REKLAMA

FRST.txt

Jak usunąć adware i malware, które zainstalowały się mimo anulowania instalacji?

Już po raz kolejny proszę o pomoc, teraz tak jak napisałem stało się to nie z mojej winy, a tylko za moim pośrednictwem. :D Włączyła mi się instalacja takiego czegoś, wszedłem w opcje zaawansowane instalacji i zobaczyłem, że pełno tam mi się syfu zainstaluje jeśli kliknę "next". Tak więc kliknąłem zakończ, a to i tak mi się zainstalowało. Teraz mam pełno syfu na kompie. Adwcleaner i anti-malware nie dają sobie rady, bo to coś cały czas się mnoży. Co przeskanuje Adwcleanerem to ciągle jest coś nowego.


Pobierz plik - link do postu

Rezultaty skanowania Farbar Recovery Scan Tool (FRST) (x64) Wersja:12-12-2015 01
Uruchomiony przez DzaroD's (administrator) DZARODS (13-12-2015 21:27:47)
Uruchomiony z C:\Users\DzaroD's\Downloads
Załadowane profile: DzaroD's (Dostępne profile: DzaroD's)
Platform: Windows 7 Professional Service Pack 1 (X64) Język: Polski (Polska)
Internet Explorer Wersja 8 (Domyślna przeglądarka: IE)
Tryb startu: Normal
Instrukcja obsługi Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Procesy (filtrowane) =================

(Załączenie wejścia w fixlist spowoduje zamknięcie procesu. Powiązany plik nie zostanie przeniesiony.)

(AMD) C:\Windows\System32\atiesrxx.exe
(AMD) C:\Windows\System32\atieclxx.exe
(Shanghai Damo Network Sci. & Tech. Co. Ltd.) C:\Program Files (x86)\ADSafe\ADSvc.exe
() C:\Program Files\EslWire\service\WireHelperSvc.exe
(Malwarebytes) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe
(Malwarebytes) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
(Malwarebytes) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe
(Shanghai Damo Network Sci. & Tech. Co. Ltd.) C:\Program Files (x86)\ADSafe\ADSafe.exe
() C:\Program Files (x86)\screenSHU\screenSHU.exe
(Valve Corporation) E:\Program Files\steam\Steam.exe
(STA) C:\Program Files (x86)\MTV20151125\MTview.exe
(Advanced Micro Devices Inc.) C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\MOM.exe
(Raptr, Inc) C:\Program Files (x86)\Raptr\raptr.exe
(Advanced Micro Devices Inc.) C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\CCC.exe
(Disc Soft Ltd) C:\Program Files\DAEMON Tools Lite\DiscSoftBusService.exe
(Raptr, Inc) C:\Program Files (x86)\Raptr\raptr_im.exe
(Raptr Inc.) C:\Program Files (x86)\Raptr\raptr_ep64.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Shanghai Damo Network Sci. & Tech. Co. Ltd.) C:\Program Files (x86)\ADSafe\ADSafe64.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Valve Corporation) E:\Program Files\steam\bin\steamwebhelper.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(BitTorrent Inc.) C:\Users\DzaroD's\AppData\Roaming\uTorrent\uTorrent.exe
(BitTorrent Inc.) C:\Users\DzaroD's\AppData\Roaming\uTorrent\updates\3.4.5_41372\utorrentie.exe
(BitTorrent Inc.) C:\Users\DzaroD's\AppData\Roaming\uTorrent\updates\3.4.5_41372\utorrentie.exe


==================== Rejestr (filtrowane) ===========================

(Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.)

HKLM-x32\...\Run: [Raptr] = & gt; C:\Program Files (x86)\Raptr\raptrstub.exe [56080 2015-12-02] (Raptr, Inc)
HKLM-x32\...\Run: [StartCCC] = & gt; C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\amd64\CLIStart.exe [767176 2015-08-04] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [Tencent] = & gt; " C:\Program Files (x86)\Tencent\Tencent.exe " hxxp://down.baidu2016.com/qq/test.txt /start
HKLM-x32\...\Run: [MTview] = & gt; C:\Program Files (x86)\MTV20151125\MTView.exe [1875464 2015-11-25] (STA)
HKLM-x32\...\Run: [ QQPCTray] = & gt; " C:\Program Files (x86)\Tencent\QQPCMgr\11.1.16908.217\QQPCTRAY.EXE " /regrun /qqrepair
HKU\S-1-5-21-2450485321-3101969023-1679616943-1001\...\Run: [screenSHU] = & gt; C:\Program Files (x86)\screenSHU\screenSHU.exe [2112000 2013-09-04] ()
HKU\S-1-5-21-2450485321-3101969023-1679616943-1001\...\Run: [DAEMON Tools Lite Automount] = & gt; C:\Program Files\DAEMON Tools Lite\DTAgent.exe [4468056 2015-06-18] (Disc Soft Ltd)
HKU\S-1-5-21-2450485321-3101969023-1679616943-1001\...\Run: [Steam] = & gt; E:\Program Files\steam\steam.exe [3013200 2015-12-10] (Valve Corporation)
HKU\S-1-5-21-2450485321-3101969023-1679616943-1001\...\Run: [GoogleChromeAutoLaunch_F55BD2F5E1E4DA8CE5BC4BF76918F24A] = & gt; C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [799560 2015-12-04] (Google Inc.)
HKU\S-1-5-21-2450485321-3101969023-1679616943-1001\...\Run: [ESL Wire] = & gt; C:\Program Files\EslWire\wire.exe [3624448 2015-12-07] (Turtle Entertainment GmbH)
HKU\S-1-5-21-2450485321-3101969023-1679616943-1001\...\MountPoints2: D - D:\autorun.exe
HKU\S-1-5-21-2450485321-3101969023-1679616943-1001\...\MountPoints2: {8e3161c4-8aa9-11e5-ae2c-406186f925be} - D:\autorun.exe
HKU\S-1-5-21-2450485321-3101969023-1679616943-1001\...\MountPoints2: {9f206712-9353-11e5-889c-406186f925be} - O:\Setup.exe
ShellIconOverlayIdentifiers: [.QMDeskTopGCIcon] - & gt; {B7667919-3765-4815-A66D-98A09BE662D6} = & gt; Brak pliku

==================== Internet (filtrowane) ====================

(Załączenie wejścia w fixlist, w przypadku gdy jest to obiekt rejestru, spowoduje usunięcie go z rejestru lub przywrócenie jego domyślnej postaci.)

Hosts: W pliku Hosts jest więcej niż jedno wejście. Sprawdź sekcję Hosts w Addition.txt
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{427C7BB2-F05F-4471-B892-C85C9017AB77}: [DhcpNameServer] 192.168.1.1

Internet Explorer:
==================
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.999.com/i.html
HKU\S-1-5-21-2450485321-3101969023-1679616943-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.999.com/i.html
Filter: deflate - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\system32\urlmon.dll [2010-11-21] (Microsoft Corporation)
Filter-x32: deflate - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\SysWOW64\urlmon.dll [2010-11-21] (Microsoft Corporation)
Filter: gzip - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\system32\urlmon.dll [2010-11-21] (Microsoft Corporation)
Filter-x32: gzip - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\SysWOW64\urlmon.dll [2010-11-21] (Microsoft Corporation)
StartMenuInternet: IEXPLORE.EXE - iexplore.exe

FireFox:
========
FF Plugin-x32: @tools.google.com/Google Update;version=3 - & gt; C:\Program Files (x86)\Google\Update\1.3.29.1\npGoogleUpdate3.dll [2015-12-02] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 - & gt; C:\Program Files (x86)\Google\Update\1.3.29.1\npGoogleUpdate3.dll [2015-12-02] (Google Inc.)

Chrome:
=======
CHR HomePage: Default - & gt; hxxp://google.pl/
CHR Profile: C:\Users\DzaroD's\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Prezentacje Google) - C:\Users\DzaroD's\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-07-21]
CHR Extension: (Dokumenty Google) - C:\Users\DzaroD's\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-07-21]
CHR Extension: (Dysk Google) - C:\Users\DzaroD's\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-11-10]
CHR Extension: (YouTube) - C:\Users\DzaroD's\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-11-09]
CHR Extension: (Adblock Plus) - C:\Users\DzaroD's\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2015-11-25]
CHR Extension: (Steam inventory helper) - C:\Users\DzaroD's\AppData\Local\Google\Chrome\User Data\Default\Extensions\cmeakgjggjdlcpncigglobpjbkabhmjl [2015-11-23]
CHR Extension: (Google Search) - C:\Users\DzaroD's\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-11-10]
CHR Extension: (Arkusze Google) - C:\Users\DzaroD's\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-07-21]
CHR Extension: (LoungeDestroyer) - C:\Users\DzaroD's\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghahcnmfjfckcedfajbhekgknjdplfcl [2015-11-27]
CHR Extension: (Dokumenty Google offline) - C:\Users\DzaroD's\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2015-11-18]
CHR Extension: (Płatności w sklepie Chrome Web Store) - C:\Users\DzaroD's\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-09-06]
CHR Extension: (Gmail) - C:\Users\DzaroD's\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-07-21]
StartMenuInternet: Google Chrome - Chrome.exe

==================== Usługi (filtrowane) ========================

(Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)

R2 ADSafeSvc; C:\Program Files (x86)\ADSafe\ADSvc.exe [162808 2015-05-20] (Shanghai Damo Network Sci. & Tech. Co. Ltd.)
S2 appdrvrem01; C:\Windows\System32\appdrvrem01.exe [551896 2015-11-14] (Protection Technology)
R3 Disc Soft Lite Bus Service; C:\Program Files\DAEMON Tools Lite\DiscSoftBusService.exe [1268568 2015-06-18] (Disc Soft Ltd)
S3 EasyAntiCheat; C:\Windows\SysWOW64\EasyAntiCheat.exe [238376 2015-07-21] (EasyAntiCheat Ltd)
R2 EslWireHelper; C:\Program Files\EslWire\service\WireHelperSvc.exe [663056 2013-12-05] ()
R2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe [1513784 2015-10-05] (Malwarebytes)
R2 MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [1135416 2015-10-05] (Malwarebytes)
R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2009-07-14] (Microsoft Corporation)
S2 QQPCRTP; " C:\Program Files (x86)\Tencent\QQPCMgr\11.1.16908.217\QQPCRtp.exe " -r [X]

===================== Sterowniki (filtrowane) ==========================

(Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)

R1 appdrv01; C:\Windows\System32\Drivers\appdrv01.sys [3852976 2015-11-14] (Protection Technology)
R1 DMProtect; C:\Windows\System32\DRIVERS\DMProtect64.sys [28416 2015-07-10] ()
R3 dtlitescsibus; C:\Windows\System32\DRIVERS\dtlitescsibus.sys [30264 2015-11-12] (Disc Soft Ltd)
S3 ebdrv; C:\Windows\system32\drivers\evbda.sys [3286016 2009-06-10] (Broadcom Corporation)
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25816 2015-10-05] (Malwarebytes)
R3 MBAMSwissArmy; C:\Windows\system32\drivers\MBAMSwissArmy.sys [192216 2015-12-13] (Malwarebytes)
R3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [63704 2015-10-05] (Malwarebytes Corporation)
R1 softaal; \??\C:\Program Files (x86)\Tencent\QQPCMgr\11.1.16908.217\softaal64.sys [X]

==================== NetSvcs (filtrowane) ===================

(Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)


==================== Jeden miesiąc - utworzone pliki i foldery ========

(Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.)

2015-12-13 21:27 - 2015-12-13 21:28 - 00011156 _____ C:\Users\DzaroD's\Downloads\FRST.txt
2015-12-13 21:26 - 2015-12-13 21:27 - 00000000 ____D C:\FRST
2015-12-13 21:26 - 2015-12-13 21:26 - 02369536 _____ (Farbar) C:\Users\DzaroD's\Downloads\FRST64.exe
2015-12-13 21:15 - 2015-12-13 21:25 - 00000000 ____D C:\AdwCleaner
2015-12-13 21:15 - 2015-12-13 21:15 - 01740288 _____ C:\Users\DzaroD's\Downloads\adwcleaner_5.025.exe
2015-12-13 21:09 - 2015-12-13 21:09 - 00000000 ____D C:\ProgramData\TXPCMGR
2015-12-13 14:28 - 2015-12-13 14:52 - 00000000 ____D C:\ProgramData\Malwarebytes' Anti-Malware (portable)
2015-12-13 14:27 - 2015-12-13 14:52 - 00000000 ____D C:\Users\DzaroD's\Desktop\mbar
2015-12-13 14:27 - 2015-12-13 14:27 - 16563352 _____ (Malwarebytes Corp.) C:\Users\DzaroD's\Downloads\mbar-1.09.3.1001.exe
2015-12-13 14:24 - 2015-12-13 14:37 - 00000080 _____ C:\Users\DzaroD's\Desktop\uTorrent.lnk
2015-12-13 14:24 - 2015-12-13 14:37 - 00000080 _____ C:\Users\DzaroD's\Desktop\mb_wfas.exe - skrót.lnk
2015-12-13 14:17 - 2015-12-13 14:17 - 00005120 _____ C:\Users\DzaroD's\AppData\Roaming\GiftBag.db
2015-12-13 14:16 - 2015-12-13 14:16 - 00087864 ____N (电脑管家) C:\Windows\system32\Drivers\TFsFltX64.sys
2015-12-13 14:12 - 2015-12-13 21:21 - 00000000 ____D C:\Users\DzaroD's\AppData\Roaming\ADSafe3
2015-12-13 14:12 - 2015-12-13 14:38 - 00001873 _____ C:\Users\DzaroD's\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\.lnk
2015-12-13 14:12 - 2015-12-13 14:12 - 00003156 _____ C:\Windows\System32\Tasks\{12C352A4-DAD1-46F2-BFF0-84EAB5B22052}
2015-12-13 14:12 - 2015-12-13 14:12 - 00000000 ____D C:\Users\DzaroD's\AppData\Roaming\dissect
2015-12-13 14:12 - 2015-12-13 14:12 - 00000000 ____D C:\Users\DzaroD's\.android
2015-12-13 14:12 - 2015-12-13 14:12 - 00000000 ____D C:\Program Files (x86)\ADSafe
2015-12-13 14:12 - 2015-07-10 06:31 - 00028416 _____ C:\Windows\system32\Drivers\DMProtect64.sys
2015-12-13 14:11 - 2015-12-13 21:26 - 00192216 _____ (Malwarebytes) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2015-12-13 14:11 - 2015-12-13 14:39 - 00001132 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2015-12-13 14:11 - 2015-12-13 14:27 - 00109272 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbamchameleon.sys
2015-12-13 14:11 - 2015-12-13 14:11 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2015-12-13 14:11 - 2015-12-13 14:11 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ĂŔÍĽäŻŔŔ
2015-12-13 14:11 - 2015-12-13 14:11 - 00000000 ____D C:\ProgramData\Malwarebytes
2015-12-13 14:11 - 2015-12-13 14:11 - 00000000 ____D C:\Program Files (x86)\MTV20151125
2015-12-13 14:11 - 2015-12-13 14:11 - 00000000 ____D C:\Program Files (x86)\Malwarebytes Anti-Malware
2015-12-13 14:11 - 2015-10-05 09:50 - 00063704 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
2015-12-13 14:11 - 2015-10-05 09:50 - 00025816 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbam.sys
2015-12-13 14:10 - 2015-12-13 14:10 - 22908888 _____ (Malwarebytes ) C:\Users\DzaroD's\Downloads\mbam-setup-2.2.0.1024.exe
2015-12-13 14:10 - 2015-12-13 14:10 - 00000000 ____D C:\Users\DzaroD's\AppData\Roaming\Opera Software
2015-12-13 14:10 - 2015-12-13 14:10 - 00000000 ____D C:\Users\DzaroD's\AppData\Local\Opera Software
2015-12-13 14:09 - 2015-12-13 14:12 - 00000000 ____D C:\Program Files (x86)\Opera
2015-12-13 13:53 - 2015-12-13 21:25 - 00000000 ____D C:\Users\DzaroD's\AppData\LocalLow\uTorrent
2015-12-13 13:53 - 2015-12-13 13:53 - 00048426 _____ C:\Users\DzaroD's\Downloads\Mass Effect 2 Complete Edition -2010- [DUBBING PL] [POLISH REPACK GTX BOX Team] [iso] [marcinc33].torrent
2015-12-12 15:03 - 2015-12-12 15:02 - 00299864 _____ (Microsoft Corporation) C:\Users\DzaroD's\Desktop\dxwebsetup-feb2010.exe
2015-12-12 15:02 - 2015-12-12 15:02 - 00299864 _____ (Microsoft Corporation) C:\Users\DzaroD's\Downloads\dxwebsetup-feb2010.exe
2015-12-12 15:02 - 2015-12-12 15:02 - 00000000 ____D C:\Windows\SysWOW64\directx
2015-12-07 21:49 - 2015-12-10 23:35 - 00000564 _____ C:\Users\DzaroD's\Desktop\dbl.txt
2015-12-07 19:08 - 2015-12-07 19:08 - 00000036 _____ C:\Users\DzaroD's\Documents\double.txt
2015-12-01 20:10 - 2015-12-05 00:04 - 00000321 _____ C:\Users\DzaroD's\Desktop\Nowy dokument tekstowy.txt
2015-11-30 20:49 - 2015-12-13 21:20 - 00000000 ____D C:\Users\DzaroD's\AppData\Local\ESL Wire Game Client
2015-11-30 20:49 - 2015-12-13 14:39 - 00000827 _____ C:\Users\Public\Desktop\ESL Wire.lnk
2015-11-30 20:49 - 2015-12-10 14:57 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ESL Wire
2015-11-30 20:49 - 2015-12-10 14:57 - 00000000 ____D C:\Program Files\EslWire
2015-11-30 20:49 - 2015-11-30 20:49 - 00000000 ____D C:\ProgramData\ESL Wire
2015-11-30 20:32 - 2015-11-30 20:32 - 00939656 _____ (Turtle Entertainment GmbH) C:\Users\DzaroD's\Downloads\ESLWireSetup-1.18.0.8101.exe
2015-11-30 20:32 - 2015-11-30 20:32 - 00939656 _____ (Turtle Entertainment GmbH) C:\Users\DzaroD's\Downloads\ESLWireSetup-1.18.0.8101 (1).exe
2015-11-29 15:50 - 2015-11-29 15:50 - 00357324 _____ C:\Users\DzaroD's\Downloads\O26_Faktura_indywidualna_000-044-6102-7227_15_11_F008_Z.pdf
2015-11-28 22:58 - 2015-11-28 22:58 - 00503106 _____ C:\Users\DzaroD's\Downloads\pobrane.htm
2015-11-28 14:21 - 2015-12-13 14:37 - 00001281 _____ C:\Users\DzaroD's\Desktop\Cisco Packet Tracer Student.lnk
2015-11-28 14:21 - 2015-11-28 14:22 - 00000000 ____D C:\Users\DzaroD's\Cisco Packet Tracer 6.2sv
2015-11-28 14:21 - 2015-11-28 14:21 - 00000194 _____ C:\Users\DzaroD's\.packettracer
2015-11-28 14:21 - 2015-11-28 14:21 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Cisco Packet Tracer Student
2015-11-28 14:21 - 2015-11-28 14:21 - 00000000 ____D C:\Program Files (x86)\Cisco Packet Tracer 6.2sv
2015-11-28 14:15 - 2015-11-28 14:20 - 178610037 _____ C:\Users\DzaroD's\Downloads\-Getintopc.com-Cisco_Packet_Tracer_6.2_With_Labs.zip
2015-11-28 14:12 - 2015-11-28 14:15 - 00000000 ____D C:\Program Files (x86)\Packet Tracer 5.0
2015-11-28 14:09 - 2015-11-28 14:12 - 96757806 _____ C:\Users\DzaroD's\Downloads\PacketTracer5_setup.zip
2015-11-28 14:09 - 2015-11-28 14:09 - 00411895 _____ C:\Users\DzaroD's\Downloads\Desktop.7z
2015-11-28 13:52 - 2015-11-28 13:52 - 00667500 _____ C:\Users\DzaroD's\Downloads\game_menus.zip
2015-11-28 13:36 - 2015-11-28 13:36 - 00589270 _____ C:\Users\DzaroD's\Downloads\Viking Conquest - Spolszczenie R1.rar
2015-11-28 13:36 - 2015-11-28 13:36 - 00589270 _____ C:\Users\DzaroD's\Downloads\Viking Conquest - Spolszczenie R1 (1).rar
2015-11-25 21:22 - 2015-11-28 14:00 - 00000000 ____D C:\Users\DzaroD's\Documents\Mount & Blade Warband Savegames
2015-11-25 21:20 - 2015-11-25 22:28 - 00000000 ____D C:\Users\DzaroD's\AppData\Roaming\Mount & Blade Warband
2015-11-25 21:20 - 2015-11-25 21:24 - 00000000 ____D C:\Users\DzaroD's\Documents\Mount & Blade Warband
2015-11-25 21:20 - 2015-11-25 21:20 - 00000000 ____D C:\ProgramData\SkidRow
2015-11-25 18:56 - 2015-12-13 14:39 - 00001317 _____ C:\Users\Public\Desktop\Mount and Blade Warband - Viking Conquest Reforged Edition.lnk
2015-11-25 18:56 - 2015-11-25 18:56 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TaleWorlds Entertainment
2015-11-25 17:59 - 2015-11-25 17:59 - 00055030 _____ C:\Users\DzaroD's\Downloads\Mount and Blade Warband Viking Conquest Reforged Edition SKIDROW.torrent
2015-11-24 15:09 - 2015-11-24 15:09 - 00036880 _____ C:\Users\DzaroD's\Downloads\backupsettings (1).conf
2015-11-24 15:09 - 2015-11-23 15:46 - 00037440 _____ C:\Users\DzaroD's\Desktop\backupsettings.conf
2015-11-23 15:46 - 2015-11-23 15:46 - 00037440 _____ C:\Users\DzaroD's\Downloads\backupsettings.conf
2015-11-22 18:15 - 2015-11-22 18:15 - 00060484 _____ C:\Users\DzaroD's\Downloads\cfg.rar
2015-11-22 18:13 - 2015-11-22 18:13 - 00060484 _____ C:\Users\DzaroD's\Desktop\cfg.rar
2015-11-22 18:07 - 2015-11-28 10:44 - 00000000 ____D C:\Users\DzaroD's\Desktop\demo
2015-11-22 18:06 - 2015-11-22 18:07 - 44377360 _____ C:\Users\DzaroD's\Downloads\7f4d64e3-fab6-49e2-9bd3-d18f417d30c2.dem
2015-11-21 13:36 - 2015-11-21 13:36 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Catalyst Control Center
2015-11-21 13:36 - 2015-11-21 13:36 - 00000000 ____D C:\ProgramData\ATI
2015-11-21 13:33 - 2015-08-04 07:28 - 10094152 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atidxx32.dll
2015-11-21 13:33 - 2015-08-04 07:28 - 07408936 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiumdag.dll
2015-11-21 13:33 - 2015-08-04 07:28 - 01193904 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\aticfx32.dll
2015-11-21 13:33 - 2015-08-04 07:28 - 00133016 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiuxpag.dll
2015-11-21 13:33 - 2015-08-04 07:28 - 00102616 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiu9pag.dll
2015-11-21 13:33 - 2015-08-04 07:28 - 00078432 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atimpc64.dll
2015-11-21 13:33 - 2015-08-04 07:28 - 00078432 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdpcom64.dll
2015-11-21 13:33 - 2015-08-04 07:28 - 00071704 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atimpc32.dll
2015-11-21 13:33 - 2015-08-04 07:28 - 00071704 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdpcom32.dll
2015-11-21 13:33 - 2015-08-04 07:25 - 00297672 _____ (Advanced Micro Devices) C:\Windows\system32\Drivers\amdacpksd.sys
2015-11-21 13:33 - 2015-08-04 07:23 - 21622784 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\Drivers\atikmdag.sys
2015-11-21 13:33 - 2015-08-04 07:19 - 00235008 _____ C:\Windows\system32\clinfo.exe
2015-11-21 13:33 - 2015-08-04 07:18 - 47785472 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\amdocl64.dll
2015-11-21 13:33 - 2015-08-04 07:09 - 00065024 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll
2015-11-21 13:33 - 2015-08-04 07:09 - 00059392 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll
2015-11-21 13:33 - 2015-08-04 06:58 - 27535872 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\amdocl12cl64.dll
2015-11-21 13:33 - 2015-08-04 05:12 - 00127488 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\mantle64.dll
2015-11-21 13:33 - 2015-08-04 05:12 - 00113664 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\mantle32.dll
2015-11-21 13:33 - 2015-08-04 05:11 - 06477312 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdmantle64.dll
2015-11-21 13:33 - 2015-08-04 04:43 - 05068288 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdmantle32.dll
2015-11-21 13:33 - 2015-08-04 04:21 - 00093696 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\mantleaxl64.dll
2015-11-21 13:33 - 2015-08-04 04:21 - 00086528 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\mantleaxl32.dll
2015-11-21 13:33 - 2015-08-04 03:55 - 30752256 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atio6axx.dll
2015-11-21 13:33 - 2015-08-04 03:32 - 25299968 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\atioglxx.dll
2015-11-21 13:33 - 2015-08-04 03:25 - 00660928 _____ C:\Windows\SysWOW64\atiapfxx.blb
2015-11-21 13:33 - 2015-08-04 03:25 - 00660928 _____ C:\Windows\system32\atiapfxx.blb
2015-11-21 13:33 - 2015-08-04 03:25 - 00367104 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atiapfxx.exe
2015-11-21 13:33 - 2015-08-04 03:25 - 00062464 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\aticalrt64.dll
2015-11-21 13:33 - 2015-08-04 03:25 - 00052224 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\aticalrt.dll
2015-11-21 13:33 - 2015-08-04 03:24 - 15716864 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\aticaldd64.dll
2015-11-21 13:33 - 2015-08-04 03:24 - 00055808 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\aticalcl64.dll
2015-11-21 13:33 - 2015-08-04 03:24 - 00049152 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\aticalcl.dll
2015-11-21 13:33 - 2015-08-04 03:21 - 14302208 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\aticaldd.dll
2015-11-21 13:33 - 2015-08-04 03:21 - 00050688 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdmmcl6.dll
2015-11-21 13:33 - 2015-08-04 03:21 - 00039424 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdmmcl.dll
2015-11-21 13:33 - 2015-08-04 03:16 - 03437632 _____ C:\Windows\system32\atiumd6a.cap
2015-11-21 13:33 - 2015-08-04 03:07 - 00672768 _____ (AMD) C:\Windows\system32\atieclxx.exe
2015-11-21 13:33 - 2015-08-04 03:07 - 00204800 _____ C:\Windows\system32\amdgfxinfo64.dll
2015-11-21 13:33 - 2015-08-04 03:07 - 00189952 _____ C:\Windows\SysWOW64\amdgfxinfo32.dll
2015-11-21 13:33 - 2015-08-04 03:07 - 00160256 _____ C:\Windows\system32\atieah64.exe
2015-11-21 13:33 - 2015-08-04 03:07 - 00143872 _____ C:\Windows\SysWOW64\atieah32.exe
2015-11-21 13:33 - 2015-08-04 03:07 - 00029696 _____ (AMD) C:\Windows\system32\atimuixx.dll
2015-11-21 13:33 - 2015-08-04 03:06 - 00246784 _____ (AMD) C:\Windows\system32\atiesrxx.exe
2015-11-21 13:33 - 2015-08-04 03:05 - 00190976 _____ (AMD) C:\Windows\system32\atitmm64.dll
2015-11-21 13:33 - 2015-08-04 03:00 - 03471376 _____ C:\Windows\SysWOW64\atiumdva.cap
2015-11-21 13:33 - 2015-08-04 02:43 - 00926720 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\atiadlxx.dll
2015-11-21 13:33 - 2015-08-04 02:43 - 00075264 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atig6pxx.dll
2015-11-21 13:33 - 2015-08-04 02:43 - 00069632 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiglpxx.dll
2015-11-21 13:33 - 2015-08-04 02:43 - 00069632 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiglpxx.dll
2015-11-21 13:33 - 2015-08-04 02:42 - 00665088 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\Drivers\atikmpag.sys
2015-11-21 13:33 - 2015-08-04 02:42 - 00156672 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atig6txx.dll
2015-11-21 13:33 - 2015-08-04 02:37 - 00102912 _____ C:\Windows\system32\hsa-thunk64.dll
2015-11-21 13:33 - 2015-08-04 02:37 - 00102400 _____ C:\Windows\SysWOW64\hsa-thunk.dll
2015-11-21 13:33 - 2015-08-04 02:35 - 00043520 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\Drivers\ati2erec.dll
2015-11-21 13:33 - 2015-07-15 11:20 - 00103424 _____ (Advanced Micro Devices) C:\Windows\system32\DelayAPO.dll
2015-11-21 13:33 - 2015-07-15 11:20 - 00096256 _____ (Advanced Micro Devices) C:\Windows\system32\Drivers\AtihdW76.sys
2015-11-21 13:33 - 2015-07-13 16:19 - 00169152 _____ C:\Windows\system32\ativce03.dat
2015-11-21 13:33 - 2015-07-13 16:19 - 00167456 _____ C:\Windows\system32\amde31a.dat
2015-11-21 13:33 - 2015-07-10 08:40 - 00833798 _____ C:\Windows\system32\amdicdxx.dat
2015-11-21 13:33 - 2015-07-06 20:33 - 00100816 _____ C:\Windows\system32\ativce02.dat
2015-11-20 00:09 - 2015-11-20 00:09 - 00513766 _____ C:\Users\DzaroD's\Desktop\Nowy obraz mapy bitowej (3).bmp
2015-11-19 22:42 - 2015-12-13 14:38 - 00000960 _____ C:\Users\DzaroD's\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\osu!.lnk
2015-11-19 22:42 - 2015-12-13 14:37 - 00000952 _____ C:\Users\DzaroD's\Desktop\osu!.lnk
2015-11-19 22:42 - 2015-11-19 22:42 - 00000000 ____D C:\Users\DzaroD's\AppData\Roaming\AMD
2015-11-19 22:41 - 2015-11-23 21:40 - 00000000 ____D C:\Users\DzaroD's\AppData\Local\osu!
2015-11-19 22:41 - 2015-11-19 22:41 - 00000072 _____ C:\Users\DzaroD's\Downloads\update_log.txt
2015-11-19 22:41 - 2015-11-19 22:41 - 00000000 ____D C:\Users\DzaroD's\Downloads\Localisation
2015-11-19 22:40 - 2015-11-19 22:41 - 03284536 _____ (ppy) C:\Users\DzaroD's\Downloads\osu!install.exe
2015-11-18 20:15 - 2015-11-18 20:16 - 00000027 _____ C:\Users\DzaroD's\Desktop\mac.txt
2015-11-18 19:16 - 2015-11-18 19:17 - 00000414 __RSH C:\ProgramData\ntuser.pol
2015-11-17 18:59 - 2015-11-17 18:59 - 00012615 _____ C:\Users\DzaroD's\Downloads\Kosztorys.ods
2015-11-14 16:26 - 2015-11-14 16:26 - 03852976 _____ (Protection Technology) C:\Windows\system32\Drivers\appdrv01.sys
2015-11-14 16:26 - 2015-11-14 16:26 - 00551896 _____ (Protection Technology) C:\Windows\system32\appdrvrem01.exe
2015-11-14 16:00 - 2015-11-14 16:00 - 00001247 _____ C:\Users\DzaroD's\Desktop\mb_wfas.exe — skrót.lnk
2015-11-14 15:27 - 2015-11-14 15:49 - 00000000 ____D C:\Users\DzaroD's\AppData\Roaming\Mount & Blade With Fire and Sword
2015-11-14 15:27 - 2015-11-14 15:45 - 00000000 ____D C:\Users\DzaroD's\Documents\Mount & Blade With Fire and Sword
2015-11-14 15:23 - 2015-12-13 14:37 - 00000917 _____ C:\Users\DzaroD's\Desktop\Ogniem i Mieczem - Dzikie Pola.lnk
2015-11-14 15:21 - 2010-05-26 11:41 - 01998168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_43.dll
2015-11-14 15:19 - 2015-11-14 15:19 - 00000000 ____D C:\Users\DzaroD's\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ogniem i Mieczem - Dzikie Pola
2015-11-14 13:39 - 2015-11-14 13:39 - 00041165 _____ C:\Users\DzaroD's\Downloads\Ogniem i Mieczem Dzikie Pola-2010-[PL] [ iso].torrent
2015-11-13 23:19 - 2015-11-13 23:19 - 00078575 _____ C:\Users\DzaroD's\Downloads\Mount and Blade- Ogniem i Mieczem [PL] [ mds].torrent

==================== Jeden miesiąc - zmodyfikowane pliki i foldery ========

(Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.)

2015-12-13 21:28 - 2015-11-10 22:37 - 00000000 ____D C:\Users\DzaroD's\AppData\Roaming\uTorrent
2015-12-13 21:26 - 2009-07-14 04:20 - 00000000 ____D C:\Windows
2015-12-13 21:23 - 2015-07-21 11:10 - 00001048 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-12-13 21:21 - 2015-07-21 11:34 - 00000000 ____D C:\Users\DzaroD's\AppData\Roaming\Raptr
2015-12-13 21:20 - 2015-11-11 10:09 - 00000000 ____D C:\Users\DzaroD's\AppData\Local\screenSHU
2015-12-13 21:18 - 2015-07-21 11:10 - 00001044 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2015-12-13 21:18 - 2009-07-14 06:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2015-12-13 21:17 - 2009-07-14 05:45 - 00016656 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2015-12-13 21:17 - 2009-07-14 05:45 - 00016656 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2015-12-13 14:39 - 2015-11-12 16:25 - 00001831 _____ C:\Users\Public\Desktop\DAEMON Tools Lite.lnk
2015-12-13 14:39 - 2015-11-10 19:13 - 00001031 _____ C:\Users\Public\Desktop\TeamSpeak 3 Client.lnk
2015-12-13 14:39 - 2015-11-10 15:40 - 00000859 _____ C:\Users\Public\Desktop\New Z.lnk
2015-12-13 14:39 - 2015-07-21 11:11 - 00002201 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2015-12-13 14:39 - 2015-07-21 10:52 - 00001333 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Media Center.lnk
2015-12-13 14:39 - 2015-07-21 10:52 - 00001314 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows DVD Maker.lnk
2015-12-13 14:39 - 2009-07-14 05:57 - 00001511 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk
2015-12-13 14:39 - 2009-07-14 05:57 - 00001340 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Anytime Upgrade.lnk
2015-12-13 14:39 - 2009-07-14 05:57 - 00001292 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sidebar.lnk
2015-12-13 14:39 - 2009-07-14 05:57 - 00001234 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\XPS Viewer.lnk
2015-12-13 14:39 - 2009-07-14 05:54 - 00001198 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Fax and Scan.lnk
2015-12-13 14:38 - 2015-11-11 09:55 - 00001069 _____ C:\Users\DzaroD's\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\screenSHU.lnk
2015-12-13 14:38 - 2015-07-21 10:59 - 00001479 _____ C:\Users\DzaroD's\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2015-12-13 14:38 - 2015-07-21 10:59 - 00001439 _____ C:\Users\DzaroD's\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer (64-bit).lnk
2015-12-13 14:38 - 2009-07-14 06:01 - 00001218 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Default Programs.lnk
2015-12-13 14:38 - 2009-07-14 05:49 - 00001246 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Windows Update.lnk
2015-12-13 14:37 - 2015-11-11 09:55 - 00001039 _____ C:\Users\DzaroD's\Desktop\screenSHU.lnk
2015-12-13 14:37 - 2015-11-10 19:25 - 00000920 _____ C:\Users\DzaroD's\Desktop\Pobrane.lnk
2015-12-13 14:37 - 2015-07-21 11:53 - 00001004 _____ C:\Users\DzaroD's\Desktop\Steam.lnk
2015-12-13 14:23 - 2009-07-14 05:45 - 00275536 _____ C:\Windows\system32\FNTCACHE.DAT
2015-12-13 14:21 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\Branding
2015-12-13 14:20 - 2015-11-12 19:23 - 00000000 ____D C:\Program Files\Phoenix Beta
2015-12-13 14:19 - 2015-07-21 11:10 - 00057952 _____ C:\Users\DzaroD's\AppData\Local\GDIPFONTCACHEV1.DAT
2015-12-13 14:12 - 2015-07-21 10:58 - 00000000 ____D C:\Users\DzaroD's
2015-12-12 20:37 - 2015-11-10 19:26 - 00000000 ____D C:\Users\DzaroD's\AppData\Roaming\TS3Client
2015-12-12 15:06 - 2011-04-12 14:21 - 00739694 _____ C:\Windows\system32\perfh015.dat
2015-12-12 15:06 - 2011-04-12 14:21 - 00155268 _____ C:\Windows\system32\perfc015.dat
2015-12-12 15:06 - 2009-07-14 06:13 - 01668226 _____ C:\Windows\system32\PerfStringBackup.INI
2015-12-12 15:06 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\inf
2015-12-12 14:25 - 2015-11-11 19:17 - 00007600 _____ C:\Users\DzaroD's\AppData\Local\Resmon.ResmonCfg
2015-12-02 23:00 - 2015-07-21 11:34 - 00000000 ____D C:\Program Files (x86)\Raptr
2015-12-02 17:18 - 2015-07-21 11:10 - 00004044 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2015-12-02 17:18 - 2015-07-21 11:10 - 00003792 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2015-11-21 13:33 - 2015-07-21 11:27 - 00000000 ____D C:\Program Files\AMD
2015-11-21 12:57 - 2015-07-21 11:27 - 00000000 ____D C:\AMD
2015-11-18 19:16 - 2009-07-14 04:20 - 00000000 ___HD C:\Windows\system32\GroupPolicy
2015-11-16 15:04 - 2015-07-21 11:03 - 00000000 ____D C:\Users\DzaroD's\AppData\Local\Steam
2015-11-14 15:15 - 2015-11-11 21:12 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2015-11-14 15:14 - 2015-11-12 16:25 - 00000000 ____D C:\Users\DzaroD's\AppData\Roaming\DAEMON Tools Lite
2015-11-13 16:42 - 2009-07-14 06:09 - 00000000 ____D C:\Windows\System32\Tasks\WPD

==================== Pliki w katalogu głównym wybranych folderów =======

2015-12-13 14:17 - 2015-12-13 14:17 - 0005120 _____ () C:\Users\DzaroD's\AppData\Roaming\GiftBag.db
2015-11-11 19:17 - 2015-12-12 14:25 - 0007600 _____ () C:\Users\DzaroD's\AppData\Local\Resmon.ResmonCfg
2015-11-11 21:13 - 2015-11-11 21:13 - 0000000 ____H () C:\ProgramData\DP45977C.lfl

Niektóre pliki w TEMP:
====================
C:\Users\DzaroD's\AppData\Local\Temp\amd-catalyst-15.7-with-dotnet45-win7-64bit.exe
C:\Users\DzaroD's\AppData\Local\Temp\AutoDetectUtilApp.exe
C:\Users\DzaroD's\AppData\Local\Temp\EslWireSetup-1.18.0.8101-x64.exe
C:\Users\DzaroD's\AppData\Local\Temp\EslWireSetup-1.19.0.8185-x64.exe
C:\Users\DzaroD's\AppData\Local\Temp\Opera_NI_stable.exe
C:\Users\DzaroD's\AppData\Local\Temp\raptrpatch.exe
C:\Users\DzaroD's\AppData\Local\Temp\raptr_stub.exe
C:\Users\DzaroD's\AppData\Local\Temp\sqlite3.dll
C:\Users\DzaroD's\AppData\Local\Temp\tmpE2CC.exe
C:\Users\DzaroD's\AppData\Local\Temp\Uninstall.exe
C:\Users\DzaroD's\AppData\Local\Temp\vcredist_x64.exe
C:\Users\DzaroD's\AppData\Local\Temp\ws_bak.dll
C:\Users\DzaroD's\AppData\Local\Temp\_isDF1F.exe


==================== Bamital & volsnap =================

(Brak automatycznej naprawy dla plików które nie przeszły weryfikacji.)

C:\Windows\system32\winlogon.exe = & gt; Plik podpisany cyfrowo
C:\Windows\system32\wininit.exe = & gt; Plik podpisany cyfrowo
C:\Windows\SysWOW64\wininit.exe = & gt; Plik podpisany cyfrowo
C:\Windows\explorer.exe = & gt; Plik podpisany cyfrowo
C:\Windows\SysWOW64\explorer.exe = & gt; Plik podpisany cyfrowo
C:\Windows\system32\svchost.exe = & gt; Plik podpisany cyfrowo
C:\Windows\SysWOW64\svchost.exe = & gt; Plik podpisany cyfrowo
C:\Windows\system32\services.exe = & gt; Plik podpisany cyfrowo
C:\Windows\system32\User32.dll = & gt; Plik podpisany cyfrowo
C:\Windows\SysWOW64\User32.dll = & gt; Plik podpisany cyfrowo
C:\Windows\system32\userinit.exe = & gt; Plik podpisany cyfrowo
C:\Windows\SysWOW64\userinit.exe = & gt; Plik podpisany cyfrowo
C:\Windows\system32\rpcss.dll = & gt; Plik podpisany cyfrowo
C:\Windows\system32\dnsapi.dll = & gt; Plik podpisany cyfrowo
C:\Windows\SysWOW64\dnsapi.dll = & gt; Plik podpisany cyfrowo
C:\Windows\system32\Drivers\volsnap.sys = & gt; Plik podpisany cyfrowo


LastRegBack: 2015-12-11 17:43

==================== Koniec FRST.txt ============================