Elektroda.pl
Elektroda.pl
X
Proszę, dodaj wyjątek www.elektroda.pl do Adblock.
Dzięki temu, że oglądasz reklamy, wspierasz portal i użytkowników.

Ads by Albireo - uciazliwe reklamy

wleks 15 Mar 2016 21:52 702 2
  • #1 15 Mar 2016 21:52
    wleks
    Poziom 8  

    Witam Serdecznie,
    Wiem, że ten problem już był przerabiany ale niestety nie wiem jak usunąć te natrętne reklamy.
    Nie znam się na obsłudze FRST a Spyhunter nie pomaga.

    Log poniżej

    Bardzo proszę o pomoc.

    Spoiler:
    Rezultaty skanowania Farbar Recovery Scan Tool (FRST) (x64) Wersja:05-03-2016 01
    Uruchomiony przez Dyr Wleks (administrator) DYRWLEKS (15-03-2016 21:51:00)
    Uruchomiony z C:\Users\Dyr Wleks\Downloads
    Załadowane profile: Dyr Wleks (Dostępne profile: Dyr Wleks)
    Platform: Windows 7 Ultimate Service Pack 1 (X64) Język: Polski (Polska)
    Internet Explorer Wersja 11 (Domyślna przeglądarka: FF)
    Tryb startu: Normal
    Instrukcja obsługi Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-f...utorial-how-to-use-farbar-recovery-scan-tool/

    ==================== Procesy (filtrowane) =================

    (Załączenie wejścia w fixlist spowoduje zamknięcie procesu. Powiązany plik nie zostanie przeniesiony.)

    (HP) C:\Program Files (x86)\HP SimplePass\TrueSuiteService.exe
    (Enigma Software Group USA, LLC.) C:\Program Files (x86)\Enigma Software Group\SpyHunter\SH4Service.exe
    (AMD) C:\Windows\System32\atiesrxx.exe
    (IDT, Inc.) C:\Program Files\IDT\WDM\stacsv64.exe
    (Hewlett-Packard Company) C:\Windows\System32\hpservice.exe
    (AMD) C:\Windows\System32\atieclxx.exe
    (Microsoft Corporation) C:\Windows\System32\wlanext.exe
    (Andrea Electronics Corporation) C:\Program Files\IDT\WDM\AESTSr64.exe
    (Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
    (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
    (Nero AG) C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe
    (Validity Sensors, Inc.) C:\Windows\System32\valWBFPolicyService.exe
    (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
    (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
    (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.29.5\GoogleCrashHandler.exe
    (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.29.5\GoogleCrashHandler64.exe
    (Intel Corporation) C:\Windows\System32\igfxtray.exe
    (Intel Corporation) C:\Windows\System32\hkcmd.exe
    (Intel Corporation) C:\Windows\System32\igfxpers.exe
    (IDT, Inc.) C:\Program Files\IDT\WDM\sttray64.exe
    (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
    (Apple Inc.) C:\Program Files\iTunes\iTunesHelper.exe
    (Learnpulse) C:\Users\Dyr Wleks\AppData\Local\Learnpulse\Screenpresso\Screenpresso.exe




    (Google) C:\Program Files (x86)\Google\Drive\googledrivesync.exe
    (Disc Soft Ltd) C:\Program Files\DAEMON Tools Lite\DiscSoftBusService.exe
    (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
    (Renesas Electronics Corporation) C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe
    (Google) C:\Program Files (x86)\Google\Drive\googledrivesync.exe
    (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
    (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
    (Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
    (Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe
    (Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
    (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
    (ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
    (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
    (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
    (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
    (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
    (AuthenTec Inc.) C:\Program Files (x86)\HP SimplePass\TouchControl.exe
    (HP) C:\Program Files (x86)\HP SimplePass\BioMonitor.exe
    (Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_21_0_0_182.exe
    (Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_21_0_0_182.exe
    (Microsoft Corporation) C:\Windows\System32\dllhost.exe


    ==================== Rejestr (filtrowane) ===========================

    (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.)

    HKLM\...\Run: [SysTrayApp] => C:\Program Files\IDT\WDM\sttray64.exe [1128448 2011-06-02] (IDT, Inc.)
    HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2799912 2011-06-09] (Synaptics Incorporated)
    HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [170256 2015-09-15] (Apple Inc.)
    HKLM\...\Run: [cpuminer] => C:\Users\Dyr Wleks\AppData\Roaming\cpuminer\cpm.exe
    HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [343168 2011-10-01] (Advanced Micro Devices, Inc.)
    HKLM-x32\...\Run: [IAStorIcon] => C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [284440 2011-05-20] (Intel Corporation)
    HKLM-x32\...\Run: [NUSB3MON] => C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe [113288 2010-11-18] (Renesas Electronics Corporation)
    HKLM-x32\...\Run: [HPOSD] => C:\Program Files (x86)\Hewlett-Packard\HP On Screen Display\HPOSD.exe
    HKLM-x32\...\Run: [] => [X]
    HKLM-x32\...\Run: [GrooveMonitor] => C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [30040 2009-02-26] (Microsoft Corporation)
    HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [594992 2016-01-29] (Oracle Corporation)
    Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
    HKU\S-1-5-21-2482365832-2848562066-3910456541-1000\...\Run: [DAEMON Tools Lite Automount] => C:\Program Files\DAEMON Tools Lite\DTAgent.exe [4468056 2015-06-18] (Disc Soft Ltd)
    HKU\S-1-5-21-2482365832-2848562066-3910456541-1000\...\Run: [Screenpresso] => C:\Users\Dyr Wleks\AppData\Local\Learnpulse\Screenpresso\Screenpresso.exe [12347488 2016-01-23] (Learnpulse)
    HKU\S-1-5-21-2482365832-2848562066-3910456541-1000\...\Run: [GoogleDriveSync] => C:\Program Files (x86)\Google\Drive\googledrivesync.exe [23260000 2016-02-24] (Google)
    HKU\S-1-5-21-2482365832-2848562066-3910456541-1000\...\MountPoints2: {30427fcf-5c7d-11e5-84cd-806e6f6e6963} - G:\autostart.exe
    HKU\S-1-5-21-2482365832-2848562066-3910456541-1000\...\MountPoints2: {58a56c17-6fe8-11e5-9ac4-402cf425b0aa} - H:\SETUP.EXE
    HKU\S-1-5-18\...\RunOnce: [SPReview] => C:\Windows\System32\SPReview\SPReview.exe [301568 2015-09-17] (Microsoft Corporation)
    AppInit_DLLs: C:\ProgramData\serfev\Ventoit.dll => C:\ProgramData\serfev\Ventoit.dll [805376 2016-03-06] ()
    ShellIconOverlayIdentifiers: [ GoogleDriveBlacklisted] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll [2016-02-24] (Google)
    ShellIconOverlayIdentifiers: [ GoogleDriveSynced] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll [2016-02-24] (Google)
    ShellIconOverlayIdentifiers: [ GoogleDriveSyncing] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll [2016-02-24] (Google)

    ==================== Internet (filtrowane) ====================

    (Załączenie wejścia w fixlist, w przypadku gdy jest to obiekt rejestru, spowoduje usunięcie go z rejestru lub przywrócenie jego domyślnej postaci.)

    Hosts: W pliku Hosts jest więcej niż jedno wejście. Sprawdź sekcję Hosts w Addition.txt
    Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
    Tcpip\..\Interfaces\{D67D3EB8-26A6-449A-A6CD-B686D24182B3}: [DhcpNameServer] 192.168.0.1

    Internet Explorer:
    ==================
    SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
    SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
    SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
    BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17] (Microsoft Corp.)
    BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26] (Microsoft Corporation)
    BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_73\bin\ssv.dll [2016-02-15] (Oracle Corporation)
    BHO-x32: Pomocnik logowania za pomocą konta Microsoft -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17] (Microsoft Corp.)
    BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_73\bin\jp2ssv.dll [2016-02-15] (Oracle Corporation)

    FireFox:
    ========
    FF ProfilePath: C:\Users\Dyr Wleks\AppData\Roaming\Mozilla\Firefox\Profiles\c6gzzcor.default
    FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_21_0_0_182.dll [2016-03-11] ()
    FF Plugin: @microsoft.com/GENUINE -> disabled [Brak pliku]
    FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.41212.0\npctrl.dll [2015-12-11] ( Microsoft Corporation)
    FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_21_0_0_182.dll [2016-03-11] ()
    FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll [2014-10-30] ()
    FF Plugin-x32: @Google.com/GoogleEarthPlugin -> C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll [2015-05-20] (Google)
    FF Plugin-x32: @java.com/DTPlugin,version=11.73.2 -> C:\Program Files (x86)\Java\jre1.8.0_73\bin\dtplugin\npDeployJava1.dll [2016-02-15] (Oracle Corporation)
    FF Plugin-x32: @java.com/JavaPlugin,version=11.73.2 -> C:\Program Files (x86)\Java\jre1.8.0_73\bin\plugin2\npjp2.dll [2016-02-15] (Oracle Corporation)
    FF Plugin-x32: @microsoft.com/GENUINE -> disabled [Brak pliku]
    FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.41212.0\npctrl.dll [2015-12-11] ( Microsoft Corporation)
    FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3528.0331 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2014-03-31] (Microsoft Corporation)
    FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.29.5\npGoogleUpdate3.dll [2016-02-02] (Google Inc.)
    FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.29.5\npGoogleUpdate3.dll [2016-02-02] (Google Inc.)
    FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2015-12-18] (Adobe Systems Inc.)
    FF user.js: detected! => C:\Users\Dyr Wleks\AppData\Roaming\Mozilla\Firefox\Profiles\c6gzzcor.default\user.js [2016-03-06]
    FF Extension: Adblock Plus - C:\Users\Dyr Wleks\AppData\Roaming\Mozilla\Firefox\Profiles\c6gzzcor.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2016-02-23]
    FF Extension: TrueSuite Website Logon - C:\Program Files (x86)\Mozilla Firefox\distribution\bundles\websitelogon@truesuite.com [2016-02-12] [Brak podpisu cyfrowego]

    Chrome:
    =======
    CHR Profile: C:\Users\Dyr Wleks\AppData\Local\Google\Chrome\User Data\Default
    CHR Extension: (Prezentacje Google) - C:\Users\Dyr Wleks\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2016-03-08]
    CHR Extension: (Dokumenty Google) - C:\Users\Dyr Wleks\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2016-03-08]
    CHR Extension: (Dysk Google) - C:\Users\Dyr Wleks\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2016-03-08]
    CHR Extension: (Video AdBlock for Chrome) - C:\Users\Dyr Wleks\AppData\Local\Google\Chrome\User Data\Default\Extensions\bknbnapaddjdnbilpmlacdkjdkjmbjhd [2016-03-08]
    CHR Extension: (YouTube) - C:\Users\Dyr Wleks\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2016-03-08]
    CHR Extension: (Google Search) - C:\Users\Dyr Wleks\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2016-03-08]
    CHR Extension: (Arkusze Google) - C:\Users\Dyr Wleks\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2016-03-08]
    CHR Extension: (Dokumenty Google offline) - C:\Users\Dyr Wleks\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-03-08]
    CHR Extension: (Website Logon) - C:\Users\Dyr Wleks\AppData\Local\Google\Chrome\User Data\Default\Extensions\jpfgjjhcgfbfkkoelpepohanhmbhdanh [2016-03-08]
    CHR Extension: (Application Launcher for Drive (by Google)) - C:\Users\Dyr Wleks\AppData\Local\Google\Chrome\User Data\Default\Extensions\lmjegmlicamnimmfhcmpkclmigmmcbeh [2016-03-08]
    CHR Extension: (Płatności w sklepie Chrome Web Store) - C:\Users\Dyr Wleks\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-03-08]
    CHR Extension: (Gmail) - C:\Users\Dyr Wleks\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2016-03-08]
    CHR HKU\S-1-5-21-2482365832-2848562066-3910456541-1000\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [bknbnapaddjdnbilpmlacdkjdkjmbjhd] - hxxp://clients2.google.com/service/update2/crx
    CHR HKU\S-1-5-21-2482365832-2848562066-3910456541-1000\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [lmjegmlicamnimmfhcmpkclmigmmcbeh] - hxxps://clients2.google.com/service/update2/crx
    CHR HKLM-x32\...\Chrome\Extension: [bknbnapaddjdnbilpmlacdkjdkjmbjhd] - hxxp://clients2.google.com/service/update2/crx
    CHR HKLM-x32\...\Chrome\Extension: [jpfgjjhcgfbfkkoelpepohanhmbhdanh] - C:\Program Files (x86)\HP SimplePass\tschrome.crx [2011-12-09]

    ==================== Usługi (filtrowane) ========================

    (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)

    R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [77104 2015-09-02] (Apple Inc.)
    R3 Disc Soft Lite Bus Service; C:\Program Files\DAEMON Tools Lite\DiscSoftBusService.exe [1268568 2015-06-18] (Disc Soft Ltd)
    R2 FPLService; C:\Program Files (x86)\HP SimplePass\TrueSuiteService.exe [260424 2011-12-11] (HP)
    R2 HPSupportSolutionsFrameworkService; C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe [25800 2015-09-28] (Hewlett-Packard Company)
    R2 SpyHunter 4 Service; C:\Program Files (x86)\Enigma Software Group\SpyHunter\SH4Service.exe [770432 2014-01-09] (Enigma Software Group USA, LLC.)
    S3 TrueService; C:\Program Files\Common Files\AuthenTec\TrueService.exe [269640 2011-12-09] (AuthenTec, Inc.)
    R2 valWBFPolicyService; C:\Windows\system32\valWBFPolicyService.exe [35328 2013-10-30] (Validity Sensors, Inc.)
    S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)
    S2 Airtostrong; C:\ProgramData\\Airtostrong\\Airtostrong.exe -f "C:\ProgramData\\Airtostrong\\Airtostrong.dat" -l -a
    S2 BitTorrent; "C:\Program Files\BitTorrent\BitTorrent.exe" /s iid=5262591 did=APSnapdoAMRev sid=3 ref=4afac54a-f568-21f3-802e-c0093ad22436-PolicyMac id=4cf5357ff548ce2445a503577bb0eb62e07c84bf27b0d419249913aae9cef65d [X]
    S2 dojygici; C:\Program Files (x86)\42363330-1457250497-3043-3231-363931314531\jnsb1AC1.tmp [X]
    S2 serfev; C:\ProgramData\\serfev\\serfev.exe -f "C:\ProgramData\\serfev\\serfev.dat" -l -a
    S2 wucotusy; C:\Program Files (x86)\42363330-1457250497-3043-3231-363931314531\hnsm2FBA.tmp [X]
    S2 wyniwumuzbt; C:\Program Files (x86)\42363330-1457250497-3043-3231-363931314531\knsaA0EC.tmp [X]
    S2 zpoctedownpcoductpro; C:\Users\Dyr Wleks\AppData\Local\Latcore.exe producy zpoctedownpcoductpro [X]

    ===================== Sterowniki (filtrowane) ==========================

    (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)

    R3 dtlitescsibus; C:\Windows\System32\DRIVERS\dtlitescsibus.sys [30264 2015-10-11] (Disc Soft Ltd)
    S3 ebdrv; C:\Windows\system32\DRIVERS\evbda.sys [3286016 2009-06-10] (Broadcom Corporation)
    S3 esgiguard; C:\Program Files (x86)\Enigma Software Group\SpyHunter\esgiguard.sys [14872 2014-01-07] ()
    S3 EsgScanner; C:\Windows\SysWOW64\DRIVERS\EsgScanner.sys [19984 2012-06-22] ()
    S3 Synth3dVsc; System32\drivers\synth3dvsc.sys [X]
    S3 tsusbhub; system32\drivers\tsusbhub.sys [X]
    S3 VGPU; System32\drivers\rdvgkmd.sys [X]

    ==================== NetSvcs (filtrowane) ===================

    (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)


    ==================== Jeden miesiąc - utworzone pliki i foldery ========

    (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.)

    2016-03-15 21:51 - 2016-03-15 21:51 - 00017266 _____ C:\Users\Dyr Wleks\Downloads\FRST.txt
    2016-03-14 15:47 - 2016-03-15 21:51 - 00000000 ____D C:\FRST
    2016-03-14 15:47 - 2016-03-14 15:48 - 00033589 _____ C:\Users\Dyr Wleks\Downloads\Addition.txt
    2016-03-14 15:45 - 2016-03-14 15:46 - 02374144 _____ (Farbar) C:\Users\Dyr Wleks\Downloads\FRST64.exe
    2016-03-11 15:32 - 2016-03-11 15:33 - 15104520 _____ C:\Users\Dyr Wleks\Downloads\Network_Driver_GDC60_WN_WIN77.53.216.2_A02.EXE
    2016-03-11 10:04 - 2016-03-11 10:53 - 00000000 ____D C:\Users\Dyr Wleks\AppData\Local\ElevatedDiagnostics
    2016-03-11 08:39 - 2016-03-11 08:39 - 00000000 ____D C:\Users\Default\AppData\Local\Google
    2016-03-11 08:39 - 2016-03-11 08:39 - 00000000 ____D C:\Users\Default User\AppData\Local\Google
    2016-03-10 18:55 - 2016-03-10 18:54 - 00714814 _____ C:\Users\Dyr Wleks\Desktop\Zalacznik1.pdf
    2016-03-10 18:54 - 2016-03-10 18:54 - 00714814 _____ C:\Users\Dyr Wleks\Downloads\Zalacznik1.pdf
    2016-03-10 17:09 - 2016-03-10 17:09 - 00000000 ____D C:\Users\Dyr Wleks\Downloads\EASEUS Partition Master 9.1.1 Pro Edition Retail
    2016-03-10 17:06 - 2016-03-10 17:07 - 55915620 _____ C:\Users\Dyr Wleks\Downloads\EASEUS Partition Master 9.1.1 Pro Edition Retail.7z
    2016-03-09 17:31 - 2016-03-09 17:32 - 36225640 _____ C:\Users\Dyr Wleks\Downloads\pilates dla każdego.pdf
    2016-03-08 21:12 - 2016-03-08 21:12 - 15582458 _____ C:\Users\Dyr Wleks\Downloads\Austin D. - Pilates dla każdego.pdf
    2016-03-08 21:10 - 2016-03-08 21:10 - 00038004 _____ C:\Users\Dyr Wleks\Downloads\Pilates dla każdego Jose Rodriguez e-book.pdf
    2016-03-08 14:09 - 2016-03-12 10:37 - 00000000 ____D C:\AdwCleaner
    2016-03-08 13:57 - 2016-03-08 13:57 - 02126848 _____ C:\Users\Dyr Wleks\Downloads\AdwCleaner 4.111.exe
    2016-03-08 10:16 - 2016-03-08 13:25 - 00000000 ____D C:\Users\Dyr Wleks\AppData\Local\42363330-1457432190-3043-3231-363931314531
    2016-03-07 17:57 - 2016-03-07 18:01 - 173863694 _____ C:\Users\Dyr Wleks\Downloads\Atlas treningu silowego - Frederic Delavier.PDF
    2016-03-07 17:51 - 2016-03-07 17:53 - 67901202 _____ C:\Users\Dyr Wleks\Downloads\Atlas Treningu Siłowego - Frederic Dalavier(1).pdf
    2016-03-06 21:47 - 2016-03-06 21:47 - 00000000 ____D C:\Users\Dyr Wleks\Downloads\concussion.(2015).pol.1cd.(6511345)
    2016-03-06 21:36 - 2016-03-06 21:36 - 00025461 _____ C:\Users\Dyr Wleks\Downloads\concussion.(2015).pol.1cd.(6511345).zip
    2016-03-06 19:18 - 2016-03-14 14:44 - 00000000 ____D C:\Users\Dyr Wleks\AppData\Local\42363330-1457291939-3043-3231-363931314531
    2016-03-06 18:28 - 2016-03-07 10:03 - 00000000 ____D C:\Users\Dyr Wleks\Downloads\Concussion.2015.DVDScr.XVID.AC3.HQ.Hive-CM8
    2016-03-06 18:18 - 2016-03-06 18:18 - 00000000 ____D C:\Users\Dyr Wleks\Downloads\Karbala.2015.PL.720p.VODRip.XviD-B89[Pawulon]
    2016-03-06 17:16 - 2016-03-06 17:16 - 00833024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user32.dll
    2016-03-06 17:16 - 2016-03-06 17:16 - 00410624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\systemcpl.dll
    2016-03-06 17:16 - 2016-03-06 17:16 - 00113543 _____ C:\Windows\SysWOW64\slmgr.vbs
    2016-03-06 17:16 - 2016-03-06 17:16 - 00002048 _____ C:\Windows\SysWOW64\winver.exe
    2016-03-06 17:16 - 2016-03-06 17:16 - 00001536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sppcomapi.dll
    2016-03-06 17:15 - 2016-03-06 17:15 - 00000000 ____D C:\Users\Dyr Wleks\Downloads\ak
    2016-03-06 17:14 - 2016-03-06 17:15 - 09459648 _____ C:\Users\Dyr Wleks\Downloads\ak.7z
    2016-03-06 16:31 - 2016-03-06 16:31 - 00002296 _____ C:\Users\Dyr Wleks\Desktop\SpyHunter.lnk
    2016-03-06 16:31 - 2016-03-06 16:31 - 00000000 ____D C:\Users\Dyr Wleks\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SpyHunter
    2016-03-06 16:31 - 2016-03-06 16:31 - 00000000 ____D C:\sh4ldr
    2016-03-06 16:06 - 2016-03-06 16:06 - 00610811 _____ C:\Users\Dyr Wleks\Downloads\Windows 7 Aktywator Downloader.rar
    2016-03-06 14:49 - 2016-03-06 18:02 - 00000000 ____D C:\ProgramData\serfev
    2016-03-06 12:50 - 2016-03-06 12:50 - 03342826 _____ () C:\Program Files\Common Files\lujinwzp.exe
    2016-03-06 12:49 - 2016-03-06 12:49 - 00000000 ____D C:\Program Files\Common Files\f24ouaxf
    2016-03-06 10:09 - 2016-03-06 16:31 - 00000000 ____D C:\Windows\AF54923662584AC6A0435B5B89C6EB61.TMP
    2016-03-06 09:57 - 2016-03-06 09:57 - 00003170 _____ C:\Windows\System32\Tasks\{3771FF93-3C71-4B21-957C-7479DAE760E9}
    2016-03-06 09:38 - 2016-03-06 10:00 - 00000000 ____D C:\Program Files\groover040320160707
    2016-03-06 09:38 - 2016-03-06 09:38 - 00003344 _____ C:\Windows\System32\Tasks\Aagoau
    2016-03-06 09:38 - 2016-03-06 09:38 - 00000000 ____D C:\Windows\system32\dyu
    2016-03-06 09:38 - 2016-03-06 09:38 - 00000000 ____D C:\Users\Dyr Wleks\AppData\Roaming\IeceuBudoeei
    2016-03-06 09:37 - 2016-03-06 09:38 - 00000000 ____D C:\Users\Dyr Wleks\AppData\Local\Tempfolder
    2016-03-06 09:37 - 2016-03-06 09:37 - 00059112 _____ (DotC United Inc) C:\Windows\system32\Drivers\MPCKpt.sys
    2016-03-06 09:37 - 2016-03-06 09:37 - 00003348 _____ C:\Windows\System32\Tasks\Ooiui
    2016-03-06 09:37 - 2016-03-06 09:37 - 00000000 ____D C:\Windows\system32\kum
    2016-03-06 09:37 - 2016-03-06 09:37 - 00000000 ____D C:\Users\Dyr Wleks\AppData\Roaming\BeejnuLuqje
    2016-03-06 09:37 - 2016-03-06 09:37 - 00000000 ____D C:\Users\Dyr Wleks\AppData\LocalLow\Company
    2016-03-06 09:37 - 2016-03-06 09:37 - 00000000 ____D C:\uninst
    2016-03-06 09:37 - 2016-03-06 09:37 - 00000000 _____ C:\Windows\SysWOW64\Number of results
    2016-03-06 09:03 - 2016-03-06 16:53 - 00000000 ____D C:\ProgramData\WWdMW
    2016-03-06 09:02 - 2016-03-06 09:41 - 00000000 ____D C:\Users\Dyr Wleks\AppData\Local\app
    2016-03-06 09:02 - 2016-03-06 09:02 - 00000000 ____D C:\Users\Dyr Wleks\AppData\Roaming\gplyra
    2016-03-06 08:49 - 2016-03-06 16:53 - 00000000 ____D C:\Users\Dyr Wleks\AppData\Local\42363330-1457254194-3043-3231-363931314531
    2016-03-06 08:48 - 2016-03-06 18:02 - 00000000 ____D C:\Program Files (x86)\42363330-1457250497-3043-3231-363931314531
    2016-03-06 08:48 - 2016-03-06 16:53 - 00000000 ____D C:\ProgramData\Ronzaps
    2016-03-06 08:48 - 2016-03-06 16:53 - 00000000 ____D C:\Program Files\BitTorrent
    2016-03-06 08:48 - 2016-03-06 08:48 - 00041472 _____ C:\Users\Dyr Wleks\AppData\Local\Latcore.dat
    2016-03-06 08:48 - 2016-03-06 08:48 - 00000187 _____ C:\Users\Dyr Wleks\AppData\Local\Latcore.exe.config
    2016-03-06 08:48 - 2016-03-06 08:47 - 00000967 _____ C:\Windows\system32\Drivers\etc\hp.bak
    2016-03-04 08:40 - 2016-03-06 09:37 - 00061336 _____ (Cherimoya Ltd) C:\Windows\system32\Drivers\cherimoya.sys
    2016-03-02 09:15 - 2016-03-02 09:15 - 00037043 _____ C:\Users\Dyr Wleks\Downloads\iron.man.3.(2013).pol.1cd.(6497398).zip
    2016-03-01 21:57 - 2016-03-01 21:57 - 00035605 _____ C:\Users\Dyr Wleks\Downloads\iron.man.2.(2010).pol.1cd.(6362764).zip
    2016-03-01 11:02 - 2016-03-01 11:02 - 00031235 _____ C:\Users\Dyr Wleks\Downloads\iron.man.(2008).pol.1cd.(6487543).zip
    2016-02-24 21:33 - 2016-02-24 21:33 - 00029109 _____ C:\Users\Dyr Wleks\Downloads\what.we.do.in.the.shadows.(2014).pol.1cd.(6478764).zip
    2016-02-24 21:33 - 2016-02-24 21:33 - 00000000 ____D C:\Users\Dyr Wleks\Downloads\what.we.do.in.the.shadows.(2014).pol.1cd.(6478764)
    2016-02-24 21:12 - 2016-02-24 21:14 - 00000000 ____D C:\Users\Dyr Wleks\Downloads\What.We.Do.In.The.Shadows.2014.HDRip.x264-COX
    2016-02-21 23:01 - 2016-02-21 23:02 - 00301035 _____ C:\Users\Dyr Wleks\Downloads\Sposob
    2016-02-18 17:59 - 2016-02-18 17:59 - 00000000 ____D C:\Users\Dyr Wleks\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows Virtual PC
    2016-02-18 17:48 - 2016-02-18 17:48 - 00000000 ____D C:\Program Files\Windows XP Mode
    2016-02-18 17:37 - 2016-02-18 17:45 - 470421776 _____ (Microsoft Corporation) C:\Users\Dyr Wleks\Downloads\WindowsXPMode_pl-pl.exe
    2016-02-18 17:15 - 2016-02-18 19:17 - 00000000 ___RD C:\Users\Dyr Wleks\Virtual Machines
    2016-02-18 17:10 - 2016-02-18 17:13 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Virtual PC
    2016-02-18 17:10 - 2016-02-18 17:10 - 00000000 ____D C:\Program Files (x86)\Windows Virtual PC
    2016-02-18 17:07 - 2009-09-23 02:46 - 00359552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vpcvmm.sys
    2016-02-18 17:07 - 2009-09-23 02:46 - 00066304 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vpcnfltr.sys
    2016-02-18 17:07 - 2009-09-23 02:34 - 04513792 _____ (Microsoft Corporation) C:\Windows\system32\vpc.exe
    2016-02-18 17:07 - 2009-09-23 02:33 - 02262016 _____ (Microsoft Corporation) C:\Windows\system32\VPCWizard.exe
    2016-02-18 17:07 - 2009-09-23 02:33 - 01209856 _____ (Microsoft Corporation) C:\Windows\system32\VMWindow.exe
    2016-02-18 17:07 - 2009-09-23 02:33 - 00936448 _____ (Microsoft Corporation) C:\Windows\system32\vmsal.exe
    2016-02-18 17:07 - 2009-09-23 02:32 - 01369600 _____ (Microsoft Corporation) C:\Windows\system32\VPCSettings.exe
    2016-02-18 17:07 - 2009-09-23 02:32 - 00562176 _____ (Microsoft Corporation) C:\Windows\system32\VMCPropertyHandler.dll
    2016-02-18 17:07 - 2009-09-23 02:32 - 00187904 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vpchbus.sys
    2016-02-18 17:07 - 2009-09-23 02:32 - 00095232 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vpcusb.sys
    2016-02-18 17:07 - 2009-09-23 02:32 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\vpchbuspipe.dll
    2016-02-18 17:07 - 2009-09-23 02:18 - 00793600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vmsal.exe
    2016-02-18 16:56 - 2016-02-18 16:56 - 00003030 _____ C:\Windows\System32\Tasks\{ACCAB1F7-3884-48AC-83DF-96B124F48F31}
    2016-02-18 16:55 - 2016-02-18 16:55 - 00003030 _____ C:\Windows\System32\Tasks\{E63DD010-E5A9-4D7F-A48C-3A9B2B36F01D}
    2016-02-18 16:20 - 2016-02-18 16:20 - 00000000 ____D C:\Program Files (x86)\Intercube
    2016-02-17 13:42 - 2016-02-17 18:43 - 00000000 ___RD C:\Users\Dyr Wleks\Documents\Scanned Documents
    2016-02-17 13:42 - 2016-02-17 13:42 - 00000000 ____D C:\Users\Dyr Wleks\Documents\Fax
    2016-02-17 13:20 - 2016-02-17 13:20 - 00205329 _____ C:\Users\Dyr Wleks\Downloads\Deklaracja-nabywcy-EDT.pdf

    ==================== Jeden miesiąc - zmodyfikowane pliki i foldery ========

    (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.)

    2016-03-15 21:35 - 2016-01-10 22:51 - 00000930 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
    2016-03-15 21:34 - 2015-10-18 13:00 - 00001048 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
    2016-03-15 21:09 - 2009-07-14 05:45 - 00010560 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
    2016-03-15 21:09 - 2009-07-14 05:45 - 00010560 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
    2016-03-15 17:10 - 2015-09-16 15:37 - 00000000 ____D C:\Users\Dyr Wleks\AppData\LocalLow\AuthenTec
    2016-03-15 15:36 - 2015-12-02 10:45 - 00002201 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
    2016-03-15 15:36 - 2015-12-02 10:45 - 00002189 _____ C:\Users\Public\Desktop\Google Chrome.lnk
    2016-03-15 14:53 - 2016-01-26 19:18 - 00000000 ___RD C:\Users\Dyr Wleks\Dysk Google
    2016-03-15 14:53 - 2015-10-18 13:00 - 00001044 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
    2016-03-15 14:52 - 2009-07-14 06:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
    2016-03-14 15:48 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\inf
    2016-03-11 17:35 - 2016-01-10 22:51 - 00003868 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
    2016-03-11 17:35 - 2015-09-16 21:55 - 00797376 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
    2016-03-11 17:35 - 2015-09-16 21:55 - 00142528 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
    2016-03-11 17:35 - 2009-07-14 18:55 - 00741914 _____ C:\Windows\system32\perfh015.dat
    2016-03-11 17:35 - 2009-07-14 18:55 - 00156526 _____ C:\Windows\system32\perfc015.dat
    2016-03-11 17:35 - 2009-07-14 06:13 - 01669190 _____ C:\Windows\system32\PerfStringBackup.INI
    2016-03-11 10:53 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\system32\NDF
    2016-03-11 08:39 - 2016-01-26 19:17 - 00002042 _____ C:\Users\Public\Desktop\Google Slides.lnk
    2016-03-11 08:39 - 2016-01-26 19:17 - 00002040 _____ C:\Users\Public\Desktop\Google Sheets.lnk
    2016-03-11 08:39 - 2016-01-26 19:17 - 00002030 _____ C:\Users\Public\Desktop\Google Docs.lnk
    2016-03-11 08:39 - 2016-01-26 19:17 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Drive
    2016-03-10 23:52 - 2015-09-21 18:53 - 00000000 ____D C:\Users\Dyr Wleks\AppData\Roaming\Skype
    2016-03-10 23:04 - 2015-10-26 20:38 - 00130048 ___SH C:\Users\Dyr Wleks\Downloads\Thumbs.db
    2016-03-10 18:56 - 2015-09-16 16:04 - 00002441 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
    2016-03-08 14:10 - 2015-11-01 16:27 - 00000841 _____ C:\Users\Dyr Wleks\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Start Tor Browser.lnk
    2016-03-08 14:10 - 2015-11-01 16:27 - 00000793 _____ C:\Users\Dyr Wleks\Desktop\Start Tor Browser.lnk
    2016-03-08 14:10 - 2015-11-01 16:25 - 00000000 ____D C:\Users\Dyr Wleks\Desktop\Tor Browser
    2016-03-08 14:10 - 2015-09-16 13:29 - 00001065 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
    2016-03-08 14:10 - 2015-09-16 11:09 - 00001005 _____ C:\Users\Dyr Wleks\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
    2016-03-06 21:37 - 2015-09-29 19:18 - 00000000 ____D C:\Users\Dyr Wleks\AppData\Roaming\uTorrent
    2016-03-06 17:13 - 2015-09-16 13:29 - 00001151 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk
    2016-03-06 09:40 - 2009-07-14 03:34 - 00000580 _____ C:\Windows\win.ini
    2016-03-02 18:32 - 2015-12-17 22:03 - 00000000 ____D C:\Users\Dyr Wleks\Downloads\Californication
    2016-03-02 18:32 - 2015-10-09 19:04 - 00000000 ____D C:\Users\Dyr Wleks\Downloads\Trainwreck.2015.V2.READNFO.HDRip.XviD.AC3-EVO
    2016-02-20 17:56 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\rescache
    2016-02-18 17:15 - 2015-09-16 11:07 - 00000000 ____D C:\Users\Dyr Wleks
    2016-02-18 17:03 - 2016-01-17 21:50 - 00000000 ____D C:\Windows\system32\appmgmt
    2016-02-18 17:00 - 2015-10-11 16:32 - 00000000 ____D C:\Users\Dyr Wleks\AppData\Roaming\DAEMON Tools Lite
    2016-02-18 10:17 - 2009-07-14 06:08 - 00032604 _____ C:\Windows\Tasks\SCHEDLGU.TXT
    2016-02-15 12:35 - 2016-02-04 11:36 - 00000000 ____D C:\ProgramData\Oracle
    2016-02-15 12:35 - 2016-02-04 11:36 - 00000000 ____D C:\Program Files (x86)\Java
    2016-02-15 12:34 - 2016-02-04 11:36 - 00097888 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
    2016-02-15 12:34 - 2016-02-04 11:36 - 00000000 ____D C:\Users\Dyr Wleks\.oracle_jre_usage
    2016-02-15 12:34 - 2016-02-04 11:36 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
    2016-02-15 03:03 - 2015-09-16 13:14 - 01641796 _____ C:\Windows\SysWOW64\PerfStringBackup.INI

    ==================== Pliki w katalogu głównym wybranych folderów =======

    2016-03-06 12:50 - 2016-03-06 12:50 - 3342826 _____ () C:\Program Files\Common Files\lujinwzp.exe
    2016-03-06 08:48 - 2016-03-06 08:48 - 0041472 _____ () C:\Users\Dyr Wleks\AppData\Local\Latcore.dat
    2016-03-06 08:48 - 2016-03-06 08:48 - 0000187 _____ () C:\Users\Dyr Wleks\AppData\Local\Latcore.exe.config
    2016-01-18 19:30 - 2016-01-18 19:30 - 0005097 _____ () C:\ProgramData\hsqvmxbo.uxh

    Niektóre pliki w TEMP:
    ====================
    C:\Users\Dyr Wleks\AppData\Local\Temp\Quarantine.exe
    C:\Users\Dyr Wleks\AppData\Local\Temp\sqlite3.dll


    ==================== Bamital & volsnap =================

    (Brak automatycznej naprawy dla plików które nie przeszły weryfikacji.)

    C:\Windows\system32\winlogon.exe => Plik podpisany cyfrowo
    C:\Windows\system32\wininit.exe => Plik podpisany cyfrowo
    C:\Windows\SysWOW64\wininit.exe => Plik podpisany cyfrowo
    C:\Windows\explorer.exe => Plik podpisany cyfrowo
    C:\Windows\SysWOW64\explorer.exe => Plik podpisany cyfrowo
    C:\Windows\system32\svchost.exe => Plik podpisany cyfrowo
    C:\Windows\SysWOW64\svchost.exe => Plik podpisany cyfrowo
    C:\Windows\system32\services.exe => Plik podpisany cyfrowo
    C:\Windows\system32\User32.dll
    [2016-01-18 10:58] - [2015-11-10 19:55] - 1008640 ____A (Microsoft Corporation) E573BD9AB55C8E333C202B9E255F972E

    C:\Windows\SysWOW64\User32.dll
    [2016-03-06 17:16] - [2016-03-06 17:16] - 0833024 ____A (Microsoft Corporation) 2C9CC9F492CA596B1B9FC1AE5E916356

    C:\Windows\system32\userinit.exe => Plik podpisany cyfrowo
    C:\Windows\SysWOW64\userinit.exe => Plik podpisany cyfrowo
    C:\Windows\system32\rpcss.dll => Plik podpisany cyfrowo
    C:\Windows\system32\dnsapi.dll
    [2015-09-18 13:08] - [2015-09-18 13:08] - 0357888 ____A (Microsoft Corporation) 885BAD8DEAA1D3C252E6BF164BFE4800

    C:\Windows\SysWOW64\dnsapi.dll
    [2015-09-18 13:08] - [2015-09-18 13:08] - 0270336 ____A (Microsoft Corporation) 9639CF8346F6359F99A83777C2A10261

    C:\Windows\system32\Drivers\volsnap.sys => Plik podpisany cyfrowo


    LastRegBack: 2016-03-10 10:17

    ==================== Koniec FRST.txt ============================

    0 2
  • #2 16 Mar 2016 00:37
    krzychupar
    Poziom 40  

    Odinstaluj w pierwszej kolejności SpyHunter 4, następnie zamieść nowe logi First.txt i Addition.txt jako załączniki.

    0
  • #3 16 Mar 2016 09:03
    Domino_2
    Pomocny dla użytkowników

    Brakuje jeszcze Addition.txt, a oba pliki zamieść jako załączniki.

    0