JustPaste.it

Rezultat skanowania skrótów użytkowników (x64) Wersja: 28-02-2021
Uruchomiony przez kamil (03-03-2021 08:31:31)
Uruchomiony z C:\Users\kamil\AppData\Local\Temp\scoped_dir14136_781903975
Tryb startu: Normal

==================== Skróty =============================

(Wybrane wejścia mogą zostać załączone w celu ich zresetowania lub usunięcia.)


Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Access 2016.lnk -> C:\Windows\Installer\{90160000-0011-0000-1000-0000000FF1CE}\accicons.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast Free Antivirus.lnk -> C:\Program Files\Avast Software\Avast\AvastUI.exe (AVAST Software)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Excel 2016.lnk -> C:\Windows\Installer\{90160000-0011-0000-1000-0000000FF1CE}\xlicons.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Immersive Control Panel.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk -> C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneDrive dla firm.lnk -> C:\Windows\Installer\{90160000-0011-0000-1000-0000000FF1CE}\grv_icons.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneNote 2016.lnk -> C:\Windows\Installer\{90160000-0011-0000-1000-0000000FF1CE}\joticon.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outlook 2016.lnk -> C:\Windows\Installer\{90160000-0011-0000-1000-0000000FF1CE}\outicon.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerPoint 2016.lnk -> C:\Windows\Installer\{90160000-0011-0000-1000-0000000FF1CE}\pptico.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Publisher 2016.lnk -> C:\Windows\Installer\{90160000-0011-0000-1000-0000000FF1CE}\pubs.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype dla firm 2016.lnk -> C:\Windows\Installer\{90160000-0011-0000-1000-0000000FF1CE}\lyncicon.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SnailDriver 2 Lite.lnk -> C:\Program Files (x86)\SnailSuite\SnailDriver 2 Lite\SnailLaunch.exe (SnailDrivers)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamSpeak 3 Client.lnk -> C:\Program Files\TeamSpeak 3 Client\ts3client_win64.exe (TeamSpeak Systems GmbH)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Word 2016.lnk -> C:\Windows\Installer\{90160000-0011-0000-1000-0000000FF1CE}\wordicon.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows PowerShell\Windows PowerShell ISE (x86).lnk -> C:\Windows\SysWOW64\WindowsPowerShell\v1.0\PowerShell_ISE.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows PowerShell\Windows PowerShell ISE.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\PowerShell_ISE.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\snailsuite\SnailDriver 2 Lite.lnk -> C:\Program Files (x86)\SnailSuite\SnailDriver 2 Lite\SnailLaunch.exe (SnailDrivers)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\snailsuite\Uninstall.lnk -> C:\Program Files (x86)\SnailSuite\SnailDriver 2 Lite\unins000.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Narzędzia pakietu Microsoft Office 2016\Database Compare 2016.lnk -> C:\Windows\Installer\{90160000-0011-0000-1000-0000000FF1CE}\dbcicons.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Narzędzia pakietu Microsoft Office 2016\Dziennik telemetryczny dla pakietu Office 2016.lnk -> C:\Windows\Installer\{90160000-0011-0000-1000-0000000FF1CE}\osmclienticon.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Narzędzia pakietu Microsoft Office 2016\Menedżer nagrywania programu Skype dla firm.lnk -> C:\Windows\Installer\{90160000-0011-0000-1000-0000000FF1CE}\lyncicon.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Narzędzia pakietu Microsoft Office 2016\Office 2016 Upload Center.lnk -> C:\Windows\Installer\{90160000-0011-0000-1000-0000000FF1CE}\msouc.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Narzędzia pakietu Microsoft Office 2016\Preferencje językowe pakietu Office 2016.lnk -> C:\Windows\Installer\{90160000-0011-0000-1000-0000000FF1CE}\misc.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Narzędzia pakietu Microsoft Office 2016\Spreadsheet Compare 2016.lnk -> C:\Windows\Installer\{90160000-0011-0000-1000-0000000FF1CE}\sscicons.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Narzędzia pakietu Microsoft Office 2016\Telemetryczny pulpit nawigacyjny dla pakietu Office 2016.lnk -> C:\Windows\Installer\{90160000-0011-0000-1000-0000000FF1CE}\osmadminicon.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Component Services.lnk -> C:\Windows\System32\comexp.msc ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\dfrgui.lnk -> C:\Windows\System32\dfrgui.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Disk Cleanup.lnk -> C:\Windows\System32\cleanmgr.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\iSCSI Initiator.lnk -> C:\Windows\System32\iscsicpl.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Memory Diagnostics Tool.lnk -> C:\Windows\System32\MdSched.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\ODBC Data Sources (32-bit).lnk -> C:\Windows\SysWOW64\odbcad32.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\ODBC Data Sources (64-bit).lnk -> C:\Windows\System32\odbcad32.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Print Management.lnk -> C:\Windows\System32\printmanagement.msc ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\RecoveryDrive.lnk -> C:\Windows\System32\RecoveryDrive.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Registry Editor.lnk -> C:\Windows\regedit.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\services.lnk -> C:\Windows\System32\services.msc ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\System Configuration.lnk -> C:\Windows\System32\msconfig.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\System Information.lnk -> C:\Windows\System32\msinfo32.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Windows Defender Firewall with Advanced Security.lnk -> C:\Windows\System32\WF.msc ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Math Input Panel.lnk -> C:\Program Files\Common Files\Microsoft Shared\ink\mip.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Notepad.lnk -> C:\Windows\System32\notepad.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Paint.lnk -> C:\Windows\System32\mspaint.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Quick Assist.lnk -> C:\Windows\System32\quickassist.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Remote Desktop Connection.lnk -> C:\Windows\System32\mstsc.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Snipping Tool.lnk -> C:\Windows\System32\SnippingTool.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Steps Recorder.lnk -> C:\Windows\System32\psr.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Windows Fax and Scan.lnk -> C:\Windows\System32\WFS.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Wordpad.lnk -> C:\Program Files\Windows NT\Accessories\wordpad.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Character Map.lnk -> C:\Windows\System32\charmap.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk -> C:\Users\kamil\AppData\Local\Microsoft\OneDrive\OneDrive.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell\Windows PowerShell (x86).lnk -> C:\Windows\SysWOW64\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell\Windows PowerShell.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\computer.lnk -> C:\Windows\explorer.exe,-30
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Control Panel.lnk -> C:\Windows\System32\imageres.dll (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\File Explorer.lnk -> C:\Windows\explorer.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Run.lnk -> C:\Windows\System32\shell32.dll (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility\Magnify.lnk -> C:\Windows\System32\Magnify.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility\Narrator.lnk -> C:\Windows\System32\Narrator.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility\On-Screen Keyboard.lnk -> C:\Windows\System32\osk.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk -> C:\Windows\System32\imageres.dll (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk -> C:\Windows\explorer.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\01 - Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\01a - Windows PowerShell.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\02 - Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\02a - Windows PowerShell.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\03 - Computer Management.lnk -> C:\Windows\System32\compmgmt.msc ()
Shortcut: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\04 - Disk Management.lnk -> C:\Windows\System32\diskmgmt.msc ()
Shortcut: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\07 - Event Viewer.lnk -> C:\Windows\System32\eventvwr.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\09 - Mobility Center.lnk -> C:\Windows\System32\mblctr.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group2\4 - Control Panel.lnk -> C:\Windows\ImmersiveControlPanel\systemsettings.exe (Microsoft Corporation)
Shortcut: C:\Users\kamil\Links\Desktop.lnk -> C:\Users\kamil\OneDrive\Pulpit ()
Shortcut: C:\Users\kamil\Links\Downloads.lnk -> C:\Users\kamil\Downloads ()
Shortcut: C:\Users\kamil\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk -> C:\Users\kamil\AppData\Local\Microsoft\OneDrive\OneDrive.exe (Microsoft Corporation)
Shortcut: C:\Users\kamil\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Przeglądarka Opera GX.lnk -> C:\Users\kamil\AppData\Local\Programs\Opera GX\launcher.exe (Opera Software)
Shortcut: C:\Users\kamil\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell\Windows PowerShell (x86).lnk -> C:\Windows\SysWOW64\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation)
Shortcut: C:\Users\kamil\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell\Windows PowerShell.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation)
Shortcut: C:\Users\kamil\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation)
Shortcut: C:\Users\kamil\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\computer.lnk -> C:\Windows\explorer.exe,-30
Shortcut: C:\Users\kamil\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Control Panel.lnk -> C:\Windows\System32\imageres.dll (Microsoft Corporation)
Shortcut: C:\Users\kamil\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\File Explorer.lnk -> C:\Windows\explorer.exe (Microsoft Corporation)
Shortcut: C:\Users\kamil\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Run.lnk -> C:\Windows\System32\shell32.dll (Microsoft Corporation)
Shortcut: C:\Users\kamil\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\My.com Games\MY.GAMES GameCenter.lnk -> C:\Users\kamil\AppData\Local\GameCenter\GameCenter.exe ()
Shortcut: C:\Users\kamil\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Internet Explorer.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)
Shortcut: C:\Users\kamil\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility\Magnify.lnk -> C:\Windows\System32\Magnify.exe (Microsoft Corporation)
Shortcut: C:\Users\kamil\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility\Narrator.lnk -> C:\Windows\System32\Narrator.exe (Microsoft Corporation)
Shortcut: C:\Users\kamil\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility\On-Screen Keyboard.lnk -> C:\Windows\System32\osk.exe (Microsoft Corporation)
Shortcut: C:\Users\kamil\AppData\Roaming\Microsoft\Windows\SendTo\Transfer plików Bluetooth.LNK -> C:\Windows\System32\fsquirt.exe (Microsoft Corporation)
Shortcut: C:\Users\kamil\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Microsoft Edge.lnk -> C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe (Microsoft Corporation)
Shortcut: C:\Users\kamil\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk -> C:\Windows\System32\imageres.dll (Microsoft Corporation)
Shortcut: C:\Users\kamil\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk -> C:\Windows\explorer.exe (Microsoft Corporation)
Shortcut: C:\Users\kamil\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\dwarclient.lnk -> C:\MyGames\Legend - Legacy Of The Dragons (PL)\dwarclient.exe (LLC Mail.Ru)
Shortcut: C:\Users\kamil\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\File Explorer.lnk -> C:\Windows\explorer.exe (Microsoft Corporation)
Shortcut: C:\Users\kamil\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Przeglądarka Opera GX.lnk -> C:\Users\kamil\AppData\Local\Programs\Opera GX\launcher.exe (Opera Software)
Shortcut: C:\Users\kamil\AppData\Local\Microsoft\Windows\WinX\Group3\01 - Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation)
Shortcut: C:\Users\kamil\AppData\Local\Microsoft\Windows\WinX\Group3\01a - Windows PowerShell.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation)
Shortcut: C:\Users\kamil\AppData\Local\Microsoft\Windows\WinX\Group3\02 - Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation)
Shortcut: C:\Users\kamil\AppData\Local\Microsoft\Windows\WinX\Group3\02a - Windows PowerShell.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation)
Shortcut: C:\Users\kamil\AppData\Local\Microsoft\Windows\WinX\Group3\03 - Computer Management.lnk -> C:\Windows\System32\compmgmt.msc ()
Shortcut: C:\Users\kamil\AppData\Local\Microsoft\Windows\WinX\Group3\04 - Disk Management.lnk -> C:\Windows\System32\diskmgmt.msc ()
Shortcut: C:\Users\kamil\AppData\Local\Microsoft\Windows\WinX\Group3\07 - Event Viewer.lnk -> C:\Windows\System32\eventvwr.exe (Microsoft Corporation)
Shortcut: C:\Users\kamil\AppData\Local\Microsoft\Windows\WinX\Group3\09 - Mobility Center.lnk -> C:\Windows\System32\mblctr.exe (Microsoft Corporation)
Shortcut: C:\Users\kamil\AppData\Local\Microsoft\Windows\WinX\Group2\4 - Control Panel.lnk -> C:\Windows\ImmersiveControlPanel\systemsettings.exe (Microsoft Corporation)


ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools\Task Manager.lnk -> C:\Windows\System32\Taskmgr.exe (Microsoft Corporation) -> /7
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Computer Management.lnk -> C:\Windows\System32\compmgmt.msc () -> /s
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Event Viewer.lnk -> C:\Windows\System32\eventvwr.msc () -> /s
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Performance Monitor.lnk -> C:\Windows\System32\perfmon.msc () -> /s
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Resource Monitor.lnk -> C:\Windows\System32\perfmon.exe (Microsoft Corporation) -> /res
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Security Configuration Management.lnk -> C:\Windows\System32\secpol.msc () -> /s
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Task Scheduler.lnk -> C:\Windows\System32\taskschd.msc () -> /s
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Windows Media Player.lnk -> C:\Program Files (x86)\Windows Media Player\wmplayer.exe (Microsoft Corporation) -> /prefetch:1
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility\Speech Recognition.lnk -> C:\Windows\Speech\Common\sapisvr.exe (Microsoft Corporation) -> -SpeechUX
ShortcutWithArgument: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Administrative Tools.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.AdministrativeTools
ShortcutWithArgument: C:\Users\Default\AppData\Roaming\Microsoft\Windows\SendTo\Fax Recipient.lnk -> C:\Windows\System32\WFS.exe (Microsoft Corporation) -> /SendTo
ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\04-1 - NetworkStatus.lnk -> C:\Windows\ImmersiveControlPanel\systemsettings.exe (Microsoft Corporation) -> page=SettingsPageNetworkStatus
ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\05 - Device Manager.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.DeviceManager
ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\06 - SystemAbout.lnk -> C:\Windows\ImmersiveControlPanel\systemsettings.exe (Microsoft Corporation) -> page=SettingsPagePCSystemInfo
ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\08 - PowerAndSleep.lnk -> C:\Windows\ImmersiveControlPanel\systemsettings.exe (Microsoft Corporation) -> page=SettingsPageScreenPowerAndSleep
ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\10 - AppsAndFeatures.lnk -> C:\Windows\ImmersiveControlPanel\systemsettings.exe (Microsoft Corporation) -> page=SettingsPageAppsSizes
ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group2\1 - Run.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{2559a1f3-21d7-11d4-bdaf-00c04f60b9f0}
ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group2\2 - Search.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{2559a1f8-21d7-11d4-bdaf-00c04f60b9f0}
ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group2\3 - Windows Explorer.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{52205fd8-5dfb-447d-801a-d0b52f2e83e1}
ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group2\5 - Task Manager.lnk -> C:\Windows\System32\Taskmgr.exe (Microsoft Corporation) -> /0
ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group1\1 - Desktop.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{3080F90D-D7AD-11D9-BD98-0000947B0257}
ShortcutWithArgument: C:\Users\kamil\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft Teams.lnk -> C:\Users\kamil\AppData\Local\Microsoft\Teams\Update.exe (Microsoft Corporation) -> --processStart "Teams.exe"
ShortcutWithArgument: C:\Users\kamil\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Administrative Tools.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.AdministrativeTools
ShortcutWithArgument: C:\Users\kamil\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Discord Inc\Discord.lnk -> C:\Users\kamil\AppData\Local\Discord\Update.exe (GitHub) -> --processStart Discord.exe
ShortcutWithArgument: C:\Users\kamil\AppData\Roaming\Microsoft\Windows\SendTo\Fax Recipient.lnk -> C:\Windows\System32\WFS.exe (Microsoft Corporation) -> /SendTo
ShortcutWithArgument: C:\Users\kamil\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Discord.lnk -> C:\Users\kamil\AppData\Local\Discord\Update.exe (GitHub) -> --processStart Discord.exe
ShortcutWithArgument: C:\Users\kamil\AppData\Local\Microsoft\Windows\WinX\Group3\04-1 - NetworkStatus.lnk -> C:\Windows\ImmersiveControlPanel\systemsettings.exe (Microsoft Corporation) -> page=SettingsPageNetworkStatus
ShortcutWithArgument: C:\Users\kamil\AppData\Local\Microsoft\Windows\WinX\Group3\05 - Device Manager.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.DeviceManager
ShortcutWithArgument: C:\Users\kamil\AppData\Local\Microsoft\Windows\WinX\Group3\06 - SystemAbout.lnk -> C:\Windows\ImmersiveControlPanel\systemsettings.exe (Microsoft Corporation) -> page=SettingsPagePCSystemInfo
ShortcutWithArgument: C:\Users\kamil\AppData\Local\Microsoft\Windows\WinX\Group3\08 - PowerAndSleep.lnk -> C:\Windows\ImmersiveControlPanel\systemsettings.exe (Microsoft Corporation) -> page=SettingsPageScreenPowerAndSleep
ShortcutWithArgument: C:\Users\kamil\AppData\Local\Microsoft\Windows\WinX\Group3\10 - AppsAndFeatures.lnk -> C:\Windows\ImmersiveControlPanel\systemsettings.exe (Microsoft Corporation) -> page=SettingsPageAppsSizes
ShortcutWithArgument: C:\Users\kamil\AppData\Local\Microsoft\Windows\WinX\Group2\1 - Run.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{2559a1f3-21d7-11d4-bdaf-00c04f60b9f0}
ShortcutWithArgument: C:\Users\kamil\AppData\Local\Microsoft\Windows\WinX\Group2\2 - Search.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{2559a1f8-21d7-11d4-bdaf-00c04f60b9f0}
ShortcutWithArgument: C:\Users\kamil\AppData\Local\Microsoft\Windows\WinX\Group2\3 - Windows Explorer.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{52205fd8-5dfb-447d-801a-d0b52f2e83e1}
ShortcutWithArgument: C:\Users\kamil\AppData\Local\Microsoft\Windows\WinX\Group2\5 - Task Manager.lnk -> C:\Windows\System32\Taskmgr.exe (Microsoft Corporation) -> /0
ShortcutWithArgument: C:\Users\kamil\AppData\Local\Microsoft\Windows\WinX\Group1\1 - Desktop.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{3080F90D-D7AD-11D9-BD98-0000947B0257}


InternetURL: C:\Users\kamil\Favorites\AmazonBrowserBar.url -> URL: hxxp://www.amazon.com/gp/BIT/AmazonBrowserBar/ref=bit_lnv_fav?tag=lenovo-abb-bm-us-ie-20
InternetURL: C:\Users\kamil\Favorites\Bing.url -> URL: hxxp://go.microsoft.com/fwlink/p/?LinkId=255142
InternetURL: C:\Users\kamil\Favorites\Shakes & Fidget.url -> URL: hxxp://s32.sfgame.pl/
InternetURL: C:\Users\kamil\Favorites\Voxox Free Calls.url -> URL: hxxp://www.voxox.com/lenovo
InternetURL: C:\Users\kamil\Favorites\Links\Google.url -> BASEURL: hxxps://www.google.pl/ URL: hxxps://www.google.pl/
InternetURL: C:\Users\kamil\Favorites\Links\plemiona.url -> URL: hxxps://plp4.plemiona.pl/game.php?village=327612&screen=overview
InternetURL: C:\Users\kamil\Favorites\Links\Tłumacz Google.url -> BASEURL: hxxps://translate.google.pl/ URL: hxxps://translate.google.pl/#auto/pl/revenge%20of%20the%20rogues
InternetURL: C:\Users\kamil\Favorites\Links\w25.url -> URL: hxxps://w25.sfgame.net/
InternetURL: C:\Users\kamil\Favorites\Lenovo\Lenovo Support.url -> URL: hxxp://support.lenovo.com/
InternetURL: C:\Users\kamil\Favorites\Lenovo\Lenovo.url -> URL: hxxp://www.lenovo.com/
InternetURL: C:\Users\kamil\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Legend - Legacy Of The Dragons\Legenda_ Wojna Smoków.url -> URL: mailrugames://play/13.153
InternetURL: C:\Users\kamil\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Legend - Legacy Of The Dragons\Удалить Legenda_ Wojna Smoków.url -> URL: mailrugames://uninstall/13.153

==================== Koniec  Shortcut.txt =============================

Rezultaty skanu uzupełniającego Farbar Recovery Scan Tool (x64) Wersja: 28-02-2021
Uruchomiony przez kamil (03-03-2021 08:30:13)
Uruchomiony z C:\Users\kamil\AppData\Local\Temp\scoped_dir14136_781903975
Windows 10 Pro Wersja 20H2 19042.804 (X64) (2021-02-16 11:50:55)
Tryb startu: Normal
==========================================================


==================== Konta użytkowników: =============================

Administrator (S-1-5-21-1667513993-266061694-1555504002-500 - Administrator - Disabled)
Gość (S-1-5-21-1667513993-266061694-1555504002-501 - Limited - Disabled)
kamil (S-1-5-21-1667513993-266061694-1555504002-1001 - Administrator - Enabled) => C:\Users\kamil
Konto domyślne (S-1-5-21-1667513993-266061694-1555504002-503 - Limited - Disabled)
WDAGUtilityAccount (S-1-5-21-1667513993-266061694-1555504002-504 - Limited - Disabled)

==================== Centrum zabezpieczeń ========================

(Załączenie wejścia w fixlist spowoduje jego usunięcie.)

AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: Avast Antivirus (Enabled - Up to date) {EB19B86E-3998-C706-90EF-92B41EB091AF}

==================== Zainstalowane programy ======================

(W fixlist dozwolone tylko załączanie programów adware z flagą "Hidden" w celu ich uwidocznienia. Programy adware powinny zostać w poprawny sposób odinstalowane.)

Avast Free Antivirus (HKLM-x32\...\Avast Antivirus) (Version: 21.1.2449 - Avast Software)
Discord (HKU\S-1-5-21-1667513993-266061694-1555504002-1001\...\Discord) (Version: 0.0.309 - Discord Inc.)
Legend - Legacy Of The Dragons (HKU\S-1-5-21-1667513993-266061694-1555504002-1001\...\Legend - Legacy Of The Dragons (PL)) (Version: 1.17 - My.com B.V.)
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 88.0.705.81 - Microsoft Corporation)
Microsoft Edge Update (HKLM-x32\...\Microsoft Edge Update) (Version: 1.3.141.59 - )
Microsoft Office Professional Plus 2016 (HKLM\...\Office16.PROPLUS) (Version: 16.0.4266.1001 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-1667513993-266061694-1555504002-1001\...\OneDriveSetup.exe) (Version: 21.016.0124.0003 - Microsoft Corporation)
Microsoft Teams (HKU\S-1-5-21-1667513993-266061694-1555504002-1001\...\Teams) (Version: 1.4.00.4167 - Microsoft Corporation)
Microsoft Update Health Tools (HKLM\...\{99FAF70F-9B61-4AB0-9EC0-B31F98FFDC4A}) (Version: 2.75.0.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24215 (HKLM-x32\...\{d992c12e-cab2-426f-bde3-fb8c53950b0d}) (Version: 14.0.24215.1 - Microsoft Corporation)
MY.GAMES GameCenter (HKU\S-1-5-21-1667513993-266061694-1555504002-1001\...\GameCenter) (Version: 4.1614 - MY.COM B.V.)
Narzędzia sprawdzające pakietu Microsoft Office 2016 — polski (HKLM\...\{90160000-001F-0415-1000-0000000FF1CE}) (Version: 16.0.4266.1001 - Microsoft Corporation) Hidden
NVIDIA Sterownik graficzny 452.56 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 452.56 - NVIDIA Corporation)
Opera GX Stable 73.0.3856.400 (HKU\S-1-5-21-1667513993-266061694-1555504002-1001\...\Opera GX 73.0.3856.400) (Version: 73.0.3856.400 - Opera Software)
SnailDriver 2 Lite version 2.1.2.0 (HKLM-x32\...\{3189DA22-4E71-4794-9F3D-39A3DE0062DE}_is1) (Version: 2.1.2.0 - Snailsuite)
TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.5.6 - TeamSpeak Systems GmbH)
Telegram Desktop version 2.6.1 (HKU\S-1-5-21-1667513993-266061694-1555504002-1001\...\{53F49750-6209-4FBF-9CA8-7A333C87D1ED}_is1) (Version: 2.6.1 - Telegram FZ-LLC)
Update for Skype for Business 2016 (KB3128049) 64-Bit Edition (HKLM\...\{90160000-0011-0000-1000-0000000FF1CE}_Office16.PROPLUS_{801D5242-0189-4C99-977B-0C77DBD1F046}) (Version:  - Microsoft)
Update for Skype for Business 2016 (KB3128049) 64-Bit Edition (HKLM\...\{90160000-012B-0415-1000-0000000FF1CE}_Office16.PROPLUS_{801D5242-0189-4C99-977B-0C77DBD1F046}) (Version:  - Microsoft)

Packages:
=========
Centrum sterowania grafiką Intel® -> C:\Program Files\WindowsApps\AppUp.IntelGraphicsExperience_1.100.3282.0_x64__8j3eq9eme6ctt [2021-02-19] (INTEL CORP) [Startup Task]
Dolby Atmos for Gaming -> C:\Program Files\WindowsApps\dolbylaboratories.dolbyatmosforgaming_3.20800.804.0_x64__rz1tebttyb220 [2021-02-16] (Dolby Laboratories)
Microsoft Solitaire Collection -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.9.1252.0_x64__8wekyb3d8bbwe [2021-02-16] (Microsoft Studios) [MS Ad]
NVIDIA Control Panel -> C:\Program Files\WindowsApps\nvidiacorp.nvidiacontrolpanel_8.1.960.0_x64__56jybvy8sckqj [2021-02-16] (NVIDIA Corp.)
Realtek Audio Control -> C:\Program Files\WindowsApps\RealtekSemiconductorCorp.RealtekAudioControl_1.12.219.0_x64__dt26b99r8h8gj [2021-02-16] (Realtek Semiconductor Corp)
Spotify Music -> C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.153.608.0_x86__zpdnekdrzrea0 [2021-02-22] (Spotify AB) [Startup Task]

==================== Niestandardowe rejestracje CLSID (filtrowane): ==============

(Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)

CustomCLSID: HKU\S-1-5-21-1667513993-266061694-1555504002-1001_Classes\CLSID\{19A6E644-14E6-4A60-B8D7-DD20610A871D}\InprocServer32 -> C:\Users\kamil\AppData\Local\Microsoft\TeamsMeetingAddin\1.0.20289.5\x64\Microsoft.Teams.AddinLoader.dll (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Avast Software\Avast\ashShell.dll [2021-02-26] (Avast Software s.r.o. -> AVAST Software)
ShellIconOverlayIdentifiers-x32: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Avast Software\Avast\ashShell.dll [2021-02-26] (Avast Software s.r.o. -> AVAST Software)
ContextMenuHandlers1: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Avast Software\Avast\ashShell.dll [2021-02-26] (Avast Software s.r.o. -> AVAST Software)
ContextMenuHandlers3: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Avast Software\Avast\ashShell.dll [2021-02-26] (Avast Software s.r.o. -> AVAST Software)
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\System32\DriverStore\FileRepository\nvlt.inf_amd64_6fdb2f2a4eb90886\nvshext.dll [2020-11-12] (NVIDIA Corporation -> NVIDIA Corporation)
ContextMenuHandlers6: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Avast Software\Avast\ashShell.dll [2021-02-26] (Avast Software s.r.o. -> AVAST Software)

==================== Codecs (filtrowane) ====================

(Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.)

HKLM\...\Drivers32: [vidc.i420] => lvcod64.dll
HKLM\...\Drivers32-x32: [vidc.i420] => lvcodec2.dll
HKU\S-1-5-21-1667513993-266061694-1555504002-1001\...\Drivers32: [vidc.XVID] => xvidvfw.dll

==================== Skróty & WMI ========================

==================== Załadowane moduły (filtrowane) =============

2017-02-14 13:11 - 2017-02-14 13:11 - 024978944 _____ () [Brak podpisu cyfrowego] C:\MyGames\Legend - Legacy Of The Dragons (PL)\libcef.dll
2017-02-14 13:11 - 2017-02-14 13:11 - 000130048 _____ () [Brak podpisu cyfrowego] C:\MyGames\Legend - Legacy Of The Dragons (PL)\libegl.dll
2017-02-14 13:11 - 2017-02-14 13:11 - 000736256 _____ () [Brak podpisu cyfrowego] C:\MyGames\Legend - Legacy Of The Dragons (PL)\libglesv2.dll
2020-03-07 15:27 - 2020-03-07 15:27 - 101687296 _____ () [Brak podpisu cyfrowego] C:\Users\kamil\AppData\Local\GameCenter\Chrome\80.3987.2146\libcef.dll
2020-03-07 02:44 - 2020-03-07 02:44 - 000333824 _____ () [Brak podpisu cyfrowego] C:\Users\kamil\AppData\Local\GameCenter\Chrome\80.3987.2146\swiftshader\libegl.dll
2020-03-07 02:44 - 2020-03-07 02:44 - 003011584 _____ () [Brak podpisu cyfrowego] C:\Users\kamil\AppData\Local\GameCenter\Chrome\80.3987.2146\swiftshader\libglesv2.dll
2021-02-16 13:58 - 2021-02-16 13:58 - 000144896 _____ () [Brak podpisu cyfrowego] C:\Users\kamil\AppData\Local\GameCenter\zlib1.dll
2017-03-02 15:19 - 2017-03-02 15:19 - 000310272 ____N (easyhook.codeplex.com) [Brak podpisu cyfrowego] C:\ProgramData\Dolby\DAX3\RADARHOST\EasyHook64.dll
2021-02-16 13:58 - 2021-02-16 13:58 - 000158720 _____ (Igor Pavlov) [Brak podpisu cyfrowego] C:\Users\kamil\AppData\Local\GameCenter\7zxa.dll
2020-03-07 08:03 - 2020-03-07 08:03 - 000822784 _____ (The Chromium Authors) [Brak podpisu cyfrowego] C:\Users\kamil\AppData\Local\GameCenter\Chrome\80.3987.2146\chrome_elf.dll
2021-02-16 13:58 - 2021-02-16 13:58 - 000694272 _____ (The curl library, hxxps://curl.se/) [Brak podpisu cyfrowego] C:\Users\kamil\AppData\Local\GameCenter\libcurl.dll
2017-02-14 13:11 - 2017-02-14 13:11 - 009956864 _____ (The ICU Project) [Brak podpisu cyfrowego] C:\MyGames\Legend - Legacy Of The Dragons (PL)\icudt.dll
2010-09-09 09:52 - 2010-09-09 09:52 - 000098360 _____ (Un4seen Developments) [Brak podpisu cyfrowego] C:\MyGames\Legend - Legacy Of The Dragons (PL)\bass.dll

==================== Alternate Data Streams (filtrowane) ========

==================== Tryb awaryjny (filtrowane) ==================

(Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Wartość "AlternateShell" zostanie przywrócona.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\aswSP.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\aswSP.sys => ""="Driver"

==================== Powiązania plików (filtrowane) =================

==================== Internet Explorer (filtrowane) ==========

HKU\S-1-5-21-1667513993-266061694-1555504002-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.web-pl.com/
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\Office16\OCHelper.dll [2016-12-13] (Microsoft Corporation -> Microsoft Corporation)
BHO: Microsoft OneDrive for Business Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\Office16\GROOVEEX.DLL [2016-11-16] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\Office16\OCHelper.dll [2015-07-31] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Microsoft OneDrive for Business Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\Office16\GROOVEEX.DLL [2016-11-16] (Microsoft Corporation -> Microsoft Corporation)
Handler: mso-minsb.16 - {3459B272-CC19-4448-86C9-DDC3B4B2FAD3} - C:\Program Files\Microsoft Office\Office16\MSOSB.DLL [2016-11-16] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb.16 - {3459B272-CC19-4448-86C9-DDC3B4B2FAD3} - C:\Program Files (x86)\Microsoft Office\Office16\MSOSB.DLL [2016-11-16] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\Office16\MSOSB.DLL [2016-11-16] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\Office16\MSOSB.DLL [2016-11-16] (Microsoft Corporation -> Microsoft Corporation)

(Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru.)

IE trusted site: HKU\S-1-5-21-1667513993-266061694-1555504002-1001\...\sharepoint.com -> hxxps://unilodzeu-files.sharepoint.com

==================== Hosts - zawartość: =========================

(Użycie dyrektywy Hosts: w fixlist spowoduje reset pliku Hosts.)

2019-12-07 10:14 - 2019-12-07 10:12 - 000000824 _____ C:\WINDOWS\system32\drivers\etc\hosts

==================== Inne obszary ===========================

(Obecnie brak automatycznej naprawy dla tej sekcji.)

HKU\S-1-5-21-1667513993-266061694-1555504002-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\kamil\AppData\Local\Microsoft\Windows\Themes\RoamedThemeFiles\DesktopBackground\172949_czarny_kot_perski.jpg
DNS Servers: 192.168.0.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: )
Zapora systemu Windows [funkcja włączona]

==================== MSCONFIG/TASK MANAGER - Wyłączone elementy ==

(Załączenie wejścia w fixlist spowoduje jego usunięcie.)

HKU\S-1-5-21-1667513993-266061694-1555504002-1001\...\StartupApproved\Run: => "SnailDriver"

==================== Reguły Zapory systemu Windows (filtrowane) ================

(Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)

FirewallRules: [{EF5A2B36-3B81-4944-BA93-65F707629DCA}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.68.96.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{128D79A1-7312-4500-8549-30F09662030D}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.68.96.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{784D6516-3695-4CF7-A266-7B95418A2007}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.68.96.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{3F5EA6E8-0D5E-4153-A9E7-C57C4660DCD7}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.68.96.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [TCP Query User{AF4E17FB-4087-4667-A359-176AAFC7CBE8}C:\users\kamil\appdata\local\gamecenter\gamecenter.exe] => (Block) C:\users\kamil\appdata\local\gamecenter\gamecenter.exe (LLC Mail.Ru -> )
FirewallRules: [UDP Query User{FCC8B50B-8F7E-4908-BB54-52F576586AAA}C:\users\kamil\appdata\local\gamecenter\gamecenter.exe] => (Block) C:\users\kamil\appdata\local\gamecenter\gamecenter.exe (LLC Mail.Ru -> )
FirewallRules: [TCP Query User{D18D0603-04EE-4329-BE28-06F1CCE53D5E}C:\users\kamil\appdata\local\programs\opera gx\73.0.3856.396\opera.exe] => (Allow) C:\users\kamil\appdata\local\programs\opera gx\73.0.3856.396\opera.exe (Opera Software AS -> Opera Software)
FirewallRules: [UDP Query User{0610182A-EF20-4D88-AF84-4DC5DEE3424F}C:\users\kamil\appdata\local\programs\opera gx\73.0.3856.396\opera.exe] => (Allow) C:\users\kamil\appdata\local\programs\opera gx\73.0.3856.396\opera.exe (Opera Software AS -> Opera Software)
FirewallRules: [{DC08828A-30EA-4410-9303-A322CCD13318}] => (Allow) C:\Program Files\Microsoft Office\Office16\lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{0B0CBC78-55AF-470F-8ADE-BEE026BBAAB5}] => (Allow) C:\Program Files\Microsoft Office\Office16\lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{8C357566-6EF0-441D-8346-B28309F2105C}] => (Allow) C:\Program Files\Microsoft Office\Office16\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{918B9870-C5F4-44C6-BE62-BA5B6F868565}] => (Allow) C:\Program Files\Microsoft Office\Office16\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [TCP Query User{EA5A9782-6A0F-47F6-AAD6-BD094A372F94}C:\users\kamil\appdata\local\gamecenter\gamecenter.exe] => (Allow) C:\users\kamil\appdata\local\gamecenter\gamecenter.exe (LLC Mail.Ru -> )
FirewallRules: [UDP Query User{F876636C-BF32-4ACF-B801-D4B7F6C76492}C:\users\kamil\appdata\local\gamecenter\gamecenter.exe] => (Allow) C:\users\kamil\appdata\local\gamecenter\gamecenter.exe (LLC Mail.Ru -> )
FirewallRules: [TCP Query User{10416501-1E1D-4F1C-AF11-1114E4305B59}C:\users\kamil\appdata\local\microsoft\teams\current\teams.exe] => (Allow) C:\users\kamil\appdata\local\microsoft\teams\current\teams.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [UDP Query User{C674B601-A71F-4CA0-BAFE-D8F747BC9DB9}C:\users\kamil\appdata\local\microsoft\teams\current\teams.exe] => (Allow) C:\users\kamil\appdata\local\microsoft\teams\current\teams.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [TCP Query User{5BB4E150-4BF9-4A35-BF88-694E3A102C9E}C:\users\kamil\appdata\local\programs\opera gx\73.0.3856.400\opera.exe] => (Allow) C:\users\kamil\appdata\local\programs\opera gx\73.0.3856.400\opera.exe (Opera Software AS -> Opera Software)
FirewallRules: [UDP Query User{B89FD9F8-E6D5-4691-94F0-926DC2F0E989}C:\users\kamil\appdata\local\programs\opera gx\73.0.3856.400\opera.exe] => (Allow) C:\users\kamil\appdata\local\programs\opera gx\73.0.3856.400\opera.exe (Opera Software AS -> Opera Software)
FirewallRules: [{96C44485-D689-4737-8445-B5FE63F456E3}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.153.608.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{6935F84E-77B1-42B8-A59E-B4A2A586E49F}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.153.608.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{4D95DE68-C2A6-49DD-A20B-6663447D6EC5}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.153.608.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{580C7DBA-429B-4849-BE7A-EE89E43B1CF8}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.153.608.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{A6B19E2B-B9D6-4E9F-A564-84F6435E7056}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.153.608.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{8B2DC29C-A523-4FB7-BD97-2AE28BD4C8C3}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.153.608.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{FD30C12F-E678-4F8A-A0EC-E9DBEDA84F44}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.153.608.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{3B3819FE-59CF-4EB9-AD85-BA23CDE8E496}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.153.608.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [TCP Query User{720C249E-704F-440B-8B71-D1DBEEA0FB07}C:\users\kamil\appdata\local\programs\opera gx\73.0.3856.400\opera.exe] => (Allow) C:\users\kamil\appdata\local\programs\opera gx\73.0.3856.400\opera.exe (Opera Software AS -> Opera Software)
FirewallRules: [UDP Query User{38AD2C34-EA43-4FE1-AA31-568D9FE852A8}C:\users\kamil\appdata\local\programs\opera gx\73.0.3856.400\opera.exe] => (Allow) C:\users\kamil\appdata\local\programs\opera gx\73.0.3856.400\opera.exe (Opera Software AS -> Opera Software)

==================== Punkty Przywracania systemu =========================

20-02-2021 23:05:31 Zaplanowany punkt kontrolny
26-02-2021 21:09:15 Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24215
26-02-2021 23:05:28 Snail Driver install restore point
27-02-2021 10:16:03 Instalator modułów systemu Windows

==================== Wadliwe urządzenia w Menedżerze urządzeń ============


==================== Błędy w Dzienniku zdarzeń: ========================

Dziennik Aplikacja:
==================
Error: (03/01/2021 10:07:23 AM) (Source: Microsoft Office 16) (EventID: 2001) (User: )
Description: Microsoft Word: Rejected Safe Mode action : Poprawne uruchomienie programu Word ostatnim razem nie powiodło się. Uruchomienie w trybie awaryjnym pomoże naprawić problem, jednak niektóre funkcje mogą być w tym trybie niedostępne.

Czy chcesz uruchomić w trybie awaryjnym?.
Rejected Safe Mode action : Microsoft Word.

Error: (03/01/2021 10:07:19 AM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program WINWORD.EXE w wersji 16.0.4471.1000 przestał współpracować z systemem Windows i został zamknięty. Aby zobaczyć, czy jest dostępnych więcej informacji dotyczących tego problemu, sprawdź historię problemów w oknie Zabezpieczenia i konserwacja w Panelu sterowania.

Identyfikator procesu: 4680

Godzina rozpoczęcia: 01d70e7a3a886f55

Godzina zakończenia: 0

Ścieżka aplikacji: C:\Program Files\Microsoft Office\Office16\WINWORD.EXE

Identyfikator raportu: 95f08121-f869-48a9-bb6b-17d442f24977

Pełna nazwa pakietu powodującego błąd: 

Identyfikator aplikacji powiązanej z pakietem powodującym błąd: 

Typ zawieszenia: Unknown

Error: (02/26/2021 09:10:07 PM) (Source: VSS) (EventID: 8193) (User: )
Description: Błąd Usługi kopiowania woluminów w tle: nieoczekiwany błąd podczas wywoływania procedury CoCreateInstance.  hr = 0x8007045b, Trwa proces zamykania systemu.
.

Error: (02/26/2021 09:10:07 PM) (Source: VSS) (EventID: 13) (User: )
Description: Informacje Usługi kopiowania woluminów w tle: nie można uruchomić serwera usługi COM z identyfikatorem CLSID {4e14fba2-2e22-11d1-9964-00c04fbbb345} i nazwą CEventSystem. [0x8007045b, Trwa proces zamykania systemu.
]

Error: (02/26/2021 09:10:07 PM) (Source: VSS) (EventID: 8193) (User: )
Description: Błąd Usługi kopiowania woluminów w tle: nieoczekiwany błąd podczas wywoływania procedury CoCreateInstance.  hr = 0x8007045b, Trwa proces zamykania systemu.
.

Error: (02/26/2021 09:10:07 PM) (Source: VSS) (EventID: 13) (User: )
Description: Informacje Usługi kopiowania woluminów w tle: nie można uruchomić serwera usługi COM z identyfikatorem CLSID {4e14fba2-2e22-11d1-9964-00c04fbbb345} i nazwą CEventSystem. [0x8007045b, Trwa proces zamykania systemu.
]

Error: (02/25/2021 11:19:33 AM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program dwarclient.exe w wersji 3.0.36.51084 przestał współpracować z systemem Windows i został zamknięty. Aby zobaczyć, czy jest dostępnych więcej informacji dotyczących tego problemu, sprawdź historię problemów w oknie Zabezpieczenia i konserwacja w Panelu sterowania.

Identyfikator procesu: 2dc8

Godzina rozpoczęcia: 01d70b565a0e4eb5

Godzina zakończenia: 30

Ścieżka aplikacji: C:\MyGames\Legend - Legacy Of The Dragons (PL)\dwarclient.exe

Identyfikator raportu: d7b7356a-81af-4415-93d4-5fc2e203069e

Pełna nazwa pakietu powodującego błąd: 

Identyfikator aplikacji powiązanej z pakietem powodującym błąd: 

Typ zawieszenia: Unknown

Error: (02/21/2021 06:19:32 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program dwarclient.exe w wersji 3.0.36.51084 przestał współpracować z systemem Windows i został zamknięty. Aby zobaczyć, czy jest dostępnych więcej informacji dotyczących tego problemu, sprawdź historię problemów w oknie Zabezpieczenia i konserwacja w Panelu sterowania.

Identyfikator procesu: 2a58

Godzina rozpoczęcia: 01d708250e1ac46f

Godzina zakończenia: 28

Ścieżka aplikacji: C:\MyGames\Legend - Legacy Of The Dragons (PL)\dwarclient.exe

Identyfikator raportu: bce69a37-6840-434a-b770-45b02ed288e2

Pełna nazwa pakietu powodującego błąd: 

Identyfikator aplikacji powiązanej z pakietem powodującym błąd: 

Typ zawieszenia: Unknown


Dziennik System:
=============
Error: (03/02/2021 04:12:39 PM) (Source: DCOM) (EventID: 10005) (User: ZARZĄDZANIE NT)
Description: Model DCOM odebrał błąd 1115 podczas próby uruchomienia usługi wuauserv z argumentami Niedostępny w celu uruchomienia serwera:
{E60687F7-01A1-40AA-86AC-DB1CBF673334}

Error: (03/02/2021 04:12:39 PM) (Source: DCOM) (EventID: 10005) (User: ZARZĄDZANIE NT)
Description: Model DCOM odebrał błąd 1115 podczas próby uruchomienia usługi wuauserv z argumentami Niedostępny w celu uruchomienia serwera:
{E60687F7-01A1-40AA-86AC-DB1CBF673334}

Error: (03/02/2021 12:10:04 PM) (Source: volmgr) (EventID: 161) (User: )
Description: Utworzenie pliku zrzutu nie powiodło się z powodu błędu podczas tworzenia zrzutu.

Error: (03/02/2021 12:10:14 PM) (Source: EventLog) (EventID: 6008) (User: )
Description: Poprzednie zamknięcie systemu przy 12:00:58 na ‎02.‎03.‎2021 było nieoczekiwane.

Error: (03/01/2021 12:30:48 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-IT245MR)
Description: Serwer {9BA05972-F6A8-11CF-A442-00A0C90A8F39} nie zarejestrował się w modelu DCOM w wymaganym czasie.

Error: (02/28/2021 11:30:53 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-IT245MR)
Description: Serwer {9BA05972-F6A8-11CF-A442-00A0C90A8F39} nie zarejestrował się w modelu DCOM w wymaganym czasie.

Error: (02/28/2021 11:30:52 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-IT245MR)
Description: Serwer {AB8902B4-09CA-4BB6-B78D-A8F59079A8D5} nie zarejestrował się w modelu DCOM w wymaganym czasie.

Error: (02/28/2021 11:30:52 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-IT245MR)
Description: Serwer {AB8902B4-09CA-4BB6-B78D-A8F59079A8D5} nie zarejestrował się w modelu DCOM w wymaganym czasie.


Windows Defender:
================
Date: 2021-02-26 16:15:58
Description: 
Skanowanie produktu Program antywirusowy Microsoft Defender zostało zatrzymane przed ukończeniem.
Identyfikator skanowania: {AFC8E6A7-2A47-46D7-A662-4AFB10BA73C0}
Typ skanowania: Narzędzia chroniące przed złośliwym oprogramowaniem
Parametry skanowania: Szybkie skanowanie
Użytkownik: ZARZĄDZANIE NT\SYSTEM

Date: 2021-02-24 20:17:02
Description: 
Skanowanie produktu Program antywirusowy Microsoft Defender zostało zatrzymane przed ukończeniem.
Identyfikator skanowania: {D18D02E7-FF2D-4402-901F-B319694DFF2A}
Typ skanowania: Narzędzia chroniące przed złośliwym oprogramowaniem
Parametry skanowania: Szybkie skanowanie
Użytkownik: ZARZĄDZANIE NT\SYSTEM

Date: 2021-02-23 15:56:17
Description: 
Skanowanie produktu Program antywirusowy Microsoft Defender zostało zatrzymane przed ukończeniem.
Identyfikator skanowania: {1B677382-6834-4F7C-B925-8D727AC4846F}
Typ skanowania: Narzędzia chroniące przed złośliwym oprogramowaniem
Parametry skanowania: Szybkie skanowanie
Użytkownik: ZARZĄDZANIE NT\SYSTEM

Date: 2021-02-21 19:40:05
Description: 
Skanowanie produktu Program antywirusowy Microsoft Defender zostało zatrzymane przed ukończeniem.
Identyfikator skanowania: {7E918096-4E94-4030-B8A0-42A51651D409}
Typ skanowania: Narzędzia chroniące przed złośliwym oprogramowaniem
Parametry skanowania: Szybkie skanowanie
Użytkownik: ZARZĄDZANIE NT\SYSTEM

Date: 2021-02-18 16:15:58
Description: 
Skanowanie produktu Program antywirusowy Microsoft Defender zostało zatrzymane przed ukończeniem.
Identyfikator skanowania: {3859EEBE-C937-489C-9141-F4BED1BF8EED}
Typ skanowania: Narzędzia chroniące przed złośliwym oprogramowaniem
Parametry skanowania: Szybkie skanowanie
Użytkownik: ZARZĄDZANIE NT\SYSTEM

CodeIntegrity:
===============
Date: 2021-03-03 00:26:26
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Program Files\Avast Software\Avast\aswAMSI.dll that did not meet the Windows signing level requirements.

Date: 2021-03-02 21:25:51
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Avast Software\Avast\AvastSvc.exe) attempted to load \Device\HarddiskVolume3\Program Files\Common Files\microsoft shared\OFFICE16\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2021-03-02 21:00:10
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files (x86)\Microsoft\Edge\Application\msedge.exe) attempted to load \Device\HarddiskVolume3\Program Files\Avast Software\Avast\aswhook.dll that did not meet the Microsoft signing level requirements.

Date: 2021-03-02 20:26:20
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MpCmdRun.exe) attempted to load \Device\HarddiskVolume3\Program Files\Avast Software\Avast\aswAMSI.dll that did not meet the Microsoft signing level requirements.


==================== Statystyki pamięci =========================== 

BIOS: LENOVO EFCN46WW 12/04/2020
Płyta główna: LENOVO LNVNB161216
Procesor: Intel(R) Core(TM) i7-10750H CPU @ 2.60GHz
Procent pamięci w użyciu: 45%
Całkowita pamięć fizyczna: 16251.8 MB
Dostępna pamięć fizyczna: 8890.96 MB
Całkowita pamięć wirtualna: 18683.8 MB
Dostępna pamięć wirtualna: 9298.4 MB

==================== Dyski ================================

Drive c: () (Fixed) (Total:476.33 GB) (Free:415.43 GB) NTFS

\\?\Volume{12d18174-ebc9-4e47-ab51-b872431103fd}\ () (Fixed) (Total:0.5 GB) (Free:0.08 GB) NTFS
\\?\Volume{68770ea6-6f01-46d3-97b0-e456537149d9}\ () (Fixed) (Total:0.09 GB) (Free:0.07 GB) FAT32

==================== MBR & Tablica partycji ====================

==========================================================
Disk: 0 (Size: 476.9 GB) (Disk ID: D9FA2484)

Partition: GPT.

==================== Koniec  Addition.txt =======================

Rezultaty skanowania Farbar Recovery Scan Tool (FRST) (x64) Wersja: 28-02-2021
Uruchomiony przez kamil (administrator)  DESKTOP-IT245MR (LENOVO 81Y6) (03-03-2021 08:26:10)
Uruchomiony z C:\Users\kamil\AppData\Local\Temp\scoped_dir14136_781903975
Załadowane profile: kamil
Platform: Windows 10 Pro Wersja 20H2 19042.804 (X64) Język: Polski (Polska)
Domyślna przeglądarka: Opera
Tryb startu: Normal

==================== Procesy (filtrowane) =================

(Załączenie wejścia w fixlist spowoduje zamknięcie procesu. Powiązany plik nie zostanie przeniesiony.)

(Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\aswEngSrv.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\aswidsagent.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\aswToolsSvc.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\AvastSvc.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\AvastUI.exe <3>
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\AvLaunch.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\setup\instup.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\wsc_proxy.exe
(Discord Inc. -> Discord Inc.) C:\Users\kamil\AppData\Local\Discord\app-0.0.309\Discord.exe <7>
(Dolby Laboratories, Inc. -> ) C:\ProgramData\Dolby\DAX3\RADARHOST\DSRHost.exe
(Dolby Laboratories, Inc. -> Dolby Laboratories) C:\Windows\System32\DriverStore\FileRepository\DAX3_S~1.INF\DAX3API.exe
(Dolby Laboratories, Inc. -> Dolby Laboratories) C:\Windows\System32\DriverStore\FileRepository\dax3_swc_aposvc.inf_amd64_925ded1d9428eaee\DAX3API.exe
(Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dptf_cpu.inf_amd64_82b77f8c4618e2d0\esif_uf.exe
(Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_0b214be229a13e84\jhi_service.exe
(Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_0d8dab4470c5524b\GfxDownloadWrapper.exe
(Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_0d8dab4470c5524b\igfxCUIService.exe
(Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_0d8dab4470c5524b\igfxEM.exe
(Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igcc_dch.inf_amd64_a9a2dde7124f013f\OneApp.IGCC.WinService.exe
(Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_c9929a6553f8ecd2\IntelCpHDCPSvc.exe
(Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_c9929a6553f8ecd2\IntelCpHeciSvc.exe
(Intel(R) Rapid Storage Technology -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iaahcic.inf_amd64_c98d5e0dfc88ac2f\RstMwService.exe
(Lenovo -> Lenovo(beijing) Limited) C:\Windows\System32\DriverStore\FileRepository\lenovofnandfunctionkeys.inf_amd64_274b8a1dabbd8d3a\LenovoUtilityService.exe
(LLC Mail.Ru -> ) C:\Users\kamil\AppData\Local\GameCenter\GameCenter.exe <3>
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Users\kamil\AppData\Local\Microsoft\OneDrive\OneDrive.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Users\kamil\AppData\Local\Microsoft\Teams\current\Teams.exe <8>
(Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.549981c3f5f10_2.2101.15643.0_x64__8wekyb3d8bbwe\Cortana.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Microsoft Windows Hardware Compatibility Publisher -> Fortemedia) C:\Windows\System32\FMService64.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nvlt.inf_amd64_6fdb2f2a4eb90886\Display.NvContainer\NVDisplay.Container.exe <2>
(Opera Software AS -> Opera Software) C:\Users\kamil\AppData\Local\Programs\Opera GX\73.0.3856.400\opera.exe <20>
(Opera Software AS -> Opera Software) C:\Users\kamil\AppData\Local\Programs\Opera GX\73.0.3856.400\opera_crashreporter.exe
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\RtkAudUService64.exe <2>
(Spotify AB) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.153.608.0_x86__zpdnekdrzrea0\Spotify.exe <5>

==================== Rejestr (filtrowane) ===================

(Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.)

HKLM\...\Run: [RtkAudUService] => C:\WINDOWS\System32\RtkAudUService64.exe [1084704 2020-05-28] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\Avast Software\Avast\AvLaunch.exe [116960 2021-02-26] (Avast Software s.r.o. -> AVAST Software)
HKU\S-1-5-21-1667513993-266061694-1555504002-1001\...\Run: [GameCenter] => C:\Users\kamil\AppData\Local\GameCenter\GameCenter.exe [10942136 2021-02-20] (LLC Mail.Ru -> )
HKU\S-1-5-21-1667513993-266061694-1555504002-1001\...\Run: [Discord] => C:\Users\kamil\AppData\Local\Discord\Update.exe [1512760 2020-12-03] (Discord Inc. -> GitHub)
HKU\S-1-5-21-1667513993-266061694-1555504002-1001\...\Run: [com.squirrel.Teams.Teams] => C:\Users\kamil\AppData\Local\Microsoft\Teams\Update.exe [2453720 2021-02-26] (Microsoft 3rd Party Application Component -> Microsoft Corporation)
HKU\S-1-5-21-1667513993-266061694-1555504002-1001\...\Run: [SnailDriver] => C:\Program Files (x86)\SnailSuite\SnailDriver 2 Lite\SnailLaunch.exe [792064 2018-07-26] (SnailDrivers) [Brak podpisu cyfrowego]
HKU\S-1-5-21-1667513993-266061694-1555504002-1001\...\MountPoints2: {2aa6dd26-704d-11eb-bf11-14f6d8e4da8a} - "E:\SETUP.EXE" 
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Ograniczenia <==== UWAGA

==================== Zaplanowane zadania (filtrowane) ============

(Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)

Task: {3D753DFC-47C8-4F13-BA6D-A4F09F8E6360} - System32\Tasks\SnailDriver2_Lite_SkipUAC => C:\Program Files (x86)\SnailSuite\SnailDriver 2 Lite\SnailDriver.exe [7225344 2018-07-26] (Snail) [Brak podpisu cyfrowego]
Task: {5897D314-56D0-49CE-A44D-6C739B611C9B} - System32\Tasks\Opera GX scheduled Autoupdate 1613480119 => C:\Users\kamil\AppData\Local\Programs\Opera GX\launcher.exe [1720472 2021-02-16] (Opera Software AS -> Opera Software)
Task: {58CC78E3-01FF-4A05-809B-DEB77DABA203} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 => C:\Program Files\Microsoft Office\Office16\msoia.exe [416432 2015-07-31] (Microsoft Corporation -> Microsoft Corporation)
Task: {7087465E-465B-4B5A-9800-A80A96CBF698} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office16\OLicenseHeartbeat.exe [316632 2015-07-31] (Microsoft Corporation -> Microsoft Corporation)
Task: {8978A699-BD27-43F5-AB3E-AC32879A1950} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe [1791712 2021-02-26] (Avast Software s.r.o. -> Avast Software)
Task: {A0384A76-B261-4A0B-B464-B9F181771F69} - System32\Tasks\SnailDriver2_Lite_Launch => C:\Program Files (x86)\SnailSuite\SnailDriver 2 Lite\SnailLaunch.exe [792064 2018-07-26] (SnailDrivers) [Brak podpisu cyfrowego]
Task: {AE38C37E-D8DD-41D3-9186-F0F5461838DB} - System32\Tasks\Avast Emergency Update => C:\Program Files\Avast Software\Avast\AvEmUpdate.exe [4682976 2021-02-26] (Avast Software s.r.o. -> AVAST Software)
Task: {B987F6B6-2BC0-4F8B-AB61-B7B3C5178990} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files\Microsoft Office\Office16\msoia.exe [416432 2015-07-31] (Microsoft Corporation -> Microsoft Corporation)

(Załączenie wejścia w fixlist spowoduje przesunięcie pliku zadania (.job). Plik uruchamiany docelowo przez zadanie nie zostanie przeniesiony.)


==================== Internet (filtrowane) ====================

(Załączenie wejścia w fixlist, w przypadku gdy jest to obiekt rejestru, spowoduje usunięcie go z rejestru lub przywrócenie jego domyślnej postaci.)

Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{c68a3f80-16e1-4383-9b56-b2ce1a6d04a4}: [DhcpNameServer] 192.168.0.1

Edge: 
=======
Edge Profile: C:\Users\kamil\AppData\Local\Microsoft\Edge\User Data\Default [2021-03-02]
Edge HomePage: Default -> hxxp://www.web-pl.com/
Edge StartupUrls: Default -> "hxxp://www.web-pl.com/"
Edge Session Restore: Default -> [funkcja włączona]
Edge Extension: (Dark Mode) - C:\Users\kamil\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\boldmdfoencgjfblcelefkjfafmpiahm [2021-03-02]
Edge Extension: (McAfee® WebAdvisor) - C:\Users\kamil\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\fdhgeoginicibhagdmblfikbgbkahibd [2021-02-16]
Edge Extension: (AdBlock — najlepszy bloker reklam) - C:\Users\kamil\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ndcileolkflehcjpmjnfbnaibdcgglog [2021-03-02]

FireFox:
========
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~1\Office16\NPSPWRAP.DLL [2015-07-31] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2016-12-13] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~2\Office16\NPSPWRAP.DLL [2015-07-31] (Microsoft Corporation -> Microsoft Corporation)

Opera: 
=======
StartMenuInternet: (HKU\S-1-5-21-1667513993-266061694-1555504002-1001) Opera GXStable - "C:\Users\kamil\AppData\Local\Programs\Opera GX\Launcher.exe"

==================== Usługi (filtrowane) ===================

(Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)

R3 aswbIDSAgent; C:\Program Files\Avast Software\Avast\aswidsagent.exe [7878680 2021-02-26] (Avast Software s.r.o. -> AVAST Software)
R2 avast! Antivirus; C:\Program Files\Avast Software\Avast\AvastSvc.exe [621608 2021-02-26] (Avast Software s.r.o. -> AVAST Software)
R2 avast! Tools; C:\Program Files\Avast Software\Avast\aswToolsSvc.exe [352480 2021-02-26] (Avast Software s.r.o. -> AVAST Software)
R2 AvastWscReporter; C:\Program Files\Avast Software\Avast\wsc_proxy.exe [56904 2021-02-26] (Avast Software s.r.o. -> AVAST Software)
R2 DolbyDAXAPI; C:\WINDOWS\System32\DriverStore\FileRepository\dax3_swc_aposvc.inf_amd64_925ded1d9428eaee\DAX3API.exe [2205144 2020-12-22] (Dolby Laboratories, Inc. -> Dolby Laboratories)
R2 FMAPOService; C:\WINDOWS\System32\FMService64.exe [390400 2020-05-22] (Microsoft Windows Hardware Compatibility Publisher -> Fortemedia)
R2 LenovoFnAndFunctionKeys; C:\WINDOWS\System32\DriverStore\FileRepository\lenovofnandfunctionkeys.inf_amd64_274b8a1dabbd8d3a\LenovoUtilityService.exe [529216 2020-05-20] (Lenovo -> Lenovo(beijing) Limited)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [5198064 2021-02-16] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2101.9-0\NisSrv.exe [2462960 2021-02-16] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2101.9-0\MsMpEng.exe [128376 2021-02-16] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 NVDisplay.ContainerLocalSystem; C:\WINDOWS\System32\DriverStore\FileRepository\nvlt.inf_amd64_6fdb2f2a4eb90886\Display.NvContainer\NVDisplay.Container.exe -s NVDisplay.ContainerLocalSystem -f %ProgramData%\NVIDIA\NVDisplay.ContainerLocalSystem.log -l 3 -d C:\WINDOWS\System32\DriverStore\FileRepository\nvlt.inf_amd64_6fdb2f2a4eb90886\Display.NvContainer\plugins\LocalSystem -r -p 30000 -cfg NVDisplay.ContainerLocalSystem\LocalSystem

===================== Sterowniki (filtrowane) ===================

(Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)

R0 aswArDisk; C:\WINDOWS\System32\drivers\aswArDisk.sys [35648 2021-02-26] (Avast Software s.r.o. -> AVAST Software)
R1 aswArPot; C:\WINDOWS\System32\drivers\aswArPot.sys [208024 2021-02-26] (Avast Software s.r.o. -> AVAST Software)
R1 aswbidsdriver; C:\WINDOWS\System32\drivers\aswbidsdriver.sys [357320 2021-02-26] (Avast Software s.r.o. -> AVAST Software)
R0 aswbidsh; C:\WINDOWS\System32\drivers\aswbidsh.sys [249304 2021-02-26] (Avast Software s.r.o. -> AVAST Software)
R0 aswbuniv; C:\WINDOWS\System32\drivers\aswbuniv.sys [98760 2021-02-26] (Avast Software s.r.o. -> AVAST Software)
R0 aswElam; C:\WINDOWS\System32\drivers\aswElam.sys [16832 2021-02-26] (Microsoft Windows Early Launch Anti-malware Publisher -> AVAST Software)
R1 aswKbd; C:\WINDOWS\System32\drivers\aswKbd.sys [41272 2021-02-26] (Avast Software s.r.o. -> AVAST Software)
R1 aswMonFlt; C:\WINDOWS\System32\drivers\aswMonFlt.sys [175248 2021-02-26] (Avast Software s.r.o. -> AVAST Software)
R1 aswNetHub; C:\WINDOWS\System32\drivers\aswNetHub.sys [521336 2021-02-26] (Avast Software s.r.o. -> AVAST Software)
R1 aswRdr; C:\WINDOWS\System32\drivers\aswRdr2.sys [107784 2021-02-26] (Avast Software s.r.o. -> AVAST Software)
R0 aswRvrt; C:\WINDOWS\System32\drivers\aswRvrt.sys [83360 2021-02-26] (Avast Software s.r.o. -> AVAST Software)
R1 aswSnx; C:\WINDOWS\System32\drivers\aswSnx.sys [850112 2021-02-26] (Avast Software s.r.o. -> AVAST Software)
R1 aswSP; C:\WINDOWS\System32\drivers\aswSP.sys [465656 2021-02-26] (Avast Software s.r.o. -> AVAST Software)
R2 aswStm; C:\WINDOWS\System32\drivers\aswStm.sys [215328 2021-02-26] (Avast Software s.r.o. -> AVAST Software)
R0 aswVmm; C:\WINDOWS\System32\drivers\aswVmm.sys [326976 2021-02-26] (Avast Software s.r.o. -> AVAST Software)
S3 WdBoot; C:\WINDOWS\system32\drivers\wd\WdBoot.sys [49552 2021-02-16] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\wd\WdFilter.sys [419040 2021-02-16] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [71912 2021-02-16] (Microsoft Windows -> Microsoft Corporation)

==================== NetSvcs (filtrowane) ===================

(Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)


==================== Trzy miesiące (utworzone) (filtrowane) =========

(Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.)

2021-03-02 16:12 - 2021-03-03 00:47 - 000002216 _____ C:\WINDOWS\system32\Tasks\SnailDriver2_Lite_SkipUAC
2021-03-02 16:12 - 2021-03-03 00:47 - 000002214 _____ C:\WINDOWS\system32\Tasks\SnailDriver2_Lite_Launch
2021-03-02 16:12 - 2021-03-02 16:12 - 000001468 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SnailDriver 2 Lite.lnk
2021-03-02 16:12 - 2021-03-02 16:12 - 000001456 _____ C:\ProgramData\Pulpit\SnailDriver 2 Lite.lnk
2021-03-02 16:12 - 2021-03-02 16:12 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\snailsuite
2021-03-02 16:12 - 2021-03-02 16:12 - 000000000 ____D C:\Program Files (x86)\SnailSuite
2021-03-02 10:25 - 2021-03-02 10:25 - 000000000 ____D C:\WINDOWS\system32\Tasks\Agent Activation Runtime
2021-03-01 11:08 - 2021-03-01 11:08 - 000537433 _____ C:\Users\kamil\Downloads\socko.pdf
2021-03-01 10:02 - 2021-03-01 10:02 - 000426659 _____ C:\Users\kamil\Downloads\EGZAMIN-B-CF2-NEW2termin.pdf
2021-03-01 09:56 - 2021-03-01 09:56 - 023101938 _____ C:\Users\kamil\Downloads\DARIUSZ-FIZ.pdf
2021-03-01 09:56 - 2021-03-01 09:56 - 008412308 _____ C:\Users\kamil\Downloads\Mariola-fiz.pdf
2021-03-01 09:55 - 2021-03-01 09:55 - 000889561 _____ C:\Users\kamil\Downloads\odp-fiz-egz-termin-1.pdf
2021-02-26 23:19 - 2021-03-03 08:26 - 000000000 ____D C:\FRST
2021-02-26 23:18 - 2021-02-26 23:18 - 002301440 _____ (Farbar) C:\Users\kamil\Downloads\FRST64.exe
2021-02-26 23:00 - 2021-02-26 23:05 - 000000000 ____D C:\_Snaildriversbackup
2021-02-26 23:00 - 2021-02-26 23:00 - 000000000 ____D C:\Users\kamil\AppData\Local\CrashRpt
2021-02-26 22:59 - 2021-02-26 22:59 - 005460726 _____ (Snailsuite ) C:\Users\kamil\Downloads\SnailDriver_2_lite_setup.exe
2021-02-26 22:46 - 2021-02-26 22:46 - 001319136 _____ (CPUID, Inc. ) C:\Users\kamil\Downloads\hwmonitor_1.43.exe
2021-02-26 22:43 - 2021-02-26 22:43 - 004707136 _____ (Crystal Dew World ) C:\Users\kamil\Downloads\CrystalDiskInfo8_11_2.exe
2021-02-26 21:12 - 2021-02-27 00:27 - 000000000 ____D C:\Users\kamil\AppData\Roaming\TS3Client
2021-02-26 21:12 - 2021-02-26 21:12 - 000000000 ____D C:\Users\kamil\AppData\Local\TeamSpeak 3
2021-02-26 21:09 - 2021-02-26 21:09 - 000001008 _____ C:\ProgramData\Pulpit\TeamSpeak 3 Client.lnk
2021-02-26 21:09 - 2021-02-26 21:09 - 000000970 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamSpeak 3 Client.lnk
2021-02-26 21:09 - 2021-02-26 21:09 - 000000000 ____D C:\ProgramData\Package Cache
2021-02-26 21:09 - 2021-02-26 21:09 - 000000000 ____D C:\Program Files\TeamSpeak 3 Client
2021-02-26 21:06 - 2021-02-26 21:07 - 090699776 _____ (TeamSpeak Systems GmbH) C:\Users\kamil\Downloads\TeamSpeak3-Client-win64-3.5.6.exe
2021-02-26 19:53 - 2021-03-02 21:48 - 000000000 ____D C:\WINDOWS\system32\Tasks\Avast Software
2021-02-26 19:53 - 2021-03-01 20:18 - 000004264 _____ C:\WINDOWS\system32\Tasks\Avast Emergency Update
2021-02-26 19:53 - 2021-02-26 19:53 - 000850112 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSnx.sys
2021-02-26 19:53 - 2021-02-26 19:53 - 000521336 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswNetHub.sys
2021-02-26 19:53 - 2021-02-26 19:53 - 000465656 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSP.sys
2021-02-26 19:53 - 2021-02-26 19:53 - 000357320 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswbidsdriver.sys
2021-02-26 19:53 - 2021-02-26 19:53 - 000339680 _____ (AVAST Software) C:\WINDOWS\system32\aswBoot.exe
2021-02-26 19:53 - 2021-02-26 19:53 - 000326976 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswVmm.sys
2021-02-26 19:53 - 2021-02-26 19:53 - 000249304 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswbidsh.sys
2021-02-26 19:53 - 2021-02-26 19:53 - 000215328 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswStm.sys
2021-02-26 19:53 - 2021-02-26 19:53 - 000208024 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswArPot.sys
2021-02-26 19:53 - 2021-02-26 19:53 - 000175248 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswMonFlt.sys
2021-02-26 19:53 - 2021-02-26 19:53 - 000107784 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRdr2.sys
2021-02-26 19:53 - 2021-02-26 19:53 - 000098760 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswbuniv.sys
2021-02-26 19:53 - 2021-02-26 19:53 - 000083360 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRvrt.sys
2021-02-26 19:53 - 2021-02-26 19:53 - 000041272 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswKbd.sys
2021-02-26 19:53 - 2021-02-26 19:53 - 000035648 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswArDisk.sys
2021-02-26 19:53 - 2021-02-26 19:53 - 000016832 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswElam.sys
2021-02-26 19:53 - 2021-02-26 19:53 - 000002160 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast Free Antivirus.lnk
2021-02-26 19:53 - 2021-02-26 19:53 - 000002148 _____ C:\ProgramData\Pulpit\Avast Free Antivirus.lnk
2021-02-26 19:53 - 2021-02-26 19:53 - 000000000 ____D C:\Users\kamil\AppData\Roaming\Avast Software
2021-02-26 19:53 - 2021-02-26 19:53 - 000000000 ____D C:\Users\kamil\AppData\Local\CEF
2021-02-26 19:53 - 2021-02-26 19:53 - 000000000 ____D C:\Program Files\Common Files\Avast Software
2021-02-26 19:52 - 2021-03-03 00:00 - 000000000 ____D C:\ProgramData\Avast Software
2021-02-26 19:52 - 2021-02-26 19:52 - 000000000 ____D C:\Program Files\Avast Software
2021-02-26 19:51 - 2021-02-26 19:51 - 000220784 _____ (AVAST Software) C:\Users\kamil\Downloads\avast_free_antivirus_setup_online.exe
2021-02-24 16:30 - 2021-02-24 16:30 - 000000000 ____D C:\Users\kamil\AppData\LocalLow\Temp
2021-02-24 16:23 - 2021-02-24 16:23 - 001682189 _____ C:\Users\kamil\Downloads\Chromium in human nutrition; A Review.pdf
2021-02-24 16:23 - 2021-02-24 16:23 - 000162498 _____ C:\Users\kamil\Downloads\The role of Chromium III in the organism and its possible use in diabetes and obesity treatment.pdf
2021-02-24 16:22 - 2021-02-24 16:22 - 000364514 _____ C:\Users\kamil\Downloads\Chrom trójwartościowy (Cr III) jako pierwiastek śladowy niezbędny dla zwierząt i ludzi.pdf
2021-02-24 16:22 - 2021-02-24 16:22 - 000268149 _____ C:\Users\kamil\Downloads\Determination of chromium in biological materials.pdf
2021-02-24 16:22 - 2021-02-24 16:22 - 000153928 _____ C:\Users\kamil\Downloads\Surgiewicz (5).pdf
2021-02-24 16:22 - 2021-02-24 16:22 - 000153928 _____ C:\Users\kamil\Downloads\Chrom i jego związki - metoda oznaczania.pdf
2021-02-24 16:21 - 2021-02-24 16:21 - 000078261 _____ C:\Users\kamil\Downloads\Poglądy na temat roli chromu (III) w zapobieganiu i leczeniu cukrzycy.pdf
2021-02-24 16:20 - 2021-02-24 16:20 - 000085748 _____ C:\Users\kamil\Downloads\Rola chromu w etiopatogenezie wybranych chorób.pdf
2021-02-24 16:19 - 2021-02-24 16:19 - 005285330 _____ C:\Users\kamil\Downloads\Wpływ jonów chromu na organizmy żywe (od strony 12 do 17).pdf
2021-02-24 16:19 - 2021-02-24 16:19 - 000257120 _____ C:\Users\kamil\Downloads\Chrom - pierwiastek już dobrze znany czy wciąż nieznany - dwa oblicza działania.pdf
2021-02-24 16:18 - 2021-02-24 16:18 - 000197437 _____ C:\Users\kamil\Downloads\Biologiczne znaczenie chromu III dla organizmu człowieka.pdf
2021-02-24 13:23 - 2021-02-24 13:23 - 002072661 _____ C:\Users\kamil\Downloads\Egzamin-Chemia-Fizyczna-Robert-Karpiński-1 (1).pdf
2021-02-23 15:32 - 2021-02-23 15:32 - 002072661 _____ C:\Users\kamil\Downloads\Egzamin-Chemia-Fizyczna-Robert-Karpiński-1.pdf
2021-02-23 15:11 - 2021-02-23 15:11 - 001243217 _____ C:\Users\kamil\Downloads\malgorzata_szewczynska_3_2018.pdf
2021-02-23 15:05 - 2021-02-23 15:05 - 000153928 _____ C:\Users\kamil\Downloads\Surgiewicz (4).pdf
2021-02-23 15:05 - 2021-02-23 15:05 - 000153928 _____ C:\Users\kamil\Downloads\Surgiewicz (3).pdf
2021-02-23 15:05 - 2021-02-23 15:05 - 000153928 _____ C:\Users\kamil\Downloads\Surgiewicz (2).pdf
2021-02-23 15:04 - 2021-02-23 15:04 - 000153928 _____ C:\Users\kamil\Downloads\Surgiewicz (1).pdf
2021-02-23 15:02 - 2021-02-23 15:02 - 000153928 _____ C:\Users\kamil\Downloads\Surgiewicz.pdf
2021-02-23 14:42 - 2021-02-23 14:42 - 000162498 _____ C:\Users\kamil\Downloads\The role of Chromium III.pdf
2021-02-23 14:41 - 2021-02-23 14:41 - 000116405 _____ C:\Users\kamil\Downloads\CEJOI_Art_17949-10.pdf
2021-02-23 14:39 - 2021-02-23 14:39 - 000229151 _____ C:\Users\kamil\Downloads\Biological significance (1).pdf
2021-02-23 14:06 - 2021-02-23 14:06 - 000244191 _____ C:\Users\kamil\Downloads\1.pdf
2021-02-23 14:00 - 2021-02-23 14:00 - 000229151 _____ C:\Users\kamil\Downloads\Biological significance.pdf
2021-02-22 13:35 - 2021-02-22 13:35 - 000000000 ____D C:\Users\kamil\AppData\Local\OneDrive
2021-02-22 12:08 - 2021-02-22 12:08 - 000000000 ____D C:\Program Files\Microsoft Update Health Tools
2021-02-19 09:19 - 2021-02-19 09:19 - 000000000 ____D C:\Program Files\Common Files\logishrd
2021-02-19 08:42 - 2021-02-19 08:42 - 009849857 _____ C:\Users\kamil\Downloads\pdf24_merged.pdf
2021-02-18 23:14 - 2021-02-26 19:25 - 000002364 _____ C:\Users\kamil\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft Teams.lnk
2021-02-18 23:14 - 2021-02-18 23:14 - 000000000 ____D C:\Users\kamil\AppData\Roaming\Teams
2021-02-18 15:38 - 2021-02-18 15:39 - 000000000 ____D C:\WINDOWS\system32\MRT
2021-02-18 14:21 - 2021-02-18 14:21 - 000202343 _____ C:\Users\kamil\Downloads\ETBE-NESTE-pol.pdf
2021-02-17 18:47 - 2021-02-17 18:47 - 000000000 ____D C:\Users\kamil\AppData\Local\PeerDistRepub
2021-02-17 18:28 - 2021-02-17 18:28 - 000000000 ____D C:\Users\kamil\OneDrive\Dokumenty\Niestandardowe szablony pakietu Office
2021-02-17 14:29 - 2021-02-17 14:29 - 000000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf
2021-02-17 13:11 - 2021-02-17 13:11 - 000000000 ____D C:\Program Files (x86)\Mozilla Firefox
2021-02-17 13:08 - 2021-02-17 13:08 - 000002729 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outlook 2016.lnk
2021-02-17 13:08 - 2021-02-17 13:08 - 000002662 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneDrive dla firm.lnk
2021-02-17 13:08 - 2021-02-17 13:08 - 000002656 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Word 2016.lnk
2021-02-17 13:08 - 2021-02-17 13:08 - 000002656 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype dla firm 2016.lnk
2021-02-17 13:08 - 2021-02-17 13:08 - 000002656 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Access 2016.lnk
2021-02-17 13:08 - 2021-02-17 13:08 - 000002648 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneNote 2016.lnk
2021-02-17 13:08 - 2021-02-17 13:08 - 000002648 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Excel 2016.lnk
2021-02-17 13:08 - 2021-02-17 13:08 - 000002642 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerPoint 2016.lnk
2021-02-17 13:08 - 2021-02-17 13:08 - 000002628 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Publisher 2016.lnk
2021-02-17 13:08 - 2021-02-17 13:08 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Narzędzia pakietu Microsoft Office 2016
2021-02-17 13:08 - 2021-02-17 13:08 - 000000000 ____D C:\WINDOWS\PCHEALTH
2021-02-17 13:08 - 2021-02-17 13:08 - 000000000 ____D C:\Program Files\Microsoft SQL Server
2021-02-17 13:08 - 2021-02-17 13:08 - 000000000 ____D C:\Program Files\Common Files\DESIGNER
2021-02-17 13:08 - 2021-02-17 13:08 - 000000000 ____D C:\Program Files (x86)\Microsoft SQL Server
2021-02-17 13:07 - 2021-02-17 13:08 - 000000000 ____D C:\WINDOWS\SHELLNEW
2021-02-17 13:07 - 2021-02-17 13:08 - 000000000 ____D C:\Program Files\Microsoft Office
2021-02-17 13:07 - 2021-02-17 13:07 - 000000000 ____D C:\Users\kamil\AppData\Local\Microsoft Help
2021-02-17 13:07 - 2021-02-17 13:07 - 000000000 ____D C:\Program Files\Microsoft Analysis Services
2021-02-17 13:07 - 2021-02-17 13:07 - 000000000 ____D C:\Program Files (x86)\Microsoft Office
2021-02-17 13:07 - 2021-02-17 13:07 - 000000000 ____D C:\Program Files (x86)\Microsoft Analysis Services
2021-02-17 13:06 - 2021-02-17 13:06 - 000000000 ____D C:\Users\kamil\AppData\Local\Disc_Soft_Ltd
2021-02-17 13:05 - 2021-03-02 16:11 - 000000000 ____D C:\Users\kamil\AppData\Roaming\Disc-Soft
2021-02-17 13:02 - 2021-03-02 16:11 - 000000000 ____D C:\ProgramData\Disc-Soft
2021-02-17 13:01 - 2021-02-17 13:01 - 001223408 _____ () C:\Users\kamil\Downloads\DAEMON-Tools-Lite-12708-AsystentPobierania_v2.92.73.095.31.exe
2021-02-17 12:46 - 2021-03-01 09:01 - 000000000 ____D C:\Users\kamil\Downloads\Telegram Desktop
2021-02-17 12:43 - 2021-02-17 12:59 - 2085678624 _____ C:\Users\kamil\Downloads\Microsoft Office 2016 Professional Plus Styczeń 2017 x64 PL.isz
2021-02-16 14:16 - 2021-02-16 14:16 - 000000000 ____D C:\Users\kamil\AppData\Roaming\ITTerritory
2021-02-16 14:15 - 2021-02-16 14:15 - 000000000 ____D C:\Users\kamil\AppData\Roaming\Macromedia
2021-02-16 14:14 - 2021-02-16 14:14 - 000000000 ____D C:\Users\kamil\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Legend - Legacy Of The Dragons
2021-02-16 14:12 - 2021-03-03 08:26 - 000000000 ____D C:\Users\kamil\AppData\Roaming\Telegram Desktop
2021-02-16 14:06 - 2021-02-16 14:12 - 026969192 _____ (Telegram FZ-LLC ) C:\Users\kamil\Downloads\tsetup.2.5.7.exe
2021-02-16 14:03 - 2021-03-03 08:26 - 000000000 ____D C:\Users\kamil\AppData\Roaming\discord
2021-02-16 14:03 - 2021-02-18 23:14 - 000000000 ____D C:\Users\kamil\AppData\Local\SquirrelTemp
2021-02-16 14:03 - 2021-02-16 14:03 - 000000000 ____D C:\Users\kamil\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Discord Inc
2021-02-16 14:03 - 2021-02-16 14:03 - 000000000 ____D C:\Users\kamil\AppData\Local\Discord
2021-02-16 14:02 - 2021-02-16 14:03 - 068822328 _____ (Discord Inc.) C:\Users\kamil\Downloads\DiscordSetup.exe
2021-02-16 13:59 - 2021-02-16 13:59 - 000000000 ____D C:\Users\kamil\AppData\Local\D3DSCache
2021-02-16 13:58 - 2021-03-03 08:25 - 000000000 ____D C:\Users\kamil\AppData\Local\GameCenter
2021-02-16 13:58 - 2021-02-16 14:11 - 000000000 ____D C:\MyGames
2021-02-16 13:58 - 2021-02-16 13:58 - 010247800 _____ C:\Users\kamil\Downloads\DwarenLoader_8d4c1774d2edbd9010f91537e554c609__pl.exe
2021-02-16 13:58 - 2021-02-16 13:58 - 000000000 ____D C:\Users\kamil\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\My.com Games
2021-02-16 13:55 - 2021-03-03 00:47 - 000003566 _____ C:\WINDOWS\system32\Tasks\Opera GX scheduled Autoupdate 1613480119
2021-02-16 13:55 - 2021-02-18 13:55 - 000001434 _____ C:\Users\kamil\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Przeglądarka Opera GX.lnk
2021-02-16 13:55 - 2021-02-16 13:55 - 000000000 ____D C:\Users\kamil\AppData\Local\Opera Software
2021-02-16 13:54 - 2021-02-16 13:54 - 000000000 ____D C:\Users\kamil\AppData\Roaming\Opera Software
2021-02-16 13:53 - 2021-02-16 13:53 - 003749632 _____ (Opera Software) C:\Users\kamil\Downloads\OperaGXSetup.exe
2021-02-16 13:46 - 2021-02-16 13:46 - 000000000 ____D C:\Users\kamil\AppData\Local\PackageStaging
2021-02-16 13:46 - 2021-02-16 13:46 - 000000000 ____D C:\Users\kamil\AppData\Local\Comms
2021-02-16 13:32 - 2021-02-27 10:36 - 000000000 ____D C:\Users\kamil\AppData\Local\PlaceholderTileLogoFolder
2021-02-16 13:32 - 2021-02-16 13:32 - 000000000 ___HD C:\OneDriveTemp
2021-02-16 13:31 - 2021-03-03 08:25 - 000000000 ___RD C:\Users\kamil\OneDrive
2021-02-16 13:31 - 2021-03-03 00:47 - 000002858 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-1667513993-266061694-1555504002-1001
2021-02-16 13:31 - 2021-02-16 13:31 - 000000000 ____D C:\ProgramData\Microsoft OneDrive
2021-02-16 13:30 - 2021-03-03 08:24 - 000000000 __SHD C:\Users\kamil\IntelGraphicsProfiles
2021-02-16 13:30 - 2021-03-01 10:57 - 000000000 ____D C:\Users\kamil\AppData\Local\Packages
2021-02-16 13:30 - 2021-02-18 23:18 - 000000000 ____D C:\Users\kamil\AppData\Local\ConnectedDevicesPlatform
2021-02-16 13:30 - 2021-02-16 13:48 - 000000000 ____D C:\ProgramData\Packages
2021-02-16 13:30 - 2021-02-16 13:46 - 000000000 ____D C:\Users\kamil\AppData\Local\Publishers
2021-02-16 13:30 - 2021-02-16 13:31 - 000000000 ____D C:\Users\kamil\AppData\Local\Intel
2021-02-16 13:30 - 2021-02-16 13:30 - 000000000 ___RD C:\Users\kamil\3D Objects
2021-02-16 13:30 - 2021-02-16 13:30 - 000000000 ____D C:\Users\kamil\AppData\Roaming\Adobe
2021-02-16 13:30 - 2021-02-16 13:30 - 000000000 ____D C:\Users\kamil\AppData\LocalLow\Intel
2021-02-16 13:30 - 2021-02-16 13:30 - 000000000 ____D C:\Users\kamil\AppData\Local\VirtualStore
2021-02-16 13:26 - 2021-03-02 16:12 - 000000000 ____D C:\Users\kamil
2021-02-16 13:26 - 2021-02-19 13:32 - 000002407 _____ C:\Users\kamil\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2021-02-16 13:26 - 2021-02-16 13:26 - 000000020 ___SH C:\Users\kamil\ntuser.ini
2021-02-16 13:26 - 2021-02-16 13:26 - 000000000 _SHDL C:\Users\kamil\Ustawienia lokalne
2021-02-16 13:26 - 2021-02-16 13:26 - 000000000 _SHDL C:\Users\kamil\Szablony
2021-02-16 13:26 - 2021-02-16 13:26 - 000000000 _SHDL C:\Users\kamil\Moje dokumenty
2021-02-16 13:26 - 2021-02-16 13:26 - 000000000 _SHDL C:\Users\kamil\Menu Start
2021-02-16 13:26 - 2021-02-16 13:26 - 000000000 _SHDL C:\Users\kamil\Dane aplikacji
2021-02-16 13:26 - 2021-02-16 13:26 - 000000000 _SHDL C:\Users\kamil\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2021-02-16 13:26 - 2021-02-16 13:26 - 000000000 _SHDL C:\Users\kamil\AppData\Local\Tymczasowe pliki internetowe
2021-02-16 13:26 - 2021-02-16 13:26 - 000000000 _SHDL C:\Users\kamil\AppData\Local\Historia
2021-02-16 13:26 - 2021-02-16 13:26 - 000000000 _SHDL C:\Users\kamil\AppData\Local\Dane aplikacji
2021-02-16 13:21 - 2021-02-16 13:21 - 000000000 ____D C:\Program Files\NVIDIA Corporation
2021-02-16 12:55 - 2021-03-02 20:32 - 001678234 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2021-02-16 12:50 - 2021-02-28 11:23 - 000002448 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2021-02-16 12:50 - 2021-02-28 11:23 - 000002286 _____ C:\ProgramData\Pulpit\Microsoft Edge.lnk
2021-02-16 12:50 - 2021-02-16 12:50 - 000000000 _SHDL C:\Users\Default\Ustawienia lokalne
2021-02-16 12:50 - 2021-02-16 12:50 - 000000000 _SHDL C:\Users\Default\Szablony
2021-02-16 12:50 - 2021-02-16 12:50 - 000000000 _SHDL C:\Users\Default\Moje dokumenty
2021-02-16 12:50 - 2021-02-16 12:50 - 000000000 _SHDL C:\Users\Default\Menu Start
2021-02-16 12:50 - 2021-02-16 12:50 - 000000000 _SHDL C:\Users\Default\Dane aplikacji
2021-02-16 12:50 - 2021-02-16 12:50 - 000000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2021-02-16 12:50 - 2021-02-16 12:50 - 000000000 _SHDL C:\Users\Default\AppData\Local\Tymczasowe pliki internetowe
2021-02-16 12:50 - 2021-02-16 12:50 - 000000000 _SHDL C:\Users\Default\AppData\Local\Historia
2021-02-16 12:50 - 2021-02-16 12:50 - 000000000 _SHDL C:\Users\Default\AppData\Local\Dane aplikacji
2021-02-16 12:50 - 2021-02-16 12:50 - 000000000 _SHDL C:\ProgramData\Szablony
2021-02-16 12:50 - 2021-02-16 12:50 - 000000000 _SHDL C:\ProgramData\Pulpit
2021-02-16 12:50 - 2021-02-16 12:50 - 000000000 _SHDL C:\ProgramData\Microsoft\Windows\Start Menu\Programy
2021-02-16 12:50 - 2021-02-16 12:50 - 000000000 _SHDL C:\ProgramData\Menu Start
2021-02-16 12:50 - 2021-02-16 12:50 - 000000000 _SHDL C:\ProgramData\Dokumenty
2021-02-16 12:50 - 2021-02-16 12:50 - 000000000 _SHDL C:\ProgramData\Dane aplikacji
2021-02-16 12:50 - 2021-02-16 12:50 - 000000000 _SHDL C:\Documents and Settings
2021-02-16 12:50 - 2021-02-16 12:50 - 000000000 ____D C:\WINDOWS\CSC
2021-02-16 12:50 - 2021-02-16 12:50 - 000000000 ____D C:\ProgramData\Intel
2021-02-16 12:49 - 2021-03-03 00:47 - 000003438 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2021-02-16 12:49 - 2021-03-03 00:47 - 000003214 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2021-02-16 12:48 - 2021-03-03 00:21 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2021-02-16 12:48 - 2021-03-02 16:13 - 000008192 ___SH C:\DumpStack.log.tmp
2021-02-16 12:48 - 2021-03-02 16:13 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2021-02-16 12:48 - 2021-03-02 16:13 - 000000000 ____D C:\Intel
2021-02-16 12:48 - 2021-02-18 23:51 - 000436480 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2021-02-16 12:48 - 2021-02-16 15:37 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd
2021-02-16 12:48 - 2021-02-16 14:50 - 000000000 ____D C:\ProgramData\NVIDIA Corporation
2021-02-16 12:48 - 2021-02-16 12:48 - 000000533 _____ C:\WINDOWS\system32\regtest.txt
2021-02-16 12:48 - 2021-02-16 12:48 - 000000000 ____D C:\WINDOWS\system32\Drivers\NVIDIA Corporation
2021-02-16 12:48 - 2021-02-16 12:48 - 000000000 ____D C:\WINDOWS\system32\dolbyaposvc
2021-02-16 12:48 - 2021-02-16 12:48 - 000000000 ____D C:\WINDOWS\ServiceProfiles
2021-02-16 12:48 - 2021-02-16 12:48 - 000000000 ____D C:\ProgramData\Dolby
2021-02-16 12:48 - 2021-02-16 12:48 - 000000000 _____ C:\WINDOWS\system32\GfxValDisplayLog.bin
2021-02-16 12:48 - 2019-12-17 06:55 - 000000712 _____ C:\WINDOWS\system32\Drivers\RTEQEX0.dat
2021-02-16 12:48 - 2019-12-10 20:11 - 000000852 _____ C:\WINDOWS\system32\Drivers\RTKHDRC.dat
2021-02-16 12:24 - 2021-02-16 12:50 - 000000000 ____D C:\WINDOWS\Panther
2021-02-16 12:23 - 2021-02-16 12:23 - 000000000 ____D C:\ProgramData\ssh
2021-02-16 12:21 - 2021-02-16 12:21 - 004898144 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtmpltfm.dll
2021-02-16 12:21 - 2021-02-16 12:21 - 003860832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtmpltfm.dll
2021-02-16 12:21 - 2021-02-16 12:21 - 002755584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.tlb
2021-02-16 12:21 - 2021-02-16 12:21 - 002755584 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.tlb
2021-02-16 12:21 - 2021-02-16 12:21 - 002260992 _____ C:\WINDOWS\system32\TextInputMethodFormatter.dll
2021-02-16 12:21 - 2021-02-16 12:21 - 002260480 _____ (The ICU Project) C:\WINDOWS\system32\icu.dll
2021-02-16 12:21 - 2021-02-16 12:21 - 002254336 _____ C:\WINDOWS\system32\dwmscene.dll
2021-02-16 12:21 - 2021-02-16 12:21 - 001822272 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2021-02-16 12:21 - 2021-02-16 12:21 - 001393496 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2021-02-16 12:21 - 2021-02-16 12:21 - 001354080 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtmpal.dll
2021-02-16 12:21 - 2021-02-16 12:21 - 001333760 _____ C:\WINDOWS\SysWOW64\TextInputMethodFormatter.dll
2021-02-16 12:21 - 2021-02-16 12:21 - 001314112 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi
2021-02-16 12:21 - 2021-02-16 12:21 - 001162240 _____ C:\WINDOWS\system32\MBR2GPT.EXE
2021-02-16 12:21 - 2021-02-16 12:21 - 001091936 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtmcodecs.dll
2021-02-16 12:21 - 2021-02-16 12:21 - 001032544 _____ (Microsoft Corporation) C:\WINDOWS\system32\ortcengine.dll
2021-02-16 12:21 - 2021-02-16 12:21 - 000980320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtmpal.dll
2021-02-16 12:21 - 2021-02-16 12:21 - 000915296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtmcodecs.dll
2021-02-16 12:21 - 2021-02-16 12:21 - 000732000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ortcengine.dll
2021-02-16 12:21 - 2021-02-16 12:21 - 000729600 _____ (Microsoft Corporation) C:\WINDOWS\system32\hhctrl.ocx
2021-02-16 12:21 - 2021-02-16 12:21 - 000707544 _____ C:\WINDOWS\system32\TextShaping.dll
2021-02-16 12:21 - 2021-02-16 12:21 - 000643072 _____ C:\WINDOWS\system32\WindowManagementAPI.dll
2021-02-16 12:21 - 2021-02-16 12:21 - 000611952 _____ C:\WINDOWS\SysWOW64\TextShaping.dll
2021-02-16 12:21 - 2021-02-16 12:21 - 000595968 _____ (Microsoft Corporation) C:\WINDOWS\system32\appwiz.cpl
2021-02-16 12:21 - 2021-02-16 12:21 - 000581120 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhotoScreensaver.scr
2021-02-16 12:21 - 2021-02-16 12:21 - 000575488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hhctrl.ocx
2021-02-16 12:21 - 2021-02-16 12:21 - 000544768 _____ (Microsoft Corporation) C:\WINDOWS\system32\mmsys.cpl
2021-02-16 12:21 - 2021-02-16 12:21 - 000499200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PhotoScreensaver.scr
2021-02-16 12:21 - 2021-02-16 12:21 - 000469504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\appwiz.cpl
2021-02-16 12:21 - 2021-02-16 12:21 - 000467968 _____ C:\WINDOWS\system32\AssignedAccessCsp.dll
2021-02-16 12:21 - 2021-02-16 12:21 - 000455680 _____ C:\WINDOWS\SysWOW64\WindowManagementAPI.dll
2021-02-16 12:21 - 2021-02-16 12:21 - 000446976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mmsys.cpl
2021-02-16 12:21 - 2021-02-16 12:21 - 000422912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winspool.drv
2021-02-16 12:21 - 2021-02-16 12:21 - 000363520 _____ C:\WINDOWS\system32\Windows.Internal.UI.Shell.WindowTabManager.dll
2021-02-16 12:21 - 2021-02-16 12:21 - 000330752 _____ C:\WINDOWS\SysWOW64\ssdm.dll
2021-02-16 12:21 - 2021-02-16 12:21 - 000306688 _____ C:\WINDOWS\system32\HeatCore.dll
2021-02-16 12:21 - 2021-02-16 12:21 - 000304128 _____ (Microsoft Corporation) C:\WINDOWS\system32\ksproxy.ax
2021-02-16 12:21 - 2021-02-16 12:21 - 000266752 _____ (Microsoft Corporation) C:\WINDOWS\system32\bthprops.cpl
2021-02-16 12:21 - 2021-02-16 12:21 - 000266240 _____ C:\WINDOWS\SysWOW64\Windows.Internal.UI.Shell.WindowTabManager.dll
2021-02-16 12:21 - 2021-02-16 12:21 - 000266240 _____ (Microsoft Corporation) C:\WINDOWS\system32\mpg2splt.ax
2021-02-16 12:21 - 2021-02-16 12:21 - 000243200 _____ (Microsoft Corporation) C:\WINDOWS\system32\timedate.cpl
2021-02-16 12:21 - 2021-02-16 12:21 - 000240640 _____ C:\WINDOWS\SysWOW64\CoreMas.dll
2021-02-16 12:21 - 2021-02-16 12:21 - 000238592 _____ (Microsoft Corporation) C:\WINDOWS\system32\intl.cpl
2021-02-16 12:21 - 2021-02-16 12:21 - 000235520 _____ C:\WINDOWS\SysWOW64\HeatCore.dll
2021-02-16 12:21 - 2021-02-16 12:21 - 000234496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ksproxy.ax
2021-02-16 12:21 - 2021-02-16 12:21 - 000231232 _____ C:\WINDOWS\system32\containerdevicemanagement.dll
2021-02-16 12:21 - 2021-02-16 12:21 - 000221184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bthprops.cpl
2021-02-16 12:21 - 2021-02-16 12:21 - 000204800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mpg2splt.ax
2021-02-16 12:21 - 2021-02-16 12:21 - 000190976 _____ C:\WINDOWS\system32\BthpanContextHandler.dll
2021-02-16 12:21 - 2021-02-16 12:21 - 000182272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\timedate.cpl
2021-02-16 12:21 - 2021-02-16 12:21 - 000178688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\intl.cpl
2021-02-16 12:21 - 2021-02-16 12:21 - 000170496 _____ (Microsoft Corporation) C:\WINDOWS\system32\VBICodec.ax
2021-02-16 12:21 - 2021-02-16 12:21 - 000165888 _____ C:\WINDOWS\system32\DataStoreCacheDumpTool.exe
2021-02-16 12:21 - 2021-02-16 12:21 - 000157184 _____ C:\WINDOWS\system32\uwfcsp.dll
2021-02-16 12:21 - 2021-02-16 12:21 - 000152064 _____ C:\WINDOWS\system32\EoAExperiences.exe
2021-02-16 12:21 - 2021-02-16 12:21 - 000138056 _____ C:\WINDOWS\system32\HvsiManagementApi.dll
2021-02-16 12:21 - 2021-02-16 12:21 - 000135168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VBICodec.ax
2021-02-16 12:21 - 2021-02-16 12:21 - 000112128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\activeds.tlb
2021-02-16 12:21 - 2021-02-16 12:21 - 000112128 _____ (Microsoft Corporation) C:\WINDOWS\system32\activeds.tlb
2021-02-16 12:21 - 2021-02-16 12:21 - 000111616 _____ C:\WINDOWS\system32\RDVGHelper.exe
2021-02-16 12:21 - 2021-02-16 12:21 - 000102912 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncpa.cpl
2021-02-16 12:21 - 2021-02-16 12:21 - 000101704 _____ C:\WINDOWS\SysWOW64\HvsiManagementApi.dll
2021-02-16 12:21 - 2021-02-16 12:21 - 000100864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ncpa.cpl
2021-02-16 12:21 - 2021-02-16 12:21 - 000095744 _____ C:\WINDOWS\system32\VirtualMonitorManager.dll
2021-02-16 12:21 - 2021-02-16 12:21 - 000087552 _____ (Microsoft Corporation) C:\WINDOWS\system32\tdc.ocx
2021-02-16 12:21 - 2021-02-16 12:21 - 000084992 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscui.cpl
2021-02-16 12:21 - 2021-02-16 12:21 - 000072704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tdc.ocx
2021-02-16 12:21 - 2021-02-16 12:21 - 000067584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wscui.cpl
2021-02-16 12:21 - 2021-02-16 12:21 - 000067072 _____ C:\WINDOWS\system32\BWContextHandler.dll
2021-02-16 12:21 - 2021-02-16 12:21 - 000060928 _____ C:\WINDOWS\system32\runexehelper.exe
2021-02-16 12:21 - 2021-02-16 12:21 - 000056672 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtmmvrortc.dll
2021-02-16 12:21 - 2021-02-16 12:21 - 000055376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtmmvrortc.dll
2021-02-16 12:21 - 2021-02-16 12:21 - 000053760 _____ C:\WINDOWS\SysWOW64\BWContextHandler.dll
2021-02-16 12:21 - 2021-02-16 12:21 - 000048640 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll
2021-02-16 12:21 - 2021-02-16 12:21 - 000047472 _____ C:\WINDOWS\SysWOW64\umpdc.dll
2021-02-16 12:21 - 2021-02-16 12:21 - 000045880 _____ C:\WINDOWS\system32\HvSocket.dll
2021-02-16 12:21 - 2021-02-16 12:21 - 000039936 _____ (Adobe Systems) C:\WINDOWS\SysWOW64\atmlib.dll
2021-02-16 12:21 - 2021-02-16 12:21 - 000029696 _____ (The ICU Project) C:\WINDOWS\system32\icuuc.dll
2021-02-16 12:21 - 2021-02-16 12:21 - 000025088 _____ (The ICU Project) C:\WINDOWS\system32\icuin.dll
2021-02-16 12:21 - 2021-02-16 12:21 - 000023552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msacm32.drv
2021-02-16 12:21 - 2021-02-16 12:21 - 000010892 _____ C:\WINDOWS\system32\DrtmAuthTxt.wim
2021-02-16 12:21 - 2021-02-16 12:21 - 000010752 _____ C:\WINDOWS\SysWOW64\agentactivationruntimestarter.exe
2021-02-16 12:21 - 2021-02-16 12:21 - 000001370 _____ C:\WINDOWS\system32\ThirdPartyNoticesBySHS.txt
2021-02-16 12:20 - 2021-02-16 12:20 - 004227116 _____ C:\WINDOWS\system32\DefaultHrtfs.bin
2021-02-16 12:20 - 2021-02-16 12:20 - 000562688 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv
2021-02-16 12:20 - 2021-02-16 12:20 - 000455168 _____ C:\WINDOWS\system32\ssdm.dll
2021-02-16 12:20 - 2021-02-16 12:20 - 000287232 _____ C:\WINDOWS\system32\CoreMas.dll
2021-02-16 12:20 - 2021-02-16 12:20 - 000197632 _____ C:\WINDOWS\system32\IHDS.dll
2021-02-16 12:20 - 2021-02-16 12:20 - 000089088 _____ C:\WINDOWS\system32\windows.applicationmodel.conversationalagent.proxystub.dll
2021-02-16 12:20 - 2021-02-16 12:20 - 000074240 _____ C:\WINDOWS\system32\rdsxvmaudio.dll
2021-02-16 12:20 - 2021-02-16 12:20 - 000073216 _____ C:\WINDOWS\system32\windows.applicationmodel.conversationalagent.internal.proxystub.dll
2021-02-16 12:20 - 2021-02-16 12:20 - 000064552 _____ C:\WINDOWS\system32\umpdc.dll
2021-02-16 12:20 - 2021-02-16 12:20 - 000030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\msacm32.drv
2021-02-16 12:20 - 2021-02-16 12:20 - 000013312 _____ C:\WINDOWS\system32\agentactivationruntimestarter.exe
2021-02-16 12:18 - 2021-02-16 12:18 - 000000000 ____D C:\WINDOWS\Firmware
2021-02-16 12:17 - 2021-02-16 12:17 - 000000000 ____D C:\WINDOWS\system32\Intel
2021-02-16 12:17 - 2021-02-16 12:17 - 000000000 ____D C:\WINDOWS\system32\cAVS
2021-02-16 12:16 - 2021-02-16 12:16 - 000008192 _____ C:\WINDOWS\system32\config\userdiff
2021-02-16 11:50 - 2021-02-16 12:24 - 000000000 ___HD C:\$SysReset
2021-02-13 23:10 - 2012-10-26 09:42 - 000351520 _____ (Logitech Inc.) C:\WINDOWS\system32\Drivers\lvrs64.sys
2021-02-13 23:10 - 2012-10-26 09:42 - 000262432 _____ (Logitech Inc.) C:\WINDOWS\system32\lvco1380853.dll
2021-02-13 23:10 - 2012-10-26 09:42 - 000040398 _____ C:\WINDOWS\system32\Repository.reg
2021-02-13 23:10 - 2012-10-26 09:42 - 000029494 _____ C:\WINDOWS\system32\lvcoin64.ini
2021-02-09 08:20 - 2021-02-09 08:20 - 000000000 __RHD C:\MSOCache
2021-02-09 08:19 - 2021-02-09 08:19 - 000059360 _____ (Disc Soft Ltd) C:\WINDOWS\system32\Drivers\dtliteusbbus.sys
2021-02-09 08:19 - 2021-02-09 08:19 - 000042256 _____ (Disc Soft Ltd) C:\WINDOWS\system32\Drivers\dtlitescsibus.sys
2021-02-04 22:45 - 2020-05-28 01:39 - 001145464 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtCOM64.dll
2021-02-04 22:45 - 2020-05-28 01:39 - 001084704 _____ (Realtek Semiconductor) C:\WINDOWS\system32\RtkAudUService64.exe
2021-02-04 22:45 - 2020-05-28 01:39 - 000844888 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtkApi64U.dll
2021-02-04 22:45 - 2020-05-28 01:39 - 000468776 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtDataProc64.dll
2021-02-04 22:45 - 2020-05-28 01:39 - 000224272 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtkCfg64.dll
2021-02-04 22:44 - 2020-05-28 01:35 - 007386728 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\Drivers\RTKVHD64.sys
2021-02-04 22:44 - 2020-05-28 01:25 - 039893054 _____ C:\WINDOWS\system32\Drivers\RTAIODAT.DAT
2021-02-04 22:44 - 2020-05-22 01:25 - 000008040 _____ C:\WINDOWS\system32\Drivers\SAMSfpa_17AA387210EC0257.dat
2021-02-04 22:44 - 2020-05-22 01:25 - 000000098 _____ C:\WINDOWS\system32\Drivers\RTMICAR_17AA387210EC0257.dat
2021-02-04 22:44 - 2020-03-27 02:03 - 005422024 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RsDMFT64.dll
2021-02-04 22:43 - 2020-11-12 23:18 - 000674536 _____ C:\WINDOWS\system32\nvofapi64.dll
2021-02-04 22:43 - 2020-11-12 23:18 - 000543632 _____ C:\WINDOWS\SysWOW64\nvofapi.dll
2021-02-04 22:43 - 2020-11-12 23:17 - 001487760 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFR64.dll
2021-02-04 22:43 - 2020-11-12 23:17 - 001146768 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFR.dll
2021-02-04 22:43 - 2020-11-12 23:17 - 001022880 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvml.dll
2021-02-04 22:43 - 2020-11-12 23:17 - 000818080 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvmcumd.dll
2021-02-04 22:43 - 2020-11-12 23:17 - 000671120 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFROpenGL.dll
2021-02-04 22:43 - 2020-11-12 23:17 - 000588176 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvidia-smi.exe
2021-02-04 22:43 - 2020-11-12 23:17 - 000555256 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFROpenGL.dll
2021-02-04 22:43 - 2020-11-12 23:17 - 000230712 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvhda64v.sys
2021-02-04 22:43 - 2020-11-12 23:17 - 000048432 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvhdap64.dll
2021-02-04 22:43 - 2020-11-12 23:16 - 002078624 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvFBC64.dll
2021-02-04 22:43 - 2020-11-12 23:16 - 001571232 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvFBC.dll
2021-02-04 22:43 - 2020-11-12 23:16 - 000812792 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncodeAPI64.dll
2021-02-04 22:43 - 2020-11-12 23:16 - 000656632 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncodeAPI.dll
2021-02-04 22:43 - 2020-11-12 23:15 - 006654864 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvid.dll
2021-02-04 22:43 - 2020-11-12 23:15 - 005885328 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvid.dll
2021-02-04 22:43 - 2020-11-12 23:15 - 005500656 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcpl.dll
2021-02-04 22:43 - 2020-11-12 23:15 - 003916008 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuda.dll
2021-02-04 22:43 - 2020-11-12 23:15 - 002377616 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuda.dll
2021-02-04 22:43 - 2020-11-12 23:15 - 000279440 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdebugdump.exe
2021-02-04 22:43 - 2020-11-12 23:14 - 005396632 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvapi64.dll
2021-02-04 22:43 - 2020-11-12 23:14 - 004709224 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvapi.dll
2021-02-04 22:43 - 2020-11-12 23:14 - 000849648 _____ (NVIDIA Corporation) C:\WINDOWS\system32\MCU.exe
2021-02-04 22:43 - 2020-11-12 22:57 - 000078115 _____ C:\WINDOWS\system32\nvinfo.pb
2021-02-04 22:38 - 2020-10-12 21:55 - 000462648 _____ C:\WINDOWS\system32\ze_loader.dll
2021-02-04 22:38 - 2020-10-12 21:55 - 000148792 _____ C:\WINDOWS\system32\ze_validation_layer.dll
2021-02-04 22:38 - 2020-10-12 21:54 - 001790200 _____ C:\WINDOWS\system32\vulkaninfo-1-999-0-0-0.exe
2021-02-04 22:38 - 2020-10-12 21:54 - 001790200 _____ C:\WINDOWS\system32\vulkaninfo.exe
2021-02-04 22:38 - 2020-10-12 21:54 - 001386232 _____ C:\WINDOWS\SysWOW64\vulkaninfo-1-999-0-0-0.exe
2021-02-04 22:38 - 2020-10-12 21:54 - 001386232 _____ C:\WINDOWS\SysWOW64\vulkaninfo.exe
2021-02-04 22:38 - 2020-10-12 21:54 - 001096288 _____ C:\WINDOWS\system32\vulkan-1-999-0-0-0.dll
2021-02-04 22:38 - 2020-10-12 21:54 - 001096288 _____ C:\WINDOWS\system32\vulkan-1.dll
2021-02-04 22:38 - 2020-10-12 21:53 - 000949344 _____ C:\WINDOWS\SysWOW64\vulkan-1-999-0-0-0.dll
2021-02-04 22:38 - 2020-10-12 21:53 - 000949344 _____ C:\WINDOWS\SysWOW64\vulkan-1.dll
2021-02-04 22:38 - 2020-10-12 21:50 - 026677048 _____ (Intel Corporation) C:\WINDOWS\system32\mfxplugin64_hw.dll
2021-02-04 22:38 - 2020-10-12 21:49 - 013520184 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\mfxplugin32_hw.dll
2021-02-04 22:38 - 2020-10-12 21:49 - 000507704 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.dll
2021-02-04 22:38 - 2020-10-12 21:48 - 000370488 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.dll
2021-02-04 22:38 - 2020-10-12 21:37 - 000306000 _____ C:\WINDOWS\system32\libmfxhw64.dll
2021-02-04 22:38 - 2020-10-12 21:37 - 000254528 _____ C:\WINDOWS\SysWOW64\libmfxhw32.dll
2021-02-04 22:38 - 2020-10-12 21:37 - 000171464 _____ (Intel Corporation) C:\WINDOWS\system32\intel_gfx_api-x64.dll
2021-02-04 22:38 - 2020-10-12 21:37 - 000146760 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\intel_gfx_api-x86.dll
2021-02-04 22:36 - 2020-05-29 02:24 - 000477328 _____ C:\WINDOWS\system32\Drivers\dsp_fw_release.bin

==================== Trzy miesiące (zmodyfikowane) ==================

(Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.)

2021-03-03 08:25 - 2019-12-07 10:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2021-03-02 20:32 - 2019-12-07 16:09 - 000750386 _____ C:\WINDOWS\system32\perfh015.dat
2021-03-02 20:32 - 2019-12-07 16:09 - 000145080 _____ C:\WINDOWS\system32\perfc015.dat
2021-03-02 20:32 - 2019-12-07 10:13 - 000000000 ____D C:\WINDOWS\INF
2021-03-02 16:13 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\ServiceState
2021-03-02 16:12 - 2019-12-07 10:03 - 000786432 _____ C:\WINDOWS\system32\config\BBI
2021-02-28 11:24 - 2019-12-07 10:14 - 000000000 ___HD C:\Program Files\WindowsApps
2021-02-28 11:24 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\AppReadiness
2021-02-27 10:16 - 2019-12-07 10:03 - 000000000 ____D C:\WINDOWS\CbsTemp
2021-02-26 19:53 - 2019-12-07 10:14 - 000000000 ___HD C:\WINDOWS\ELAMBKUP
2021-02-26 18:54 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\LiveKernelReports
2021-02-20 12:06 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\appcompat
2021-02-17 13:15 - 2019-12-07 10:14 - 000000167 _____ C:\WINDOWS\win.ini
2021-02-17 13:08 - 2019-12-07 10:14 - 000000000 ____D C:\Program Files\Common Files\microsoft shared
2021-02-17 13:07 - 2019-12-07 10:14 - 000000000 ____D C:\Program Files\Common Files\System
2021-02-16 15:36 - 2019-12-07 10:14 - 000000000 ____D C:\Program Files\Windows Defender
2021-02-16 13:46 - 2019-12-07 10:14 - 000000000 ___RD C:\WINDOWS\PrintDialog
2021-02-16 13:30 - 2019-12-07 10:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2021-02-16 13:26 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\WinBioDatabase
2021-02-16 13:20 - 2019-12-07 10:14 - 000000000 ____D C:\ProgramData\USOPrivate
2021-02-16 12:52 - 2019-12-07 16:10 - 000000000 ____D C:\WINDOWS\system32\FxsTmp
2021-02-16 12:52 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\spool
2021-02-16 12:50 - 2019-12-07 10:14 - 000000000 ____D C:\Program Files\Windows NT
2021-02-16 12:48 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\Drivers\DriverData
2021-02-16 12:48 - 2019-12-07 10:03 - 000032768 _____ C:\WINDOWS\system32\config\ELAM
2021-02-16 12:24 - 2019-12-07 10:14 - 000028672 _____ C:\WINDOWS\system32\config\BCD-Template
2021-02-16 12:23 - 2019-12-07 16:12 - 000023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\OEMDefaultAssociations.dll
2021-02-16 12:23 - 2019-12-07 16:12 - 000020908 _____ C:\WINDOWS\system32\OEMDefaultAssociations.xml
2021-02-16 12:23 - 2019-12-07 16:12 - 000000000 ___SD C:\WINDOWS\system32\AppV
2021-02-16 12:23 - 2019-12-07 16:12 - 000000000 ____D C:\Program Files\Windows Photo Viewer
2021-02-16 12:23 - 2019-12-07 16:12 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection
2021-02-16 12:23 - 2019-12-07 16:12 - 000000000 ____D C:\Program Files (x86)\Windows Photo Viewer
2021-02-16 12:23 - 2019-12-07 10:14 - 000000000 ___SD C:\WINDOWS\SysWOW64\F12
2021-02-16 12:23 - 2019-12-07 10:14 - 000000000 ___SD C:\WINDOWS\SysWOW64\DiagSvcs
2021-02-16 12:23 - 2019-12-07 10:14 - 000000000 ___SD C:\WINDOWS\system32\UNP
2021-02-16 12:23 - 2019-12-07 10:14 - 000000000 ___SD C:\WINDOWS\system32\F12
2021-02-16 12:23 - 2019-12-07 10:14 - 000000000 ___SD C:\WINDOWS\system32\DiagSvcs
2021-02-16 12:23 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata
2021-02-16 12:23 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\setup
2021-02-16 12:23 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\PerceptionSimulation
2021-02-16 12:23 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe
2021-02-16 12:23 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\migwiz
2021-02-16 12:23 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Keywords
2021-02-16 12:23 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2021-02-16 12:23 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Com
2021-02-16 12:23 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\AdvancedInstallers
2021-02-16 12:23 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SystemResources
2021-02-16 12:23 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\WinMetadata
2021-02-16 12:23 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2021-02-16 12:23 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\SystemResetPlatform
2021-02-16 12:23 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\Sysprep
2021-02-16 12:23 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\ShellExperiences
2021-02-16 12:23 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\setup
2021-02-16 12:23 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\PerceptionSimulation
2021-02-16 12:23 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\oobe
2021-02-16 12:23 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\migwiz
2021-02-16 12:23 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\Keywords
2021-02-16 12:23 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\es-MX
2021-02-16 12:23 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\Dism
2021-02-16 12:23 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\Com
2021-02-16 12:23 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\appraiser
2021-02-16 12:23 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\AdvancedInstallers
2021-02-16 12:23 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\ShellExperiences
2021-02-16 12:23 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\ShellComponents
2021-02-16 12:23 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\Provisioning
2021-02-16 12:23 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\PolicyDefinitions
2021-02-16 12:23 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\IME
2021-02-16 12:23 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\DiagTrack
2021-02-16 12:23 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\bcastdvr
2021-02-16 12:23 - 2019-12-07 10:14 - 000000000 ____D C:\Program Files (x86)\Windows Defender
2021-02-16 12:23 - 2019-12-07 10:03 - 000000000 ____D C:\WINDOWS\servicing

==================== SigCheckExt =========================

2021-02-26 23:18 - 2021-02-26 23:18 - 002301440 _____ (Farbar) C:\Users\kamil\Downloads\FRST64.exe
2021-02-26 22:59 - 2021-02-26 22:59 - 005460726 _____ (Snailsuite ) C:\Users\kamil\Downloads\SnailDriver_2_lite_setup.exe

==================== SigCheck ============================

(Brak automatycznej naprawy dla plików które nie przeszły weryfikacji.)


==================== BCD ================================

Firmware Boot Manager
---------------------
identifier              {fwbootmgr}
displayorder            {bootmgr}
                        {d53bfa49-7b47-11eb-bf18-806e6f6e6963}
                        {af7a1557-672e-11eb-a248-c08ea6c73e21}
                        {af7a1558-672e-11eb-a248-c08ea6c73e21}
                        {af7a1559-672e-11eb-a248-c08ea6c73e21}
timeout                 0

Windows Boot Manager
--------------------
identifier              {bootmgr}
device                  partition=\Device\HarddiskVolume1
path                    \EFI\Microsoft\Boot\bootmgfw.efi
description             Windows Boot Manager
locale                  pl-PL
inherit                 {globalsettings}
default                 {current}
resumeobject            {78a95ecd-7049-11eb-910c-c4ab28e3176f}
displayorder            {current}
toolsdisplayorder       {memdiag}
timeout                 30

Firmware Application (101fffff)
-------------------------------
identifier              {3080a326-6e4a-11eb-ae57-806e6f6e6963}
description             EFI PXE 0 for IPv6 (54-05-DB-A7-4D-20) 

Firmware Application (101fffff)
-------------------------------
identifier              {af7a1557-672e-11eb-a248-c08ea6c73e21}
description             EFI USB Device

Firmware Application (101fffff)
-------------------------------
identifier              {af7a1558-672e-11eb-a248-c08ea6c73e21}
description             EFI DVD/CDROM

Firmware Application (101fffff)
-------------------------------
identifier              {af7a1559-672e-11eb-a248-c08ea6c73e21}
description             EFI Network

Firmware Application (101fffff)
-------------------------------
identifier              {af7a155d-672e-11eb-a248-c08ea6c73e21}
description             EFI PXE 0 for IPv4 (54-05-DB-A7-4D-20) 

Firmware Application (101fffff)
-------------------------------
identifier              {d53bfa49-7b47-11eb-bf18-806e6f6e6963}
device                  partition=\Device\HarddiskVolume1
path                    \EFI\Microsoft\Boot\bootmgfw.efi
description             Windows Boot Manager

Windows Boot Loader
-------------------
identifier              {current}
device                  partition=C:
path                    \WINDOWS\system32\winload.efi
description             Windows 10
locale                  pl-PL
inherit                 {bootloadersettings}
recoverysequence        {af7a1561-672e-11eb-a248-c08ea6c73e21}
displaymessageoverride  Recovery
recoveryenabled         Yes
isolatedcontext         Yes
allowedinmemorysettings 0x15000075
osdevice                partition=C:
systemroot              \WINDOWS
resumeobject            {78a95ecd-7049-11eb-910c-c4ab28e3176f}
nx                      OptIn
bootmenupolicy          Standard

Windows Boot Loader
-------------------
identifier              {af7a1561-672e-11eb-a248-c08ea6c73e21}
device                  ramdisk=[\Device\HarddiskVolume4]\Recovery\WindowsRE\Winre.wim,{af7a1562-672e-11eb-a248-c08ea6c73e21}
path                    \windows\system32\winload.efi
description             Windows Recovery Environment
locale                  pl-pl
inherit                 {bootloadersettings}
displaymessage          Recovery
displaymessageoverride  PushButtonReset
osdevice                ramdisk=[\Device\HarddiskVolume4]\Recovery\WindowsRE\Winre.wim,{af7a1562-672e-11eb-a248-c08ea6c73e21}
systemroot              \windows
nx                      OptIn
bootmenupolicy          Standard
winpe                   Yes

Resume from Hibernate
---------------------
identifier              {78a95ecd-7049-11eb-910c-c4ab28e3176f}
device                  partition=C:
path                    \WINDOWS\system32\winresume.efi
description             Windows Resume Application
locale                  pl-PL
inherit                 {resumeloadersettings}
recoverysequence        {af7a1561-672e-11eb-a248-c08ea6c73e21}
recoveryenabled         Yes
isolatedcontext         Yes
allowedinmemorysettings 0x15000075
filedevice              partition=C:
filepath                \hiberfil.sys
bootmenupolicy          Standard
debugoptionenabled      No

Windows Memory Tester
---------------------
identifier              {memdiag}
device                  partition=\Device\HarddiskVolume1
path                    \EFI\Microsoft\Boot\memtest.efi
description             Diagnostyka pami©ci systemu Windows
locale                  pl-PL
inherit                 {globalsettings}
badmemoryaccess         Yes

EMS Settings
------------
identifier              {emssettings}
bootems                 No

Debugger Settings
-----------------
identifier              {dbgsettings}
debugtype               Local

RAM Defects
-----------
identifier              {badmemory}

Global Settings
---------------
identifier              {globalsettings}
inherit                 {dbgsettings}
                        {emssettings}
                        {badmemory}

Boot Loader Settings
--------------------
identifier              {bootloadersettings}
inherit                 {globalsettings}
                        {hypervisorsettings}

Hypervisor Settings
-------------------
identifier              {hypervisorsettings}
hypervisordebugtype     Serial
hypervisordebugport     1
hypervisorbaudrate      115200

Resume Loader Settings
----------------------
identifier              {resumeloadersettings}
inherit                 {globalsettings}

Device options
--------------
identifier              {af7a1562-672e-11eb-a248-c08ea6c73e21}
description             Windows Recovery
ramdisksdidevice        partition=\Device\HarddiskVolume4
ramdisksdipath          \Recovery\WindowsRE\boot.sdi

==================== Koniec  FRST.txt ========================