 ____D C:\Program Files (x86)\GUM175F.tmp
2022-06-20 11:04 - 2022-06-20 11:04 - 000000000 ____D C:\Users\DROZDZU_NEW\AppData\LocalLow\Adobe
2022-06-20 10:57 - 2022-06-20 22:41 - 000055121 _____ C:\Users\DROZDZU_NEW\Desktop\TASKI.xlsx
2022-06-20 10:55 - 2022-06-20 10:56 - 000000000 ____D C:\Users\DROZDZU_NEW\Desktop\To Read
2022-06-20 10:53 - 2022-06-20 23:26 - 000000000 ____D C:\Users\DROZDZU_NEW\Downloads\wzorcowe
2022-06-20 10:53 - 2022-06-20 23:26 - 000000000 ____D C:\Users\DROZDZU_NEW\Downloads\Wtczki szablony Ele
2022-06-20 10:53 - 2022-06-20 23:26 - 000000000 ____D C:\Users\DROZDZU_NEW\Downloads\wallpapers
2022-06-20 10:53 - 2022-06-20 23:26 - 000000000 ____D C:\Users\DROZDZU_NEW\Downloads\Up
2022-06-20 10:53 - 2022-06-20 23:26 - 000000000 ____D C:\Users\DROZDZU_NEW\Downloads\strategie texas holdem
2022-06-20 10:53 - 2022-06-20 23:26 - 000000000 ____D C:\Users\DROZDZU_NEW\Downloads\slowa kluczowe popularnosc
2022-06-20 10:53 - 2022-06-20 23:26 - 000000000 ____D C:\Users\DROZDZU_NEW\Downloads\SEO
2022-06-20 10:53 - 2022-06-20 23:25 - 000000000 ____D C:\Users\DROZDZU_NEW\Downloads\Rybicki Juz gram
2022-06-20 10:53 - 2022-06-20 23:25 - 000000000 ____D C:\Users\DROZDZU_NEW\Downloads\Projekt
2022-06-20 10:53 - 2022-06-20 23:25 - 000000000 ____D C:\Users\DROZDZU_NEW\Downloads\Mieszkanie
2022-06-20 10:53 - 2022-06-20 10:21 - 007439457 _____ C:\Users\DROZDZU_NEW\Downloads\Zupa Babuni Grandma's soup.psd
2022-06-20 10:53 - 2022-05-26 00:13 - 033145821 _____ C:\Users\DROZDZU_NEW\Downloads\poradnik_lesnej_fotografii.pdf
2022-06-20 10:53 - 2022-05-19 14:02 - 000014559 _____ C:\Users\DROZDZU_NEW\Downloads\SEO-plan-dawidrojek final.xlsx
2022-06-20 10:53 - 2022-04-12 14:55 - 000091945 _____ C:\Users\DROZDZU_NEW\Downloads\Zamien-Widzow-W-Klientow-7.pdf
2022-06-20 10:53 - 2022-04-02 12:39 - 006937604 _____ C:\Users\DROZDZU_NEW\Downloads\Mapa BIZNESU PREMIUM Bogaty fotograf (100 x 60 cm) (1).pdf
2022-06-20 10:53 - 2022-03-07 23:11 - 000055296 _____ C:\Users\DROZDZU_NEW\Downloads\surfer-content-planner-fotografia-07-03-2022.xls
2022-06-20 10:53 - 2022-03-07 23:11 - 000025088 _____ C:\Users\DROZDZU_NEW\Downloads\surfer-content-planner-fotografia-produktowa-07-03-2022.xls
2022-06-20 10:53 - 2021-06-21 16:16 - 000024008 _____ C:\Users\DROZDZU_NEW\Downloads\Skuteczny-Copywriting.xlsx
2022-06-20 10:52 - 2022-06-20 23:25 - 000000000 ____D C:\Users\DROZDZU_NEW\Downloads\faktury komp 2022
2022-06-20 10:52 - 2022-06-20 23:25 - 000000000 ____D C:\Users\DROZDZU_NEW\Downloads\Buddyzm ksiazki
2022-06-20 10:52 - 2022-06-20 10:21 - 007866257 _____ C:\Users\DROZDZU_NEW\Downloads\Fasolka szparagowa French bean.psd
2022-06-20 10:52 - 2022-01-14 17:20 - 002446233 _____ C:\Users\DROZDZU_NEW\Downloads\CANOPY_INSTRUCTIONS_MANUAL.pdf
2022-06-20 10:52 - 2022-01-10 12:26 - 109011110 _____ C:\Users\DROZDZU_NEW\Downloads\art of cinematography.pdf
2022-06-20 10:52 - 2021-11-04 10:41 - 003755554 _____ C:\Users\DROZDZU_NEW\Downloads\AngielskieCzasyBEZPLATNYFRAGMENT.pdf
2022-06-20 10:52 - 2021-03-24 10:03 - 001376160 _____ C:\Users\DROZDZU_NEW\Downloads\audyt_nauka-gry-na-harmonijce.pdf
2022-06-20 10:52 - 2021-02-28 16:47 - 004861985 _____ C:\Users\DROZDZU_NEW\Downloads\checklista landing page.pdf
2022-06-20 10:52 - 2021-02-06 14:41 - 009943243 _____ C:\Users\DROZDZU_NEW\Downloads\jak sprzedawac kursy.pdf
2022-06-20 08:36 - 2022-06-22 19:11 - 000000000 ____D C:\Users\DROZDZU_NEW\Desktop\R O B O T
2022-06-19 23:32 - 2022-06-19 23:32 - 000598288 _____ C:\ProgramData\cl.1655674024.bdinstall.v2.bin
2022-06-19 23:32 - 2022-06-19 23:32 - 000110680 _____ C:\ProgramData\cl.kit.1655674023.bdinstall.v2.bin
2022-06-19 23:29 - 2022-06-19 23:33 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bitdefender Security
2022-06-19 23:29 - 2022-06-19 23:29 - 000000000 ____D C:\Windows\system32\elambkup
2022-06-19 23:29 - 2022-06-19 23:29 - 000000000 ____D C:\Users\DROZDZU_NEW\AppData\Roaming\Bitdefender
2022-06-19 23:29 - 2022-06-19 23:29 - 000000000 ____D C:\ProgramData\Gemma
2022-06-19 23:29 - 2022-06-19 23:29 - 000000000 ____D C:\ProgramData\Atc
2022-06-19 23:29 - 2022-06-19 23:29 - 000000000 ____D C:\Program Files\Bitdefender
2022-06-19 23:29 - 2022-04-16 15:09 - 000633264 _____ (Bitdefender) C:\Windows\system32\Drivers\trufos.sys
2022-06-19 23:29 - 2022-03-15 17:44 - 001262496 _____ (BitDefender S.R.L. Bucharest, ROMANIA) C:\Windows\system32\Drivers\gemma.sys
2022-06-19 23:29 - 2022-03-10 10:26 - 004802976 _____ (Bitdefender S.R.L. Bucharest, ROMANIA) C:\Windows\system32\Drivers\atc.sys
2022-06-19 23:29 - 2022-02-01 06:13 - 000033208 _____ ((C) Bitdefender SRL) C:\Windows\system32\Drivers\bdprivmon.sys
2022-06-19 23:29 - 2021-08-26 14:48 - 000800672 _____ (Bitdefender) C:\Windows\system32\Drivers\bddci.sys
2022-06-19 23:29 - 2021-07-09 00:36 - 000055864 _____ (Bitdefender) C:\Windows\system32\Drivers\bduefiscan.sys
2022-06-19 23:29 - 2020-12-18 01:33 - 000022976 _____ (Bitdefender) C:\Windows\system32\Drivers\bdelam.sys
2022-06-19 23:29 - 2020-10-07 10:30 - 000185312 _____ (Bitdefender) C:\Windows\system32\Drivers\ignis.sys
2022-06-19 23:27 - 2022-06-19 23:29 - 000000000 ____D C:\Program Files\Common Files\Bitdefender
2022-06-19 23:27 - 2022-03-01 01:55 - 000474048 _____ (Bitdefender) C:\Windows\system32\Drivers\vlflt.sys
2022-06-19 23:25 - 2022-06-19 23:25 - 000098664 _____ C:\ProgramData\agent.update.1655673923.bdinstall.v2.bin
2022-06-19 23:16 - 2022-06-19 23:29 - 000000000 ____D C:\ProgramData\BDLogging
2022-06-19 23:16 - 2022-06-19 23:16 - 000003606 _____ C:\Windows\system32\Tasks\avfree.migration
2022-06-19 22:57 - 2022-06-20 11:18 - 000000000 ____D C:\Users\DROZDZU_NEW\.dbus-keyrings
2022-06-19 22:57 - 2022-06-19 22:57 - 000000000 ____D C:\Users\DROZDZU_NEW\AppData\Roaming\BleachBit
2022-06-19 22:55 - 2022-06-19 22:56 - 000000000 ____D C:\AdwCleaner
2022-06-19 22:54 - 2022-06-19 22:58 - 000000000 ____D C:\ProgramData\RogueKiller
2022-06-19 22:45 - 2022-06-19 23:27 - 000000278 _____ C:\Windows\system32\ctc_stats.db
2022-06-19 22:45 - 2022-06-19 22:45 - 000000027 _____ C:\Windows\system32\ctc.json
2022-06-19 22:44 - 2022-06-19 22:44 - 000011787 _____ C:\Windows\system32\DrtmAuthTxt.wim
2022-06-19 22:42 - 2022-06-19 22:42 - 000000318 _____ C:\Windows\system32\httpproxy.json
2022-06-19 22:41 - 2022-06-19 22:41 - 000000000 ___HD C:\$WinREAgent
2022-06-19 22:41 - 2022-06-19 22:41 - 000000000 ____D C:\Program Files\Microsoft Update Health Tools
2022-06-19 22:37 - 2022-06-19 23:50 - 000000000 ____D C:\ProgramData\Bitdefender
2022-06-19 22:37 - 2022-06-19 23:25 - 000003854 _____ C:\Windows\system32\Tasks\Bitdefender Agent WatchDog_65D6944A0EF74FDAB96E31112AD39864
2022-06-19 22:37 - 2022-06-19 22:37 - 000001198 _____ C:\Users\DROZDZU_NEW\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Bitdefender Antivirus Free.lnk
2022-06-19 22:37 - 2022-06-19 22:37 - 000000000 ____D C:\ProgramData\48C4687D-9760-4F5B-BAB3-60351B0841E4
2022-06-19 22:37 - 2020-02-03 16:53 - 000309120 _____ (BitDefender S.R.L. Bucharest, ROMANIA) C:\Windows\system32\Drivers\edrsensor.sys
2022-06-19 22:36 - 2022-06-19 22:36 - 000000000 ____D C:\Users\DROZDZU_NEW\AppData\Local\Bitdefender
2022-06-19 22:35 - 2022-06-19 23:25 - 000000000 ____D C:\Program Files\Bitdefender Agent
2022-06-19 22:35 - 2022-06-19 22:35 - 000116172 _____ C:\ProgramData\agent.1655670910.bdinstall.v2.bin
2022-06-19 22:35 - 2022-06-19 22:35 - 000000000 ____D C:\ProgramData\Bitdefender Agent
2022-06-19 22:33 - 2022-06-19 22:33 - 000000000 ____D C:\Users\DROZDZU_NEW\AppData\Local\fontconfig
2022-06-19 22:33 - 2022-06-19 22:33 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BleachBit
2022-06-19 22:33 - 2022-06-19 22:33 - 000000000 ____D C:\Program Files (x86)\BleachBit
2022-06-19 22:30 - 2022-06-19 22:31 - 000000000 ____D C:\Windows\system32\MRT
2022-06-19 22:30 - 2022-06-19 22:30 - 000001152 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PC Health Check.lnk
2022-06-19 22:30 - 2022-06-19 22:30 - 000000000 ____D C:\Program Files\PCHealthCheck
2022-06-18 02:00 - 2022-06-18 02:00 - 000000000 ____D C:\Users\DROZDZU_NEW\AppData\Local\PeerDistRepub
2022-06-18 01:07 - 2022-06-22 09:40 - 000000000 ____D C:\Users\DROZDZU_NEW\AppData\Local\PlaceholderTileLogoFolder
2022-06-18 01:01 - 2022-06-18 01:01 - 000004784 _____ C:\Windows\system32\Tasks\MicrosoftEdgeShadowStackRollbackTask
2022-06-18 00:59 - 2022-06-18 00:59 - 000000000 ____D C:\Users\DROZDZU_NEW\AppData\Local\Capture_One
2022-06-18 00:58 - 2022-06-22 00:51 - 000000000 ____D C:\Users\DROZDZU_NEW\AppData\Local\CaptureOne
2022-06-18 00:58 - 2022-06-18 00:58 - 000000000 ____D C:\ProgramData\Capture One
2022-06-18 00:58 - 2022-06-18 00:58 - 000000000 ____D C:\Program Files\DIFX
2022-06-18 00:57 - 2022-06-18 00:57 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Capture One
2022-06-18 00:57 - 2022-06-18 00:57 - 000000000 ____D C:\Program Files\Capture One
2022-06-15 17:02 - 2022-06-15 17:02 - 000000000 ____D C:\Users\DROZDZU_NEW\AppData\LocalLow\AMD
2022-06-15 17:00 - 2022-06-15 17:00 - 000000000 ___HD C:\Program Files (x86)\Temp
2022-06-15 17:00 - 2022-06-15 17:00 - 000000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2022-06-15 17:00 - 2022-06-15 17:00 - 000000000 ____D C:\Program Files (x86)\Realtek
2022-06-15 17:00 - 2021-04-18 23:08 - 001149432 _____ (Realtek ) C:\Windows\system32\Drivers\rt640x64.sys
2022-06-15 17:00 - 2021-03-03 18:25 - 006398952 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RTKVHD64.sys
2022-06-15 17:00 - 2021-03-03 18:15 - 045000435 _____ C:\Windows\system32\Drivers\RTAIODAT.DAT
2022-06-15 17:00 - 2019-12-19 09:07 - 002877104 ____R (Realtek Semiconductor Corp.) C:\Windows\RtlExUpd.dll
2022-06-15 16:59 - 2022-06-20 11:17 - 000000000 ____D C:\Users\DROZDZU_NEW\AppData\Local\Google
2022-06-15 16:59 - 2022-06-20 11:04 - 000000000 ____D C:\Users\DROZDZU_NEW\AppData\Local\AMD
2022-06-15 16:59 - 2022-06-15 16:59 - 000003122 _____ C:\Windows\system32\Tasks\AMDLinkUpdate
2022-06-15 16:59 - 2022-06-15 16:59 - 000000000 ____D C:\Windows\system32\AMD
2022-06-15 16:59 - 2021-02-09 19:39 - 000098744 ____R (Advanced Micro Devices, Inc.) C:\Windows\system32\Drivers\amdfendr.sys
2022-06-15 16:59 - 2020-06-09 03:57 - 000107936 _____ (Advanced Micro Devices) C:\Windows\system32\Drivers\AtihdWT6.sys
2022-06-15 16:59 - 2020-03-24 18:11 - 000442384 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdtee_api.dll
2022-06-15 16:59 - 2020-03-24 18:11 - 000355856 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdtee_api.dll
2022-06-15 16:58 - 2022-06-15 16:59 - 000000000 ____D C:\Program Files\AMD
2022-06-15 16:58 - 2022-01-28 17:03 - 001537424 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atiacm64.dll
2022-06-15 16:58 - 2022-01-28 17:02 - 000211752 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\amdihk64.dll
2022-06-15 16:58 - 2021-02-26 02:23 - 000204952 _____ C:\Windows\SysWOW64\ativvsvl.dat
2022-06-15 16:58 - 2021-02-26 02:23 - 000204952 _____ C:\Windows\system32\ativvsvl.dat
2022-06-15 16:58 - 2021-02-26 02:23 - 000157144 _____ C:\Windows\SysWOW64\ativvsva.dat
2022-06-15 16:58 - 2021-02-26 02:23 - 000157144 _____ C:\Windows\system32\ativvsva.dat
2022-06-15 16:58 - 2021-02-26 02:23 - 000154384 _____ C:\Windows\system32\samu_krnl_ci.sbin
2022-06-15 16:58 - 2021-02-26 02:23 - 000138832 _____ C:\Windows\system32\samu_krnl_isv_ci.sbin
2022-06-15 16:58 - 2021-02-26 02:23 - 000121168 _____ C:\Windows\system32\kapp_si.sbin
2022-06-15 16:58 - 2021-02-26 02:23 - 000076237 _____ C:\Windows\system32\AMDKernelEvents.man
2022-06-15 16:58 - 2021-02-26 02:23 - 000000822 _____ C:\Windows\system32\branding.bmp
2022-06-15 16:57 - 2022-06-23 01:02 - 000000000 ____D C:\Program Files (x86)\Google
2022-06-15 16:57 - 2022-06-18 01:00 - 000002313 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2022-06-15 16:57 - 2022-06-18 00:57 - 000003570 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineUA
2022-06-15 16:57 - 2022-06-18 00:57 - 000003446 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineCore
2022-06-15 16:57 - 2022-06-15 16:58 - 000000000 ____D C:\AMD
2022-06-15 16:57 - 2022-06-15 16:57 - 000000000 ____D C:\Users\DROZDZU_NEW\AppData\Roaming\AMD
2022-06-15 16:57 - 2022-06-15 16:57 - 000000000 ____D C:\Program Files (x86)\AMD
2022-06-15 16:55 - 2022-06-15 17:00 - 000000010 _____ C:\Windows\GSetup.ini
2022-06-15 16:55 - 2022-06-15 16:55 - 000032600 ____N (GIGA-BYTE TECHNOLOGY CO., LTD.) C:\Windows\gdrv2.sys
2022-06-15 16:55 - 2009-08-26 17:04 - 000207400 ____R () C:\Windows\GSetup.exe
2022-06-15 16:23 - 2022-06-21 18:38 - 000000000 ____D C:\Users\DROZDZU_NEW\AppData\Roaming\vlc
2022-06-15 16:23 - 2022-06-15 16:23 - 000001385 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\JPEGminiPro.lnk
2022-06-15 16:23 - 2022-06-15 16:23 - 000000000 ____D C:\Users\DROZDZU_NEW\AppData\Local\JpegminiPro3
2022-06-15 16:23 - 2022-06-15 16:23 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Beamr Imaging
2022-06-15 16:19 - 2022-06-15 16:19 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
2022-06-15 16:19 - 2022-06-15 16:19 - 000000000 ____D C:\Program Files\VideoLAN
2022-06-15 16:04 - 2022-06-18 02:00 - 000000000 ____D C:\Windows\Panther
2022-06-15 15:42 - 2022-06-15 15:42 - 000000000 ____D C:\Windows\system32\Tasks\Agent Activation Runtime
2022-06-15 15:41 - 2022-06-15 15:41 - 000000000 ____D C:\ProgramData\Camera Bits, Inc
2022-06-15 15:39 - 2022-06-15 15:39 - 000000000 ____D C:\Users\DROZDZU_NEW\AppData\Roaming\Camera Bits, Inc
2022-06-15 15:38 - 2022-06-15 15:38 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Photo Mechanic
2022-06-15 15:38 - 2022-06-15 15:38 - 000000000 ____D C:\Program Files\Camera Bits
2022-06-15 15:25 - 2022-06-19 22:37 - 000000000 ____D C:\Users\DROZDZU_NEW\AppData\Local\Comms
2022-06-15 15:25 - 2022-06-15 15:25 - 000000000 ____D C:\Windows\WICCodecs
2022-06-15 15:25 - 2022-06-15 15:25 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FastPictureViewer
2022-06-15 15:25 - 2022-06-15 15:25 - 000000000 ____D C:\ProgramData\FastPictureViewer
2022-06-15 15:25 - 2022-06-15 15:25 - 000000000 ____D C:\Program Files\FastPictureViewer
2022-06-15 15:23 - 2022-06-15 15:23 - 000001064 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Photoshop 2022.lnk
2022-06-15 15:23 - 2022-06-15 15:23 - 000000000 ____D C:\Users\DROZDZU_NEW\AppData\Local\CEF
2022-06-15 15:21 - 2022-06-22 16:24 - 000000000 ____D C:\Users\DROZDZU_NEW\AppData\Local\D3DSCache
2022-06-15 15:21 - 2022-06-20 11:52 - 000000000 ____D C:\ProgramData\Package Cache
2022-06-15 15:21 - 2022-06-15 15:23 - 000000000 ____D C:\Program Files\Common Files\Adobe
2022-06-15 15:21 - 2022-06-15 15:22 - 000000000 ____D C:\Program Files\Adobe
2022-06-15 15:21 - 2022-06-15 15:21 - 000000000 ____D C:\Program Files (x86)\Adobe
2022-06-15 15:20 - 2022-06-20 23:13 - 000000000 ____D C:\Users\DROZDZU_NEW\AppData\Local\Adobe
2022-06-15 15:20 - 2022-06-15 15:22 - 000000000 ____D C:\ProgramData\Adobe
2022-06-15 15:14 - 2022-06-15 15:14 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip
2022-06-15 15:14 - 2022-06-15 15:14 - 000000000 ____D C:\Program Files\7-Zip
2022-06-15 15:10 - 2022-06-19 22:45 - 001767980 _____ C:\Windows\system32\PerfStringBackup.INI
2022-06-15 15:09 - 2022-06-20 18:57 - 000000000 ___RD C:\Users\DROZDZU_NEW\OneDrive
2022-06-15 15:08 - 2022-06-15 15:08 - 000000000 ____D C:\ProgramData\Microsoft OneDrive
2022-06-15 15:07 - 2022-06-22 18:02 - 000000000 ____D C:\Users\DROZDZU_NEW\AppData\Local\Packages
2022-06-15 15:07 - 2022-06-22 16:24 - 000000000 ____D C:\Users\DROZDZU_NEW
2022-06-15 15:07 - 2022-06-22 13:28 - 000000000 ____D C:\Users\DROZDZU_NEW\AppData\Roaming\Adobe
2022-06-15 15:07 - 2022-06-21 16:58 - 000000000 ____D C:\ProgramData\Packages
2022-06-15 15:07 - 2022-06-18 02:13 - 000000000 ____D C:\Users\DROZDZU_NEW\AppData\Local\ConnectedDevicesPlatform
2022-06-15 15:07 - 2022-06-18 01:07 - 000000000 __RHD C:\Users\Public\AccountPictures
2022-06-15 15:07 - 2022-06-15 15:07 - 000000020 ___SH C:\Users\DROZDZU_NEW\ntuser.ini
2022-06-15 15:07 - 2022-06-15 15:07 - 000000000 _SHDL C:\Users\DROZDZU_NEW\Ustawienia lokalne
2022-06-15 15:07 - 2022-06-15 15:07 - 000000000 _SHDL C:\Users\DROZDZU_NEW\Szablony
2022-06-15 15:07 - 2022-06-15 15:07 - 000000000 _SHDL C:\Users\DROZDZU_NEW\Moje dokumenty
2022-06-15 15:07 - 2022-06-15 15:07 - 000000000 _SHDL C:\Users\DROZDZU_NEW\Menu Start
2022-06-15 15:07 - 2022-06-15 15:07 - 000000000 _SHDL C:\Users\DROZDZU_NEW\Documents\Moje wideo
2022-06-15 15:07 - 2022-06-15 15:07 - 000000000 _SHDL C:\Users\DROZDZU_NEW\Documents\Moje obrazy
2022-06-15 15:07 - 2022-06-15 15:07 - 000000000 _SHDL C:\Users\DROZDZU_NEW\Documents\Moja muzyka
2022-06-15 15:07 - 2022-06-15 15:07 - 000000000 _SHDL C:\Users\DROZDZU_NEW\Dane aplikacji
2022-06-15 15:07 - 2022-06-15 15:07 - 000000000 _SHDL C:\Users\DROZDZU_NEW\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2022-06-15 15:07 - 2022-06-15 15:07 - 000000000 _SHDL C:\Users\DROZDZU_NEW\AppData\Local\Tymczasowe pliki internetowe
2022-06-15 15:07 - 2022-06-15 15:07 - 000000000 _SHDL C:\Users\DROZDZU_NEW\AppData\Local\Historia
2022-06-15 15:07 - 2022-06-15 15:07 - 000000000 _SHDL C:\Users\DROZDZU_NEW\AppData\Local\Dane aplikacji
2022-06-15 15:07 - 2022-06-15 15:07 - 000000000 ___RD C:\Users\DROZDZU_NEW\3D Objects
2022-06-15 15:07 - 2022-06-15 15:07 - 000000000 ____D C:\Users\DROZDZU_NEW\AppData\Local\VirtualStore
2022-06-15 15:07 - 2022-06-15 15:07 - 000000000 ____D C:\Users\DROZDZU_NEW\AppData\Local\Publishers
2022-06-15 15:06 - 2022-06-15 15:06 - 000000000 _SHDL C:\Users\Public\Documents\Moje wideo
2022-06-15 15:06 - 2022-06-15 15:06 - 000000000 _SHDL C:\Users\Public\Documents\Moje obrazy
2022-06-15 15:06 - 2022-06-15 15:06 - 000000000 _SHDL C:\Users\Public\Documents\Moja muzyka
2022-06-15 15:06 - 2022-06-15 15:06 - 000000000 _SHDL C:\Users\Default\Ustawienia lokalne
2022-06-15 15:06 - 2022-06-15 15:06 - 000000000 _SHDL C:\Users\Default\Szablony
2022-06-15 15:06 - 2022-06-15 15:06 - 000000000 _SHDL C:\Users\Default\Moje dokumenty
2022-06-15 15:06 - 2022-06-15 15:06 - 000000000 _SHDL C:\Users\Default\Menu Start
2022-06-15 15:06 - 2022-06-15 15:06 - 000000000 _SHDL C:\Users\Default\Documents\Moje wideo
2022-06-15 15:06 - 2022-06-15 15:06 - 000000000 _SHDL C:\Users\Default\Documents\Moje obrazy
2022-06-15 15:06 - 2022-06-15 15:06 - 000000000 _SHDL C:\Users\Default\Documents\Moja muzyka
2022-06-15 15:06 - 2022-06-15 15:06 - 000000000 _SHDL C:\Users\Default\Dane aplikacji
2022-06-15 15:06 - 2022-06-15 15:06 - 000000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2022-06-15 15:06 - 2022-06-15 15:06 - 000000000 _SHDL C:\Users\Default\AppData\Local\Tymczasowe pliki internetowe
2022-06-15 15:06 - 2022-06-15 15:06 - 000000000 _SHDL C:\Users\Default\AppData\Local\Historia
2022-06-15 15:06 - 2022-06-15 15:06 - 000000000 _SHDL C:\Users\Default\AppData\Local\Dane aplikacji
2022-06-15 15:06 - 2022-06-15 15:06 - 000000000 _SHDL C:\ProgramData\Szablony
2022-06-15 15:06 - 2022-06-15 15:06 - 000000000 _SHDL C:\ProgramData\Pulpit
2022-06-15 15:06 - 2022-06-15 15:06 - 000000000 _SHDL C:\ProgramData\Microsoft\Windows\Start Menu\Programy
2022-06-15 15:06 - 2022-06-15 15:06 - 000000000 _SHDL C:\ProgramData\Menu Start
2022-06-15 15:06 - 2022-06-15 15:06 - 000000000 _SHDL C:\ProgramData\Dokumenty
2022-06-15 15:06 - 2022-06-15 15:06 - 000000000 _SHDL C:\ProgramData\Dane aplikacji
2022-06-15 15:06 - 2022-06-15 15:06 - 000000000 _SHDL C:\Documents and Settings
2022-06-15 15:04 - 2022-06-23 00:59 - 000000000 ____D C:\Windows\system32\SleepStudy
2022-06-15 15:04 - 2022-06-22 13:57 - 000008192 ___SH C:\DumpStack.log.tmp
2022-06-15 15:04 - 2022-06-22 13:56 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2022-06-15 15:04 - 2022-06-21 15:37 - 000439400 _____ C:\Windows\system32\FNTCACHE.DAT
2022-06-15 15:04 - 2022-06-18 01:05 - 000000000 ____D C:\Windows\system32\Drivers\wd
2022-06-15 15:04 - 2022-06-18 01:01 - 000002454 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2022-06-15 15:04 - 2022-06-18 00:56 - 000003566 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2022-06-15 15:04 - 2022-06-18 00:56 - 000003442 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2022-06-15 15:04 - 2022-06-15 15:04 - 000000000 ____H C:\Windows\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf
2022-06-15 15:04 - 2022-06-15 15:04 - 000000000 ____D C:\Windows\ServiceProfiles
2022-06-02 23:51 - 2022-06-15 15:08 - 000000000 ____D C:\Windows\CSC
2022-06-02 23:51 - 2022-06-02 23:51 - 000000000 __SHD C:\Windows\BitLockerDiscoveryVolumeContents
2022-06-02 23:51 - 2022-06-02 23:51 - 000000000 ___SD C:\Windows\system32\AppV
2022-06-02 23:51 - 2022-06-02 23:51 - 000000000 ____D C:\Windows\RemotePackages
2022-06-02 23:51 - 2022-06-02 23:51 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection
2022-06-02 23:51 - 2019-12-07 11:10 - 000030831 _____ C:\Windows\Professional.xml
2022-06-02 22:17 - 2022-06-02 22:17 - 000000000 ____D C:\Windows\SysWOW64\XPSViewer
2022-06-02 22:17 - 2022-06-02 22:17 - 000000000 ____D C:\Program Files\Reference Assemblies
2022-06-02 22:17 - 2022-06-02 22:17 - 000000000 ____D C:\Program Files\MSBuild
2022-06-02 22:17 - 2022-06-02 22:17 - 000000000 ____D C:\Program Files (x86)\Reference Assemblies
2022-06-02 22:17 - 2022-06-02 22:17 - 000000000 ____D C:\Program Files (x86)\MSBuild
2022-06-02 22:10 - 2022-06-02 22:10 - 000000000 ____D C:\Windows\SystemTemp
2022-06-02 22:10 - 2022-06-02 22:10 - 000000000 ____D C:\ProgramData\ssh
2022-06-02 22:00 - 2022-06-02 22:00 - 001687040 _____ C:\Windows\system32\libcrypto.dll
2022-06-02 22:00 - 2022-06-02 22:00 - 000101704 _____ C:\Windows\SysWOW64\HvsiManagementApi.dll
2022-06-02 21:59 - 2022-06-02 21:59 - 000479744 _____ C:\Windows\system32\AssignedAccessCsp.dll
2022-06-02 21:59 - 2022-06-02 21:59 - 000188928 _____ C:\Windows\system32\uwfcfgmgmt.dll
2022-06-02 21:59 - 2022-06-02 21:59 - 000170496 _____ C:\Windows\system32\DeviceUpdateCenterCsp.dll
2022-06-02 21:59 - 2022-06-02 21:59 - 000158208 _____ C:\Windows\system32\uwfcsp.dll
2022-06-02 21:59 - 2022-06-02 21:59 - 000138056 _____ C:\Windows\system32\HvsiManagementApi.dll
2022-06-02 21:59 - 2022-06-02 21:59 - 000040960 _____ C:\Windows\system32\uwfservicingapi.dll
2022-06-02 21:58 - 2022-06-02 21:58 - 000095744 _____ C:\Windows\system32\VirtualMonitorManager.dll
2022-06-02 21:57 - 2022-06-02 21:57 - 000581120 _____ (Microsoft Corporation) C:\Windows\system32\PhotoScreensaver.scr
2022-06-02 21:57 - 2022-06-02 21:57 - 000499200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PhotoScreensaver.scr
2022-06-02 21:56 - 2022-06-02 21:56 - 002371072 _____ C:\Windows\system32\rdpnano.dll
2022-06-02 21:56 - 2022-06-02 21:56 - 000672768 _____ C:\Windows\system32\FsNVSDeviceSource.dll
2022-06-02 21:56 - 2022-06-02 21:56 - 000464384 _____ (curl, hxxps://curl.se/) C:\Windows\SysWOW64\curl.exe
2022-06-02 21:56 - 2022-06-02 21:56 - 000104448 _____ C:\Windows\system32\nettraceex.dll
2022-06-02 21:56 - 2022-06-02 21:56 - 000053760 _____ C:\Windows\SysWOW64\BWContextHandler.dll
2022-06-02 21:56 - 2022-06-02 21:56 - 000045880 _____ C:\Windows\system32\HvSocket.dll
2022-06-02 21:55 - 2022-06-02 21:55 - 000067072 _____ C:\Windows\system32\BWContextHandler.dll
2022-06-02 21:54 - 2022-06-02 21:54 - 003860832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rtmpltfm.dll
2022-06-02 21:54 - 2022-06-02 21:54 - 000980320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rtmpal.dll
2022-06-02 21:54 - 2022-06-02 21:54 - 000915296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rtmcodecs.dll
2022-06-02 21:54 - 2022-06-02 21:54 - 000732000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ortcengine.dll
2022-06-02 21:54 - 2022-06-02 21:54 - 000523776 _____ (curl, hxxps://curl.se/) C:\Windows\system32\curl.exe
2022-06-02 21:54 - 2022-06-02 21:54 - 000055376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rtmmvrortc.dll
2022-06-02 21:53 - 2022-06-02 21:53 - 000047472 _____ C:\Windows\SysWOW64\umpdc.dll
2022-06-02 21:53 - 2022-06-02 21:53 - 000039936 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll
2022-06-02 21:52 - 2022-06-02 21:52 - 002111488 _____ (Digimarc) C:\Windows\SysWOW64\DMRCDecoder.dll
2022-06-02 21:52 - 2022-06-02 21:52 - 001864192 _____ (The ICU Project) C:\Windows\SysWOW64\icu.dll
2022-06-02 21:52 - 2022-06-02 21:52 - 001333760 _____ C:\Windows\SysWOW64\TextInputMethodFormatter.dll
2022-06-02 21:52 - 2022-06-02 21:52 - 000611960 _____ C:\Windows\SysWOW64\TextShaping.dll
2022-06-02 21:52 - 2022-06-02 21:52 - 000468440 _____ C:\Windows\SysWOW64\WindowManagementAPI.dll
2022-06-02 21:52 - 2022-06-02 21:52 - 000266240 _____ C:\Windows\SysWOW64\Windows.Internal.UI.Shell.WindowTabManager.dll
2022-06-02 21:52 - 2022-06-02 21:52 - 000235520 _____ C:\Windows\SysWOW64\HeatCore.dll
2022-06-02 21:51 - 2022-06-02 21:51 - 001164288 _____ C:\Windows\system32\MBR2GPT.EXE
2022-06-02 21:51 - 2022-06-02 21:51 - 000363520 _____ C:\Windows\system32\Windows.Internal.UI.Shell.WindowTabManager.dll
2022-06-02 21:51 - 2022-06-02 21:51 - 000330752 _____ C:\Windows\SysWOW64\ssdm.dll
2022-06-02 21:51 - 2022-06-02 21:51 - 000240640 _____ C:\Windows\SysWOW64\CoreMas.dll
2022-06-02 21:51 - 2022-06-02 21:51 - 000223744 _____ C:\Windows\SysWOW64\TpmTool.exe
2022-06-02 21:51 - 2022-06-02 21:51 - 000010752 _____ C:\Windows\SysWOW64\agentactivationruntimestarter.exe
2022-06-02 21:49 - 2022-06-02 21:49 - 004898144 _____ (Microsoft Corporation) C:\Windows\system32\rtmpltfm.dll
2022-06-02 21:49 - 2022-06-02 21:49 - 001354080 _____ (Microsoft Corporation) C:\Windows\system32\rtmpal.dll
2022-06-02 21:49 - 2022-06-02 21:49 - 001091936 _____ (Microsoft Corporation) C:\Windows\system32\rtmcodecs.dll
2022-06-02 21:49 - 2022-06-02 21:49 - 001032544 _____ (Microsoft Corporation) C:\Windows\system32\ortcengine.dll
2022-06-02 21:49 - 2022-06-02 21:49 - 000060928 _____ C:\Windows\system32\runexehelper.exe
2022-06-02 21:49 - 2022-06-02 21:49 - 000056672 _____ (Microsoft Corporation) C:\Windows\system32\rtmmvrortc.dll
2022-06-02 21:49 - 2022-06-02 21:49 - 000048640 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll
2022-06-02 21:48 - 2022-06-02 21:48 - 002254336 _____ C:\Windows\system32\dwmscene.dll
2022-06-02 21:48 - 2022-06-02 21:48 - 000190976 _____ C:\Windows\system32\BthpanContextHandler.dll
2022-06-02 21:48 - 2022-06-02 21:48 - 000152064 _____ C:\Windows\system32\EoAExperiences.exe
2022-06-02 21:47 - 2022-06-02 21:47 - 002295296 _____ (Digimarc) C:\Windows\system32\DMRCDecoder.dll
2022-06-02 21:47 - 2022-06-02 21:47 - 002260480 _____ C:\Windows\system32\TextInputMethodFormatter.dll
2022-06-02 21:47 - 2022-06-02 21:47 - 002260480 _____ (The ICU Project) C:\Windows\system32\icu.dll
2022-06-02 21:47 - 2022-06-02 21:47 - 000706536 _____ C:\Windows\system32\TextShaping.dll
2022-06-02 21:47 - 2022-06-02 21:47 - 000657464 _____ C:\Windows\system32\WindowManagementAPI.dll
2022-06-02 21:47 - 2022-06-02 21:47 - 000306688 _____ C:\Windows\system32\HeatCore.dll
2022-06-02 21:47 - 2022-06-02 21:47 - 000232288 _____ C:\Windows\system32\containerdevicemanagement.dll
2022-06-02 21:47 - 2022-06-02 21:47 - 000093696 _____ C:\Windows\system32\Drivers\cimfs.sys
2022-06-02 21:47 - 2022-06-02 21:47 - 000029696 _____ (The ICU Project) C:\Windows\system32\icuuc.dll
2022-06-02 21:47 - 2022-06-02 21:47 - 000025088 _____ (The ICU Project) C:\Windows\system32\icuin.dll
2022-06-02 21:46 - 2022-06-02 21:46 - 000001370 _____ C:\Windows\system32\ThirdPartyNoticesBySHS.txt
2022-06-02 21:45 - 2022-06-02 21:45 - 004227116 _____ C:\Windows\system32\DefaultHrtfs.bin
2022-06-02 21:45 - 2022-06-02 21:45 - 000455168 _____ C:\Windows\system32\ssdm.dll
2022-06-02 21:45 - 2022-06-02 21:45 - 000288768 _____ C:\Windows\system32\Windows.Management.InprocObjects.dll
2022-06-02 21:45 - 2022-06-02 21:45 - 000287232 _____ C:\Windows\system32\CoreMas.dll
2022-06-02 21:45 - 2022-06-02 21:45 - 000272896 _____ C:\Windows\system32\TpmTool.exe
2022-06-02 21:45 - 2022-06-02 21:45 - 000162816 _____ C:\Windows\system32\DataStoreCacheDumpTool.exe
2022-06-02 21:45 - 2022-06-02 21:45 - 000089088 _____ C:\Windows\system32\windows.applicationmodel.conversationalagent.proxystub.dll
2022-06-02 21:45 - 2022-06-02 21:45 - 000074240 _____ C:\Windows\system32\rdsxvmaudio.dll
2022-06-02 21:45 - 2022-06-02 21:45 - 000073216 _____ C:\Windows\system32\windows.applicationmodel.conversationalagent.internal.proxystub.dll
2022-06-02 21:45 - 2022-06-02 21:45 - 000064552 _____ C:\Windows\system32\umpdc.dll
2022-06-02 21:45 - 2022-06-02 21:45 - 000013312 _____ C:\Windows\system32\agentactivationruntimestarter.exe
2022-06-02 21:44 - 2022-06-02 21:44 - 000197632 _____ C:\Windows\system32\IHDS.dll
2022-06-02 21:28 - 2022-06-22 13:31 - 098041856 _____ C:\Windows\system32\config\SOFTWARE

==================== Jeden miesiąc (zmodyfikowane) ==================

(Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.)

2022-06-23 01:05 - 2019-12-07 11:13 - 000000000 ____D C:\Windows\INF
2022-06-22 16:16 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2022-06-22 15:42 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\AppReadiness
2022-06-22 13:31 - 2019-12-07 11:03 - 000524288 _____ C:\Windows\system32\config\BBI
2022-06-22 09:40 - 2019-12-07 11:14 - 000000000 ___HD C:\Program Files\WindowsApps
2022-06-20 18:56 - 2019-12-07 11:14 - 000000000 ____D C:\Program Files\Common Files\microsoft shared
2022-06-20 02:35 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\LiveKernelReports
2022-06-19 23:27 - 2019-12-07 11:14 - 000000000 ___HD C:\Windows\ELAMBKUP
2022-06-19 23:27 - 2019-12-07 11:03 - 000032768 _____ C:\Windows\system32\config\ELAM
2022-06-19 22:45 - 2019-12-07 17:08 - 000784296 _____ C:\Windows\system32\perfh015.dat
2022-06-19 22:45 - 2019-12-07 17:08 - 000152192 _____ C:\Windows\system32\perfc015.dat
2022-06-19 22:45 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SystemResources
2022-06-19 22:45 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\DDFs
2022-06-19 22:45 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\bcastdvr
2022-06-19 22:45 - 2019-12-07 11:03 - 000000000 ____D C:\Windows\servicing
2022-06-19 22:45 - 2019-12-07 11:03 - 000000000 ____D C:\Windows\CbsTemp
2022-06-19 22:30 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\appcompat
2022-06-18 01:05 - 2019-12-07 11:14 - 000000000 ____D C:\Program Files\Windows Defender
2022-06-15 16:04 - 2019-12-07 11:14 - 000028672 _____ C:\Windows\system32\config\BCD-Template
2022-06-15 15:24 - 2019-12-07 11:14 - 000000000 ___RD C:\Windows\PrintDialog
2022-06-15 15:24 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\WinBioDatabase
2022-06-15 15:23 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\ServiceState
2022-06-15 15:08 - 2019-12-07 17:10 - 000000000 ____D C:\Windows\system32\FxsTmp
2022-06-15 15:08 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\spool
2022-06-15 15:07 - 2019-12-07 11:14 - 000000000 ___RD C:\Windows\ImmersiveControlPanel
2022-06-15 15:07 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\USOPrivate
2022-06-15 15:06 - 2019-12-07 11:14 - 000000000 ____D C:\Program Files\Windows NT
2022-06-02 23:51 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SystemApps
2022-06-02 23:51 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\security
2022-06-02 23:51 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\schemas
2022-06-02 23:51 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\PolicyDefinitions
2022-06-02 22:17 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\MUI
2022-06-02 22:17 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\MUI
2022-06-02 22:10 - 2019-12-07 17:11 - 000000000 ____D C:\Program Files\Windows Photo Viewer
2022-06-02 22:10 - 2019-12-07 17:11 - 000000000 ____D C:\Program Files (x86)\Windows Photo Viewer
2022-06-02 22:10 - 2019-12-07 17:09 - 000000000 ____D C:\Windows\system32\OpenSSH
2022-06-02 22:10 - 2019-12-07 11:14 - 000000000 ___SD C:\Windows\SysWOW64\F12
2022-06-02 22:10 - 2019-12-07 11:14 - 000000000 ___SD C:\Windows\SysWOW64\DiagSvcs
2022-06-02 22:10 - 2019-12-07 11:14 - 000000000 ___SD C:\Windows\system32\UNP
2022-06-02 22:10 - 2019-12-07 11:14 - 000000000 ___SD C:\Windows\system32\F12
2022-06-02 22:10 - 2019-12-07 11:14 - 000000000 ___SD C:\Windows\system32\DiagSvcs
2022-06-02 22:10 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\WinMetadata
2022-06-02 22:10 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\setup
2022-06-02 22:10 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\PerceptionSimulation
2022-06-02 22:10 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\oobe
2022-06-02 22:10 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\migwiz
2022-06-02 22:10 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\lv-LV
2022-06-02 22:10 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\lt-LT
2022-06-02 22:10 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\Keywords
2022-06-02 22:10 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\et-EE
2022-06-02 22:10 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\es-MX
2022-06-02 22:10 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\Dism
2022-06-02 22:10 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\Com
2022-06-02 22:10 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\AdvancedInstallers
2022-06-02 22:10 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\WinMetadata
2022-06-02 22:10 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\WinBioPlugIns
2022-06-02 22:10 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\SystemResetPlatform
2022-06-02 22:10 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\Sysprep
2022-06-02 22:10 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\ShellExperiences
2022-06-02 22:10 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\setup
2022-06-02 22:10 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\PerceptionSimulation
2022-06-02 22:10 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\oobe
2022-06-02 22:10 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\migwiz
2022-06-02 22:10 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\lv-LV
2022-06-02 22:10 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\lt-LT
2022-06-02 22:10 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\Keywords
2022-06-02 22:10 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\et-EE
2022-06-02 22:10 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\es-MX
2022-06-02 22:10 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\Dism
2022-06-02 22:10 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\Com
2022-06-02 22:10 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\appraiser
2022-06-02 22:10 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\AdvancedInstallers
2022-06-02 22:10 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\ShellExperiences
2022-06-02 22:10 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\ShellComponents
2022-06-02 22:10 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\Provisioning
2022-06-02 22:10 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\IME
2022-06-02 22:10 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\DiagTrack
2022-06-02 22:10 - 2019-12-07 11:14 - 000000000 ____D C:\Program Files\Common Files\System
2022-06-02 22:10 - 2019-12-07 11:14 - 000000000 ____D C:\Program Files (x86)\Windows Defender
2022-06-02 22:07 - 2019-12-07 17:11 - 000023552 _____ (Microsoft Corporation) C:\Windows\system32\OEMDefaultAssociations.dll
2022-06-02 22:07 - 2019-12-07 17:11 - 000020908 _____ C:\Windows\system32\OEMDefaultAssociations.xml

==================== Pliki w katalogu głównym wybranych folderów ========

2022-06-21 01:26 - 2022-06-22 19:11 - 037250048 _____ () C:\Users\DROZDZU_NEW\AppData\Local\SageThumbs.db3

==================== SigCheck ============================

(Brak automatycznej naprawy dla plików które nie przeszły weryfikacji.)

==================== Koniec FRST.txt ========================


Pobierz plik - link do postu