REKLAMA

FRST.txt

(FRST) Analiza logów - komputer wolno działa po ściągnięciu pliku

Proszę:


Pobierz plik - link do postu

Rezultaty skanowania Farbar Recovery Scan Tool (FRST) (x64) Wersja: 09.01.2019 01
Uruchomiony przez Kuba (administrator) KUBA-PC (12-01-2019 08:55:11)
Uruchomiony z C:\Users\Kuba\Desktop
Załadowane profile: Kuba (Dostępne profile: Kuba)
Platform: Windows 7 Home Premium Service Pack 1 (X64) Język: Polski (Polska)
Internet Explorer Wersja 8 (Domyślna przeglądarka: Opera)
Tryb startu: Normal
Instrukcja obsługi Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Procesy (filtrowane) =================

(Załączenie wejścia w fixlist spowoduje zamknięcie procesu. Powiązany plik nie zostanie przeniesiony.)

(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe
(Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe
(Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe
(Windows (R) Win 7 DDK provider) C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\AdminService.exe
(Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(Intel Corporation) C:\Windows\System32\IPROSetMonitor.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe
(Electronic Arts) C:\Program Files (x86)\Origin\OriginWebHelperService.exe
(Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvContainer\nvcontainer.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvContainer\nvcontainer.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\ShadowPlay\nvsphelper64.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe
(Atheros Communications) C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\BtvStack.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Epic Games, Inc.) C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe
(BitTorrent Inc.) C:\Users\Kuba\AppData\Roaming\uTorrent\uTorrent.exe
(Creative Technology Ltd) C:\Program Files (x86)\Creative\Sound Blaster Cinema\Sound Blaster Cinema\SBCinema.exe
(Power Software Ltd) C:\Program Files\PowerISO\PWRISOVM.EXE
(BitTorrent Inc.) C:\Users\Kuba\AppData\Roaming\uTorrent\updates\3.5.5_44954\utorrentie.exe
(BitTorrent Inc.) C:\Users\Kuba\AppData\Roaming\uTorrent\updates\3.5.5_44954\utorrentie.exe
(Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malwarek\MBAMService.exe
(Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malwarek\mbamtray.exe
(Opera Software) C:\Program Files\Opera\57.0.3098.116\opera.exe
(Opera Software) C:\Program Files\Opera\57.0.3098.116\opera_crashreporter.exe
(Opera Software) C:\Program Files\Opera\57.0.3098.116\opera.exe
(Opera Software) C:\Program Files\Opera\57.0.3098.116\opera.exe
(Opera Software) C:\Program Files\Opera\57.0.3098.116\opera.exe
(Opera Software) C:\Program Files\Opera\57.0.3098.116\opera.exe
(Opera Software) C:\Program Files\Opera\57.0.3098.116\opera.exe
(Opera Software) C:\Program Files\Opera\57.0.3098.116\opera.exe
(Opera Software) C:\Program Files\Opera\57.0.3098.116\opera.exe
(Opera Software) C:\Program Files\Opera\57.0.3098.116\opera.exe

==================== Rejestr (filtrowane) ===========================

(Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.)

HKLM\...\Run: [MBCfg64] = & gt; C:\Windows\system32\RunDLL32.exe C:\Windows\system32\MBCfg64.dll,RunDLLEntry MBCfg64
HKLM\...\Run: [RTHDVCPL] = & gt; C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13425224 2013-03-05] (Realtek Semiconductor)
HKLM\...\Run: [AdobeAAMUpdater-1.0] = & gt; C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [509936 2018-04-11] (Adobe Systems Incorporated)
HKLM\...\Run: [AdobeGCInvoker-1.0] = & gt; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [2675176 2018-12-13] (Adobe Systems, Incorporated)
HKLM-x32\...\Run: [Sound Blaster Cinema] = & gt; C:\Program Files (x86)\Creative\Sound Blaster Cinema\Sound Blaster Cinema\SBCinema.exe [711680 2012-11-29] (Creative Technology Ltd)
HKLM-x32\...\Run: [PWRISOVM.EXE] = & gt; C:\Program Files\PowerISO\PWRISOVM.EXE [456160 2018-06-17] (Power Software Ltd)
HKLM\...\Policies\Explorer\Run: [BtvStack] = & gt; C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\BtvStack.exe [134784 2014-07-31] (Atheros Communications)
HKU\S-1-5-21-65760608-956781261-2002539316-1000\...\Run: [Steam] = & gt; C:\Program Files (x86)\Steam\steam.exe [3133216 2019-01-05] (Valve Corporation)
HKU\S-1-5-21-65760608-956781261-2002539316-1000\...\Run: [EpicGamesLauncher] = & gt; C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe [35184016 2019-01-11] (Epic Games, Inc.)
HKU\S-1-5-21-65760608-956781261-2002539316-1000\...\Run: [uTorrent] = & gt; C:\Users\Kuba\AppData\Roaming\uTorrent\uTorrent.exe [1739960 2018-12-22] (BitTorrent Inc.)
HKLM\Software\Microsoft\Active Setup\Installed Components: [ & gt; {60B49E34-C7CC-11D0-8953-00A0C90347FF}] - & gt; C:\Windows\System32\iedkcs32.dll [2010-11-21] (Microsoft Corporation)
HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [ & gt; {60B49E34-C7CC-11D0-8953-00A0C90347FF}] - & gt; C:\Windows\SysWOW64\iedkcs32.dll [2010-11-21] (Microsoft Corporation)
HKLM\Software\...\Authentication\Credential Providers: [{ACFC407B-266C-8504-8DAE-F3E276336E4B}] - & gt; C:\Windows\system32\AthCredentialProvider.dll [2014-07-31] (Qualcomm®Atheros®)
HKLM\Software\...\Authentication\Credential Provider Filters: [{ACFC407B-266C-8504-8DAE-F3E276336E4B}] - & gt; C:\Windows\system32\AthCredentialProvider.dll [2014-07-31] (Qualcomm®Atheros®)

==================== Internet (filtrowane) ====================

(Załączenie wejścia w fixlist, w przypadku gdy jest to obiekt rejestru, spowoduje usunięcie go z rejestru lub przywrócenie jego domyślnej postaci.)

Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{A838E681-957A-40BE-8D4D-A81226F2CAE0}: [DhcpNameServer] 192.168.1.1

Internet Explorer:
==================
HKU\S-1-5-21-65760608-956781261-2002539316-1000\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://www.msn.com/pl-pl/?ocid=iehp
BHO: Office Document Cache Handler - & gt; {B4F3A835-0E21-4959-BA22-42B3008E02FF} - & gt; C:\Program Files\Microsoft Office\root\Office16\URLREDIR.DLL [2018-11-30] (Microsoft Corporation)
BHO-x32: Skype for Business Browser Helper - & gt; {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - & gt; C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll [2018-11-30] (Microsoft Corporation)
BHO-x32: Office Document Cache Handler - & gt; {B4F3A835-0E21-4959-BA22-42B3008E02FF} - & gt; C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\URLREDIR.DLL [2018-11-30] (Microsoft Corporation)
Handler: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2018-11-30] (Microsoft Corporation)
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2018-11-30] (Microsoft Corporation)
Handler: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2018-11-30] (Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2018-11-30] (Microsoft Corporation)
Handler: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2018-11-30] (Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2018-11-30] (Microsoft Corporation)
Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2018-11-30] (Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2018-11-30] (Microsoft Corporation)
Filter: deflate - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\system32\urlmon.dll [2010-11-21] (Microsoft Corporation)
Filter-x32: deflate - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\SysWOW64\urlmon.dll [2010-11-21] (Microsoft Corporation)
Filter: gzip - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\system32\urlmon.dll [2010-11-21] (Microsoft Corporation)
Filter-x32: gzip - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\SysWOW64\urlmon.dll [2010-11-21] (Microsoft Corporation)

FireFox:
========
FF Plugin: @microsoft.com/SharePoint,version=14.0 - & gt; C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2018-09-10] (Microsoft Corporation)
FF Plugin: @videolan.org/vlc,version=3.0.6 - & gt; C:\Program Files\VideoLAN\VLC\npvlc.dll [2019-01-10] (VideoLAN)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - & gt; C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2018-09-10] (Microsoft Corporation)
FF Plugin-x32: @nvidia.com/3DVision - & gt; C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2018-11-29] (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming - & gt; C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2018-11-29] (NVIDIA Corporation)

Opera:
=======
OPR Extension: (AdBlock) - C:\Users\Kuba\AppData\Roaming\Opera Software\Opera Stable\Extensions\aobdicepooefnbaeokijohmhjlleamfj [2018-07-17]
OPR Extension: (Adblocker for Youtube™) - C:\Users\Kuba\AppData\Roaming\Opera Software\Opera Stable\Extensions\dmglmkdgnbnenakgmchjfkmlpmeaccio [2018-07-28]
OPR Extension: (convert2mp3.net Online Video Converter) - C:\Users\Kuba\AppData\Roaming\Opera Software\Opera Stable\Extensions\kefimjmcofjhaphjiadipfoojljnoinn [2018-07-20]

==================== Usługi (filtrowane) ====================

(Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)

R2 AdobeUpdateService; C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe [818136 2018-09-13] (Adobe Inc.)
R2 AGMService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe [2917864 2018-12-13] (Adobe Systems, Incorporated)
R2 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [2709480 2018-12-13] (Adobe Systems, Incorporated)
R2 AtherosSvc; C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\adminservice.exe [322176 2014-07-31] (Windows (R) Win 7 DDK provider) [Brak podpisu cyfrowego]
S4 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [7356680 2018-10-03] ()
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [9646240 2018-12-07] (Microsoft Corporation)
S3 Creative ALchemy AL6 Licensing Service; C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\AL6Licensing.exe [79360 2018-07-06] (Creative Labs) [Brak podpisu cyfrowego]
S3 Creative Audio Engine Licensing Service; C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\CTAELicensing.exe [79360 2018-07-06] (Creative Labs) [Brak podpisu cyfrowego]
S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [777856 2018-10-23] (EasyAntiCheat Ltd)
R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malwarek\mbamservice.exe [6347056 2018-09-19] (Malwarebytes)
R2 NvContainerLocalSystem; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [518080 2017-10-11] (NVIDIA Corporation)
S3 NvContainerNetworkService; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [518080 2017-10-11] (NVIDIA Corporation)
S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2270528 2018-12-04] (Electronic Arts)
R2 Origin Web Helper Service; C:\Program Files (x86)\Origin\OriginWebHelperService.exe [3131208 2018-12-04] (Electronic Arts)
R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2009-07-14] (Microsoft Corporation)
S4 WsAppService; C:\Program Files (x86)\Wondershare\WAF\2.4.3.236\WsAppService.exe [495840 2018-01-26] (Wondershare)
R2 NVDisplay.ContainerLocalSystem; " C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe " -s NVDisplay.ContainerLocalSystem -f " C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log " -l 3 -d " C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem " -r -p 30000
R2 NvTelemetryContainer; " C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe " -s NvTelemetryContainer -f " C:\ProgramData\NVIDIA\NvTelemetryContainer.log " -l 3 -d " C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\plugins " -r

===================== Sterowniki (filtrowane) ======================

(Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)

S3 BTATH_LWFLT; C:\Windows\System32\DRIVERS\btath_lwflt.sys [77464 2014-07-31] (Qualcomm Atheros)
R3 e1dexpress; C:\Windows\System32\DRIVERS\e1d62x64.sys [495888 2013-04-23] (Intel Corporation)
R3 MBAMSwissArmy; C:\Windows\System32\Drivers\mbamswissarmy.sys [261032 2019-01-12] (Malwarebytes)
S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [30144 2017-10-11] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [50624 2017-10-11] (NVIDIA Corporation)
R3 nvvhci; C:\Windows\System32\DRIVERS\nvvhci.sys [74576 2018-11-29] (NVIDIA Corporation)
S3 qcusbser; C:\Windows\System32\DRIVERS\qcusbser.sys [254520 2017-03-15] (QUALCOMM Incorporated)

==================== NetSvcs (filtrowane) ===================

(Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)


==================== Jeden miesiąc - utworzone pliki i foldery ========

(Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.)

2019-01-12 08:55 - 2019-01-12 08:55 - 000015089 _____ C:\Users\Kuba\Desktop\FRST.txt
2019-01-12 08:45 - 2019-01-12 08:45 - 000000000 ____D C:\ProgramData\CheckPoint
2019-01-12 08:41 - 2019-01-12 08:41 - 000261032 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbamswissarmy.sys
2019-01-12 08:41 - 2019-01-12 08:41 - 000001876 _____ C:\Users\Public\Desktop\Malwarebytes.lnk
2019-01-12 08:41 - 2019-01-12 08:41 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes
2019-01-12 08:41 - 2019-01-12 08:41 - 000000000 ____D C:\ProgramData\Malwarebytes
2019-01-12 08:41 - 2018-12-04 08:09 - 000152688 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbae64.sys
2019-01-12 04:40 - 2019-01-12 04:51 - 000000000 ____D C:\Users\Kuba\AppData\Roaming\vlc
2019-01-12 04:39 - 2019-01-12 04:39 - 000000871 _____ C:\Users\Public\Desktop\VLC media player.lnk
2019-01-12 04:39 - 2019-01-12 04:39 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
2019-01-12 04:39 - 2019-01-12 04:39 - 000000000 ____D C:\Program Files\VideoLAN
2019-01-12 04:11 - 2019-01-12 04:11 - 000056307 _____ C:\Users\Kuba\Desktop\dupaflixgrab.txt
2019-01-12 04:05 - 2019-01-12 04:05 - 000001174 _____ C:\Users\Public\Desktop\FlixGrab+.lnk
2019-01-12 04:05 - 2019-01-12 04:05 - 000000000 ____D C:\Users\Kuba\AppData\Local\DigiFlix LLC
2019-01-12 04:05 - 2019-01-12 04:05 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DigiFlix LLC
2019-01-12 04:04 - 2019-01-12 04:05 - 000000000 ____D C:\Users\Kuba\AppData\Roaming\DigiFlix LLC
2019-01-12 04:04 - 2019-01-12 04:05 - 000000000 ____D C:\Program Files (x86)\DigiFlix LLC
2019-01-12 03:56 - 2019-01-12 03:56 - 000017746 _____ C:\Users\Kuba\Downloads\[Devil-Torrents.pl] FlixGrab+ 1.3.4.146 Premium (x32_x64)[ENG][Crack] + Portable.torrent
2019-01-12 01:34 - 2019-01-12 04:24 - 000000000 ____D C:\Users\Kuba\Downloads\Command and Conquer 4 Tiberian Twilight - ELAMIGOS
2019-01-12 01:34 - 2019-01-12 01:34 - 000140597 _____ C:\Users\Kuba\Downloads\[Devil-Torrents.pl] Command & Conquer 4_ Tiberian Twilight 2010 [MULTi10-PL] [ISO] [ELAMIGOS].torrent
2019-01-12 01:22 - 2019-01-12 01:38 - 000000000 ____D C:\Users\Kuba\Downloads\Command and Conquer Generals Deluxe Edition - ELAMIGOS
2019-01-12 01:21 - 2019-01-12 01:21 - 000082124 _____ C:\Users\Kuba\Downloads\[Devil-Torrents.pl] Command & Conquer_ Generals - Deluxe Edition 2003 V1.8_V1.4 [1920x1080] [DLC + 350 Maps No-Official] [MULTi6-PL] [ISO] [ELAMIGOS].torrent
2019-01-11 21:23 - 2019-01-11 21:24 - 000282390 _____ C:\Users\Kuba\Documents\agata.psd
2019-01-11 21:19 - 2019-01-11 22:14 - 000000000 ____D C:\Users\Kuba\Desktop\Na mp3
2019-01-11 00:27 - 2019-01-11 00:27 - 000000000 ___HD C:\Program Files\Common Files\EAInstaller
2019-01-10 23:53 - 2019-01-11 00:19 - 000000000 ____D C:\Program Files (x86)\FIFA19
2019-01-10 23:26 - 2019-01-10 23:26 - 000000000 ____D C:\Users\Kuba\Desktop\fifa
2019-01-10 23:24 - 2019-01-10 23:24 - 026355391 _____ C:\Users\Kuba\Documents\photo.psd
2019-01-10 22:18 - 2019-01-10 22:18 - 000000000 ____D C:\Users\Kuba\AppData\LocalLow\Adobe
2019-01-10 22:08 - 2019-01-10 22:14 - 000000000 ____D C:\Users\Kuba\Desktop\mój messenger
2019-01-10 22:04 - 2019-01-12 08:45 - 000000000 ____D C:\Users\Kuba\Desktop\pliki do photoshop
2019-01-10 19:44 - 2019-01-10 22:14 - 000000000 ____D C:\Users\Kuba\Downloads\Fifa.19-CPY
2019-01-10 19:43 - 2019-01-10 19:43 - 000058030 _____ C:\Users\Kuba\Downloads\[Devil-Torrents.pl] FIFA 19 (2018) [MULTi12-PL] [License_CPY] [DVD9] [ISO] .torrent
2019-01-10 14:05 - 2019-01-10 14:05 - 000003546 _____ C:\Windows\System32\Tasks\AdobeGCInvoker-1.0-Kuba-PC-Kuba
2019-01-10 13:53 - 2019-01-10 13:53 - 000000000 ____D C:\Program Files (x86)\Starth
2019-01-10 13:49 - 2019-01-10 21:54 - 000000000 ____D C:\Users\Kuba\AppData\Roaming\Adobe
2019-01-10 13:49 - 2019-01-10 13:49 - 000001040 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Photoshop CC 2019.lnk
2019-01-10 13:49 - 2019-01-10 13:49 - 000000000 ____D C:\Users\Kuba\Documents\Adobe
2019-01-10 13:45 - 2019-01-10 13:48 - 000000000 ____D C:\Program Files\Common Files\Adobe
2019-01-10 13:45 - 2019-01-10 13:45 - 000000000 ____D C:\Program Files\Adobe
2019-01-10 13:45 - 2019-01-10 13:45 - 000000000 ____D C:\Program Files (x86)\Adobe
2019-01-10 13:44 - 2019-01-10 13:46 - 000000000 ____D C:\ProgramData\Adobe
2019-01-10 13:41 - 2019-01-10 13:41 - 000994760 _____ (Microsoft Corporation) C:\Windows\system32\ucrtbase.dll
2019-01-10 13:41 - 2019-01-10 13:41 - 000922432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ucrtbase.dll
2019-01-10 13:41 - 2019-01-10 13:41 - 000066400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-private-l1-1-0.dll
2019-01-10 13:41 - 2019-01-10 13:41 - 000063840 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-private-l1-1-0.dll
2019-01-10 13:41 - 2019-01-10 13:41 - 000022368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-math-l1-1-0.dll
2019-01-10 13:41 - 2019-01-10 13:41 - 000020832 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-math-l1-1-0.dll
2019-01-10 13:41 - 2019-01-10 13:41 - 000019808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-multibyte-l1-1-0.dll
2019-01-10 13:41 - 2019-01-10 13:41 - 000019808 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-multibyte-l1-1-0.dll
2019-01-10 13:41 - 2019-01-10 13:41 - 000017760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-string-l1-1-0.dll
2019-01-10 13:41 - 2019-01-10 13:41 - 000017760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-stdio-l1-1-0.dll
2019-01-10 13:41 - 2019-01-10 13:41 - 000017760 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-string-l1-1-0.dll
2019-01-10 13:41 - 2019-01-10 13:41 - 000017760 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-stdio-l1-1-0.dll
2019-01-10 13:41 - 2019-01-10 13:41 - 000016224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-runtime-l1-1-0.dll
2019-01-10 13:41 - 2019-01-10 13:41 - 000016224 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-runtime-l1-1-0.dll
2019-01-10 13:41 - 2019-01-10 13:41 - 000015712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-convert-l1-1-0.dll
2019-01-10 13:41 - 2019-01-10 13:41 - 000015712 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-convert-l1-1-0.dll
2019-01-10 13:41 - 2019-01-10 13:41 - 000014176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-time-l1-1-0.dll
2019-01-10 13:41 - 2019-01-10 13:41 - 000014176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localization-l1-2-0.dll
2019-01-10 13:41 - 2019-01-10 13:41 - 000014176 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-time-l1-1-0.dll
2019-01-10 13:41 - 2019-01-10 13:41 - 000014176 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-2-0.dll
2019-01-10 13:41 - 2019-01-10 13:41 - 000013664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-filesystem-l1-1-0.dll
2019-01-10 13:41 - 2019-01-10 13:41 - 000013664 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-filesystem-l1-1-0.dll
2019-01-10 13:41 - 2019-01-10 13:41 - 000012640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-process-l1-1-0.dll
2019-01-10 13:41 - 2019-01-10 13:41 - 000012640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-heap-l1-1-0.dll
2019-01-10 13:41 - 2019-01-10 13:41 - 000012640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-conio-l1-1-0.dll
2019-01-10 13:41 - 2019-01-10 13:41 - 000012640 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-process-l1-1-0.dll
2019-01-10 13:41 - 2019-01-10 13:41 - 000012640 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-heap-l1-1-0.dll
2019-01-10 13:41 - 2019-01-10 13:41 - 000012640 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-conio-l1-1-0.dll
2019-01-10 13:41 - 2019-01-10 13:41 - 000012128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-utility-l1-1-0.dll
2019-01-10 13:41 - 2019-01-10 13:41 - 000012128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-locale-l1-1-0.dll
2019-01-10 13:41 - 2019-01-10 13:41 - 000012128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-environment-l1-1-0.dll
2019-01-10 13:41 - 2019-01-10 13:41 - 000012128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-synch-l1-2-0.dll
2019-01-10 13:41 - 2019-01-10 13:41 - 000012128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-1.dll
2019-01-10 13:41 - 2019-01-10 13:41 - 000012128 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-utility-l1-1-0.dll
2019-01-10 13:41 - 2019-01-10 13:41 - 000012128 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-locale-l1-1-0.dll
2019-01-10 13:41 - 2019-01-10 13:41 - 000012128 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-environment-l1-1-0.dll
2019-01-10 13:41 - 2019-01-10 13:41 - 000012128 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-2-0.dll
2019-01-10 13:41 - 2019-01-10 13:41 - 000012128 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-1.dll
2019-01-10 13:41 - 2019-01-10 13:41 - 000011616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-xstate-l2-1-0.dll
2019-01-10 13:41 - 2019-01-10 13:41 - 000011616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-timezone-l1-1-0.dll
2019-01-10 13:41 - 2019-01-10 13:41 - 000011616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l2-1-0.dll
2019-01-10 13:41 - 2019-01-10 13:41 - 000011616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-2-0.dll
2019-01-10 13:41 - 2019-01-10 13:41 - 000011616 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l2-1-0.dll
2019-01-10 13:41 - 2019-01-10 13:41 - 000011616 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-timezone-l1-1-0.dll
2019-01-10 13:41 - 2019-01-10 13:41 - 000011616 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l2-1-0.dll
2019-01-10 13:41 - 2019-01-10 13:41 - 000011616 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-2-0.dll
2019-01-09 18:55 - 2019-01-09 19:23 - 000000000 ____D C:\Users\Kuba\Desktop\f1
2019-01-09 12:47 - 2019-01-09 14:06 - 000000000 ____D C:\Users\Kuba\Downloads\F1.2018-CODEX
2019-01-09 12:46 - 2019-01-09 12:46 - 000077055 _____ C:\Users\Kuba\Downloads\[Devil-Torrents.pl] F1.2018 (2018) [MULTi10-PL] [CODEX] [DVD9] [ISO].torrent
2019-01-09 00:15 - 2019-01-09 11:00 - 1638021415 ____R C:\Users\Kuba\Downloads\Adobe Photoshop CC 2019 Build 20.0.1.17836_Preactivated - 64bit.rar
2019-01-09 00:15 - 2019-01-09 00:15 - 000016382 _____ C:\Users\Kuba\Downloads\[Devil-Torrents.pl] Adobe Photoshop CC 2019 Build 20.0.1.17836 - 64bit [PL] [Preactivated] [azjatycki].torrent
2019-01-08 15:34 - 2019-01-08 15:38 - 000000000 ____D C:\Users\Kuba\AppData\LocalLow\Red Dot Games
2019-01-08 15:34 - 2019-01-08 15:34 - 000000000 ____D C:\Users\Public\Documents\Steam
2019-01-08 15:09 - 2019-01-12 08:32 - 000000840 _____ C:\Users\Kuba\Desktop\Редактор Car Mechanic Simulator 2018.lnk
2019-01-08 15:09 - 2019-01-08 15:09 - 000000916 _____ C:\Users\Kuba\Desktop\Car Mechanic Simulator 2018.lnk
2019-01-08 15:09 - 2019-01-08 15:09 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\by.xatab
2019-01-08 13:03 - 2019-01-08 13:03 - 000000000 ____D C:\Users\Kuba\AppData\Roaming\SmartSteamEmu
2019-01-08 12:55 - 2019-01-08 13:04 - 000000000 ____D C:\Program Files (x86)\City Car Driving
2019-01-08 12:51 - 2019-01-08 13:05 - 000000000 ____D C:\Users\Kuba\Downloads\Car Mechanic Simulator 2018 by xatab
2019-01-08 12:51 - 2019-01-08 12:51 - 000029859 _____ C:\Users\Kuba\Downloads\[Devil-Torrents.pl] Car Mechanic Simulator 2018 (2017) [MULTi12-PL] [RePack] [xatab] [v 1.5.25.2 + DLCs] [DVD9] [.exe_.bin].torrent
2019-01-08 12:45 - 2019-01-08 12:47 - 000000000 ____D C:\Users\Kuba\Downloads\[ELECTRO-TORRENT]City Car Driving [REPACK-QOOB] [EXE]
2019-01-08 12:45 - 2019-01-08 12:45 - 000029480 _____ C:\Users\Kuba\Downloads\[Devil-Torrents.pl] City Car Driving 2016 - V1.5.5.3 Build_15327 [MULTi16-PL] [REPACK-QOOOB] [EXE].torrent
2019-01-06 00:13 - 2019-01-06 00:13 - 000002040 _____ C:\Users\Public\Desktop\FL Studio 12 (64bit).lnk
2019-01-06 00:13 - 2019-01-06 00:13 - 000002024 _____ C:\Users\Public\Desktop\FL Studio 12.lnk
2019-01-06 00:13 - 2019-01-06 00:13 - 000000000 ____D C:\Users\Kuba\AppData\Roaming\Image-Line
2019-01-06 00:13 - 2019-01-06 00:13 - 000000000 ____D C:\Program Files\Image-Line
2019-01-06 00:04 - 2019-01-06 00:06 - 703063342 _____ C:\Users\Kuba\Downloads\flstudio_12.5.1.165.zip
2019-01-06 00:02 - 2019-01-06 00:02 - 000017891 _____ C:\Users\Kuba\Downloads\[Devil-Torrents.pl] IMAGE-LINE FL STUDIO PRODUCER EDITION 20.0.1 BUILD 451 RC1 [ENG] (2).torrent
2019-01-05 13:24 - 2019-01-05 13:24 - 000290116 _____ C:\Users\Kuba\Downloads\program-nauczania-to-jest-fizyka.pdf
2019-01-04 00:14 - 2019-01-04 00:14 - 000014526 _____ C:\Users\Kuba\Downloads\[Devil-Torrents.pl] FL Studio Producer Edition 12.5.0 Build 59 - 32bit _ 64bit [ENG] [RegKey-R2R] [azjatycki].torrent
2019-01-04 00:12 - 2019-01-04 00:12 - 000017891 _____ C:\Users\Kuba\Downloads\[Devil-Torrents.pl] IMAGE-LINE FL STUDIO PRODUCER EDITION 20.0.1 BUILD 451 RC1 [ENG] (1).torrent
2019-01-04 00:11 - 2019-01-04 00:11 - 000017891 _____ C:\Users\Kuba\Downloads\[Devil-Torrents.pl] IMAGE-LINE FL STUDIO PRODUCER EDITION 20.0.1 BUILD 451 RC1 [ENG].torrent
2019-01-02 19:46 - 2019-01-03 14:03 - 000002603 _____ C:\Users\Kuba\Desktop\Maly ksiaze agata.txt
2018-12-30 20:43 - 2018-12-30 20:43 - 000001134 _____ C:\Users\Kuba\Desktop\ASIO4ALL v2 Instruction Manual.lnk
2018-12-30 20:43 - 2018-12-30 20:43 - 000000000 ____D C:\Users\Kuba\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ASIO4ALL v2
2018-12-30 20:43 - 2018-12-30 20:43 - 000000000 ____D C:\Program Files (x86)\ASIO4ALL v2
2018-12-30 20:39 - 2018-12-30 20:39 - 000000000 ____D C:\Program Files (x86)\VstPlugins
2018-12-30 20:33 - 2018-12-30 14:21 - 004482621 _____ C:\Users\Kuba\Desktop\bit.flp
2018-12-30 20:20 - 2018-12-30 20:23 - 736559864 _____ (Image-Line) C:\Users\Kuba\Desktop\flstudio_win_20.1.1.795.exe
2018-12-30 14:47 - 2018-12-30 14:47 - 000007605 _____ C:\Users\Kuba\AppData\Local\Resmon.ResmonCfg
2018-12-30 09:08 - 2019-01-12 04:55 - 000000000 ____D C:\Users\Kuba\Desktop\FRST-OlderVersion
2018-12-29 23:25 - 2018-12-29 23:25 - 000000294 _____ C:\Users\Kuba\Desktop\Super Meat Boy.url
2018-12-29 10:11 - 2018-12-29 10:19 - 000066118 _____ C:\Windows\ntbtlog.txt
2018-12-29 09:57 - 2018-12-29 09:57 - 007320272 _____ (Malwarebytes) C:\Users\Kuba\Desktop\adwcleaner_7.2.6.0.exe
2018-12-29 09:39 - 2019-01-12 08:34 - 000000000 ____D C:\Users\Kuba\AppData\LocalLow\uTorrent
2018-12-29 05:32 - 2019-01-12 08:55 - 000000000 ____D C:\FRST
2018-12-29 05:13 - 2018-12-29 05:40 - 000018961 _____ C:\Users\Kuba\Desktop\logi i hosts.rar
2018-12-29 05:07 - 2019-01-12 04:55 - 002425856 _____ (Farbar) C:\Users\Kuba\Desktop\FRST64.exe
2018-12-29 04:40 - 2018-12-29 04:49 - 1919942656 _____ C:\Users\Kuba\Downloads\linuxmint-19.1-xfce-32bit.iso
2018-12-28 00:21 - 2018-12-28 00:21 - 000000000 ____D C:\Users\Kuba\Desktop\Na dysk
2018-12-20 23:11 - 2018-12-20 23:11 - 000063702 _____ C:\Users\Kuba\Downloads\TR_DETAILS_20181220231148.pdf
2018-12-18 15:26 - 2018-12-30 20:26 - 000000000 ____D C:\Users\Kuba\Documents\Image-Line
2018-12-18 15:22 - 2019-01-06 00:13 - 000000000 ____D C:\Users\Kuba\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Image-Line
2018-12-18 15:22 - 2018-12-30 20:39 - 000002040 _____ C:\Users\Public\Desktop\FL Studio 20.lnk
2018-12-18 15:22 - 2018-12-18 15:22 - 000000000 ____D C:\Program Files\Common Files\VST2
2018-12-18 15:22 - 2018-12-18 15:22 - 000000000 ____D C:\Program Files\Common Files\Propellerhead Software
2018-12-18 15:21 - 2019-01-06 00:13 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Image-Line
2018-12-18 15:17 - 2019-01-06 00:13 - 000000000 ____D C:\Program Files (x86)\Image-Line
2018-12-18 15:07 - 2018-12-18 15:11 - 736581344 _____ (Image-Line) C:\Users\Kuba\Documents\flstudio_win_20.1.785.exe
2018-12-17 19:56 - 2018-12-17 19:56 - 000000000 ____D C:\Users\Kuba\ansel

==================== Jeden miesiąc - zmodyfikowane pliki i foldery ========

(Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.)

2019-01-12 08:55 - 2018-07-14 23:55 - 000000000 ____D C:\Users\Kuba\AppData\Roaming\uTorrent
2019-01-12 08:41 - 2018-11-16 23:22 - 000000000 ____D C:\Program Files\Malwarebytes
2019-01-12 08:35 - 2018-07-14 23:56 - 000000000 ___SD C:\Users\Kuba\AppData\LocalLow\Temp
2019-01-12 08:35 - 2018-07-06 21:01 - 000000000 ____D C:\Program Files (x86)\Steam
2019-01-12 08:34 - 2018-07-06 20:24 - 000000000 ____D C:\ProgramData\NVIDIA
2019-01-12 08:33 - 2009-07-14 06:08 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2019-01-12 08:32 - 2009-07-14 05:45 - 000016640 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2019-01-12 08:32 - 2009-07-14 05:45 - 000016640 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2019-01-12 01:00 - 2009-07-14 04:20 - 000000000 ____D C:\Windows\inf
2019-01-11 20:55 - 2018-09-22 21:35 - 000000000 ____D C:\ProgramData\Origin
2019-01-11 00:43 - 2018-09-20 23:58 - 000001552 _____ C:\Users\Kuba\Documents\agatka poetka.txt
2019-01-11 00:29 - 2018-09-22 21:35 - 000000000 ____D C:\Users\Kuba\AppData\Roaming\Origin
2019-01-11 00:26 - 2018-07-06 20:23 - 000000000 ____D C:\ProgramData\Package Cache
2019-01-11 00:25 - 2018-09-22 21:40 - 000000000 ____D C:\Program Files (x86)\Origin Games
2019-01-10 22:18 - 2018-07-06 20:55 - 000000000 ____D C:\Program Files\Opera
2019-01-10 21:58 - 2018-07-27 22:42 - 000000000 ____D C:\Users\Kuba\AppData\Local\Adobe
2019-01-10 20:48 - 2018-09-01 20:31 - 000000000 ____D C:\Users\Kuba\Documents\Euro Truck Simulator 2
2019-01-10 13:48 - 2018-07-06 21:12 - 000739694 _____ C:\Windows\system32\perfh015.dat
2019-01-10 13:48 - 2018-07-06 21:12 - 000155268 _____ C:\Windows\system32\perfc015.dat
2019-01-10 13:48 - 2009-07-14 06:13 - 001668226 _____ C:\Windows\system32\PerfStringBackup.INI
2019-01-08 15:29 - 2018-07-12 21:38 - 000000000 ____D C:\Windows\SysWOW64\directx
2019-01-08 15:28 - 2018-07-12 21:38 - 000000000 ___HD C:\Windows\msdownld.tmp
2019-01-08 14:58 - 2018-12-04 15:55 - 000000000 ____D C:\Games
2018-12-30 21:24 - 2018-07-06 20:29 - 000000000 ____D C:\Users\Kuba\AppData\Local\NVIDIA
2018-12-30 20:03 - 2018-07-12 21:46 - 000000000 ____D C:\ProgramData\MTA San Andreas All
2018-12-29 22:27 - 2018-07-12 13:22 - 000000000 ___HD C:\Users\Public\Shared Files
2018-12-29 09:59 - 2018-07-14 23:56 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lavasoft
2018-12-29 09:44 - 2018-07-28 12:22 - 000000008 __RSH C:\Users\Kuba\ntuser.pol
2018-12-29 09:44 - 2018-07-28 12:08 - 000000008 __RSH C:\ProgramData\ntuser.pol
2018-12-29 09:44 - 2018-07-06 19:59 - 000000000 ___HD C:\Users\Kuba
2018-12-29 09:42 - 2009-07-14 04:20 - 000000000 ____D C:\Windows\system32\GroupPolicy
2018-12-21 22:23 - 2018-07-06 21:20 - 000000000 ____D C:\Users\Kuba\AppData\Roaming\TS3Client
2018-12-20 23:08 - 2018-07-25 07:22 - 000003168 _____ C:\Windows\System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-65760608-956781261-2002539316-1000
2018-12-20 23:08 - 2018-07-24 21:29 - 000002155 _____ C:\Users\Kuba\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft OneDrive.lnk
2018-12-20 23:08 - 2018-07-24 21:29 - 000000000 ___RD C:\Users\Kuba\OneDrive
2018-12-18 01:59 - 2018-09-22 21:39 - 000000000 ____D C:\Program Files (x86)\Origin
2018-12-14 10:21 - 2018-07-24 21:26 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2018-12-14 10:20 - 2009-07-14 04:20 - 000000000 ____D C:\Program Files\Common Files\Microsoft Shared
2018-12-14 10:19 - 2018-07-24 21:20 - 000000000 ____D C:\Program Files\Microsoft Office

==================== Pliki w katalogu głównym wybranych folderów =======

2019-01-10 13:45 - 2019-01-10 13:45 - 000000410 _____ () C:\Users\Kuba\AppData\Local\oobelibMkey.log
2018-12-30 14:47 - 2018-12-30 14:47 - 000007605 _____ () C:\Users\Kuba\AppData\Local\Resmon.ResmonCfg

==================== Bamital & volsnap ======================

(Brak automatycznej naprawy dla plików które nie przeszły weryfikacji.)

C:\Windows\system32\winlogon.exe = & gt; Plik podpisany cyfrowo
C:\Windows\system32\wininit.exe = & gt; Plik podpisany cyfrowo
C:\Windows\SysWOW64\wininit.exe = & gt; Plik podpisany cyfrowo
C:\Windows\explorer.exe = & gt; Plik podpisany cyfrowo
C:\Windows\SysWOW64\explorer.exe = & gt; Plik podpisany cyfrowo
C:\Windows\system32\svchost.exe = & gt; Plik podpisany cyfrowo
C:\Windows\SysWOW64\svchost.exe = & gt; Plik podpisany cyfrowo
C:\Windows\system32\services.exe = & gt; Plik podpisany cyfrowo
C:\Windows\system32\User32.dll = & gt; Plik podpisany cyfrowo
C:\Windows\SysWOW64\User32.dll = & gt; Plik podpisany cyfrowo
C:\Windows\system32\userinit.exe = & gt; Plik podpisany cyfrowo
C:\Windows\SysWOW64\userinit.exe = & gt; Plik podpisany cyfrowo
C:\Windows\system32\rpcss.dll = & gt; Plik podpisany cyfrowo
C:\Windows\system32\dnsapi.dll = & gt; Plik podpisany cyfrowo
C:\Windows\SysWOW64\dnsapi.dll = & gt; Plik podpisany cyfrowo
C:\Windows\system32\Drivers\volsnap.sys = & gt; Plik podpisany cyfrowo

LastRegBack: 2019-01-03 00:20

==================== Koniec FRST.txt ============================