Elektroda.pl
Elektroda.pl
X
Proszę, dodaj wyjątek www.elektroda.pl do Adblock.
Dzięki temu, że oglądasz reklamy, wspierasz portal i użytkowników.

Windows 10, nie pojawia się obraz np na stronie www.lotto.pl

sebaele22 29 Wrz 2017 21:06 777 24
  • #1 29 Wrz 2017 21:06
    sebaele22
    Poziom 30  

    Nie wiem co się dzieje, wszystko zainstalowane a gdy wejdę na studio lotto to brak wyświetlanego obrazu.
    Czego to przyczyna?

    Pozdrawiam

    0 24
  • #3 29 Wrz 2017 21:17
    sosarek

    Poziom 43  

    sebaele22 napisał:
    Czego to przyczyna?

    Złego działu, braku informacji o przeglądarce, zainstalowanych wtyczkach...

    0
  • #5 29 Wrz 2017 21:35
    sosarek

    Poziom 43  

    Nie masz AdBlocka?

    0
  • #6 29 Wrz 2017 21:53
    sebaele22
    Poziom 30  

    Nie nie, wcześniej było wszystko ok tylko ostatnio coś się stało.
    Próbowałem przeinstalować firefox ale nic to nie daje, na explorer jest wszystko ok.
    Jeszcze dziś system sam mi się zaktualizował do jakieś nowszej wersji...

    0
  • #7 29 Wrz 2017 21:55
    sosarek

    Poziom 43  

    Wejdź w Dodatki - Wtyczki i sprawdź czy nie masz zablokowanego Flash.

    0
  • #9 29 Wrz 2017 22:22
    sosarek

    Poziom 43  

    Tak, Shockwave, miałem podobne problemy na stronach i pomogło, czasami wyskakiwał popup z pytaniem Pozwól i Pozwól i zapamiętaj na stronach.

    0
  • #11 29 Wrz 2017 22:42
    sosarek

    Poziom 43  

    Wczytaj ponownie stronę i sprawdź, jak napisałem - czasami wyskakuje okienko z prośbą o pozwolenie.

    0
  • #13 30 Wrz 2017 22:23
    xoree
    Poziom 29  

    A próbowałeś na chromie ??
    Nie podałeś logów z frst.

    0
  • #14 30 Wrz 2017 23:45
    sebaele22
    Poziom 30  

    Czy o to chodzi:

    Rezultaty skanowania Farbar Recovery Scan Tool (FRST) (x64) Wersja: 29-09-2017
    Uruchomiony przez Misiek (administrator) DESKTOP-ITVAQ2S (30-09-2017 23:30:58)
    Uruchomiony z C:\Users\Misiek\Desktop
    Załadowane profile: Misiek (Dostępne profile: Misiek)
    Platform: Windows 10 Home Wersja 1511 (X64) Język: Polski (Polska)
    Internet Explorer Wersja 11 (Domyślna przeglądarka: FF)
    Tryb startu: Normal
    Instrukcja obsługi Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-f...utorial-how-to-use-farbar-recovery-scan-tool/

    ==================== Procesy (filtrowane) =================

    (Załączenie wejścia w fixlist spowoduje zamknięcie procesu. Powiązany plik nie zostanie przeniesiony.)

    (AMD) C:\WINDOWS\System32\atiesrxx.exe
    (AMD) C:\WINDOWS\System32\atieclxx.exe
    (Intel Corporation) C:\WINDOWS\System32\igfxCUIService.exe
    (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
    (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
    (Microsoft Corporation) C:\WINDOWS\System32\wlanext.exe
    () C:\Program Files (x86)\Realtek\REALTEK Bluetooth\BTDevMgr.exe
    (Intel Corporation) C:\WINDOWS\SysWOW64\esif_uf.exe
    () C:\Program Files\AVAST Software\SecureLine\vpnsvc.exe
    (Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe
    (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe
    () C:\Program Files\CyberLink\Shared files\RichVideo64.exe
    (Sony) C:\Program Files\Sony\Xperia Companion\Service\XperiaCompanionService.exe
    (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
    (Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe
    (Microsoft Corporation) C:\Program Files\Windows Defender\NisSrv.exe
    (Intel Corporation) C:\WINDOWS\Temp\DPTF\esif_assist_64.exe
    (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
    (Microsoft Corporation) C:\WINDOWS\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
    (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
    (Realtek Semiconductor Corporation) C:\Program Files (x86)\Realtek\REALTEK Bluetooth\BTServer.exe
    (Intel Corporation) C:\WINDOWS\System32\igfxEM.exe
    (Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe
    (Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
    (Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
    (Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
    (Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
    (Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
    (Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe




    (Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
    (Intel Corporation) C:\Program Files\Intel\IntelSGXPSW\bin\x64\Release\aesm_service.exe
    (AVAST Software) C:\Program Files\AVAST Software\SecureLine\secureline.exe
    (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
    (Microsoft Corporation) C:\WINDOWS\System32\dllhost.exe
    (Microsoft Corporation) C:\WINDOWS\System32\NetworkUXBroker.exe
    () C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_10.1705.1301.0_x64__8wekyb3d8bbwe\Calculator.exe
    (Microsoft Corporation) C:\WINDOWS\ImmersiveControlPanel\SystemSettings.exe
    (Mozilla Corporation) C:\Program Files\Mozilla Firefox\plugin-container.exe
    (Microsoft Corporation) C:\Program Files\Windows Defender\MpCmdRun.exe

    ==================== Rejestr (filtrowane) ===========================

    (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.)

    HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [8911872 2016-10-15] (Realtek Semiconductor)
    HKLM\...\Run: [BtServer] => C:\Program Files (x86)\REALTEK\Realtek Bluetooth\BTServer.exe [229592 2015-07-09] (Realtek Semiconductor Corporation)
    HKLM-x32\...\Run: [StartCCC] => c:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [767176 2015-08-06] (Advanced Micro Devices, Inc.)
    HKLM-x32\...\Run: [PowerDVD14Agent] => C:\Program Files (x86)\CyberLink\PowerDVD14\PowerDVD14Agent.exe [795336 2015-06-22] (CyberLink Corp.)
    HKU\S-1-5-21-2741257759-4006522167-587269252-1001\...\Run: [OneDrive] => "C:\Users\Misiek\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
    HKU\S-1-5-21-2741257759-4006522167-587269252-1001\...\Run: [GG] => C:\Users\Misiek\AppData\Local\GG\Application\gghub.exe [4078144 2016-04-18] (GG Network S.A.)
    HKU\S-1-5-21-2741257759-4006522167-587269252-1001\...\Run: [McAfeeSafeConnect] => C:\Program Files (x86)\McAfee Safe Connect\McAfee Safe Connect.exe
    HKU\S-1-5-21-2741257759-4006522167-587269252-1001\...\MountPoints2: {230e80ab-63ae-11e6-9be9-fc3fdb5e5002} - "F:\MicroLauncher.exe"
    HKU\S-1-5-21-2741257759-4006522167-587269252-1001\...\MountPoints2: {230e80e4-63ae-11e6-9be9-fc3fdb5e5002} - "F:\MicroLauncher.exe"
    HKU\S-1-5-21-2741257759-4006522167-587269252-1001\...\MountPoints2: {51d00da9-a1b9-11e6-9c17-fc3fdb5e5002} - "F:\MicroLauncher.exe"
    HKU\S-1-5-21-2741257759-4006522167-587269252-1001\...\MountPoints2: {f223e964-07d4-11e7-9c53-fc3fdb5e5002} - "F:\Startme.exe"

    ==================== Internet (filtrowane) ====================

    (Załączenie wejścia w fixlist, w przypadku gdy jest to obiekt rejestru, spowoduje usunięcie go z rejestru lub przywrócenie jego domyślnej postaci.)

    Tcpip\Parameters: [DhcpNameServer] 31.11.202.254 37.8.214.2
    Tcpip\..\Interfaces\{38c7fda1-7cc1-41e4-aeb5-e375746b6114}: [DhcpNameServer] 31.11.202.254 37.8.214.2
    Tcpip\..\Interfaces\{68d2bb36-e671-4360-b34f-094e05cff355}: [DhcpNameServer] 31.11.202.254 37.8.214.2
    Tcpip\..\Interfaces\{fbfc5817-fef3-4cec-a742-a1ac166be1e6}: [DhcpNameServer] 31.11.202.254 37.8.214.2

    Internet Explorer:
    ==================
    HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://hp15-comm.msn.com/?pc=HRTE
    HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://hp15-comm.msn.com/?pc=HRTE
    HKU\S-1-5-21-2741257759-4006522167-587269252-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://hp15-comm.msn.com/?pc=HRTE
    HKU\S-1-5-21-2741257759-4006522167-587269252-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://hp15-comm.msn.com/?pc=HRTE
    SearchScopes: HKLM-x32 -> {E143EF69-CB40-434C-AAC6-EF6F58584A6D} URL = hxxp://www.amazon.co.uk/s/ref=azs_osd_ieauk?i...b-21&link%5Fcode=qs&index=aps&field-keywords={searchTerms}
    SearchScopes: HKU\S-1-5-21-2741257759-4006522167-587269252-1001 -> {E143EF69-CB40-434C-AAC6-EF6F58584A6D} URL = hxxp://www.amazon.co.uk/s/ref=azs_osd_ieauk?i...b-21&link%5Fcode=qs&index=aps&field-keywords={searchTerms}

    FireFox:
    ========
    FF DefaultProfile: x38axjk4.default-1506712983679
    FF ProfilePath: C:\Users\Misiek\AppData\Roaming\Mozilla\Firefox\Profiles\x38axjk4.default-1506712983679 [2017-09-30]
    FF Homepage: Mozilla\Firefox\Profiles\x38axjk4.default-1506712983679 -> www.allegro.pl
    FF Extension: (Activity Stream) - C:\Program Files\Mozilla Firefox\browser\features\activity-stream@mozilla.org.xpi [2017-09-26] [Brak podpisu cyfrowego]
    FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_27_0_0_130.dll [2017-09-29] ()
    FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_27_0_0_130.dll [2017-09-29] ()
    FF Plugin-x32: @adobe.com/ShockwavePlayer -> C:\windows\SysWOW64\Adobe\Director\np32dsw_1217157.dll [Brak pliku]
    FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.68 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2015-04-21] (Intel Corporation)
    FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2015-04-21] (Intel Corporation)

    Chrome:
    =======
    CHR HKLM-x32\...\Chrome\Extension: [ofoeigeaodhbjogdigckajfhjbonaofg] - hxxps://clients2.google.com/service/update2/crx

    ==================== Usługi (filtrowane) ====================

    (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)

    R2 AESMService; c:\Program Files\Intel\IntelSGXPSW\bin\x64\Release\aesm_service.exe [3744904 2015-06-19] (Intel Corporation)
    R2 BTDevManager; C:\Program Files (x86)\REALTEK\Realtek Bluetooth\BTDevMgr.exe [121560 2015-07-20] ()
    S3 cplspcon; C:\WINDOWS\system32\IntelCpHDCPSvc.exe [488928 2017-02-22] (Intel Corporation)
    R2 esifsvc; C:\WINDOWS\SysWOW64\esif_uf.exe [1385640 2015-08-18] (Intel Corporation)
    R2 igfxCUIService2.0.0.0; C:\WINDOWS\system32\igfxCUIService.exe [350688 2017-02-22] (Intel Corporation)
    S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [881152 2015-05-22] (Intel(R) Corporation)
    R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [223520 2015-07-10] (Intel Corporation)
    R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [6058960 2017-08-07] (Malwarebytes)
    R2 RichVideo64; C:\Program Files\CyberLink\Shared files\RichVideo64.exe [389896 2014-04-14] ()
    R2 RtkAudioService; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [326656 2016-10-15] (Realtek Semiconductor)
    R2 SecureLine; C:\Program Files\AVAST Software\SecureLine\VpnSvc.exe [592392 2016-05-25] ()
    R2 SynTPEnhService; C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe [266848 2016-12-27] (Synaptics Incorporated)
    R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [364464 2016-10-25] (Microsoft Corporation)
    R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [24864 2017-09-05] (Microsoft Corporation)
    R2 XperiaCompanionService; C:\Program Files\Sony\Xperia Companion\Service\XperiaCompanionService.exe [2205568 2016-12-22] (Sony)

    ===================== Sterowniki (filtrowane) ======================

    (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)

    R3 clwvd6; C:\WINDOWS\system32\DRIVERS\clwvd6.sys [41704 2013-10-29] (CyberLink Corporation)
    S3 dg_ssudbus; C:\WINDOWS\system32\DRIVERS\ssudbus.sys [129152 2016-04-25] (Samsung Electronics Co., Ltd.)
    R3 dptf_cpu; C:\WINDOWS\System32\drivers\dptf_cpu.sys [53752 2015-08-18] (Intel Corporation)
    R3 esif_lf; C:\WINDOWS\system32\DRIVERS\esif_lf.sys [261624 2015-08-18] (Intel Corporation)
    R1 ESProtectionDriver; C:\WINDOWS\system32\drivers\mbae64.sys [77440 2017-08-24] ()
    S3 ggsomc; C:\WINDOWS\System32\drivers\ggsomc.sys [30424 2016-06-13] (Sony Mobile Communications)
    R2 MBAMChameleon; C:\WINDOWS\system32\drivers\MBAMChameleon.sys [192960 2017-09-30] (Malwarebytes)
    R3 MBAMFarflt; C:\WINDOWS\system32\DRIVERS\farflt.sys [101824 2017-09-30] (Malwarebytes)
    R3 MBAMProtection; C:\WINDOWS\system32\drivers\mbam.sys [45472 2017-09-30] (Malwarebytes)
    R3 MBAMWebProtection; C:\WINDOWS\system32\drivers\mwac.sys [94144 2017-09-30] (Malwarebytes)
    R1 MpKsl3322597b; C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{50744C59-F3F1-4145-A0FF-EBCECB4BBC3A}\MpKsl3322597b.sys [58120 2017-09-30] (Microsoft Corporation)
    R3 rt640x64; C:\WINDOWS\System32\drivers\rt640x64.sys [895256 2015-06-18] (Realtek )
    R3 RtkBtFilter; C:\WINDOWS\system32\DRIVERS\RtkBtfilter.sys [600832 2015-07-16] (Realtek Semiconductor Corporation)
    S3 RTSUER; C:\WINDOWS\system32\Drivers\RtsUer.sys [411712 2015-05-21] (Realsil Semiconductor Corporation)
    R3 RTWlanE; C:\WINDOWS\system32\DRIVERS\rtwlane.sys [6895984 2017-08-17] (Realtek Semiconductor Corporation )
    S3 SGXEPC; C:\WINDOWS\System32\drivers\sgx_driver.sys [54768 2015-06-19] (Windows (R) Win 7 DDK provider)
    S3 SmbDrv; C:\WINDOWS\System32\drivers\Smb_driver_AMDASF.sys [33448 2015-07-13] (Synaptics Incorporated)
    R3 SmbDrvI; C:\WINDOWS\system32\DRIVERS\Smb_driver_Intel.sys [72792 2016-12-27] (Synaptics Incorporated)
    S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [221824 2016-04-25] (Samsung Electronics Co., Ltd.)
    S0 WdBoot; C:\WINDOWS\System32\drivers\WdBoot.sys [44568 2015-10-30] (Microsoft Corporation)
    R0 WdFilter; C:\WINDOWS\System32\drivers\WdFilter.sys [293216 2015-10-30] (Microsoft Corporation)
    R3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [118112 2015-10-30] (Microsoft Corporation)
    R3 WirelessButtonDriver64; C:\WINDOWS\System32\drivers\WirelessButtonDriver64.sys [31656 2016-04-14] (HP)
    S3 massfilter; system32\drivers\massfilter.sys [X]
    S3 mfeavfk01; \Device\mfeavfk01.sys [X]

    ==================== NetSvcs (filtrowane) ===================

    (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)


    ==================== Jeden miesiąc - utworzone pliki i foldery ========

    (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.)

    2017-09-30 23:30 - 2017-09-30 23:31 - 000013017 _____ C:\Users\Misiek\Desktop\FRST.txt
    2017-09-30 23:30 - 2017-09-30 23:30 - 000000000 ____D C:\FRST
    2017-09-30 23:29 - 2017-09-30 23:30 - 002399744 _____ (Farbar) C:\Users\Misiek\Desktop\FRST64.exe
    2017-09-30 20:48 - 2017-09-30 23:26 - 000000000 ____D C:\Users\Misiek\Doctor Web
    2017-09-30 20:48 - 2017-09-30 20:48 - 000000000 ____D C:\ProgramData\Doctor Web
    2017-09-30 20:43 - 2017-09-30 20:43 - 000758612 _____ C:\WINDOWS\Minidump\093017-35703-01.dmp
    2017-09-30 20:42 - 2017-09-30 20:42 - 946386296 _____ C:\WINDOWS\MEMORY.DMP
    2017-09-30 16:46 - 2017-09-30 20:48 - 158961704 _____ C:\Users\Misiek\Desktop\launch.exe
    2017-09-30 16:21 - 2017-09-30 16:21 - 000192960 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MBAMChameleon.sys
    2017-09-30 16:20 - 2017-09-30 20:50 - 000094144 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mwac.sys
    2017-09-30 16:20 - 2017-09-30 20:44 - 000253888 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys
    2017-09-30 16:20 - 2017-09-30 20:44 - 000101824 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\farflt.sys
    2017-09-30 16:20 - 2017-09-30 20:44 - 000045472 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbam.sys
    2017-09-30 16:20 - 2017-09-30 16:20 - 000001919 _____ C:\Users\Public\Desktop\Malwarebytes.lnk
    2017-09-30 16:20 - 2017-09-30 16:20 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes
    2017-09-30 16:20 - 2017-09-30 16:20 - 000000000 ____D C:\Program Files\Malwarebytes
    2017-09-30 16:20 - 2017-08-24 11:27 - 000077440 _____ C:\WINDOWS\system32\Drivers\mbae64.sys
    2017-09-30 16:19 - 2017-09-30 16:20 - 068408664 _____ (Malwarebytes ) C:\Users\Misiek\Desktop\mb3-setup-consumer-3.2.2.2029.exe
    2017-09-30 16:15 - 2017-09-30 16:18 - 008249808 _____ (Malwarebytes) C:\Users\Misiek\Desktop\AdwCleaner.exe
    2017-09-30 15:05 - 2017-09-30 15:05 - 000000000 ____D C:\WINDOWS\LastGood.Tmp
    2017-09-30 14:04 - 2017-09-30 14:04 - 000000000 ___HD C:\$SysReset
    2017-09-29 21:23 - 2017-09-30 15:17 - 000000000 ____D C:\Users\Misiek\Desktop\Stare dane programu Firefox
    2017-09-29 21:22 - 2017-09-29 21:22 - 000001012 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
    2017-09-29 21:22 - 2017-09-29 21:22 - 000001000 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk
    2017-09-29 21:22 - 2017-09-29 21:22 - 000000000 ____D C:\Program Files\Mozilla Firefox
    2017-09-29 21:22 - 2017-09-29 21:22 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
    2017-09-29 20:57 - 2017-09-29 20:57 - 039929792 _____ (Mozilla) C:\Users\Misiek\Desktop\Firefox Setup 56.0.exe
    2017-09-29 14:59 - 2017-09-30 14:20 - 000000000 ___HD C:\$WINDOWS.~BT
    2017-09-29 14:54 - 2017-09-29 14:58 - 000000036 _____ C:\WINDOWS\progress.ini
    2017-09-29 14:39 - 2017-09-29 15:20 - 000000000 ____D C:\Windows10Upgrade
    2017-09-29 14:39 - 2017-09-29 14:54 - 000000000 ___HD C:\$GetCurrent
    2017-09-29 14:39 - 2017-09-29 14:39 - 000000816 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Asystent aktualizacji do systemu Windows 10.lnk
    2017-09-29 14:28 - 2017-09-29 14:28 - 000000000 ____D C:\WINDOWS\UpdateAssistant
    2017-09-28 20:18 - 2017-09-29 20:25 - 000000514 _____ C:\Users\Misiek\Desktop\Nowy dokument tekstowy (2).txt
    2017-09-28 14:47 - 2017-09-28 14:47 - 000000000 ____D C:\Users\Misiek\AppData\Roaming\McAfee Safe Connect
    2017-09-28 14:47 - 2017-09-28 14:47 - 000000000 ____D C:\Users\Misiek\AppData\Local\McAfee_Inc
    2017-09-28 14:46 - 2017-09-28 14:49 - 000000000 ____D C:\Program Files (x86)\McAfee Safe Connect
    2017-09-28 14:41 - 2017-09-28 14:40 - 000000030 _____ C:\AVScanner.ini
    2017-09-28 14:39 - 2017-09-29 22:38 - 000000000 ____D C:\Users\Misiek\AppData\Local\Adobe
    2017-09-13 14:19 - 2017-09-05 11:11 - 000042928 _____ (Microsoft Corporation) C:\WINDOWS\system32\tbs.dll
    2017-09-13 14:19 - 2017-09-05 11:07 - 000994760 _____ (Microsoft Corporation) C:\WINDOWS\system32\ucrtbase.dll
    2017-09-13 14:19 - 2017-09-05 09:56 - 001552104 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmde.dll
    2017-09-13 14:19 - 2017-09-05 09:51 - 000808288 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWAHost.exe
    2017-09-13 14:19 - 2017-09-05 09:45 - 006536248 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppsvc.exe
    2017-09-13 14:19 - 2017-09-05 09:20 - 000845568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MrmCoreR.dll
    2017-09-13 14:19 - 2017-09-05 09:19 - 001862008 _____ C:\WINDOWS\SysWOW64\CoreUIComponents.dll
    2017-09-13 14:19 - 2017-09-05 09:19 - 001542816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll
    2017-09-13 14:19 - 2017-09-05 09:11 - 000922432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ucrtbase.dll
    2017-09-13 14:19 - 2017-09-05 09:11 - 000035624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tbs.dll
    2017-09-13 14:19 - 2017-09-05 08:47 - 000020992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\genericusbfn.sys
    2017-09-13 14:19 - 2017-09-05 08:38 - 001349640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winmde.dll
    2017-09-13 14:19 - 2017-09-05 08:35 - 000043008 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BthAvrcpTg.sys
    2017-09-13 14:19 - 2017-09-05 08:32 - 002946672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
    2017-09-13 14:19 - 2017-09-05 08:32 - 000703840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWAHost.exe
    2017-09-13 14:19 - 2017-09-05 08:29 - 021123832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
    2017-09-13 14:19 - 2017-09-05 08:29 - 005240960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll
    2017-09-13 14:19 - 2017-09-05 08:29 - 000465760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncHost.exe
    2017-09-13 14:19 - 2017-09-05 08:27 - 000046592 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmTasks.dll
    2017-09-13 14:19 - 2017-09-05 08:26 - 000079872 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hdaudbus.sys
    2017-09-13 14:19 - 2017-09-05 08:23 - 000174944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\basecsp.dll
    2017-09-13 14:19 - 2017-09-05 08:06 - 000546968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe
    2017-09-13 14:19 - 2017-09-05 08:06 - 000262496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WerFault.exe
    2017-09-13 14:19 - 2017-09-05 08:05 - 000540280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wer.dll
    2017-09-13 14:19 - 2017-09-05 08:04 - 001523184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WindowsCodecs.dll
    2017-09-13 14:19 - 2017-09-05 08:04 - 001368176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32.dll
    2017-09-13 14:19 - 2017-09-05 08:04 - 000335248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Faultrep.dll
    2017-09-13 14:19 - 2017-09-05 08:04 - 000141664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wermgr.exe
    2017-09-13 14:19 - 2017-09-05 08:01 - 000727552 _____ (Microsoft Corporation) C:\WINDOWS\system32\nshwfp.dll
    2017-09-13 14:19 - 2017-09-05 07:54 - 000236032 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srvnet.sys
    2017-09-13 14:19 - 2017-09-05 07:48 - 000320000 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptngc.dll
    2017-09-13 14:19 - 2017-09-05 07:40 - 000089088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\olepro32.dll
    2017-09-13 14:19 - 2017-09-05 07:37 - 000865792 _____ (Microsoft Corporation) C:\WINDOWS\system32\AzureSettingSyncProvider.dll
    2017-09-13 14:19 - 2017-09-05 07:30 - 000025600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\odbcconf.dll
    2017-09-13 14:19 - 2017-09-05 07:19 - 000062464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntprint.exe
    2017-09-13 14:19 - 2017-09-05 07:15 - 000073728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDeviceRegistration.Ngc.dll
    2017-09-13 14:19 - 2017-09-05 07:13 - 000179712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\authz.dll
    2017-09-13 14:19 - 2017-09-05 07:13 - 000095232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDeviceRegistration.dll
    2017-09-13 14:19 - 2017-09-05 07:12 - 000256512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\unimdm.tsp
    2017-09-13 14:19 - 2017-09-05 07:11 - 000313344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dsreg.dll
    2017-09-13 14:19 - 2017-09-05 07:11 - 000205312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oemlicense.dll
    2017-09-13 14:19 - 2017-09-05 07:10 - 002279936 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
    2017-09-13 14:19 - 2017-09-05 07:09 - 000310784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntprint.dll
    2017-09-13 14:19 - 2017-09-05 07:08 - 000228352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\scksp.dll
    2017-09-13 14:19 - 2017-09-05 07:06 - 000092160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\IdCtrls.dll
    2017-09-13 14:19 - 2017-09-05 07:03 - 000146432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWWIN.EXE
    2017-09-13 14:19 - 2017-09-05 07:02 - 000461312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PCPTpm12.dll
    2017-09-13 14:19 - 2017-09-05 07:02 - 000260096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\apprepsync.dll
    2017-09-13 14:19 - 2017-09-05 07:01 - 000365056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TpmCoreProvisioning.dll
    2017-09-13 14:19 - 2017-09-05 07:00 - 000339968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMPhoto.dll
    2017-09-13 14:19 - 2017-09-05 07:00 - 000190976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\apprepapi.dll
    2017-09-13 14:19 - 2017-09-05 06:57 - 000541184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GamePanel.exe
    2017-09-13 14:19 - 2017-09-05 06:55 - 000576000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\nshwfp.dll
    2017-09-13 14:19 - 2017-09-05 06:53 - 000395776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\werui.dll
    2017-09-13 14:19 - 2017-09-05 06:53 - 000238592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WindowsCodecsExt.dll
    2017-09-13 14:19 - 2017-09-05 06:52 - 000705536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netlogon.dll
    2017-09-13 14:19 - 2017-09-05 06:52 - 000250880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
    2017-09-13 14:19 - 2017-09-05 06:51 - 000401920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winspool.drv
    2017-09-13 14:19 - 2017-09-05 06:48 - 000780800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tdh.dll
    2017-09-13 14:19 - 2017-09-05 06:48 - 000153088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSSync.dll
    2017-09-13 14:19 - 2017-09-05 06:47 - 000788992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll
    2017-09-13 14:19 - 2017-09-05 06:46 - 000400896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OneDriveSettingSyncProvider.dll
    2017-09-13 14:19 - 2017-09-05 06:45 - 001151488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\certutil.exe
    2017-09-13 14:19 - 2017-09-05 06:45 - 000241664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cryptngc.dll
    2017-09-13 14:19 - 2017-09-05 06:41 - 001467392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GdiPlus.dll
    2017-09-13 14:19 - 2017-09-05 06:40 - 000805888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSShared.dll
    2017-09-13 14:19 - 2017-09-05 06:38 - 003695104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_47.dll
    2017-09-13 14:19 - 2017-09-05 06:37 - 000764928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Cred.dll
    2017-09-13 14:19 - 2017-09-05 06:37 - 000667648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AzureSettingSyncProvider.dll
    2017-09-13 14:19 - 2017-09-05 06:36 - 000207872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\licensingdiag.exe
    2017-09-13 14:19 - 2017-09-05 06:23 - 004078080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dbgeng.dll
    2017-09-13 14:19 - 2017-09-05 06:20 - 002911744 _____ (Microsoft Corporation) C:\WINDOWS\system32\CertEnroll.dll
    2017-09-13 14:19 - 2017-09-05 06:20 - 001123328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XpsPrint.dll
    2017-09-13 14:19 - 2017-09-05 06:19 - 007536128 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll
    2017-09-13 14:19 - 2017-09-05 06:19 - 000314880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XpsDocumentTargetPrint.dll
    2017-09-13 14:19 - 2017-09-05 06:18 - 002102272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xpsservices.dll
    2017-09-13 14:19 - 2017-09-05 06:16 - 001626112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmcore.dll
    2017-09-13 14:19 - 2017-09-05 06:16 - 001501184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
    2017-09-13 14:19 - 2017-09-05 06:15 - 000076800 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngcpopkeysrv.dll
    2017-09-13 14:19 - 2017-09-05 06:13 - 002881536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
    2017-09-13 14:19 - 2017-09-05 06:12 - 004412928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExplorerFrame.dll
    2017-09-13 14:19 - 2017-09-05 06:12 - 003053568 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcore.dll
    2017-09-13 14:19 - 2017-09-05 06:12 - 002680320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msftedit.dll
    2017-09-13 14:19 - 2017-09-05 06:11 - 001556992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OpcServices.dll
    2017-09-13 14:19 - 2017-09-05 06:11 - 000224768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shdocvw.dll
    2017-09-13 14:19 - 2017-09-05 06:10 - 006296064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mos.dll
    2017-09-13 14:19 - 2017-09-05 06:10 - 001799680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Logon.dll
    2017-09-13 14:19 - 2017-09-05 06:07 - 003574272 _____ (Microsoft Corporation) C:\WINDOWS\system32\tquery.dll
    2017-09-13 14:19 - 2017-09-05 06:06 - 004759040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d2d1.dll
    2017-09-13 14:19 - 2017-09-05 06:04 - 005205504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BingMaps.dll
    2017-09-13 14:19 - 2017-09-05 05:55 - 002770432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tquery.dll
    2017-09-13 14:19 - 2017-09-05 05:51 - 004404736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Search.dll
    2017-09-13 14:19 - 2017-09-05 05:48 - 005327872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll
    2017-09-13 14:19 - 2017-09-05 05:48 - 000339456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\certcli.dll
    2017-09-13 14:19 - 2017-09-05 05:44 - 006742528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll
    2017-09-13 14:19 - 2017-09-05 05:44 - 002604032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CertEnroll.dll
    2017-09-13 14:19 - 2017-09-05 05:39 - 002632192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpcore.dll
    2017-09-13 14:19 - 2017-09-05 05:18 - 000461824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CoreMessaging.dll
    2017-09-13 14:19 - 2017-06-17 07:56 - 001984000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssrch.dll
    2017-09-13 14:19 - 2017-06-03 11:44 - 000760320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchIndexer.exe
    2017-09-13 14:19 - 2016-09-07 06:31 - 000282624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Search.ProtocolHandler.MAPI2.dll
    2017-09-13 14:19 - 2016-09-07 06:28 - 000282624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchProtocolHost.exe
    2017-09-13 14:18 - 2017-09-05 11:32 - 001997840 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
    2017-09-13 14:18 - 2017-09-05 11:32 - 001098648 _____ (Microsoft Corporation) C:\WINDOWS\system32\MrmCoreR.dll
    2017-09-13 14:18 - 2017-09-05 11:31 - 007463776 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
    2017-09-13 14:18 - 2017-09-05 11:31 - 002656960 _____ C:\WINDOWS\system32\CoreUIComponents.dll
    2017-09-13 14:18 - 2017-09-05 11:29 - 001819208 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
    2017-09-13 14:18 - 2017-09-05 11:14 - 001637216 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll
    2017-09-13 14:18 - 2017-09-05 10:40 - 003449168 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSService.dll
    2017-09-13 14:18 - 2017-09-05 09:57 - 000245848 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfps.dll
    2017-09-13 14:18 - 2017-09-05 09:51 - 003700816 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
    2017-09-13 14:18 - 2017-09-05 09:47 - 022560232 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
    2017-09-13 14:18 - 2017-09-05 09:47 - 006605000 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll
    2017-09-13 14:18 - 2017-09-05 09:44 - 000609056 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys
    2017-09-13 14:18 - 2017-09-05 09:44 - 000161632 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys
    2017-09-13 14:18 - 2017-09-05 09:19 - 001558288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll
    2017-09-13 14:18 - 2017-09-05 09:18 - 001777792 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecs.dll
    2017-09-13 14:18 - 2017-09-05 09:05 - 000388896 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpps.dll
    2017-09-13 14:18 - 2017-09-05 08:59 - 000084480 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpudd.dll
    2017-09-13 14:18 - 2017-09-05 08:46 - 000824320 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcWebFilter.dll
    2017-09-13 14:18 - 2017-09-05 08:45 - 000031232 _____ (Microsoft Corporation) C:\WINDOWS\system32\odbcconf.dll
    2017-09-13 14:18 - 2017-09-05 08:34 - 000021504 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnpinst.exe
    2017-09-13 14:18 - 2017-09-05 08:32 - 000063488 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntprint.exe
    2017-09-13 14:18 - 2017-09-05 08:28 - 000077824 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\nsiproxy.sys
    2017-09-13 14:18 - 2017-09-05 08:24 - 000030720 _____ (Microsoft Corporation) C:\WINDOWS\system32\nsisvc.dll
    2017-09-13 14:18 - 2017-09-05 08:23 - 000297472 _____ (Microsoft Corporation) C:\WINDOWS\system32\unimdm.tsp
    2017-09-13 14:18 - 2017-09-05 08:19 - 000350208 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntprint.dll
    2017-09-13 14:18 - 2017-09-05 08:19 - 000278528 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\netbt.sys
    2017-09-13 14:18 - 2017-09-05 08:17 - 000167936 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetpp.dll
    2017-09-13 14:18 - 2017-09-05 08:17 - 000143360 _____ (Microsoft Corporation) C:\WINDOWS\system32\wersvc.dll
    2017-09-13 14:18 - 2017-09-05 08:15 - 000291328 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtrans.dll
    2017-09-13 14:18 - 2017-09-05 08:15 - 000145920 _____ (Microsoft Corporation) C:\WINDOWS\system32\iepeers.dll
    2017-09-13 14:18 - 2017-09-05 08:15 - 000097280 _____ (Microsoft Corporation) C:\WINDOWS\system32\wercplsupport.dll
    2017-09-13 14:18 - 2017-09-05 08:13 - 000092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll
    2017-09-13 14:18 - 2017-09-05 08:12 - 000223232 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe
    2017-09-13 14:18 - 2017-09-05 08:11 - 000200192 _____ (Microsoft Corporation) C:\WINDOWS\system32\WUDFPlatform.dll
    2017-09-13 14:18 - 2017-09-05 08:10 - 000436224 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmCoreProvisioning.dll
    2017-09-13 14:18 - 2017-09-05 08:09 - 000689152 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieproxy.dll
    2017-09-13 14:18 - 2017-09-05 08:08 - 000764928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll
    2017-09-13 14:18 - 2017-09-05 08:06 - 000320000 _____ (Microsoft Corporation) C:\WINDOWS\system32\domgmt.dll
    2017-09-13 14:18 - 2017-09-05 08:05 - 000385024 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll
    2017-09-13 14:18 - 2017-09-05 08:04 - 000458752 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToDevice.dll
    2017-09-13 14:18 - 2017-09-05 07:57 - 000841728 _____ (Microsoft Corporation) C:\WINDOWS\system32\netlogon.dll
    2017-09-13 14:18 - 2017-09-05 07:57 - 000330240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
    2017-09-13 14:18 - 2017-09-05 07:56 - 000518656 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv
    2017-09-13 14:18 - 2017-09-05 07:52 - 000970752 _____ (Microsoft Corporation) C:\WINDOWS\system32\nettrace.dll
    2017-09-13 14:18 - 2017-09-05 07:52 - 000183808 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSSync.dll
    2017-09-13 14:18 - 2017-09-05 07:50 - 000967168 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll
    2017-09-13 14:18 - 2017-09-05 07:50 - 000262144 _____ (Microsoft Corporation) C:\WINDOWS\system32\webcheck.dll
    2017-09-13 14:18 - 2017-09-05 07:49 - 000785920 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll
    2017-09-13 14:18 - 2017-09-05 07:48 - 002129920 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
    2017-09-13 14:18 - 2017-09-05 07:44 - 000853504 _____ (Microsoft Corporation) C:\WINDOWS\system32\aadtb.dll
    2017-09-13 14:18 - 2017-09-05 07:44 - 000842240 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32spl.dll
    2017-09-13 14:18 - 2017-09-05 07:42 - 001752576 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll
    2017-09-13 14:18 - 2017-09-05 07:41 - 000961536 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSShared.dll
    2017-09-13 14:18 - 2017-09-05 07:40 - 001292800 _____ (Microsoft Corporation) C:\WINDOWS\system32\werconcpl.dll
    2017-09-13 14:18 - 2017-09-05 07:37 - 001742848 _____ (Microsoft Corporation) C:\WINDOWS\system32\wevtsvc.dll
    2017-09-13 14:18 - 2017-09-05 07:35 - 002054144 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidsvc.dll
    2017-09-13 14:18 - 2017-09-05 07:31 - 000572928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WpcWebFilter.dll
    2017-09-13 14:18 - 2017-09-05 07:30 - 000888832 _____ (Microsoft Corporation) C:\WINDOWS\system32\printfilterpipelinesvc.exe
    2017-09-13 14:18 - 2017-09-05 07:28 - 000838144 _____ (Microsoft Corporation) C:\WINDOWS\system32\uDWM.dll
    2017-09-13 14:18 - 2017-09-05 07:18 - 005123072 _____ (Microsoft Corporation) C:\WINDOWS\system32\dbgeng.dll
    2017-09-13 14:18 - 2017-09-05 07:17 - 001122816 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll
    2017-09-13 14:18 - 2017-09-05 07:15 - 001676800 _____ (Microsoft Corporation) C:\WINDOWS\system32\XpsPrint.dll
    2017-09-13 14:18 - 2017-09-05 07:13 - 000451072 _____ (Microsoft Corporation) C:\WINDOWS\system32\XpsDocumentTargetPrint.dll
    2017-09-13 14:18 - 2017-09-05 07:11 - 003046400 _____ (Microsoft Corporation) C:\WINDOWS\system32\xpsservices.dll
    2017-09-13 14:18 - 2017-09-05 07:11 - 001729024 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
    2017-09-13 14:18 - 2017-09-05 07:10 - 001946112 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
    2017-09-13 14:18 - 2017-09-05 07:10 - 001096192 _____ (Microsoft Corporation) C:\WINDOWS\system32\dosvc.dll
    2017-09-13 14:18 - 2017-09-05 07:06 - 000268800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxtrans.dll
    2017-09-13 14:18 - 2017-09-05 07:05 - 003405312 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
    2017-09-13 14:18 - 2017-09-05 07:05 - 000128000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iepeers.dll
    2017-09-13 14:18 - 2017-09-05 07:04 - 000083456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtmled.dll
    2017-09-13 14:18 - 2017-09-05 07:03 - 007977984 _____ (Microsoft Corporation) C:\WINDOWS\system32\mos.dll
    2017-09-13 14:18 - 2017-09-05 07:03 - 002055680 _____ (Microsoft Corporation) C:\WINDOWS\system32\OpcServices.dll
    2017-09-13 14:18 - 2017-09-05 07:01 - 000307200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieproxy.dll
    2017-09-13 14:18 - 2017-09-05 06:58 - 000337408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iedkcs32.dll
    2017-09-13 14:18 - 2017-09-05 06:47 - 000230400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webcheck.dll
    2017-09-13 14:18 - 2017-09-05 06:46 - 000689152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll
    2017-09-13 14:18 - 2017-09-05 06:45 - 002051584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl
    2017-09-13 14:18 - 2017-09-05 06:45 - 001383424 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
    2017-09-13 14:18 - 2017-09-05 06:44 - 007200256 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingMaps.dll
    2017-09-13 14:18 - 2017-09-05 06:42 - 000957952 _____ (Microsoft Corporation) C:\WINDOWS\system32\IKEEXT.DLL
    2017-09-13 14:18 - 2017-09-05 06:40 - 001526272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll
    2017-09-13 14:18 - 2017-09-05 06:34 - 004890624 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
    2017-09-13 14:18 - 2017-09-05 06:31 - 022377472 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
    2017-09-13 14:18 - 2017-09-05 06:28 - 013410816 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
    2017-09-13 14:18 - 2017-09-05 06:23 - 024606720 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
    2017-09-13 14:18 - 2017-09-05 06:23 - 006312448 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Search.dll
    2017-09-13 14:18 - 2017-09-05 06:06 - 007841792 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
    2017-09-13 14:18 - 2017-09-05 05:57 - 003662848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
    2017-09-13 14:18 - 2017-09-05 05:48 - 019346432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
    2017-09-13 14:18 - 2017-09-05 05:48 - 018675200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
    2017-09-13 14:18 - 2017-09-05 05:48 - 012155904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
    2017-09-13 14:18 - 2017-09-05 05:37 - 005661184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
    2017-09-13 14:18 - 2016-10-25 07:42 - 002876928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Wpc.dll
    2017-09-13 14:17 - 2017-09-05 11:34 - 001030416 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
    2017-09-13 14:17 - 2017-09-05 11:27 - 000754664 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreMessaging.dll
    2017-09-13 14:17 - 2017-09-05 09:48 - 000566112 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncHost.exe
    2017-09-13 14:17 - 2017-09-05 09:46 - 001540216 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll
    2017-09-13 14:17 - 2017-09-05 09:46 - 000692136 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppwinob.dll
    2017-09-13 14:17 - 2017-09-05 09:45 - 001128104 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipUp.exe
    2017-09-13 14:17 - 2017-09-05 09:44 - 000625000 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipSVC.dll
    2017-09-13 14:17 - 2017-09-05 09:41 - 000202592 _____ (Microsoft Corporation) C:\WINDOWS\system32\basecsp.dll
    2017-09-13 14:17 - 2017-09-05 09:19 - 000636816 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe
    2017-09-13 14:17 - 2017-09-05 09:19 - 000292192 _____ (Microsoft Corporation) C:\WINDOWS\system32\WerFault.exe
    2017-09-13 14:17 - 2017-09-05 09:18 - 001597520 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32.dll
    2017-09-13 14:17 - 2017-09-05 09:18 - 000642520 _____ (Microsoft Corporation) C:\WINDOWS\system32\wer.dll
    2017-09-13 14:17 - 2017-09-05 09:18 - 000380152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Faultrep.dll
    2017-09-13 14:17 - 2017-09-05 09:18 - 000147808 _____ (Microsoft Corporation) C:\WINDOWS\system32\wermgr.exe
    2017-09-13 14:17 - 2017-09-05 08:45 - 000061952 _____ (Microsoft Corporation) C:\WINDOWS\system32\vss_ps.dll
    2017-09-13 14:17 - 2017-09-05 08:34 - 000584704 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIRibbonRes.dll
    2017-09-13 14:17 - 2017-09-05 08:32 - 000043008 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\scfilter.sys
    2017-09-13 14:17 - 2017-09-05 08:27 - 000087040 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDeviceRegistration.Ngc.dll
    2017-09-13 14:17 - 2017-09-05 08:25 - 000485376 _____ (Microsoft Corporation) C:\WINDOWS\system32\nltest.exe
    2017-09-13 14:17 - 2017-09-05 08:25 - 000117760 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDeviceRegistration.dll
    2017-09-13 14:17 - 2017-09-05 08:24 - 000277504 _____ (Microsoft Corporation) C:\WINDOWS\system32\authz.dll
    2017-09-13 14:17 - 2017-09-05 08:22 - 000368128 _____ (Microsoft Corporation) C:\WINDOWS\system32\dsreg.dll
    2017-09-13 14:17 - 2017-09-05 08:22 - 000285184 _____ (Microsoft Corporation) C:\WINDOWS\system32\oemlicense.dll
    2017-09-13 14:17 - 2017-09-05 08:20 - 000356352 _____ (Microsoft Corporation) C:\WINDOWS\system32\mcbuilder.exe
    2017-09-13 14:17 - 2017-09-05 08:18 - 000252416 _____ (Microsoft Corporation) C:\WINDOWS\system32\scksp.dll
    2017-09-13 14:17 - 2017-09-05 08:15 - 000110080 _____ (Microsoft Corporation) C:\WINDOWS\system32\IdCtrls.dll
    2017-09-13 14:17 - 2017-09-05 08:13 - 000198144 _____ (Microsoft Corporation) C:\WINDOWS\system32\winsrv.dll
    2017-09-13 14:17 - 2017-09-05 08:12 - 000171520 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWWIN.EXE
    2017-09-13 14:17 - 2017-09-05 08:11 - 000235520 _____ (Microsoft Corporation) C:\WINDOWS\system32\SCardSvr.dll
    2017-09-13 14:17 - 2017-09-05 08:10 - 000549376 _____ (Microsoft Corporation) C:\WINDOWS\system32\PCPTpm12.dll
    2017-09-13 14:17 - 2017-09-05 08:10 - 000381952 _____ (Microsoft Corporation) C:\WINDOWS\system32\apprepsync.dll
    2017-09-13 14:17 - 2017-09-05 08:08 - 000287744 _____ (Microsoft Corporation) C:\WINDOWS\system32\apprepapi.dll
    2017-09-13 14:17 - 2017-09-05 08:04 - 000715264 _____ (Microsoft Corporation) C:\WINDOWS\system32\GamePanel.exe
    2017-09-13 14:17 - 2017-09-05 08:02 - 000228864 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsqmcons.exe
    2017-09-13 14:17 - 2017-09-05 07:59 - 000452608 _____ (Microsoft Corporation) C:\WINDOWS\system32\werui.dll
    2017-09-13 14:17 - 2017-09-05 07:59 - 000276480 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecsExt.dll
    2017-09-13 14:17 - 2017-09-05 07:57 - 000602112 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptui.dll
    2017-09-13 14:17 - 2017-09-05 07:52 - 000985088 _____ (Microsoft Corporation) C:\WINDOWS\system32\tdh.dll
    2017-09-13 14:17 - 2017-09-05 07:50 - 002125312 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Bluetooth.dll
    2017-09-13 14:17 - 2017-09-05 07:49 - 001418240 _____ (Microsoft Corporation) C:\WINDOWS\system32\certutil.exe
    2017-09-13 14:17 - 2017-09-05 07:49 - 000515072 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneDriveSettingSyncProvider.dll
    2017-09-13 14:17 - 2017-09-05 07:46 - 001385472 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
    2017-09-13 14:17 - 2017-09-05 07:43 - 001717760 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll
    2017-09-13 14:17 - 2017-09-05 07:38 - 001211904 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Cred.dll
    2017-09-13 14:17 - 2017-09-05 07:37 - 004456448 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_47.dll
    2017-09-13 14:17 - 2017-09-05 07:37 - 000236032 _____ (Microsoft Corporation) C:\WINDOWS\system32\licensingdiag.exe
    2017-09-13 14:17 - 2017-09-05 07:21 - 000584704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIRibbonRes.dll
    2017-09-13 14:17 - 2017-09-05 07:20 - 003588608 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
    2017-09-13 14:17 - 2017-09-05 07:20 - 002610176 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkMobileSettings.dll
    2017-09-13 14:17 - 2017-09-05 07:15 - 000064512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MshtmlDac.dll
    2017-09-13 14:17 - 2017-09-05 07:05 - 004827136 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExplorerFrame.dll
    2017-09-13 14:17 - 2017-09-05 07:04 - 003355136 _____ (Microsoft Corporation) C:\WINDOWS\system32\msftedit.dll
    2017-09-13 14:17 - 2017-09-05 07:03 - 000244736 _____ (Microsoft Corporation) C:\WINDOWS\system32\shdocvw.dll
    2017-09-13 14:17 - 2017-09-05 06:58 - 002635776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Logon.dll
    2017-09-13 14:17 - 2017-09-05 06:56 - 005503488 _____ (Microsoft Corporation) C:\WINDOWS\system32\d2d1.dll
    2017-09-13 14:17 - 2017-09-05 06:54 - 003585536 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsThresholdAdminFlowUI.dll
    2017-09-13 14:17 - 2017-09-05 06:24 - 006978048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll
    2017-09-13 14:17 - 2017-09-05 06:21 - 000459776 _____ (Microsoft Corporation) C:\WINDOWS\system32\certcli.dll
    2017-09-13 14:17 - 2017-09-05 06:16 - 000389632 _____ (Microsoft Corporation) C:\WINDOWS\system32\tpmvsc.dll
    2017-09-13 14:17 - 2017-09-05 06:02 - 001087488 _____ (Microsoft Corporation) C:\WINDOWS\system32\reseteng.dll
    2017-09-12 21:44 - 2017-09-12 21:44 - 006476800 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerInstaller.exe
    2017-09-03 14:33 - 2017-09-03 14:33 - 000000000 ____D C:\Users\Misiek\Desktop\LG

    ==================== Jeden miesiąc - zmodyfikowane pliki i foldery ========

    (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.)

    2017-09-30 23:26 - 2016-10-05 22:54 - 000000000 ____D C:\Program Files (x86)\Vistumbler
    2017-09-30 20:48 - 2016-04-25 21:18 - 000000000 ____D C:\Users\Misiek
    2017-09-30 20:45 - 2016-11-18 13:43 - 000000000 ____D C:\Users\Misiek\AppData\LocalLow\Mozilla
    2017-09-30 20:44 - 2016-04-24 18:13 - 000000000 __SHD C:\Users\Misiek\IntelGraphicsProfiles
    2017-09-30 20:43 - 2017-03-01 16:45 - 000000000 ____D C:\WINDOWS\Minidump
    2017-09-30 20:43 - 2016-02-13 19:48 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
    2017-09-30 16:20 - 2016-11-07 19:15 - 000000000 ____D C:\ProgramData\Malwarebytes
    2017-09-30 16:19 - 2016-10-02 20:38 - 000000000 ____D C:\AdwCleaner
    2017-09-30 16:02 - 2015-10-30 08:28 - 000786432 ___SH C:\WINDOWS\system32\config\BBI
    2017-09-30 15:07 - 2017-06-29 10:06 - 000000000 ____D C:\WINDOWS\system32\UNP
    2017-09-30 15:07 - 2017-04-16 21:25 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
    2017-09-30 15:07 - 2017-02-21 21:35 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\e-pity
    2017-09-30 15:07 - 2016-11-09 20:39 - 000000000 ____D C:\WINDOWS\SysWOW64\BestPractices
    2017-09-30 15:07 - 2016-04-25 21:15 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Music, Photos and Videos
    2017-09-30 15:07 - 2016-04-25 21:14 - 000000000 ____D C:\Program Files\Intel
    2017-09-30 15:07 - 2016-04-25 21:14 - 000000000 ____D C:\Program Files\AMD
    2017-09-30 15:07 - 2016-04-25 21:13 - 000000000 ____D C:\Program Files (x86)\Intel
    2017-09-30 15:07 - 2016-04-24 18:13 - 000000000 ____D C:\Users\Misiek\AppData\Local\TileDataLayer
    2017-09-30 15:07 - 2016-04-24 16:51 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Security and Protection
    2017-09-30 15:07 - 2016-04-24 16:38 - 000000000 ____D C:\WINDOWS\SysWOW64\sda
    2017-09-30 15:07 - 2016-04-24 16:34 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Productivity and Tools
    2017-09-30 15:07 - 2016-02-13 19:52 - 000000000 __RHD C:\Users\Public\AccountPictures
    2017-09-30 15:07 - 2015-10-30 09:24 - 000000000 ___HD C:\Program Files\WindowsApps
    2017-09-30 15:07 - 2015-10-30 09:24 - 000000000 ____D C:\WINDOWS\SysWOW64\Macromed
    2017-09-30 15:07 - 2015-10-30 09:24 - 000000000 ____D C:\WINDOWS\SysWOW64\inetsrv
    2017-09-30 15:07 - 2015-10-30 09:24 - 000000000 ____D C:\WINDOWS\system32\WinBioDatabase
    2017-09-30 15:07 - 2015-10-30 09:24 - 000000000 ____D C:\WINDOWS\system32\spool
    2017-09-30 15:07 - 2015-10-30 09:24 - 000000000 ____D C:\WINDOWS\system32\NDF
    2017-09-30 15:07 - 2015-10-30 09:24 - 000000000 ____D C:\WINDOWS\system32\Macromed
    2017-09-30 15:07 - 2015-10-30 09:24 - 000000000 ____D C:\WINDOWS\LiveKernelReports
    2017-09-30 15:07 - 2015-10-30 09:24 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
    2017-09-30 15:07 - 2015-10-30 09:24 - 000000000 ____D C:\Program Files\Common Files\microsoft shared
    2017-09-30 14:27 - 2015-10-30 09:21 - 000000000 ____D C:\WINDOWS\INF
    2017-09-30 13:22 - 2016-11-08 19:14 - 000000000 ____D C:\Users\Misiek\Desktop\Pliki Dokumenty Sebastiana
    2017-09-30 12:49 - 2016-04-24 23:49 - 000000000 ____D C:\Users\Misiek\AppData\Roaming\GG
    2017-09-29 17:01 - 2016-04-24 18:19 - 000000000 ___RD C:\Users\Misiek\OneDrive
    2017-09-29 16:53 - 2015-10-30 09:24 - 000000000 ____D C:\WINDOWS\Registration
    2017-09-29 16:50 - 2016-04-25 21:28 - 000023140 _____ C:\WINDOWS\system32\emptyregdb.dat
    2017-09-29 16:42 - 2015-09-02 11:33 - 000000000 ____D C:\WINDOWS\SysWOW64\Adobe
    2017-09-29 15:20 - 2016-04-25 22:09 - 000000000 ___DC C:\WINDOWS\Panther
    2017-09-29 15:20 - 2016-04-24 17:29 - 000001908 _____ C:\WINDOWS\diagwrn.xml
    2017-09-29 15:20 - 2016-04-24 17:29 - 000001908 _____ C:\WINDOWS\diagerr.xml
    2017-09-29 15:19 - 2015-10-30 08:28 - 000032768 ___SH C:\WINDOWS\system32\config\ELAM
    2017-09-28 14:40 - 2016-04-24 16:48 - 000000000 ____D C:\ProgramData\mcafee
    2017-09-28 12:37 - 2015-10-30 09:24 - 000000000 ____D C:\WINDOWS\AppReadiness
    2017-09-17 13:20 - 2016-04-25 21:18 - 002046684 _____ C:\WINDOWS\system32\PerfStringBackup.INI
    2017-09-17 13:20 - 2016-02-13 19:29 - 000890994 _____ C:\WINDOWS\system32\perfh015.dat
    2017-09-17 13:20 - 2016-02-13 19:29 - 000193592 _____ C:\WINDOWS\system32\perfc015.dat
    2017-09-15 20:38 - 2015-10-30 09:24 - 000000000 ____D C:\WINDOWS\rescache
    2017-09-15 15:35 - 2017-07-21 10:57 - 000000000 ____D C:\Program Files\rempl
    2017-09-14 10:18 - 2016-02-13 10:45 - 000272808 _____ C:\WINDOWS\system32\FNTCACHE.DAT
    2017-09-13 23:58 - 2015-10-30 09:24 - 000000000 ___SD C:\WINDOWS\SysWOW64\F12
    2017-09-13 23:58 - 2015-10-30 09:24 - 000000000 ___SD C:\WINDOWS\system32\F12
    2017-09-13 23:58 - 2015-10-30 09:24 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
    2017-09-13 23:58 - 2015-10-30 09:24 - 000000000 ___RD C:\WINDOWS\DevicesFlow
    2017-09-13 23:58 - 2015-10-30 09:24 - 000000000 ____D C:\WINDOWS\system32\oobe
    2017-09-13 23:58 - 2015-10-30 09:24 - 000000000 ____D C:\Program Files\Windows Photo Viewer
    2017-09-13 23:58 - 2015-10-30 09:24 - 000000000 ____D C:\Program Files\Windows Defender
    2017-09-13 23:58 - 2015-10-30 09:24 - 000000000 ____D C:\Program Files (x86)\Windows Photo Viewer
    2017-09-13 23:58 - 2015-10-30 09:24 - 000000000 ____D C:\Program Files (x86)\Windows Defender
    2017-09-13 19:15 - 2017-06-30 17:12 - 000000000 ____D C:\Users\Misiek\Desktop\Zdjęcia wizja, weeb
    2017-09-13 14:28 - 2016-04-24 22:19 - 000000000 ____D C:\WINDOWS\system32\MRT
    2017-09-13 14:23 - 2016-04-24 22:19 - 138202976 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
    2017-09-13 14:23 - 2015-10-30 09:11 - 000000000 ____D C:\WINDOWS\CbsTemp
    2017-09-05 09:42 - 2016-02-13 19:50 - 002718208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
    2017-09-02 01:58 - 2015-10-30 09:26 - 000835576 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
    2017-09-02 01:58 - 2015-10-30 09:26 - 000177656 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl

    ==================== Pliki w katalogu głównym wybranych folderów =======

    2016-04-24 18:13 - 2017-09-30 20:44 - 000945852 _____ () C:\Users\Misiek\AppData\Local\BTServer.log

    Niektóre pliki w TEMP:
    ====================
    2017-09-28 14:46 - 2017-09-28 14:46 - 000290304 _____ (Microsoft Corporation) C:\Users\Misiek\AppData\Local\Temp\CakeTubeSdk.Windows.Service.subinacl.exe

    ==================== Bamital & volsnap ======================

    (Brak automatycznej naprawy dla plików które nie przeszły weryfikacji.)

    C:\WINDOWS\system32\winlogon.exe => Plik podpisany cyfrowo
    C:\WINDOWS\system32\wininit.exe => Plik podpisany cyfrowo
    C:\WINDOWS\explorer.exe => Plik podpisany cyfrowo
    C:\WINDOWS\SysWOW64\explorer.exe => Plik podpisany cyfrowo
    C:\WINDOWS\system32\svchost.exe => Plik podpisany cyfrowo
    C:\WINDOWS\SysWOW64\svchost.exe => Plik podpisany cyfrowo
    C:\WINDOWS\system32\services.exe => Plik podpisany cyfrowo
    C:\WINDOWS\system32\User32.dll => Plik podpisany cyfrowo
    C:\WINDOWS\SysWOW64\User32.dll => Plik podpisany cyfrowo
    C:\WINDOWS\system32\userinit.exe => Plik podpisany cyfrowo
    C:\WINDOWS\SysWOW64\userinit.exe => Plik podpisany cyfrowo
    C:\WINDOWS\system32\rpcss.dll => Plik podpisany cyfrowo
    C:\WINDOWS\system32\dnsapi.dll => Plik podpisany cyfrowo
    C:\WINDOWS\SysWOW64\dnsapi.dll => Plik podpisany cyfrowo
    C:\WINDOWS\system32\Drivers\volsnap.sys => Plik podpisany cyfrowo

    LastRegBack: 2017-09-24 10:06

    ==================== Koniec FRST.txt ============================

    Dodano po 10 [minuty]:

    Na innej przeglądarce jest wszystko ok

    0
  • #15 01 Paź 2017 08:22
    xoree
    Poziom 29  

    A gdzie drugi plik ??
    Załączaj na forum pliki jako pliki a nie ich zawartość.

    0
  • #16 01 Paź 2017 10:56
    sebaele22
    Poziom 30  

    ==================== Zainstalowane programy ======================

    (W fixlist dozwolone tylko załączanie programów adware z flagą "Hidden" w celu ich uwidocznienia. Programy adware powinny zostać w poprawny sposób odinstalowane.)

    Adobe Flash Player 27 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 27.0.0.130 - Adobe Systems Incorporated)
    Adobe Shockwave Player 12.1 (HKLM-x32\...\Adobe Shockwave Player) (Version: 12.1.7.157 - Adobe Systems, Inc.)
    AMD Catalyst Install Manager (HKLM\...\{A14A2A00-D5CB-867E-8C03-8108DC2702D7}) (Version: 8.0.916.0 - Advanced Micro Devices, Inc.)
    Asystent aktualizacji do systemu Windows 10 (HKLM-x32\...\{D5C69738-B486-402E-85AC-2456D98A64E4}) (Version: 1.4.9200.22243 - Microsoft Corporation)
    Avast SecureLine (HKLM\...\{2CD3C92F-EDC5-4B02-9B0A-9C1D37C58EF5}_is1) (Version: 1.0.239.2 - AVAST Software)
    Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.)
    CCleaner (HKLM\...\CCleaner) (Version: 5.32 - Piriform)
    Cisco EAP-FAST Module (HKLM-x32\...\{64BF0187-F3D2-498B-99EA-163AF9AE6EC9}) (Version: 2.2.14 - Cisco Systems, Inc.)
    Cisco LEAP Module (HKLM-x32\...\{AF312B06-5C5C-468E-89B3-BE6DE2645722}) (Version: 1.0.19 - Cisco Systems, Inc.)
    Cisco PEAP Module (HKLM-x32\...\{0A4EF0E6-A912-4CDE-A7F3-6E56E7C13A2F}) (Version: 1.1.6 - Cisco Systems, Inc.)
    CyberLink PhotoDirector (HKLM\...\{5A454EC5-217A-42a5-8CE1-2DDEC4E70E01}) (Version: 5.0.5.6713 - Nazwa firmy) Hidden
    CyberLink PhotoDirector (HKLM-x32\...\InstallShield_{5A454EC5-217A-42a5-8CE1-2DDEC4E70E01}) (Version: 5.0.5.6713 - CyberLink Corp.)
    CyberLink Power Media Player 14 (HKLM-x32\...\{32C8E300-BDB4-4398-92C2-E9B7D8A233DB}) (Version: 14.0.1.5418 - CyberLink Corp.)
    CyberLink PowerDirector 12 (HKLM\...\{E1646825-D391-42A0-93AA-27FA810DA093}) (Version: 12.0.4.4301 - Nazwa firmy) Hidden
    CyberLink PowerDirector 12 (HKLM-x32\...\InstallShield_{E1646825-D391-42A0-93AA-27FA810DA093}) (Version: 12.0.4.4301 - CyberLink Corp.)
    CyberLink YouCam (HKLM-x32\...\{A9CEDD6E-4792-493e-BB35-D86D2E188A5A}) (Version: 6.0.1.4301 - CyberLink Corp.)
    DisableMSDefender (HKLM\...\{74FE39A0-FB76-47CD-84BA-91E2BBB17EF2}) (Version: 1.0.0 - Hewlett-Packard Company) Hidden
    Energy Star (HKLM\...\{465CA2B6-98AF-4E77-BE22-A908C34BB9EC}) (Version: 1.0.9 - Hewlett-Packard Company)
    e-pity 8.0.12 za rok 2016 (HKLM-x32\...\{80D8170E-5590-218-B9ED-E24E4C99A11D}_is1) (Version: 8.0.12 - e-file sp. z o.o. sp.k.)
    GG (HKU\S-1-5-21-2741257759-4006522167-587269252-1001\...\GG) (Version: 12 - GG Network S.A.)
    Intel(R) Dynamic Platform and Thermal Framework (HKLM-x32\...\{654EE65D-FAA4-4EA6-8C07-DC94E6A304D4}) (Version: 8.1.10603.192 - Intel Corporation)
    Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 11.0.0.1158 - Intel Corporation)
    Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 21.20.16.4542 - Intel Corporation)
    Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 14.5.2.1088 - Intel Corporation)
    Intel® Software Guard Extensions Platform Software (HKLM\...\{10307C17-F7FD-405D-9F3B-0BF66EA43857}) (Version: 1.0.26920.1393 - Intel Corporation)
    KB4023057 (HKLM\...\{264FDD69-C4DF-476F-B1B8-7DCEE4AF839B}) (Version: 2.4.0.0 - Microsoft Corporation)
    Malwarebytes (wersja 3.2.2.2029) (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 3.2.2.2029 - Malwarebytes)
    Microsoft Office (HKLM-x32\...\{90150000-0138-0409-0000-0000000FF1CE}) (Version: 15.0.4693.1005 - Microsoft Corporation)
    Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
    Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
    Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
    Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
    Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
    Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
    Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
    Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
    Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
    Mozilla Firefox 55.0.3 (x64 pl) (HKLM\...\Mozilla Firefox 55.0.3 (x64 pl)) (Version: 55.0.3 - Mozilla)
    Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 55.0.3.6445 - Mozilla)
    OEM Application Profile (HKLM-x32\...\{B4B7FD8F-06FC-E277-4F29-8F75F8281D8F}) (Version: 1.00.0000 - Advanced Micro Devices, Inc.)
    Oprogramowanie mikroukładu Intel® (HKLM-x32\...\{a47edec4-fa11-4d02-b329-4424d0197af8}) (Version: 10.1.1.7 - Intel(R) Corporation) Hidden
    PX Profile Update (HKLM-x32\...\{6989BE86-B5BE-BF83-3AE9-4908B41EC1A2}) (Version: 1.00.1. - AMD) Hidden
    REALTEK Bluetooth Driver (HKLM-x32\...\{9D3D8C60-A5EF-4123-B2B9-172095903AB}) (Version: 1.0.0.42 - REALTEK Semiconductor Corp.)
    Realtek Card Reader (HKLM-x32\...\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}) (Version: 6.3.9600.31213 - Realtek Semiconductor Corp.)
    Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 10.1.505.2015 - Realtek)
    Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7944 - Realtek Semiconductor Corp.)
    REALTEK Wireless LAN Driver (HKLM-x32\...\{A5107464-AA9B-4177-8129-5FF2F42DD322}) (Version: 1.0.0.60 - REALTEK Semiconductor Corp.)
    Sony Mobile Update Engine (HKLM-x32\...\Update Engine) (Version: 2.17.3.201702131032 - Sony Mobile Communications Inc.)
    swMSM (HKLM-x32\...\{612C34C7-5E90-47D8-9B5C-0F717DD82726}) (Version: 12.0.0.1 - Adobe Systems, Inc) Hidden
    Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 19.3.11.45 - Synaptics Incorporated)
    UpdateAssistant (HKLM-x32\...\{DE45508F-369E-4476-8F19-088F4933340E}) (Version: 1.8.0.0 - Microsoft Corporation) Hidden
    Usługa Xperia Companion (HKLM\...\{D045DF86-7FF9-4CF2-919A-7BD172A43AAC}) (Version: 1.4.7.0 - Sony) Hidden
    Windows 10 Update and Privacy Settings (HKLM\...\{4DFCD818-036A-4229-A67D-CF17DC461D92}) (Version: 1.0.14.0 - Microsoft Corporation)
    Xperia Companion (HKLM-x32\...\{3FC90BF7-B316-40DF-819C-A06D70E5ED2E}) (Version: 1.4.7.0 - Sony) Hidden
    Xperia Companion (HKLM-x32\...\{efee6944-1231-492a-a157-93409130a098}) (Version: 1.4.7.0 - Sony)

    ==================== Niestandardowe rejestracje CLSID (filtrowane): ==========================

    (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)

    CustomCLSID: HKU\S-1-5-21-2741257759-4006522167-587269252-1001_Classes\CLSID\{E68D0A55-3C40-4712-B90D-DCFA93FF2534}\InprocServer32 -> C:\Users\Misiek\AppData\Roaming\GG\ggdrive\ggdrive-menu.dll (GG Network S.A.)
    ShellIconOverlayIdentifiers: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => -> Brak pliku
    ShellIconOverlayIdentifiers: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => -> Brak pliku
    ShellIconOverlayIdentifiers: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => -> Brak pliku
    ShellIconOverlayIdentifiers: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => -> Brak pliku
    ShellIconOverlayIdentifiers: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => -> Brak pliku
    ShellIconOverlayIdentifiers-x32: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => -> Brak pliku
    ShellIconOverlayIdentifiers-x32: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => -> Brak pliku
    ShellIconOverlayIdentifiers-x32: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => -> Brak pliku
    ShellIconOverlayIdentifiers-x32: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => -> Brak pliku
    ShellIconOverlayIdentifiers-x32: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => -> Brak pliku
    ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2017-08-30] (Malwarebytes)
    ContextMenuHandlers5: [ACE] -> {5E2121EE-0300-11D4-8D3B-444553540000} => c:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\atiacm64.dll [2015-08-06] (Advanced Micro Devices, Inc.)
    ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> Brak pliku
    ContextMenuHandlers5: [igfxDTCM] -> {9B5F5829-A529-4B12-814A-E81BCB8D93FC} => C:\WINDOWS\system32\igfxDTCM.dll [2017-02-22] (Intel Corporation)
    ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2017-08-30] (Malwarebytes)
    ContextMenuHandlers1_S-1-5-21-2741257759-4006522167-587269252-1001: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => -> Brak pliku
    ContextMenuHandlers1_S-1-5-21-2741257759-4006522167-587269252-1001: [GGDriveMenu] -> {E68D0A55-3C40-4712-B90D-DCFA93FF2534} => C:\Users\Misiek\AppData\Roaming\GG\ggdrive\ggdrive-menu.dll [2014-03-20] (GG Network S.A.)
    ContextMenuHandlers4_S-1-5-21-2741257759-4006522167-587269252-1001: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => -> Brak pliku
    ContextMenuHandlers4_S-1-5-21-2741257759-4006522167-587269252-1001: [GGDriveMenu] -> {E68D0A55-3C40-4712-B90D-DCFA93FF2534} => C:\Users\Misiek\AppData\Roaming\GG\ggdrive\ggdrive-menu.dll [2014-03-20] (GG Network S.A.)
    ContextMenuHandlers5_S-1-5-21-2741257759-4006522167-587269252-1001: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => -> Brak pliku
    ContextMenuHandlers5_S-1-5-21-2741257759-4006522167-587269252-1001: [GGDriveMenu] -> {E68D0A55-3C40-4712-B90D-DCFA93FF2534} => C:\Users\Misiek\AppData\Roaming\GG\ggdrive\ggdrive-menu.dll [2014-03-20] (GG Network S.A.)

    ==================== Zaplanowane zadania (filtrowane) =============

    (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)

    Task: {180838F1-19C8-41A5-AF84-4309FEC6E035} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2017-09-29] (Adobe Systems Incorporated)
    Task: {2032472B-85F0-46CC-8C0B-CD893FEE5193} - System32\Tasks\avast! SL Update => C:\Program Files\AVAST Software\SecureLine\SLUpdate.exe [2016-04-25] (AVAST Software)
    Task: {582CF0C0-8800-4A85-A58F-D826C2A28836} - System32\Tasks\Avast SecureLine => C:\Program Files\AVAST Software\SecureLine\SecureLine.exe [2016-05-25] (AVAST Software)
    Task: {66A0D07C-3FDD-4D51-B108-9F69A3EFD688} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\UpdateAssistant => C:\WINDOWS\UpdateAssistant\UpdateAssistant.exe [2017-09-20] (Microsoft Corporation)
    Task: {8A3DD95A-3FF9-462E-85A1-0AE2313C0EE8} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\UpdateAssistantCalendarRun => C:\WINDOWS\UpdateAssistant\UpdateAssistant.exe [2017-09-20] (Microsoft Corporation)
    Task: {F336B297-2359-4B5C-BFCD-29BF212334F4} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2017-06-30] (Piriform Ltd)

    (Załączenie wejścia w fixlist spowoduje przesunięcie pliku zadania (.job). Plik uruchamiany docelowo przez zadanie nie zostanie przeniesiony.)

    Task: C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job => C:\WINDOWS\explorer.exe

    ==================== Skróty & WMI ========================

    (Wybrane wejścia mogą zostać załączone w celu ich zresetowania lub usunięcia.)


    ==================== Załadowane moduły (filtrowane) ==============

    2017-03-15 22:38 - 2017-03-04 07:31 - 000185856 _____ () C:\WINDOWS\SYSTEM32\ism32k.dll
    2016-04-24 16:38 - 2015-07-20 19:19 - 000121560 _____ () C:\Program Files (x86)\REALTEK\Realtek Bluetooth\BTDevMgr.exe
    2016-05-25 12:09 - 2016-05-25 12:09 - 000592392 _____ () C:\Program Files\AVAST Software\SecureLine\VpnSvc.exe
    2016-04-24 17:00 - 2014-04-14 18:59 - 000389896 _____ () C:\Program Files\CyberLink\Shared files\RichVideo64.exe
    2017-09-30 16:20 - 2017-08-24 11:27 - 002264528 _____ () C:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\MwacLib.dll
    2017-09-13 14:18 - 2017-09-05 11:31 - 002656960 _____ () C:\WINDOWS\system32\CoreUIComponents.dll
    2016-02-13 19:32 - 2016-02-13 19:32 - 000093696 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\Windows.UI.Shell.SharedUtilities.dll
    2016-07-16 15:56 - 2016-07-01 05:48 - 000472064 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\QuickActions.dll
    2017-03-15 22:38 - 2017-03-04 05:19 - 007992832 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll
    2017-03-15 22:38 - 2017-03-04 05:14 - 000591360 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll
    2017-09-13 14:18 - 2017-09-05 06:03 - 002483200 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll
    2017-09-13 14:18 - 2017-09-05 06:06 - 004089856 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll
    2017-05-23 09:23 - 2017-05-23 09:23 - 003918848 _____ () C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_10.1705.1301.0_x64__8wekyb3d8bbwe\Calculator.exe
    2017-09-29 20:15 - 2017-09-29 22:37 - 027737088 _____ () C:\WINDOWS\system32\Macromed\Flash\NPSWF64_27_0_0_130.dll
    2016-05-25 12:09 - 2016-05-25 12:09 - 038907672 _____ () C:\Program Files\AVAST Software\SecureLine\libcef.dll

    ==================== Alternate Data Streams (filtrowane) =========

    (Załączenie wejścia w fixlist spowoduje usunięcie strumienia ADS.)


    ==================== Tryb awaryjny (filtrowane) ===================

    (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Wartość "AlternateShell" zostanie przywrócona.)

    HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service"
    HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service"
    HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\McMPFSvc => ""="Service"

    ==================== Powiązania plików (filtrowane) ===============

    (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci.)


    ==================== Internet Explorer - Witryny zaufane i z ograniczeniami ===============

    (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru.)


    ==================== Hosts - zawartość: ===============================

    (Użycie dyrektywy Hosts: w fixlist spowoduje reset pliku Hosts.)

    2015-07-10 13:04 - 2015-07-10 13:02 - 000000824 _____ C:\WINDOWS\system32\Drivers\etc\hosts


    ==================== Inne obszary ============================

    (Obecnie brak automatycznej naprawy dla tej sekcji.)

    HKU\S-1-5-21-2741257759-4006522167-587269252-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Misiek\Desktop\giant_bamboos-wallpaper-1366x768.jpg
    DNS Servers: 31.11.202.254 - 37.8.214.2
    HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
    HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: RequireAdmin)
    Zapora systemu Windows [funkcja włączona]

    ==================== MSCONFIG/TASK MANAGER - Wyłączone elementy ==

    HKLM\...\StartupApproved\Run: => "RTHDVCPL"
    HKLM\...\StartupApproved\Run: => "BtServer"
    HKLM\...\StartupApproved\Run32: => "HPMessageService"
    HKLM\...\StartupApproved\Run32: => "StartCCC"
    HKLM\...\StartupApproved\Run32: => "mcpltui_exe"
    HKLM\...\StartupApproved\Run32: => "PowerDVD14Agent"
    HKU\S-1-5-21-2741257759-4006522167-587269252-1001\...\StartupApproved\Run: => "OneDrive"
    HKU\S-1-5-21-2741257759-4006522167-587269252-1001\...\StartupApproved\Run: => "GG"

    ==================== Reguły Zapory systemu Windows (filtrowane) ===============

    (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)

    FirewallRules: [{A39C313E-94AC-4D60-A7C5-9858275C370F}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe
    FirewallRules: [{5B0BC598-A17F-40F4-AC38-A57C7EA61710}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe
    FirewallRules: [{0F2DFE8B-3779-4D0D-B10A-86FD6DC5801C}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD14\Movie\PowerDVD Cinema\PowerDVDCinema.exe
    FirewallRules: [{3B6040C7-0920-4C92-A8CD-5C1C03046471}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD14\Movie\PowerDVDMovie.exe
    FirewallRules: [{B4B85D1F-DBC0-4BFC-95EE-6B089609EAF7}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD14\PowerDVD14Agent.exe
    FirewallRules: [{40D16BAC-A2F9-4785-8C02-7FF96583486D}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD14\Kernel\DMS\CLMSServerPDVD14.exe
    FirewallRules: [{8B0AB570-023C-4F91-A0A0-880539B320B0}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD14\PowerDVD.exe
    FirewallRules: [{DE0FB512-A771-4D74-9783-D6ECF039188B}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
    FirewallRules: [{E9FC359F-215C-482F-8CD1-04DF8E27C9FE}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
    FirewallRules: [{FD14D409-534C-4107-9743-9978AD78580F}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
    FirewallRules: [{E0EEA872-7703-4582-8C8D-52B997A7F2B9}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
    FirewallRules: [{633B44EB-0890-41F1-92AE-1696A83E034D}] => (Allow) C:\Program Files (x86)\Sony\Xperia Companion\XperiaCompanion.exe
    FirewallRules: [{5E6C2B8C-4717-44EF-821F-0F19DE94FAD5}] => (Allow) C:\Program Files (x86)\Sony Mobile\Update Engine\Sony Mobile Update Engine.exe
    FirewallRules: [{4CA6F708-C2D8-40E6-9FC7-FEFC1A84E2FD}] => (Allow) C:\Program Files (x86)\Sony Mobile\Update Engine\Sony Mobile Update Engine.exe
    FirewallRules: [TCP Query User{24A05CB4-03CD-4E78-9DE9-D9DE09B7A374}C:\program files\mozilla firefox\firefox.exe] => (Block) C:\program files\mozilla firefox\firefox.exe
    FirewallRules: [UDP Query User{6A14CDC5-99B8-48B1-ACA3-56E856243611}C:\program files\mozilla firefox\firefox.exe] => (Block) C:\program files\mozilla firefox\firefox.exe

    ==================== Punkty Przywracania systemu =========================


    ==================== Wadliwe urządzenia w Menedżerze urządzeń =============

    Name: Intel(R) Management Engine Interface
    Description: Intel(R) Management Engine Interface
    Class Guid: {4d36e97d-e325-11ce-bfc1-08002be10318}
    Manufacturer: Intel
    Service: MEIx64
    Problem: : This device is disabled. (Code 22)
    Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.


    ==================== Błędy w Dzienniku zdarzeń: =========================

    Dziennik Aplikacja:
    ==================
    Error: (09/30/2017 08:39:27 PM) (Source: Bonjour Service) (EventID: 100) (User: )
    Description: Task Scheduling Error: m->NextScheduledSPRetry 205875

    Error: (09/30/2017 08:39:27 PM) (Source: Bonjour Service) (EventID: 100) (User: )
    Description: Task Scheduling Error: m->NextScheduledEvent 205875

    Error: (09/30/2017 08:39:27 PM) (Source: Bonjour Service) (EventID: 100) (User: )
    Description: Task Scheduling Error: Continuously busy for more than a second

    Error: (09/30/2017 08:39:26 PM) (Source: Bonjour Service) (EventID: 100) (User: )
    Description: Task Scheduling Error: m->NextScheduledSPRetry 204563

    Error: (09/30/2017 08:39:26 PM) (Source: Bonjour Service) (EventID: 100) (User: )
    Description: Task Scheduling Error: m->NextScheduledEvent 204563

    Error: (09/30/2017 08:39:26 PM) (Source: Bonjour Service) (EventID: 100) (User: )
    Description: Task Scheduling Error: Continuously busy for more than a second

    Error: (09/30/2017 08:39:25 PM) (Source: Bonjour Service) (EventID: 100) (User: )
    Description: Task Scheduling Error: m->NextScheduledSPRetry 203266

    Error: (09/30/2017 08:39:25 PM) (Source: Bonjour Service) (EventID: 100) (User: )
    Description: Task Scheduling Error: m->NextScheduledEvent 203266

    Error: (09/30/2017 08:39:25 PM) (Source: Bonjour Service) (EventID: 100) (User: )
    Description: Task Scheduling Error: Continuously busy for more than a second

    Error: (09/30/2017 08:39:23 PM) (Source: Bonjour Service) (EventID: 100) (User: )
    Description: Task Scheduling Error: m->NextScheduledSPRetry 201938


    Dziennik System:
    =============
    Error: (09/30/2017 10:14:44 PM) (Source: DCOM) (EventID: 10016) (User: DESKTOP-ITVAQ2S)
    Description: Zgodnie z ustawieniami uprawnienia domyślne ustawienia komputera nie jest udzielane uprawnienie Lokalny Aktywacja do aplikacji serwera COM z identyfikatorem klasy CLSID
    {C2F03A33-21F5-47FA-B4BB-156362A2F239}
    i identyfikatorem aplikacji APPID
    {316CDED5-E4AE-4B15-9113-7055D84DCC97}
    użytkownikowi DESKTOP-ITVAQ2S\Misiek o identyfikatorze zabezpieczeń SID (S-1-5-21-2741257759-4006522167-587269252-1001) z adresu LocalHost (użycie LRPC) działającemu w kontenerze aplikacji o identyfikatorze SID Microsoft.Windows.Cortana_1.6.1.52_neutral_neutral_cw5n1h2txyewy (S-1-15-2-1861897761-1695161497-2927542615-642690995-327840285-2659745135-2630312742). To uprawnienie zabezpieczeń można modyfikować przy użyciu narzędzia administracyjnego Usługi składowe.

    Error: (09/30/2017 09:00:44 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
    Description: Usługa Intel(R) Content Protection HECI Service zakończyła działanie; wystąpił następujący błąd:
    %%2147942659 = Brak dalszych danych.

    Error: (09/30/2017 08:43:55 PM) (Source: BugCheck) (EventID: 1001) (User: )
    Description: Nastąpił ponowny rozruch komputera po operacji wykrywania błędów. Wyniki tej operacji były następujące: 0x0000009f (0x0000000000000004, 0x000000000000012c, 0xffffe001a866f040, 0xffffd000855f78b0). Zrzut zapisano w: C:\WINDOWS\MEMORY.DMP. Identyfikator raportu: 58bd335f-9a35-48ec-ab7f-5f0ac15f6c10.

    Error: (09/30/2017 08:43:36 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
    Description: Usługa cphs zakończyła działanie; wystąpił następujący błąd:
    %%2147942659 = Brak dalszych danych.

    Error: (09/30/2017 08:43:03 PM) (Source: EventLog) (EventID: 6008) (User: )
    Description: Poprzednie zamknięcie systemu przy 20:38:26 na ‎30.‎09.‎2017 było nieoczekiwane.

    Error: (09/30/2017 05:20:22 PM) (Source: DCOM) (EventID: 10016) (User: DESKTOP-ITVAQ2S)
    Description: Zgodnie z ustawieniami uprawnienia domyślne ustawienia komputera nie jest udzielane uprawnienie Lokalny Aktywacja do aplikacji serwera COM z identyfikatorem klasy CLSID
    {C2F03A33-21F5-47FA-B4BB-156362A2F239}
    i identyfikatorem aplikacji APPID
    {316CDED5-E4AE-4B15-9113-7055D84DCC97}
    użytkownikowi DESKTOP-ITVAQ2S\Misiek o identyfikatorze zabezpieczeń SID (S-1-5-21-2741257759-4006522167-587269252-1001) z adresu LocalHost (użycie LRPC) działającemu w kontenerze aplikacji o identyfikatorze SID Microsoft.Windows.Cortana_1.6.1.52_neutral_neutral_cw5n1h2txyewy (S-1-15-2-1861897761-1695161497-2927542615-642690995-327840285-2659745135-2630312742). To uprawnienie zabezpieczeń można modyfikować przy użyciu narzędzia administracyjnego Usługi składowe.

    Error: (09/30/2017 05:20:09 PM) (Source: DCOM) (EventID: 10016) (User: DESKTOP-ITVAQ2S)
    Description: Zgodnie z ustawieniami uprawnienia domyślne ustawienia komputera nie jest udzielane uprawnienie Lokalny Aktywacja do aplikacji serwera COM z identyfikatorem klasy CLSID
    {C2F03A33-21F5-47FA-B4BB-156362A2F239}
    i identyfikatorem aplikacji APPID
    {316CDED5-E4AE-4B15-9113-7055D84DCC97}
    użytkownikowi DESKTOP-ITVAQ2S\Misiek o identyfikatorze zabezpieczeń SID (S-1-5-21-2741257759-4006522167-587269252-1001) z adresu LocalHost (użycie LRPC) działającemu w kontenerze aplikacji o identyfikatorze SID Microsoft.Windows.Cortana_1.6.1.52_neutral_neutral_cw5n1h2txyewy (S-1-15-2-1861897761-1695161497-2927542615-642690995-327840285-2659745135-2630312742). To uprawnienie zabezpieczeń można modyfikować przy użyciu narzędzia administracyjnego Usługi składowe.

    Error: (09/30/2017 04:36:03 PM) (Source: DCOM) (EventID: 10016) (User: DESKTOP-ITVAQ2S)
    Description: Zgodnie z ustawieniami uprawnienia domyślne ustawienia komputera nie jest udzielane uprawnienie Lokalny Aktywacja do aplikacji serwera COM z identyfikatorem klasy CLSID
    {C2F03A33-21F5-47FA-B4BB-156362A2F239}
    i identyfikatorem aplikacji APPID
    {316CDED5-E4AE-4B15-9113-7055D84DCC97}
    użytkownikowi DESKTOP-ITVAQ2S\Misiek o identyfikatorze zabezpieczeń SID (S-1-5-21-2741257759-4006522167-587269252-1001) z adresu LocalHost (użycie LRPC) działającemu w kontenerze aplikacji o identyfikatorze SID Microsoft.Windows.Cortana_1.6.1.52_neutral_neutral_cw5n1h2txyewy (S-1-15-2-1861897761-1695161497-2927542615-642690995-327840285-2659745135-2630312742). To uprawnienie zabezpieczeń można modyfikować przy użyciu narzędzia administracyjnego Usługi składowe.

    Error: (09/30/2017 04:18:17 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
    Description: Usługa Intel(R) Content Protection HECI Service zakończyła działanie; wystąpił następujący błąd:
    %%2147942659 = Brak dalszych danych.

    Error: (09/30/2017 04:03:28 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
    Description: Usługa cphs zakończyła działanie; wystąpił następujący błąd:
    %%2147942659 = Brak dalszych danych.


    CodeIntegrity:
    ===================================
    Date: 2017-09-30 14:31:02.443
    Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume3\WINDOWS\System32\amdhdl64.dll that did not meet the Custom 3 / Antimalware signing level requirements.

    Date: 2017-09-25 18:10:32.282
    Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume3\WINDOWS\System32\amdhdl64.dll that did not meet the Custom 3 / Antimalware signing level requirements.

    Date: 2017-09-15 11:00:02.215
    Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\WINDOWS\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.

    Date: 2017-09-14 18:39:12.316
    Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume3\WINDOWS\System32\amdhdl64.dll that did not meet the Custom 3 / Antimalware signing level requirements.

    Date: 2017-09-14 10:19:22.735
    Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\WINDOWS\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.

    Date: 2017-09-13 16:31:11.625
    Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\WINDOWS\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.

    Date: 2017-08-27 19:24:07.751
    Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume3\WINDOWS\System32\amdhdl64.dll that did not meet the Custom 3 / Antimalware signing level requirements.

    Date: 2017-08-16 17:27:03.502
    Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume3\WINDOWS\System32\amdhdl64.dll that did not meet the Custom 3 / Antimalware signing level requirements.

    Date: 2017-08-16 15:30:16.629
    Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\WINDOWS\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.

    Date: 2017-08-14 14:39:43.073
    Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume3\WINDOWS\System32\amdhdl64.dll that did not meet the Custom 3 / Antimalware signing level requirements.


    ==================== Statystyki pamięci ===========================

    Procesor: Intel(R) Core(TM) i5-6200U CPU @ 2.30GHz
    Procent pamięci w użyciu: 41%
    Całkowita pamięć fizyczna: 8090.91 MB
    Dostępna pamięć fizyczna: 4735.25 MB
    Całkowita pamięć wirtualna: 9370.91 MB
    Dostępna pamięć wirtualna: 5988.31 MB

    ==================== Dyski ================================

    Drive c: (Windows) (Fixed) (Total:916.12 GB) (Free:860.05 GB) NTFS
    Drive d: (RECOVERY) (Fixed) (Total:13.25 GB) (Free:1.6 GB) NTFS ==>[system z komponentami startowymi (pozyskano odczytując dysk)]

    ==================== MBR & Tablica partycji ==================

    ========================================================
    Disk: 0 (Size: 931.5 GB) (Disk ID: 927ADDE2)

    Partition: GPT.

    ==================== Koniec Addition.txt ============================

    Dodano po 1 [minuty]:

    Dodam że program dr web cureit wyszukuje mi ciągle jakiegoś trojana i nie może go zneutralizować.

    0
  • #17 01 Paź 2017 11:02
    xoree
    Poziom 29  

    Na wstępie usuń Avast-a i McAfee.

    0
  • #19 01 Paź 2017 11:11
    xoree
    Poziom 29  

    Jak usuniesz Avasta (do wykasowania avasta możesz użyć tego : http://files.avast.com/iavs9x/avastclear.exe) i McAfee to zrób to :

    Stwórz plik fixlist.txt i zapisz w nim podane linie, plik ma być w katalogu tam gdzie jest frst.exe następnie w FRST uruchom napraw.

    Code:

    HKU\S-1-5-21-2741257759-4006522167-587269252-1001\...\Run: [McAfeeSafeConnect] => C:\Program Files (x86)\McAfee Safe Connect\McAfee Safe Connect.exe
    HKU\S-1-5-21-2741257759-4006522167-587269252-1001\...\MountPoints2: {230e80ab-63ae-11e6-9be9-fc3fdb5e5002} - "F:\MicroLauncher.exe"
    HKU\S-1-5-21-2741257759-4006522167-587269252-1001\...\MountPoints2: {230e80e4-63ae-11e6-9be9-fc3fdb5e5002} - "F:\MicroLauncher.exe"
    HKU\S-1-5-21-2741257759-4006522167-587269252-1001\...\MountPoints2: {51d00da9-a1b9-11e6-9c17-fc3fdb5e5002} - "F:\MicroLauncher.exe"
    HKU\S-1-5-21-2741257759-4006522167-587269252-1001\...\MountPoints2: {f223e964-07d4-11e7-9c53-fc3fdb5e5002} - "F:\Startme.exe"
    HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://hp15-comm.msn.com/?pc=HRTE
    HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://hp15-comm.msn.com/?pc=HRTE
    HKU\S-1-5-21-2741257759-4006522167-587269252-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://hp15-comm.msn.com/?pc=HRTE
    HKU\S-1-5-21-2741257759-4006522167-587269252-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://hp15-comm.msn.com/?pc=HRTE
    SearchScopes: HKLM-x32 -> {E143EF69-CB40-434C-AAC6-EF6F58584A6D} URL = hxxp://www.amazon.co.uk/s/ref=...e=qs&index=aps&field-keywords={searchTerms}
    SearchScopes: HKU\S-1-5-21-2741257759-4006522167-587269252-1001 -> {E143EF69-CB40-434C-AAC6-EF6F58584A6D} URL = hxxp://www.amazon.co.uk/s/ref=...e=qs&index=aps&field-keywords={searchTerms}
    FF Homepage: Mozilla\Firefox\Profiles\x38axjk4.default-1506712983679 -> www.allegro.pl
    CHR HKLM-x32\...\Chrome\Extension: [ofoeigeaodhbjogdigckajfhjbonaofg] - hxxps://clients2.google.com/service/update2/crx
    S3 massfilter; system32\drivers\massfilter.sys [X]
    S3 mfeavfk01; \Device\mfeavfk01.sys [X]
    2017-09-30 16:46 - 2017-09-30 20:48 - 158961704 _____ C:\Users\Misiek\Desktop\launch.exe
    ShellIconOverlayIdentifiers: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => -> Brak pliku
    ShellIconOverlayIdentifiers: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => -> Brak pliku
    ShellIconOverlayIdentifiers: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => -> Brak pliku
    ShellIconOverlayIdentifiers: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => -> Brak pliku
    ShellIconOverlayIdentifiers: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => -> Brak pliku
    ShellIconOverlayIdentifiers-x32: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => -> Brak pliku
    ShellIconOverlayIdentifiers-x32: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => -> Brak pliku
    ShellIconOverlayIdentifiers-x32: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => -> Brak pliku
    ShellIconOverlayIdentifiers-x32: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => -> Brak pliku
    ShellIconOverlayIdentifiers-x32: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => -> Brak pliku
    ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> Brak pliku
    ContextMenuHandlers1_S-1-5-21-2741257759-4006522167-587269252-1001: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => -> Brak pliku
    ContextMenuHandlers4_S-1-5-21-2741257759-4006522167-587269252-1001: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => -> Brak pliku
    ContextMenuHandlers5_S-1-5-21-2741257759-4006522167-587269252-1001: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => -> Brak pliku
    Task: {2032472B-85F0-46CC-8C0B-CD893FEE5193} - System32\Tasks\avast! SL Update => C:\Program Files\AVAST Software\SecureLine\SLUpdate.exe [2016-04-25] (AVAST Software)
    Task: {582CF0C0-8800-4A85-A58F-D826C2A28836} - System32\Tasks\Avast SecureLine => C:\Program Files\AVAST Software\SecureLine\SecureLine.exe [2016-05-25] (AVAST Software)
    HostS:
    EmptyTemp:


    Dodano po 2 [minuty]:

    Avast może i pewnie blokuje poprawność wyświetlania strony.

    0
  • #20 01 Paź 2017 11:42
    sebaele22
    Poziom 30  

    Nadal nic z tego nie rozumiem McAfee a avast mam tylko avast secureline

    Dodano po 27 [minuty]:

    Kolejne problemy to z internetem, ciągle zrywa połączenie :-(.

    0
  • #21 01 Paź 2017 12:05
    xoree
    Poziom 29  

    Kolego wykonaj to o co proszę ...

    0
  • #22 01 Paź 2017 12:08
    sebaele22
    Poziom 30  

    Usunąłem poprzez panel sterowania avast secureline ponieważ twój link nie działa.
    Co do McAfee to nie mam takiego programu.
    Resztę nie wiem jak zrobić :-(

    0
  • #24 01 Paź 2017 12:14
    sosarek

    Poziom 43  

    xoree napisał:
    Stwórz plik fixlist.txt i zapisz w nim podane linie, plik ma być w katalogu tam gdzie jest frst.exe następnie w FRST uruchom napraw.

    0
  • #25 01 Paź 2017 12:23
    sebaele22
    Poziom 30  

    Więc tak stworzyłem nowy dokument o nazwie fixlist.txt po czym do niego przekopiowałem i wkleiłem wszystko to co podałeś, całość umieściłem w folderze FRST następnie Logs.
    Uruchomiłem FRST i kliknąłem napraw.
    Program coś zrobił po czym musiałem ponownie uruchomić komputer.
    Co nadal?

    0