JustPaste.it

Rezultaty skanowania Farbar Recovery Scan Tool (FRST) (x86) Wersja: 15-08-2016 01
Uruchomiony przez Immah (administrator) IMMAHPC (16-08-2016 19:39:19)
Uruchomiony z C:\Users\Immah\Desktop\Downloads
Załadowane profile: Immah (Dostępne profile: Immah & 12345)
Platform: Windows JG Seven Service Pack 1 (X86) Język: Polski (Polska)
Internet Explorer Wersja 11 (Domyślna przeglądarka: "C:\Program Files\IronPortable\IronPortable\Iron\chrome.exe" -- "%1")
Tryb startu: Normal
Instrukcja obsługi Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Procesy (filtrowane) =================

(Załączenie wejścia w fixlist spowoduje zamknięcie procesu. Powiązany plik nie zostanie przeniesiony.)

(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe
(Malwarebytes) C:\Program Files\Malwarebytes Anti-Malware\mbamscheduler.exe
(Malwarebytes) C:\Program Files\Malwarebytes Anti-Malware\mbamservice.exe
(Soluto) C:\Program Files\Soluto\SolutoLauncherService.exe
(Soluto) C:\Program Files\Soluto\Soluto.exe
(Malwarebytes) C:\Program Files\Malwarebytes Anti-Malware\mbam.exe
(CHENGDU YIWO Tech Development Co., Ltd) C:\Program Files\EaseUS\EaseUS Partition Master 11.5\bin\EpmNews.exe
(CHENGDU Yiwo Tech Development Co., Ltd.) C:\Program Files\EaseUS\EaseUS Partition Master 11.5\bin\CleanUpUI.exe
(AsusTek) C:\Program Files\ASUS\ASUS Smart Gesture\AsTPCenter\x86\AsusTPLoader.exe
(ASUSTeK Computer Inc.) C:\Program Files\ASUS\ASUS Smart Gesture\QuickGesture\x86\QuickGesture.exe
(AsusTek) C:\Program Files\ASUS\ASUS Smart Gesture\AsTPCenter\x86\AsusTPCenter.exe
(ASUSTeK Computer Inc.) C:\Program Files\ASUS\ASUS Smart Gesture\AsTPCenter\x86\AsusSmartGestureDetector.exe
(AsusTek) C:\Program Files\ASUS\ASUS Smart Gesture\AsTPCenter\x86\AsusTPHelper.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Soluto) C:\Program Files\Soluto\SolutoService.exe
(GlavSoft LLC.) C:\Program Files\Soluto\SolutoRemoteService.exe


==================== Rejestr (filtrowane) ===========================

(Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.)

HKLM\...\Run: [EaseUS EPM tray] => C:\Program Files\EaseUS\EaseUS Partition Master 11.5\bin\EpmNews.exe [2090176 2016-07-19] (CHENGDU YIWO Tech Development Co., Ltd)
HKLM\...\Run: [EaseUS Cleanup] => C:\Program Files\EaseUS\EaseUS Partition Master 11.5\bin\CleanUpUI.exe [1246400 2016-07-19] (CHENGDU Yiwo Tech Development Co., Ltd.)
HKLM\...\Winlogon: [Userinit] c:\windows\system32\userinit.exe,c:\program files\soluto\soluto.exe /userinit
HKLM\...\Policies\Explorer: [NoRemoteRecursiveEvents] 1
HKLM\Software\Policies\Microsoft\Windows NT\SystemRestore: [DisableSR/DisableConfig] <===== UWAGA
HKU\S-1-5-21-4184880393-143663667-165728389-1000\...\Policies\Explorer: [DisallowCpl] 1
HKU\S-1-5-21-4184880393-143663667-165728389-1000\...\Policies\Explorer: [LinkResolveIgnoreLinkInfo] 1
HKU\S-1-5-21-4184880393-143663667-165728389-1000\...\Policies\Explorer: [NoInternetOpenWith] 1
HKU\S-1-5-21-4184880393-143663667-165728389-1000\...\Policies\Explorer: [NoRecentDocsNetHood] 1
HKU\S-1-5-21-4184880393-143663667-165728389-1000\...\Policies\Explorer: [NoResolveSearch] 1
HKU\S-1-5-21-4184880393-143663667-165728389-1000\...\Policies\Explorer: [NoSaveSettings] 0
HKU\S-1-5-21-4184880393-143663667-165728389-1000\...\Policies\Explorer: [NoSMMyPictures] 1
HKU\S-1-5-21-4184880393-143663667-165728389-1000\...\Policies\Explorer: [NoStartMenuMyMusic] 1
Startup: C:\Users\Immah\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\AutorunsDisabled [2015-06-07] ()

==================== Internet (filtrowane) ====================

(Załączenie wejścia w fixlist, w przypadku gdy jest to obiekt rejestru, spowoduje usunięcie go z rejestru lub przywrócenie jego domyślnej postaci.)

Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 192.168.1.1
Tcpip\..\Interfaces\{421E7BB1-44C3-40AB-853C-083FA26EAC70}: [DhcpNameServer] 192.168.42.129
Tcpip\..\Interfaces\{4E3887C5-CD1E-4E3C-A32D-D5D3D6A133D6}: [DhcpNameServer] 192.168.1.1 192.168.1.1
Tcpip\..\Interfaces\{8BABA40D-7910-4A16-ADBB-1A59D6BC246D}: [DhcpNameServer] 192.168.1.1 192.168.1.1
Tcpip\..\Interfaces\{8F3EADC0-B21D-44F8-8F71-C96A0AC0E754}: [DhcpNameServer] 192.168.42.129
Tcpip\..\Interfaces\{D7DE7F3A-EEEA-439B-AA22-CEE18953715A}: [DhcpNameServer] 192.168.1.1 192.168.1.1

Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.pl
HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
HKU\S-1-5-21-4184880393-143663667-165728389-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.gazeta.pl/0,0.html?p=156
SearchScopes: HKLM -> {758B870D-DF78-4A6A-9955-DEDDCACF94DC} URL = hxxp://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}&ie={inputEncoding}&oe={outputEncoding}&startIndex={startIndex?}&startPage={startPage}
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-4184880393-143663667-165728389-1000 -> DefaultScope {758B870D-DF78-4A6A-9955-DEDDCACF94DC} URL = hxxp://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}&ie={inputEncoding}&oe={outputEncoding}&startIndex={startIndex?}&startPage={startPage}
SearchScopes: HKU\S-1-5-21-4184880393-143663667-165728389-1000 -> {758B870D-DF78-4A6A-9955-DEDDCACF94DC} URL = hxxp://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}&ie={inputEncoding}&oe={outputEncoding}&startIndex={startIndex?}&startPage={startPage}
SearchScopes: HKU\S-1-5-21-4184880393-143663667-165728389-1000 -> {szukaj.gazeta.pl} URL = hxxp://szukaj.gazeta.pl/internet/0,0.html?slowo={searchTerms}

FireFox:
========
FF ProfilePath: C:\Users\Immah\AppData\Roaming\Mozilla\Firefox\Profiles\ewgj1nqg.default
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-07-29] (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-07-29] (Google Inc.)
FF Plugin HKU\S-1-5-21-4184880393-143663667-165728389-1000: @updates.epicbrowser.com/Epic Privacy Browser Installer;version=3 -> C:\Users\Immah\AppData\Local\Epic Privacy Browser\Installer\1.3.27.13\npEpicUpdate3.dll [2016-07-19] (Epic Privacy Browser)
FF Plugin HKU\S-1-5-21-4184880393-143663667-165728389-1000: @updates.epicbrowser.com/Epic Privacy Browser Installer;version=9 -> C:\Users\Immah\AppData\Local\Epic Privacy Browser\Installer\1.3.27.13\npEpicUpdate3.dll [2016-07-19] (Epic Privacy Browser)
FF Extension: Brak nazwy - C:\Users\Immah\AppData\Roaming\Mozilla\Firefox\Profiles\ewgj1nqg.default\extensions\{73a6fe31-595d-460b-a920-fcc0f8843232}.xpi [2016-07-21] [Brak podpisu cyfrowego]
FF Extension: Brak nazwy - C:\Users\Immah\AppData\Roaming\Mozilla\Firefox\Profiles\ewgj1nqg.default\Extensions\adguardadblocker@adguard.com.xpi [2016-07-19] [Brak podpisu cyfrowego]
FF HKU\S-1-5-21-4184880393-143663667-165728389-1000\...\SeaMonkey\Extensions: [mozilla_cc2@internetdownloadmanager.com] - C:\Program Files\Internet Download Manager\idmmzcc2.xpi
FF Extension: Brak nazwy - C:\Program Files\Internet Download Manager\idmmzcc2.xpi [2016-06-08] [Brak podpisu cyfrowego]

==================== Usługi (filtrowane) ========================

(Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)

S4 chromoting; C:\Program Files\Google\Chrome Remote Desktop\44.0.2403.25\remoting_host.exe [69448 2015-05-28] (Google Inc.)
R2 MBAMScheduler; C:\Program Files\Malwarebytes Anti-Malware\mbamscheduler.exe [1514464 2016-03-10] (Malwarebytes)
R2 MBAMService; C:\Program Files\Malwarebytes Anti-Malware\mbamservice.exe [1136608 2016-03-10] (Malwarebytes)
R2 SolutoLauncherService; C:\Program Files\Soluto\SolutoLauncherService.exe [166976 2013-11-14] (Soluto)
R3 SolutoRemoteService; C:\Program Files\Soluto\SolutoRemoteService.exe [1667584 2013-11-14] (GlavSoft LLC.) [Brak podpisu cyfrowego]
R2 SolutoService; C:\Program Files\Soluto\SolutoService.exe [856128 2013-11-14] (Soluto)
S4 Themes; C:\Windows\system32\themeservice.dll [37888 2009-08-02] (Microsoft Corporation) [Brak podpisu cyfrowego]

===================== Sterowniki (filtrowane) ==========================

(Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)

S3 2310_00; C:\Windows\system32\drivers\2310_00.sys [135200 2009-06-12] (HighPoint Technologies, Inc.)
S3 272x_1x; C:\Windows\system32\drivers\272x_1x.sys [557888 2012-04-24] (HighPoint Technologies, Inc.)
S3 274x_3x; C:\Windows\system32\drivers\274x_3x.sys [196928 2012-04-24] (HighPoint Technologies, Inc.)
S3 ahcix86s; C:\Windows\system32\drivers\ahcix86s.sys [237912 2012-10-07] (Advanced Micro Devices, Inc)
S3 amdide; C:\Windows\system32\drivers\amdide.sys [11904 2011-12-18] (Advanced Micro Devices Inc.)
S3 amd_sata; C:\Windows\system32\drivers\amd_sata.sys [70784 2012-04-11] (Advanced Micro Devices)
R0 amd_xata; C:\Windows\System32\drivers\amd_xata.sys [34944 2012-04-11] (Advanced Micro Devices)
S3 arcm_x86; C:\Windows\system32\drivers\arcm_x86.sys [43552 2009-11-09] (ARECA Technology Corporation)
S3 asahci32; C:\Windows\system32\drivers\asahci32.sys [42392 2012-07-18] (Asmedia Technology)
R3 AsusVBus; C:\Windows\System32\DRIVERS\AsusVBus.sys [33048 2015-10-07] (Windows (R) Win 7 DDK provider)
R3 ATP; C:\Windows\System32\DRIVERS\AsusTP.sys [66872 2015-10-07] (ASUS Corporation)
S3 DC133; C:\Windows\system32\drivers\DC133.sys [36328 2011-05-02] (Dawicontrol GmbH)
S3 DC150; C:\Windows\system32\drivers\DC150.sys [36824 2011-05-02] (Dawicontrol GmbH)
S3 DC154; C:\Windows\system32\drivers\DC154.sys [44376 2011-05-02] (Dawicontrol GmbH)
S3 DC300e; C:\Windows\system32\drivers\DC300e.sys [37272 2011-05-02] (Dawicontrol GmbH)
S3 DC324e; C:\Windows\system32\drivers\DC324e.sys [45816 2011-05-02] (Dawicontrol GmbH)
R0 DC3410; C:\Windows\System32\drivers\DC3410.sys [44360 2011-05-02] (Dawicontrol GmbH)
S3 DC4300; C:\Windows\system32\drivers\DC4300.sys [44392 2011-05-02] (Dawicontrol GmbH)
S3 DC600e; C:\Windows\system32\drivers\DC600e.sys [37752 2011-05-02] (Dawicontrol GmbH)
S3 epmntdrv; C:\Windows\system32\epmntdrv.sys [19960 2016-07-14] ()
S3 EuGdiDrv; C:\Windows\system32\EuGdiDrv.sys [10208 2016-07-11] ()
S3 hamachi; C:\Windows\System32\DRIVERS\hamachi.sys [27040 2016-07-20] (LogMeIn, Inc.)
S3 hptiop; C:\Windows\system32\drivers\hptiop.sys [15008 2009-04-28] (HighPoint Technologies, Inc.)
S3 hptmv; C:\Windows\system32\drivers\hptmv.sys [71968 2006-09-27] (HighPoint Technologies, Inc.)
S3 hptmv6; C:\Windows\system32\drivers\hptmv6.sys [120352 2007-11-01] (HighPoint Technologies, Inc.)
R0 iaStorA; C:\Windows\System32\drivers\iaStorA.sys [526392 2012-11-19] (Intel Corporation)
R0 iaStorF; C:\Windows\System32\drivers\iaStorF.sys [25656 2012-11-19] (Intel Corporation)
S3 iaStorS; C:\Windows\system32\drivers\iaStorS.sys [573400 2012-06-29] (Intel Corporation)
S3 Impcd; C:\Windows\System32\DRIVERS\Impcd.sys [125696 2009-10-26] (Intel Corporation) [Brak podpisu cyfrowego]
S3 iteatapi; C:\Windows\system32\drivers\iteatapi.sys [35608 2008-05-14] (ITE Tech. Inc.)
S3 iteraid; C:\Windows\system32\drivers\iteraid.sys [29184 2007-05-02] (ITE Tech. Inc.)
S3 JRAID; C:\Windows\system32\drivers\jraid.sys [106296 2012-09-17] (JMicron Technology Corp.)
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [24448 2016-03-10] (Malwarebytes)
R3 MBAMSwissArmy; C:\Windows\system32\drivers\MBAMSwissArmy.sys [170200 2016-08-16] (Malwarebytes)
R3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [53120 2016-03-10] (Malwarebytes Corporation)
S3 megasas2; C:\Windows\system32\drivers\megasas2.sys [45352 2012-03-08] (LSI Corporation)
S3 megasr1; C:\Windows\system32\drivers\megasr1.sys [699216 2012-05-29] (LSI Corporation, Inc.)
S3 mv61xx; C:\Windows\system32\drivers\mv61xx.sys [161640 2012-05-23] (Marvell Semiconductor, Inc.)
S3 mv91cons; C:\Windows\system32\drivers\mv91cons.sys [23912 2012-10-09] (Marvell Semiconductor Inc.)
S3 mvs91xx; C:\Windows\system32\drivers\mvs91xx.sys [283496 2012-10-09] (Marvell Semiconductor, Inc.)
S3 mvs94xx; C:\Windows\system32\drivers\mvs94xx.sys [322352 2010-12-01] (Marvell Semiconductor, Inc.)
S3 ocz10xx; C:\Windows\system32\drivers\ocz10xx.sys [126768 2012-04-05] (OCZ Technology Group, Inc.)
S3 ocz12xx; C:\Windows\system32\drivers\ocz12xx.sys [125744 2011-09-15] (OCZ Technology Group, Inc.)
S3 rr172x; C:\Windows\system32\drivers\rr172x.sys [101920 2007-11-01] (HighPoint Technologies, Inc.)
S3 rr174x; C:\Windows\system32\drivers\rr174x.sys [126496 2007-11-01] (HighPoint Technologies, Inc.)
S3 rr2210; C:\Windows\system32\drivers\rr2210.sys [122400 2007-11-01] (HighPoint Technologies, Inc.)
S3 rr232x; C:\Windows\system32\drivers\rr232x.sys [120352 2008-05-05] (HighPoint Technologies, Inc.)
S3 rr2340; C:\Windows\system32\drivers\rr2340.sys [128608 2009-12-31] (HighPoint Technologies, Inc.)
S3 rr2522; C:\Windows\system32\drivers\rr2522.sys [132704 2009-12-31] (HighPoint Technologies, Inc.)
S3 rr276x; C:\Windows\system32\drivers\rr276x.sys [196928 2012-04-24] (HighPoint Technologies, Inc.)
S3 rr278x; C:\Windows\system32\drivers\rr278x.sys [196928 2012-04-24] (HighPoint Technologies, Inc.)
S3 rr62x; C:\Windows\system32\drivers\rr62x.sys [123488 2010-06-16] (HighPoint Technologies, Inc.)
S3 SCREAMINGBDRIVER; C:\Windows\System32\drivers\ScreamingBAudio.sys [34896 2014-02-07] (Screaming Bee LLC)
S3 SI3112; C:\Windows\system32\drivers\SI3112.sys [69168 2007-01-26] (Silicon Image, Inc.)
S3 SI3112r; C:\Windows\system32\drivers\SI3112r.sys [110128 2007-02-01] (Silicon Image, Inc)
S3 SI3114; C:\Windows\system32\drivers\SI3114.sys [68912 2006-11-10] (Silicon Image, Inc.)
S3 SI3114r; C:\Windows\system32\drivers\SI3114R.sys [110384 2007-04-11] (Silicon Image, Inc)
S3 Si3114r5; C:\Windows\system32\drivers\Si3114r5.sys [209200 2007-02-07] (Silicon Image, Inc)
S3 SI3124; C:\Windows\system32\drivers\SI3124.sys [76208 2006-11-02] (Silicon Image, Inc.)
S3 Si3124r5; C:\Windows\system32\drivers\Si3124r5.sys [216616 2010-04-13] (Silicon Image, Inc)
S3 SI3132; C:\Windows\system32\drivers\SI3132.sys [80424 2007-10-03] (Silicon Image, Inc)
S3 Si3132r5; C:\Windows\system32\drivers\Si3132r5.sys [217128 2008-10-30] (Silicon Image, Inc)
S3 Si3531; C:\Windows\system32\drivers\Si3531.sys [212520 2009-02-05] (Silicon Image, Inc)
R0 SiFilter; C:\Windows\System32\drivers\SiWinAcc.sys [19240 2007-10-03] (Silicon Image, Inc)
R0 SiRemFil; C:\Windows\System32\drivers\SiRemFil.sys [15400 2007-10-03] (Silicon Image, Inc)
R0 Soluto; C:\Windows\System32\DRIVERS\Soluto.sys [51144 2013-11-14] (Soluto LTD.)
R0 sptd; C:\Windows\System32\Drivers\sptd.sys [320120 2015-01-04] (Duplex Secure Ltd.)
R0 SscRdBus; C:\Windows\System32\DRIVERS\SscRdBus.sys [87856 2011-01-26] (SuperSpeed LLC)
S3 uvhid; C:\Windows\System32\DRIVERS\uvhid.sys [22520 2015-11-05] (Windows (R) Win 7 DDK provider)
S1 VBoxNetAdp; C:\Windows\System32\DRIVERS\VBoxNetAdp6.sys [103544 2016-04-28] (Oracle Corporation)
S3 viamraid; C:\Windows\system32\drivers\viamraid.sys [141424 2010-12-02] (VIA Technologies Inc.,Ltd)
S3 videX32; C:\Windows\system32\drivers\videX32.sys [13976 2010-02-11] (VIA Technologies, Inc.)
S3 vmscsi; C:\Windows\system32\drivers\vmscsi.sys [14232 2012-08-02] (VMware, Inc.)
R3 wovad_micarray; C:\Windows\System32\drivers\womic.sys [20480 2015-02-22] (Windows (R) Win 7 DDK provider) [Brak podpisu cyfrowego]
R0 xfilt; C:\Windows\System32\drivers\xfilt.sys [23192 2010-02-11] (VIA Technologies, Inc.)
S3 AgereSoftModem; system32\DRIVERS\AGRSM.sys [X]
U4 BDESVC; Brak ImagePath
R3 cpuz136; \??\C:\Windows\TEMP\cpuz136\cpuz136_x32.sys [X]
U4 CscService; Brak ImagePath
U4 DPS; Brak ImagePath
U4 ehRecvr; Brak ImagePath
U4 ehSched; Brak ImagePath
U4 Fax; Brak ImagePath
U4 idsvc; Brak ImagePath
U4 JavaQuickStarterService; Brak ImagePath
U4 Mcx2Svc; Brak ImagePath
S3 NLNdisMP; system32\DRIVERS\nlndis.sys [X]
S3 NLNdisPT; system32\DRIVERS\nlndis.sys [X]
U4 nvUpdatusService; Brak ImagePath
U3 PeerDistSvc; Brak ImagePath
U4 RemoteRegistry; Brak ImagePath
U4 SCardSvr; Brak ImagePath
U4 SCPolicySvc; Brak ImagePath
U4 SDRSVC; Brak ImagePath
U4 SensrSvc; Brak ImagePath
U4 TabletInputService; Brak ImagePath
U4 UmRdpService; Brak ImagePath
U4 WatAdminSvc; Brak ImagePath
U4 WdiServiceHost; Brak ImagePath
U4 WdiSystemHost; Brak ImagePath
U4 WinRM; Brak ImagePath
U4 WMPNetworkSvc; Brak ImagePath
U4 WPCSvc; Brak ImagePath
U4 wscsvc; Brak ImagePath

==================== NetSvcs (filtrowane) ===================

(Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)


==================== Jeden miesiąc - utworzone pliki i foldery ========

(Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.)

2016-08-16 19:38 - 2016-08-16 19:39 - 00000000 ____D C:\FRST
2016-08-16 18:59 - 2016-08-16 18:59 - 00001797 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Soluto.lnk
2016-08-16 18:59 - 2016-08-16 18:59 - 00000098 _____ C:\ProgramData\Microsoft.SqlServer.Compact.351.32.bc
2016-08-16 18:59 - 2016-08-16 18:59 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Soluto
2016-08-16 18:59 - 2016-08-16 18:59 - 00000000 ____D C:\Program Files\Soluto
2016-08-16 18:59 - 2013-11-14 14:26 - 00051144 _____ (Soluto LTD.) C:\Windows\system32\Drivers\Soluto.sys
2016-08-16 18:56 - 2016-08-16 19:20 - 00000000 ____D C:\ProgramData\Soluto
2016-08-16 16:37 - 2016-08-16 16:38 - 00002701 _____ C:\Users\Immah\Desktop\po.txt
2016-08-16 16:37 - 2016-08-16 16:37 - 00001122 _____ C:\Users\Immah\Desktop\mo.txt
2016-08-16 15:03 - 2016-08-16 19:10 - 00170200 _____ (Malwarebytes) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2016-08-16 15:02 - 2016-08-16 15:02 - 00001024 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2016-08-16 15:02 - 2016-08-16 15:02 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2016-08-16 15:02 - 2016-08-16 15:02 - 00000000 ____D C:\ProgramData\Malwarebytes
2016-08-16 15:02 - 2016-08-16 15:02 - 00000000 ____D C:\Program Files\Malwarebytes Anti-Malware
2016-08-16 15:02 - 2016-03-10 14:09 - 00053120 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
2016-08-16 15:02 - 2016-03-10 14:08 - 00126336 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbamchameleon.sys
2016-08-16 15:02 - 2016-03-10 14:08 - 00024448 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbam.sys
2016-08-16 13:52 - 2016-08-16 14:13 - 00000000 ____D C:\Program Files\Recuva
2016-08-16 13:52 - 2016-08-16 13:52 - 00001759 _____ C:\Users\Public\Desktop\Recuva.lnk
2016-08-16 13:52 - 2016-08-16 13:52 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Recuva
2016-08-16 13:23 - 2016-08-16 13:23 - 00000000 ____D C:\Users\Immah\AppData\Roaming\epm
2016-08-16 12:46 - 2016-08-16 12:46 - 00001306 _____ C:\Users\Public\Desktop\EaseUS Partition Master 11.5.lnk
2016-08-16 12:46 - 2016-08-16 12:46 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EaseUS Partition Master 11.5
2016-08-16 12:45 - 2016-08-16 12:45 - 00000000 ____D C:\Program Files\EaseUS
2016-08-16 12:45 - 2016-07-22 11:05 - 02926784 _____ C:\Windows\system32\BootMan.exe
2016-08-16 12:45 - 2016-07-14 01:00 - 00019960 _____ C:\Windows\system32\epmntdrv.sys
2016-08-16 12:45 - 2016-07-11 10:01 - 00088160 _____ C:\Windows\system32\setupempdrv03.exe
2016-08-16 12:45 - 2016-07-11 10:01 - 00010208 _____ C:\Windows\system32\EuGdiDrv.sys
2016-08-16 12:45 - 2016-07-08 15:28 - 00248832 _____ C:\Windows\system32\epmntdrv.pdb
2016-08-16 12:45 - 2014-11-18 14:46 - 00021088 _____ C:\Windows\system32\EuEpmGdi.dll
2016-08-16 09:59 - 2016-08-16 10:00 - 00000000 ____D C:\Users\Immah\AppData\Roaming\SumatraPDF
2016-08-16 09:59 - 2016-08-16 09:59 - 00001839 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SumatraPDF.lnk
2016-08-16 09:59 - 2016-08-16 09:59 - 00000000 ____D C:\Program Files\SumatraPDF
2016-08-15 23:20 - 2016-08-15 23:20 - 00000000 ____D C:\Users\Immah\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2016-08-15 23:20 - 2016-08-15 23:20 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2016-08-15 21:41 - 2016-08-15 21:53 - 00000000 ____D C:\Program Files\CCleaner
2016-08-15 21:10 - 2016-08-15 21:10 - 00000103 _____ C:\Windows\pro.INI
2016-08-15 00:58 - 2016-08-15 01:09 - 00000000 ____D C:\Users\Immah\AppData\Roaming\sqlitestudio
2016-08-14 22:23 - 2016-08-14 22:23 - 00000000 ____D C:\Users\Immah\AppData\Roaming\Tibia
2016-08-14 22:04 - 2016-08-14 22:04 - 00000000 ____D C:\Users\Immah\AppData\Roaming\Remere's Map Editor
2016-08-14 20:05 - 2016-08-14 20:07 - 00000000 ____D C:\Users\Immah\AppData\Roaming\SQLite Administrator
2016-08-14 19:56 - 2016-08-14 19:56 - 00005632 _____ C:\Windows\system32\spdg.dll
2016-08-14 19:51 - 2016-08-15 20:59 - 00000000 ____D C:\Users\Immah\AppData\Local\LogMeIn Hamachi
2016-08-14 19:51 - 2016-08-14 19:51 - 00000000 ____D C:\Users\Immah\AppData\Local\LogMeIn
2016-08-14 19:51 - 2016-08-14 19:51 - 00000000 ____D C:\ProgramData\LogMeIn
2016-08-11 14:12 - 2016-08-11 14:13 - 00000600 _____ C:\Users\Immah\AppData\Local\PUTTY.RND
2016-08-11 14:10 - 2016-08-15 20:53 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WindBot
2016-08-11 14:10 - 2016-08-15 20:53 - 00000000 ____D C:\Program Files\WindBot
2016-08-11 09:03 - 2016-08-11 09:03 - 00001820 _____ C:\Users\12345\Desktop\Tibia Auto.lnk
2016-08-11 09:03 - 2016-08-11 09:03 - 00000000 ____D C:\Users\Immah\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Tibia Auto
2016-08-11 09:03 - 2016-08-11 09:03 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tibia Auto
2016-08-11 09:00 - 2015-06-07 01:08 - 00883712 _____ (Microsoft Corporation) C:\Windows\system32\ucrtbase.dll
2016-08-11 09:00 - 2015-06-07 01:08 - 00064352 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-private-l1-1-0.dll
2016-08-11 09:00 - 2015-06-07 01:08 - 00022368 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-math-l1-1-0.dll
2016-08-11 09:00 - 2015-06-07 01:08 - 00019808 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-multibyte-l1-1-0.dll
2016-08-11 09:00 - 2015-06-07 01:08 - 00017760 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-string-l1-1-0.dll
2016-08-11 09:00 - 2015-06-07 01:08 - 00017760 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-stdio-l1-1-0.dll
2016-08-11 09:00 - 2015-06-07 01:08 - 00016224 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-runtime-l1-1-0.dll
2016-08-11 09:00 - 2015-06-07 01:08 - 00015712 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-convert-l1-1-0.dll
2016-08-11 09:00 - 2015-06-07 01:08 - 00014176 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-time-l1-1-0.dll
2016-08-11 09:00 - 2015-06-07 01:08 - 00014176 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-2-0.dll
2016-08-11 09:00 - 2015-06-07 01:08 - 00013664 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-filesystem-l1-1-0.dll
2016-08-11 09:00 - 2015-06-07 01:08 - 00012640 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-process-l1-1-0.dll
2016-08-11 09:00 - 2015-06-07 01:08 - 00012640 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-heap-l1-1-0.dll
2016-08-11 09:00 - 2015-06-07 01:08 - 00012640 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-conio-l1-1-0.dll
2016-08-11 09:00 - 2015-06-07 01:08 - 00012128 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-utility-l1-1-0.dll
2016-08-11 09:00 - 2015-06-07 01:08 - 00012128 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-locale-l1-1-0.dll
2016-08-11 09:00 - 2015-06-07 01:08 - 00012128 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-environment-l1-1-0.dll
2016-08-11 09:00 - 2015-06-07 01:08 - 00012128 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-2-0.dll
2016-08-11 09:00 - 2015-06-07 01:08 - 00012128 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-1.dll
2016-08-11 09:00 - 2015-06-07 01:08 - 00011616 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-eventing-provider-l1-1-0.dll
2016-08-11 09:00 - 2015-06-07 01:08 - 00011616 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l2-1-0.dll
2016-08-11 09:00 - 2015-06-07 01:08 - 00011616 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-timezone-l1-1-0.dll
2016-08-11 09:00 - 2015-06-07 01:08 - 00011616 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l2-1-0.dll
2016-08-11 09:00 - 2015-06-07 01:08 - 00011616 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-2-0.dll
2016-08-11 08:59 - 2016-08-15 21:00 - 00000000 ____D C:\Program Files\Tibia Auto
2016-07-30 07:47 - 2016-08-15 21:31 - 00000000 ____D C:\Windows\ShellNew
2016-07-29 07:51 - 2016-07-29 07:51 - 00000000 ____D C:\Program Files\GUM339D.tmp
2016-07-24 07:46 - 2016-07-24 07:46 - 00001619 _____ C:\Users\Immah\Desktop\IronPortable.lnk
2016-07-24 07:41 - 2016-07-24 07:41 - 00000000 ____D C:\Users\Immah\AppData\Local\Chromium
2016-07-24 07:41 - 2016-07-24 07:41 - 00000000 ____D C:\Program Files\IronPortable
2016-07-24 07:40 - 2016-07-24 07:41 - 69699247 _____ C:\Program Files\IronPortable.zip
2016-07-21 13:37 - 2016-07-21 13:37 - 00000000 ____D C:\Users\Immah\AppData\Roaming\K-Meleon
2016-07-21 13:35 - 2016-07-24 07:48 - 00000000 ____D C:\Program Files\K-Meleon
2016-07-20 22:01 - 2016-07-21 16:43 - 00000000 ____D C:\Program Files\WTFast
2016-07-20 12:29 - 2016-07-20 12:36 - 00000000 ____D C:\Users\Immah\AppData\Roaming\Tibiacast
2016-07-20 12:08 - 2016-07-20 12:08 - 00027040 ____H (LogMeIn, Inc.) C:\Windows\system32\Drivers\hamachi.sys
2016-07-19 20:12 - 2016-07-21 16:35 - 00000000 ____D C:\Program Files\Mozilla Firefox
2016-07-19 20:12 - 2016-07-19 20:12 - 00000000 ____D C:\Users\Immah\AppData\Roaming\Mozilla
2016-07-19 19:53 - 2016-07-19 20:11 - 00000000 ____D C:\Users\Immah\AppData\Roaming\Opera Software
2016-07-19 19:52 - 2016-07-19 20:11 - 00000000 ____D C:\Program Files\Opera
2016-07-19 19:43 - 2016-07-19 19:55 - 00000000 ____D C:\Program Files\Pale Moon
2016-07-19 19:43 - 2016-07-19 19:53 - 00000000 ____D C:\Users\Immah\AppData\Roaming\Moonchild Productions
2016-07-19 19:43 - 2016-07-19 19:43 - 00000000 ____D C:\Users\Immah\AppData\Local\Moonchild Productions
2016-07-19 19:37 - 2016-07-19 19:37 - 00030601 _____ C:\Users\Immah\x.exe
2016-07-19 13:04 - 2016-07-19 13:04 - 00000000 ____D C:\Users\Immah\AppData\Roaming\EloBuddy
2016-07-19 08:52 - 2016-07-19 08:52 - 00001393 _____ C:\Users\Immah\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2016-07-19 08:37 - 2016-07-19 19:36 - 00000000 ____D C:\Users\Immah\AppData\Local\Epic Privacy Browser
2016-07-19 08:37 - 2016-07-19 08:37 - 00000000 ____D C:\ProgramData\Epic Privacy Browser

==================== Jeden miesiąc - zmodyfikowane pliki i foldery ========

(Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.)

2016-08-16 19:16 - 2009-07-14 06:34 - 00016752 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2016-08-16 19:16 - 2009-07-14 06:34 - 00016752 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2016-08-16 19:09 - 2015-12-23 13:21 - 00000000 ____D C:\ProgramData\ASUS Smart Gesture
2016-08-16 19:09 - 2015-01-03 16:49 - 00001032 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2016-08-16 19:08 - 2009-07-14 06:53 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2016-08-16 18:59 - 2015-02-01 01:28 - 00000000 __SHD C:\Windows\system32\AI_RecycleBin
2016-08-16 18:56 - 2015-01-03 16:49 - 00001036 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2016-08-16 16:38 - 2013-12-29 15:25 - 00022518 _____ C:\Windows\system32\notepad.ini
2016-08-16 16:33 - 2015-01-03 16:35 - 00000000 ____D C:\Users\Immah
2016-08-16 16:25 - 2015-01-04 13:39 - 00000000 ____D C:\Program Files\Driver Magician
2016-08-16 14:15 - 2009-07-14 04:37 - 00000000 ____D C:\Windows\inf
2016-08-16 12:50 - 2011-04-12 07:08 - 04442360 _____ C:\Windows\system32\perfh015.dat
2016-08-16 12:50 - 2011-04-12 07:08 - 01447098 _____ C:\Windows\system32\perfc015.dat
2016-08-16 12:50 - 2010-11-20 23:01 - 00007424 _____ C:\Windows\system32\PerfStringBackup.INI
2016-08-16 09:54 - 2016-05-31 20:54 - 00047496 _____ C:\Users\Immah\AppData\Local\GDIPFONTCACHEV1.DAT
2016-08-15 23:20 - 2015-01-03 16:43 - 00000000 ____D C:\Program Files\WinRAR
2016-08-15 21:44 - 2009-08-20 00:00 - 00224816 _____ C:\Windows\system32\FNTCACHE.DAT
2016-08-15 21:29 - 2015-01-03 17:20 - 00000000 ____D C:\Users\Immah\AppData\Roaming\uTorrent
2016-08-15 21:28 - 2016-05-02 09:48 - 00000000 ____D C:\Program Files\Common Files\Adobe
2016-08-15 21:27 - 2015-03-15 02:39 - 00000000 ____D C:\Program Files\FreeAlarmClock
2016-08-15 21:27 - 2015-01-03 23:29 - 00000000 ____D C:\Program Files\K-Lite Codec Pack
2016-08-15 21:26 - 2015-02-08 17:09 - 00000000 ____D C:\Program Files\GIMP 2
2016-08-15 21:25 - 2015-03-31 16:38 - 00000000 ____D C:\Program Files\Steam
2016-08-15 21:25 - 2015-01-16 20:29 - 00000000 ____D C:\Program Files\TeamSpeak 3 Client
2016-08-15 21:25 - 2015-01-10 19:28 - 00000000 ____D C:\Program Files\GPU-Z
2016-08-15 21:24 - 2015-12-23 13:34 - 00000000 ____D C:\ProgramData\Unified Remote
2016-08-15 21:24 - 2015-12-23 13:34 - 00000000 ____D C:\Program Files\Unified Remote 3
2016-08-15 21:23 - 2016-06-16 20:48 - 00000000 ____D C:\Program Files\OpenOffice 4
2016-08-15 21:22 - 2016-02-02 12:54 - 00000000 ____D C:\Program Files\Lame For Audacity
2016-08-15 21:22 - 2015-05-16 03:15 - 00000000 ____D C:\Program Files\HTC
2016-08-15 21:22 - 2015-02-08 17:38 - 00000000 ____D C:\Program Files\KompoZer
2016-08-15 21:22 - 2015-02-05 10:54 - 00000000 ____D C:\Program Files\Plus500
2016-08-15 21:21 - 2015-02-08 18:53 - 00000000 ____D C:\Program Files\Pro Evolution Soccer 2015
2016-08-15 21:20 - 2015-01-03 17:08 - 00000000 ____D C:\ProgramData\Package Cache
2016-08-15 21:13 - 2015-01-04 22:47 - 00000000 ____D C:\Program Files\Sapphire TRIXX
2016-08-15 21:12 - 2015-02-08 17:22 - 00000000 ____D C:\Program Files\Teleport Pro
2016-08-15 21:01 - 2016-01-29 21:56 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Fredaikis AB
2016-08-15 21:01 - 2016-01-29 21:56 - 00000000 ____D C:\Program Files\TheNewZ
2016-08-15 21:00 - 2016-05-03 11:20 - 00000000 ____D C:\Program Files\paint.net
2016-08-15 20:58 - 2016-05-05 09:09 - 00000000 ____D C:\ProgramData\Blueberry
2016-08-15 20:58 - 2016-05-05 09:06 - 00000000 ____D C:\Users\Immah\AppData\Roaming\Blueberry
2016-08-15 20:58 - 2016-05-05 09:06 - 00000000 ____D C:\Program Files\Common Files\Blueberry Software
2016-08-14 19:56 - 2010-11-20 23:29 - 00207360 _____ (Microsoft Corporation) C:\Windows\system32\ws2_32.dll
2016-08-12 21:13 - 2015-01-03 16:43 - 00000000 ____D C:\ProgramData\TEMP
2016-07-23 14:01 - 2015-01-03 20:21 - 00000000 ____D C:\Windows\system32\Macromed
2016-07-23 14:00 - 2015-01-29 16:15 - 00000000 ____D C:\Users\Immah\AppData\Local\Adobe
2016-07-21 16:42 - 2015-01-03 16:49 - 00000000 ____D C:\Users\Immah\AppData\Local\Google
2016-07-21 13:39 - 2016-05-09 16:45 - 00000000 ____D C:\Users\Immah\AppData\Local\K-Meleon
2016-07-19 20:11 - 2016-06-26 12:53 - 00000000 ____D C:\Users\Immah\AppData\Local\Opera Software
2016-07-19 19:37 - 2016-06-27 09:47 - 00000000 ____D C:\Program Files\VisualRoute
2016-07-19 13:05 - 2016-06-26 10:54 - 00000000 ____D C:\Program Files\WinPcap
2016-07-19 13:04 - 2016-06-09 16:57 - 00000000 ____D C:\Program Files\EloBuddy
2016-07-19 11:29 - 2016-02-02 11:11 - 00000000 ____D C:\Program Files\Audacity
2016-07-19 11:29 - 2009-07-14 06:52 - 00000000 ____D C:\Program Files\MSBuild
2016-07-19 11:28 - 2016-06-28 13:56 - 00000000 ____D C:\Program Files\Cheat Engine 6.5.1
2016-07-19 11:27 - 2015-05-16 10:29 - 00000000 ____D C:\Program Files\WOMic

==================== Pliki w katalogu głównym wybranych folderów =======

2016-07-24 07:40 - 2016-07-24 07:41 - 69699247 _____ () C:\Program Files\IronPortable.zip
2016-04-22 17:06 - 2016-04-23 01:42 - 0003138 _____ () C:\Users\Immah\AppData\Roaming\ZeroBraneStudio.ini
2015-01-04 11:20 - 2015-01-04 11:20 - 0397900 _____ () C:\Users\Immah\AppData\Local\4GB_EN.exe
2015-01-04 11:20 - 2015-01-04 11:20 - 0397900 _____ () C:\Users\Immah\AppData\Local\4GB_GER.exe
2015-01-04 11:20 - 2015-01-04 11:20 - 0570073 _____ () C:\Users\Immah\AppData\Local\gui.exe
2015-01-04 11:20 - 2015-01-04 11:20 - 2076309 _____ () C:\Users\Immah\AppData\Local\ntkrlICE.exe
2016-08-11 14:12 - 2016-08-11 14:13 - 0000600 _____ () C:\Users\Immah\AppData\Local\PUTTY.RND
2015-06-18 23:00 - 2015-06-18 23:00 - 0001589 _____ () C:\Users\Immah\AppData\Local\recently-used.xbel
2015-06-19 17:55 - 2015-06-19 17:55 - 1102336 ____H () C:\Users\Immah\AppData\Local\SY0Q7FOYLZ.dll
2015-01-04 11:20 - 2015-01-04 11:20 - 0000518 _____ () C:\Users\Immah\AppData\Local\UNAWAVE_EN.url
2015-01-04 11:20 - 2015-01-04 11:20 - 0000216 _____ () C:\Users\Immah\AppData\Local\UNAWAVE_GER.url
2015-01-04 11:20 - 2015-01-04 11:20 - 0000240 _____ () C:\Users\Immah\AppData\Local\UPDATE.url
2015-01-04 11:20 - 2015-01-04 11:20 - 0021504 _____ (deepxw) C:\Users\Immah\AppData\Local\Wtrmrk.exe
2016-08-16 18:59 - 2016-08-16 18:59 - 0000098 _____ () C:\ProgramData\Microsoft.SqlServer.Compact.351.32.bc

Pliki do przeniesienia lub usunięcia:
====================
C:\Users\Immah\x.exe


==================== Bamital & volsnap =================

(Brak automatycznej naprawy dla plików które nie przeszły weryfikacji.)

C:\Windows\explorer.exe
[2013-12-29 15:25] - [2011-07-27 02:24] - 3577344 ____A (Microsoft Corporation) 827F6444C183560C6758D2A4B742AB98

C:\Windows\system32\winlogon.exe => Plik podpisany cyfrowo
C:\Windows\system32\wininit.exe => Plik podpisany cyfrowo
C:\Windows\system32\svchost.exe => Plik podpisany cyfrowo
C:\Windows\system32\services.exe => Plik podpisany cyfrowo
C:\Windows\system32\User32.dll
[2013-12-29 15:26] - [2011-07-23 17:12] - 0827904 ____A (Microsoft Corporation) 349BB946D52BCE9C4CAE80DAFC040B25

C:\Windows\system32\userinit.exe => Plik podpisany cyfrowo
C:\Windows\system32\rpcss.dll => Plik podpisany cyfrowo
C:\Windows\system32\dnsapi.dll => Plik podpisany cyfrowo
C:\Windows\system32\Drivers\volsnap.sys => Plik podpisany cyfrowo


LastRegBack: 2015-01-03 16:03

==================== Koniec FRST.txt ============================