Skocz do zawartości

Rekomendowane odpowiedzi

Opublikowano (edytowane)

Nazwa urządzenia    DESKTOP-P0OGB8U
Procesor    Intel(R) Celeron(R) CPU        E3400  @ 2.60GHz   2.60 GHz
Zainstalowana pamięć RAM    4,00 GB
Identyfikator urządzenia    F886D545-9048-4121-A864-2869D0384210
Identyfikator produktu    00331-20300-00000-AA556
Typ systemu    64-bitowy system operacyjny, procesor x64
Pióro i urządzenia dotykowe    Brak obsługi pióra i wprowadzania dotykowego dla tego ekranu
 

Edytowane przez androlo
Opublikowano
3 minuty temu, Tombycz napisał(a):

Tutaj wszystko znajdziesz Pobierz AIDA64 pytanie: Komputer, Laptop, Tablet?

Nazwa urządzenia    DESKTOP-P0OGB8U
Procesor    Intel(R) Celeron(R) CPU        E3400  @ 2.60GHz   2.60 GHz
Zainstalowana pamięć RAM    4,00 GB
Identyfikator urządzenia    F886D545-9048-4121-A864-2869D0384210
Identyfikator produktu    00331-20300-00000-AA556
Typ systemu    64-bitowy system operacyjny, procesor x64
Pióro i urządzenia dotykowe    Brak obsługi pióra i wprowadzania dotykowego dla tego ekranu
 

Opublikowano

Rezultaty skanowania Farbar Recovery Scan Tool (FRST) (x64) Wersja: 03-11-2024
Uruchomiony przez Andrzej (administrator)  DESKTOP-P0OGB8U (Gigabyte Technology Co., Ltd. G41MT-S2PT) (03-11-2024 15:31:23)
Uruchomiony z C:\Users\Andrzej\Desktop\FRST64.exe
Załadowane profile: Andrzej
Platforma: Microsoft Windows 10 Pro Wersja 22H2 19045.5073 (X64) Język: Polski (Polska)
Domyślna przeglądarka: Edge
Tryb startu: Normal

==================== Procesy (filtrowane) =================

(Załączenie wejścia w fixlist spowoduje zamknięcie procesu. Powiązany plik nie zostanie przeniesiony.)

(C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe ->) (Oracle America, Inc. -> Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exe
(C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe ->) (Malwarebytes Inc. -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\Malwarebytes.exe
(explorer.exe ->) (Google LLC -> Google LLC) C:\Program Files\Google\Chrome\Application\chrome.exe <20>
(explorer.exe ->) (Opera Norway AS -> Opera Software) C:\Users\Andrzej\AppData\Local\Programs\Opera\assistant\browser_assistant.exe <2>
(explorer.exe ->) (ResolveDevOps Limited -> ResolveDevOps Limited) C:\Users\Andrzej\AppData\Roaming\ProductAuthenticationService\pas.exe
(Gen Digital Inc. -> Piriform Software Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe <6>
(Oracle America, Inc. -> Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(services.exe ->) (Malwarebytes Inc. -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24090.11-0\MpDefenderCoreService.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24090.11-0\MsMpEng.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24090.11-0\NisSrv.exe
(services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe <2>
(svchost.exe ->) (24803D75-212C-471A-BC57-9EF86AB91435 -> ) C:\Program Files\WindowsApps\5319275A.WhatsAppDesktop_2.2443.7.0_x64__cv1g1gvanyjgm\WhatsApp.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Users\Andrzej\AppData\Local\Microsoft\OneDrive\24.196.0929.0005\FileCoAuth.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <3>
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MoUsoCoreWorker.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\SysWOW64\dllhost.exe
(Telegram FZ-LLC -> Telegram FZ-LLC) C:\Windows.old\Users\Andrzej\AppData\Roaming\Telegram Desktop\Telegram.exe

==================== Rejestr (filtrowane) ===================

(Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.)

HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [334896 2015-06-08] (Oracle America, Inc. -> Oracle Corporation)
HKU\S-1-5-21-1289171223-1415797552-1881391752-1001\...\Run: [vidnotifier.exe] => C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\vidnotifier\vidnotifier.exe (Brak pliku)
HKU\S-1-5-21-1289171223-1415797552-1881391752-1001\...\Run: [MicrosoftEdgeAutoLaunch_A52C360296CF425025DAAC4E20097A1E] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start [3856424 2024-10-31] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-1289171223-1415797552-1881391752-1001\...\Run: [Opera Browser Assistant] => C:\Users\Andrzej\AppData\Local\Programs\Opera\assistant\browser_assistant.exe [4049312 2024-07-18] (Opera Norway AS -> Opera Software)
HKU\S-1-5-21-1289171223-1415797552-1881391752-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [45227312 2024-10-15] (Gen Digital Inc. -> Piriform Software Ltd)
HKU\S-1-5-21-1289171223-1415797552-1881391752-1001\...\Run: [SteamServerBrowser] => C:\Users\Andrzej\AppData\Roaming\SteamServerBrowser\SteamServerBrowser.exe [289304 2024-09-12] (Lyrha Software Technologies Inc. -> )
HKU\S-1-5-21-1289171223-1415797552-1881391752-1001\...\Run: [ProductAuthenticationService] => C:\Users\Andrzej\AppData\Roaming\ProductAuthenticationService\pas.exe [1004072 2019-05-07] (ResolveDevOps Limited -> ResolveDevOps Limited) <==== UWAGA
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\130.0.6723.92\Installer\chrmstp.exe [2024-11-01] (Google LLC -> Google LLC)
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Ograniczenia <==== UWAGA

==================== Zaplanowane zadania (filtrowane) =================

(Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)

Task: {CDAADDCA-5D30-4478-ADD4-CA6E2BD17EBD} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [829408 2024-10-15] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {DE5A6AFF-0108-4A28-9721-CAEC1E122429} - System32\Tasks\CCleanerCrashReporting => C:\Program Files\CCleaner\CCleanerBugReport.exe [5983536 2024-10-15] (Gen Digital Inc. -> Gen Digital Inc.) -> --product 90 --send dumps|report --path "C:\Program Files\CCleaner\LOG" --programpath "C:\Program Files\CCleaner" --guid "b9da3580-5c89-4519-a1a6-e816d3f9afdb" --version "6.29.11342" --silent
Task: {41BE9163-0E48-4629-A7FD-A6752CBDCAC5} - System32\Tasks\CCleanerSkipUAC - Andrzej => C:\Program Files\CCleaner\CCleaner.exe [39090480 2024-10-15] (Gen Digital Inc. -> Piriform Software Ltd)
Task: {EAFE9267-A972-4BC3-9FA1-8EC0637A72D9} - System32\Tasks\GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem131.0.6776.0{6B35148C-F917-403C-9BFC-6CE2B5C48E38} => C:\Program Files (x86)\Google\GoogleUpdater\131.0.6776.0\updater.exe [5507168 2024-10-14] (Google LLC -> Google LLC)
Task: {A980043B-D6D4-4445-B315-85D777A09213} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24090.11-0\MpCmdRun.exe [1687360 2024-10-31] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {51143FED-D372-49D6-A819-ED6ECF2BB8A5} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24090.11-0\MpCmdRun.exe [1687360 2024-10-31] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {BFED2E85-F5A8-45B5-B8E8-85AB279BB79B} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24090.11-0\MpCmdRun.exe [1687360 2024-10-31] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {2DB36FEF-92BC-4EDC-B8B4-3F2842C96D6B} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24090.11-0\MpCmdRun.exe [1687360 2024-10-31] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {8D895BB7-F7FA-4EE0-BF68-4207AB7F5BC1} - System32\Tasks\Mozilla\Firefox Background Update EBD1FE2FECB66480 => C:\Users\Andrzej\AppData\Local\Mozilla Firefox\firefox.exe [671808 2024-10-29] (Mozilla Corporation -> Mozilla Corporation) -> C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\EBD1FE2FECB66480\--MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\EBD1FE2FECB66480\backgroundupdate.moz_log --backgroundtask background (dane wartości zawierają 6 znaków więcej).
Task: {820885AA-C06F-434E-B236-368E1B1A38A8} - System32\Tasks\Mozilla\Firefox Background Update S-1-5-21-1289171223-1415797552-1881391752-1001 EBD1FE2FECB66480 => C:\Users\Andrzej\AppData\Local\Mozilla Firefox\firefox.exe [671808 2024-10-29] (Mozilla Corporation -> Mozilla Corporation) -> C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\EBD1FE2FECB66480\--MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\EBD1FE2FECB66480\backgroundupdate.moz_log --backgroundtask background (dane wartości zawierają 6 znaków więcej).
Task: {2EB8C59A-C524-45D6-803F-C5ABA27E802A} - System32\Tasks\Mozilla\Firefox Default Browser Agent EBD1FE2FECB66480 => C:\Users\Andrzej\AppData\Local\Mozilla Firefox\default-browser-agent.exe [34368 2024-10-29] (Mozilla Corporation -> Mozilla Foundation)
Task: {04F2AA17-BB37-43EE-81F2-820C952EDC1E} - System32\Tasks\Opera scheduled assistant Autoupdate 1724046931 => C:\Users\Andrzej\AppData\Local\Programs\Opera\launcher.exe [1573784 2024-10-17] (Opera Norway AS -> Opera Software) -> --scheduledautoupdate --component-name=assistant --component-path="C:\Users\Andrzej\AppData\Local\Programs\Opera\assistant" $(Arg0)
Task: {0CDADB7D-D876-4EBB-85BF-9F65F57823D8} - System32\Tasks\Opera scheduled Autoupdate 1681407227 => C:\Users\Andrzej\AppData\Local\Programs\Opera\autoupdate\opera_autoupdate.exe [5812120 2024-10-15] (Opera Norway AS -> Opera Software)

(Załączenie wejścia w fixlist spowoduje przesunięcie pliku zadania (.job). Plik uruchamiany docelowo przez zadanie nie zostanie przeniesiony.)

Task: C:\WINDOWS\Tasks\CCleanerCrashReporting.job => C:\Program Files\CCleaner\CCleanerBugReport.exe

==================== Internet (filtrowane) ====================

(Załączenie wejścia w fixlist, w przypadku gdy jest to obiekt rejestru, spowoduje usunięcie go z rejestru lub przywrócenie jego domyślnej postaci.)

Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{aa00c091-22af-4907-9b7b-3335604d73c5}: [DhcpNameServer] 192.168.0.1

Edge: 
=======
Edge DefaultProfile: Default
Edge Profile: C:\Users\Andrzej\AppData\Local\Microsoft\Edge\User Data\Default [2024-11-03]
Edge Notifications: Default -> hxxps://web.telegram.org
Edge Extension: (Keplr) - C:\Users\Andrzej\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\dmkamcknogkgcdfhhbddcghachkejeap [2024-11-02]
Edge Extension: (Dokumenty Google offline) - C:\Users\Andrzej\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2024-10-17]
Edge Extension: (BTRoblox - Making Roblox Better) - C:\Users\Andrzej\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\hbkpclpemjeibhioopcebchdmohaieln [2024-10-14]
Edge Extension: (Edge relevant text changes) - C:\Users\Andrzej\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2024-01-24]

FireFox:
========
FF DefaultProfile: ltaqy3of.default
FF ProfilePath: C:\Users\Andrzej\AppData\Roaming\Mozilla\Firefox\Profiles\ltaqy3of.default [2023-04-10]
FF ProfilePath: C:\Users\Andrzej\AppData\Roaming\Mozilla\Firefox\Profiles\aq8z5sji.default-release [2024-11-03]
FF Notifications: Mozilla\Firefox\Profiles\aq8z5sji.default-release -> hxxps://www.51015kids.eu; hxxps://www.urzadzamy.pl; hxxps://natemat.pl; hxxps://www.oglaszamy24.pl; hxxps://erli.pl; hxxps://homla.com.pl; hxxps://www.weranda.pl; hxxps://www.ceneo.pl; hxxps://www.onet.pl; hxxps://www.se.pl; hxxps://styl.fm; hxxps://johndog.pl; hxxps://slaskie.travel; hxxps://rblx.land; hxxps://pl.pinterest.com; hxxps://www.mjakmama24.pl; hxxps://www.eska.pl; hxxps://czytam.pl; hxxps://wamiz.pl; hxxps://www.psy.pl; hxxps://zrzutka.pl; hxxps://wielun.naszemiasto.pl; hxxps://strongwhale.xyz; hxxps://butydlamalucha.pl; hxxps://40luckybirdcasino.com; hxxps://www.wefindanswers.co; hxxps://nutridome.pl; hxxps://konkursy.radiozet.pl; hxxps://bizzoocasino.com; hxxps://allrightcasino61.com; hxxps://nxejt.darkdepthdriller.top; hxxps://20bettin.com; hxxps://polki.pl; hxxps://casino80.com; hxxps://portalparentingowy.pl; hxxps://www.aasapolska.pl; hxxps://www.smartsearchresults.com; hxxps://www.filmweb.pl; hxxps://kb.pl; hxxps://prawdziwehistorie.kobieta.pl; hxxps://laboratoriumpanidomu.pl; hxxps://reporteryoung.pl; hxxps://mokida.com; hxxps://www.sport-shop.pl; hxxps://eobuwie.com.pl; hxxps://wiadomosci.wp.pl; hxxps://mamineskarby.pl; hxxps://www.gloskultury.pl; hxxps://www.sportrabat.pl; hxxps://hitnspin1004.com; hxxps://vod.tvp.pl; hxxps://twojahistoria.pl; hxxps://www.fakt.pl; hxxps://pl.coccodrillo.eu; hxxps://www.limango.pl; hxxps://endo.pl; hxxps://born2be.pl
FF Plugin: @java.com/DTPlugin,version=11.51.2 -> C:\Program Files\Java\jre1.8.0_51\bin\dtplugin\npDeployJava1.dll [2024-09-17] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.51.2 -> C:\Program Files\Java\jre1.8.0_51\bin\plugin2\npjp2.dll [2024-09-17] (Oracle America, Inc. -> Oracle Corporation)

Chrome: 
=======
CHR Profile: C:\Users\Andrzej\AppData\Local\Google\Chrome\User Data\Default [2024-11-03]
CHR Notifications: Default -> hxxps://account.skrill.com; hxxps://smakosze.pl; hxxps://szybkagotowka.pl; hxxps://www.aasapolska.pl
CHR Extension: (RoPro - popraw swoje doznanie z Roblox) - C:\Users\Andrzej\AppData\Local\Google\Chrome\User Data\Default\Extensions\adbacgifemdbhdkfppmeilbgppmhaobf [2024-10-19]
CHR Extension: (Compass Wallet for Sei) - C:\Users\Andrzej\AppData\Local\Google\Chrome\User Data\Default\Extensions\anokgmphncpekkhclmingpimjmcooifb [2024-10-27]
CHR Extension: (Keplr) - C:\Users\Andrzej\AppData\Local\Google\Chrome\User Data\Default\Extensions\dmkamcknogkgcdfhhbddcghachkejeap [2024-11-02]
CHR Extension: (BNB Chain Wallet) - C:\Users\Andrzej\AppData\Local\Google\Chrome\User Data\Default\Extensions\fhbohimaelbohpjbbldcngcnapndodjp [2024-07-19]
CHR Extension: (MyTonWallet · My TON Wallet) - C:\Users\Andrzej\AppData\Local\Google\Chrome\User Data\Default\Extensions\fldfpgipfncgndfolcbkdeeknbbbnhcc [2024-11-01]
CHR Extension: (StarKey Wallet - The official wallet for Supra) - C:\Users\Andrzej\AppData\Local\Google\Chrome\User Data\Default\Extensions\hcjhpkgbmechpabifbggldplacolbkoh [2024-10-31]
CHR Extension: (TronLink) - C:\Users\Andrzej\AppData\Local\Google\Chrome\User Data\Default\Extensions\ibnejdfjmmkpcnlpebklmnkoeoihofec [2024-10-12]
CHR Extension: (ZilPay) - C:\Users\Andrzej\AppData\Local\Google\Chrome\User Data\Default\Extensions\klnaejjgbibmhlephnhpmaofohgkpgkd [2024-07-19]
CHR Extension: (MetaMask) - C:\Users\Andrzej\AppData\Local\Google\Chrome\User Data\Default\Extensions\nkbihfbeogaeaoehlefnkodbefgpgknn [2024-11-02]
CHR Extension: (Płatności w sklepie Chrome Web Store) - C:\Users\Andrzej\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2023-04-08]
CHR Profile: C:\Users\Andrzej\AppData\Local\Google\Chrome\User Data\System Profile [2023-09-27]

Opera: 
=======
OPR DefaultProfile: Default

==================== Usługi (filtrowane) ===================

(Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)

S3 CCleanerPerformanceOptimizerService; C:\Program Files\CCleaner\CCleanerPerformanceOptimizerService.exe [1087792 2024-10-15] (Gen Digital Inc. -> Piriform Software Ltd)
R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe [9258144 2024-11-03] (Malwarebytes Inc. -> Malwarebytes)
S3 MBVpnTunnelService; C:\Program Files\Malwarebytes\Anti-Malware\MBVpnTunnelService.exe [3073888 2024-08-25] (Malwarebytes Inc. -> Malwarebytes)
R2 MDCoreSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24090.11-0\MpDefenderCoreService.exe [1447680 2024-10-31] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [559368 2024-10-23] (Microsoft Windows Publisher -> Microsoft Corporation)
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24090.11-0\NisSrv.exe [3199672 2024-10-31] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24090.11-0\MsMpEng.exe [141952 2024-10-31] (Microsoft Windows Publisher -> Microsoft Corporation)

===================== Sterowniki (filtrowane) ===================

(Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)

S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [280064 2022-10-12] (Microsoft Corporation) [Brak podpisu cyfrowego]
S3 BthHFEnum; C:\WINDOWS\System32\drivers\bthhfenum.sys [147968 2022-04-14] (Microsoft Corporation) [Brak podpisu cyfrowego]
R2 mbamchameleon; C:\WINDOWS\System32\Drivers\MbamChameleon.sys [231504 2024-09-02] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes)
S0 MbamElam; C:\WINDOWS\System32\DRIVERS\MbamElam.sys [21480 2024-08-25] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes)
R3 MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [239568 2024-08-25] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes)
S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [22104 2024-10-31] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [606624 2024-10-31] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [105888 2024-10-31] (Microsoft Windows -> Microsoft Corporation)

==================== NetSvcs (filtrowane) ===================

(Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)


==================== Jeden miesiąc (utworzone) (Wszystkie) =========

(Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.)

2024-11-03 15:31 - 2024-11-03 15:34 - 000018254 _____ C:\Users\Andrzej\Desktop\FRST.txt
2024-11-03 15:28 - 2024-11-03 15:33 - 000000000 ____D C:\FRST
2024-11-03 15:27 - 2024-11-03 15:27 - 002397696 _____ (Farbar) C:\Users\Andrzej\Desktop\FRST64.exe
2024-10-29 19:30 - 2024-10-29 19:31 - 000000000 ____D C:\Users\Andrzej\Downloads\75
2024-10-29 19:28 - 2024-10-29 19:28 - 055220078 _____ C:\Users\Andrzej\Downloads\75.rar
2024-10-29 17:08 - 2024-10-29 17:08 - 000000000 ____D C:\Users\Andrzej\AppData\Roaming\WinRAR
2024-10-29 17:07 - 2024-10-29 17:08 - 000000000 ____D C:\Users\Andrzej\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2024-10-29 17:07 - 2024-10-29 17:08 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2024-10-29 17:07 - 2024-10-29 17:08 - 000000000 ____D C:\Program Files (x86)\WinRAR
2024-10-29 17:06 - 2024-10-29 17:06 - 003753104 _____ (Alexander Roshal) C:\Users\Andrzej\Desktop\winrar-x32-701pl.exe
2024-10-29 14:56 - 2024-11-03 15:03 - 000000000 ____D C:\Users\Andrzej\AppData\Local\Mozilla Firefox
2024-10-23 21:10 - 2024-10-23 21:10 - 018084864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2024-10-23 21:10 - 2024-10-23 21:10 - 007229440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll
2024-10-23 21:10 - 2024-10-23 21:10 - 006519296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2024-10-23 21:10 - 2024-10-23 21:10 - 004804120 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2024-10-23 21:10 - 2024-10-23 21:10 - 004308992 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll
2024-10-23 21:10 - 2024-10-23 21:10 - 003658752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll
2024-10-23 21:10 - 2024-10-23 21:10 - 003565032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll
2024-10-23 21:10 - 2024-10-23 21:10 - 002521272 _____ (Microsoft Corporation) C:\WINDOWS\system32\msmpeg2vdec.dll
2024-10-23 21:10 - 2024-10-23 21:10 - 002405368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.AppAgent.dll
2024-10-23 21:10 - 2024-10-23 21:10 - 002222080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.ModernAppAgent.dll
2024-10-23 21:10 - 2024-10-23 21:10 - 001646576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Microsoft.Uev.AppAgent.dll
2024-10-23 21:10 - 2024-10-23 21:10 - 001617408 _____ (Microsoft Corporation) C:\WINDOWS\system32\wbengine.exe
2024-10-23 21:10 - 2024-10-23 21:10 - 001441792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mmc.exe
2024-10-23 21:10 - 2024-10-23 21:10 - 001241088 _____ (Microsoft Corporation) C:\WINDOWS\system32\CustomShellHost.exe
2024-10-23 21:10 - 2024-10-23 21:10 - 001220608 _____ (Microsoft Corporation) C:\WINDOWS\system32\AgentService.exe
2024-10-23 21:10 - 2024-10-23 21:10 - 001217536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.CommonBridge.dll
2024-10-23 21:10 - 2024-10-23 21:10 - 001137136 _____ (Microsoft Corporation) C:\WINDOWS\system32\DolbyDecMFT.dll
2024-10-23 21:10 - 2024-10-23 21:10 - 001050112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstsc.exe
2024-10-23 21:10 - 2024-10-23 21:10 - 000990720 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapi.dll
2024-10-23 21:10 - 2024-10-23 21:10 - 000932352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\opengl32.dll
2024-10-23 21:10 - 2024-10-23 21:10 - 000925696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FXSRESM.dll
2024-10-23 21:10 - 2024-10-23 21:10 - 000925696 _____ (Microsoft Corporation) C:\WINDOWS\system32\FXSRESM.dll
2024-10-23 21:10 - 2024-10-23 21:10 - 000804344 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fvevol.sys
2024-10-23 21:10 - 2024-10-23 21:10 - 000768000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fveapi.dll
2024-10-23 21:10 - 2024-10-23 21:10 - 000750080 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppReadiness.dll
2024-10-23 21:10 - 2024-10-23 21:10 - 000737280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msdtcprx.dll
2024-10-23 21:10 - 2024-10-23 21:10 - 000619520 _____ (Microsoft Corporation) C:\WINDOWS\system32\FXSCOMEX.dll
2024-10-23 21:10 - 2024-10-23 21:10 - 000615424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\nshwfp.dll
2024-10-23 21:10 - 2024-10-23 21:10 - 000504832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FXSCOMEX.dll
2024-10-23 21:10 - 2024-10-23 21:10 - 000474624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxdiagn.dll
2024-10-23 21:10 - 2024-10-23 21:10 - 000437248 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapibase.dll
2024-10-23 21:10 - 2024-10-23 21:10 - 000417280 _____ (Microsoft Corporation) C:\WINDOWS\system32\FXSTIFF.dll
2024-10-23 21:10 - 2024-10-23 21:10 - 000366080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fveapibase.dll
2024-10-23 21:10 - 2024-10-23 21:10 - 000326656 _____ (Microsoft Corporation) C:\WINDOWS\system32\FXSAPI.dll
2024-10-23 21:10 - 2024-10-23 21:10 - 000258560 _____ (Microsoft Corporation) C:\WINDOWS\system32\FXST30.dll
2024-10-23 21:10 - 2024-10-23 21:10 - 000253952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FXSAPI.dll
2024-10-23 21:10 - 2024-10-23 21:10 - 000094848 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dumpfve.sys
2024-10-23 21:10 - 2024-10-23 21:10 - 000094208 _____ (Microsoft Corporation) C:\WINDOWS\system32\FXSCOM.dll
2024-10-23 21:10 - 2024-10-23 21:10 - 000081408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xolehlp.dll
2024-10-23 21:10 - 2024-10-23 21:10 - 000077824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FXSCOM.dll
2024-10-23 21:10 - 2024-10-23 21:10 - 000062976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iemigplugin.dll
2024-10-23 21:10 - 2024-10-23 21:10 - 000054784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tsgqec.dll
2024-10-23 21:10 - 2024-10-23 21:10 - 000031744 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinFax.dll
2024-10-23 21:10 - 2024-10-23 21:10 - 000025600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WinFax.dll
2024-10-23 21:10 - 2024-10-23 21:10 - 000012800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msdtcspoffln.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 026269696 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 023451648 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 008380928 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 007734784 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 006164040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 002865152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CertEnroll.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 002767872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys
2024-10-23 21:09 - 2024-10-23 21:09 - 002320232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 001955840 _____ (Microsoft Corporation) C:\WINDOWS\system32\mmc.exe
2024-10-23 21:09 - 2024-10-23 21:09 - 001915392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExplorerFrame.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 001686016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user32.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 001684992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 001660920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxPackaging.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 001633288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d9.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 001575416 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe
2024-10-23 21:09 - 2024-10-23 21:09 - 001389568 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcastdvruserservice.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 001303560 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe
2024-10-23 21:09 - 2024-10-23 21:09 - 001285632 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstsc.exe
2024-10-23 21:09 - 2024-10-23 21:09 - 001167976 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipUp.exe
2024-10-23 21:09 - 2024-10-23 21:09 - 001074688 _____ (Microsoft Corporation) C:\WINDOWS\system32\opengl32.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 001033112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\crypt32.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 000980472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webservices.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 000948224 _____ (Microsoft Corporation) C:\WINDOWS\system32\RecoveryDrive.exe
2024-10-23 21:09 - 2024-10-23 21:09 - 000922624 _____ (Microsoft Corporation) C:\WINDOWS\system32\msdtcprx.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 000886784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tdh.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 000821856 _____ (Microsoft Corporation) C:\WINDOWS\system32\tcblaunch.exe
2024-10-23 21:09 - 2024-10-23 21:09 - 000819712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Management.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 000794608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Services.TargetedContent.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 000790016 _____ (Microsoft Corporation) C:\WINDOWS\system32\nshwfp.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 000782336 _____ (Microsoft Corporation) C:\WINDOWS\system32\wiaservc.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 000765952 _____ (Microsoft Corporation) C:\WINDOWS\system32\sqlsrv32.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 000762368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dmenrollengine.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 000738784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wer.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 000654336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\apphelp.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 000623104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Storage.Search.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 000576512 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxdiagn.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 000546304 _____ (Microsoft Corporation) C:\WINDOWS\system32\IESettingSync.exe
2024-10-23 21:09 - 2024-10-23 21:09 - 000541184 _____ (Microsoft Corporation) C:\WINDOWS\system32\nltest.exe
2024-10-23 21:09 - 2024-10-23 21:09 - 000527360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\daxexec.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 000520704 _____ (Microsoft Corporation) C:\WINDOWS\system32\CPFilters.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 000500224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aepic.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 000412912 _____ (Microsoft Corporation) C:\WINDOWS\system32\SgrmEnclave_secure.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 000403456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgeIso.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 000391112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dmcmnutils.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 000339456 _____ (Microsoft Corporation) C:\WINDOWS\system32\UnifiedConsent.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 000336896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mdmregistration.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 000332800 _____ (Microsoft Corporation) C:\WINDOWS\system32\sti.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 000330240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32k.sys
2024-10-23 21:09 - 2024-10-23 21:09 - 000329728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LockScreenData.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 000295936 _____ C:\WINDOWS\system32\EsclScan.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 000272896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msIso.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 000266752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\pdh.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 000264192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxSip.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 000258560 _____ (Microsoft Corporation) C:\WINDOWS\system32\McpManagementService.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 000253952 _____ (Microsoft Corporation) C:\WINDOWS\system32\DAFESCL.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 000225264 _____ (Microsoft Corporation) C:\WINDOWS\system32\tcbloader.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 000210944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MicrosoftAccountTokenProvider.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 000199680 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Clipboard.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 000194560 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcwutl.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 000184320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\pcaui.exe
2024-10-23 21:09 - 2024-10-23 21:09 - 000178176 _____ C:\WINDOWS\system32\EsclProtocol.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 000175744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\omadmapi.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 000173568 _____ (Microsoft Corporation) C:\WINDOWS\system32\EDPCleanup.exe
2024-10-23 21:09 - 2024-10-23 21:09 - 000170496 _____ (Microsoft Corporation) C:\WINDOWS\system32\EsclWiaDriver.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 000166400 _____ (Microsoft Corporation) C:\WINDOWS\system32\iscsiexe.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 000163840 _____ (Microsoft Corporation) C:\WINDOWS\system32\edpcsp.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 000159744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OneSettingsClient.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 000158208 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbsapi.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 000155136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wscript.exe
2024-10-23 21:09 - 2024-10-23 21:09 - 000153088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cscript.exe
2024-10-23 21:09 - 2024-10-23 21:09 - 000134656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bridge.sys
2024-10-23 21:09 - 2024-10-23 21:09 - 000131072 _____ (Microsoft Corporation) C:\WINDOWS\system32\iscsiwmiv2.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 000119792 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvloader.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 000112128 _____ (Microsoft Corporation) C:\WINDOWS\system32\wiarpc.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 000108544 _____ (Microsoft Corporation) C:\WINDOWS\system32\xolehlp.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 000104448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\pcaui.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 000100320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\winhvr.sys
2024-10-23 21:09 - 2024-10-23 21:09 - 000096248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hvservice.sys
2024-10-23 21:09 - 2024-10-23 21:09 - 000094136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32u.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 000084480 _____ (Microsoft Corporation) C:\WINDOWS\system32\iscsiwmi.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 000082432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\pcacli.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 000079872 _____ (Microsoft Corporation) C:\WINDOWS\system32\iscsidsc.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 000079360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\unenrollhook.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 000075264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\acppage.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 000071168 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsgqec.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 000065536 _____ (Microsoft Corporation) C:\WINDOWS\system32\iemigplugin.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 000060928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mdmlocalmanagement.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 000051200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CertEnrollCtrl.exe
2024-10-23 21:09 - 2024-10-23 21:09 - 000050688 _____ (Microsoft Corporation) C:\WINDOWS\system32\iscsicli.exe
2024-10-23 21:09 - 2024-10-23 21:09 - 000042504 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\winhv.sys
2024-10-23 21:09 - 2024-10-23 21:09 - 000040448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\enrollmentapi.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 000037376 _____ (Microsoft Corporation) C:\WINDOWS\system32\iscsium.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 000022536 _____ (Microsoft Corporation) C:\WINDOWS\system32\kdhvcom.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 000020992 _____ (Microsoft Corporation) C:\WINDOWS\system32\bridgeunattend.exe
2024-10-23 21:09 - 2024-10-23 21:09 - 000018944 _____ (Microsoft Corporation) C:\WINDOWS\system32\wiatrace.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 000015872 _____ (Microsoft Corporation) C:\WINDOWS\system32\msdtcspoffln.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 000013141 _____ C:\WINDOWS\system32\DrtmAuthTxt.wim
2024-10-23 21:09 - 2024-10-23 21:09 - 000012800 _____ (Microsoft Corporation) C:\WINDOWS\system32\iscsied.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 000007680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DMAlertListener.ProxyStub.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\bridgeres.dll
2024-10-23 21:08 - 2024-10-23 21:09 - 006423864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 014744576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 010872312 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2024-10-23 21:08 - 2024-10-23 21:08 - 008047768 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 007824096 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 006970880 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.pcshell.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 006343680 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 005203824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe
2024-10-23 21:08 - 2024-10-23 21:08 - 004844032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 004797440 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputService.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 004751872 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 004669320 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppsvc.exe
2024-10-23 21:08 - 2024-10-23 21:08 - 004013056 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsThresholdAdminFlowUI.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 003894784 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 003815416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2024-10-23 21:08 - 2024-10-23 21:08 - 003807744 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2024-10-23 21:08 - 2024-10-23 21:08 - 003750400 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeContent.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 003582464 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 003352576 _____ (Microsoft Corporation) C:\WINDOWS\system32\CertEnroll.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 003262464 _____ (Microsoft Corporation) C:\WINDOWS\system32\aitstatic.exe
2024-10-23 21:08 - 2024-10-23 21:08 - 003142088 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 003025920 _____ (Microsoft Corporation) C:\WINDOWS\system32\windowsudk.shellcommon.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 003002344 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys
2024-10-23 21:08 - 2024-10-23 21:08 - 002915840 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2024-10-23 21:08 - 2024-10-23 21:08 - 002870368 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 002642432 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 002585328 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 002553344 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 002487808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windowsudk.shellcommon.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 002423808 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExplorerFrame.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 002379776 _____ (Microsoft Corporation) C:\WINDOWS\system32\smartscreen.exe
2024-10-23 21:08 - 2024-10-23 21:08 - 002358496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 002262536 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 002251264 _____ (Microsoft Corporation) C:\WINDOWS\system32\ISM.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 002018760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 001950208 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 001886888 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d9.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 001882624 _____ (Microsoft Corporation) C:\WINDOWS\system32\wevtsvc.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 001862112 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxPackaging.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 001852408 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2024-10-23 21:08 - 2024-10-23 21:08 - 001814016 _____ (Microsoft Corporation) C:\WINDOWS\system32\MoUsoCoreWorker.exe
2024-10-23 21:08 - 2024-10-23 21:08 - 001804288 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 001787248 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 001691648 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 001574440 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2024-10-23 21:08 - 2024-10-23 21:08 - 001574400 _____ (Microsoft Corporation) C:\WINDOWS\system32\aadtb.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 001481704 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys
2024-10-23 21:08 - 2024-10-23 21:08 - 001428232 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2024-10-23 21:08 - 2024-10-23 21:08 - 001410672 _____ (Microsoft Corporation) C:\WINDOWS\system32\crypt32.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 001391048 _____ (Microsoft Corporation) C:\WINDOWS\system32\webservices.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 001246208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aadtb.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 001238752 _____ (Microsoft Corporation) C:\WINDOWS\system32\ShellAppRuntime.exe
2024-10-23 21:08 - 2024-10-23 21:08 - 001230848 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationController.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 001225304 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2024-10-23 21:08 - 2024-10-23 21:08 - 001220616 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHostCommon.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 001208240 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplyTrustOffline.exe
2024-10-23 21:08 - 2024-10-23 21:08 - 001205232 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Services.TargetedContent.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 001193984 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusUpdateHandlers.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 001181184 _____ C:\WINDOWS\system32\MBR2GPT.EXE
2024-10-23 21:08 - 2024-10-23 21:08 - 001141248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Management.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 001128960 _____ (Microsoft Corporation) C:\WINDOWS\system32\tdh.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 001113752 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipSVC.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 001107936 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ClipSp.sys
2024-10-23 21:08 - 2024-10-23 21:08 - 001086976 _____ (Microsoft Corporation) C:\WINDOWS\system32\aadcloudap.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 001040896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 001039368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CloudExperienceHostCommon.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 001015112 _____ (Microsoft Corporation) C:\WINDOWS\system32\TextInputFramework.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 001014784 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasmans.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000995328 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcsvc.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000993376 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgi.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000985056 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000963072 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmenrollengine.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000954104 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000940536 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcasvc.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000930384 _____ (Microsoft Corporation) C:\WINDOWS\system32\wer.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000920048 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000916480 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Gaming.Input.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000897016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys
2024-10-23 21:08 - 2024-10-23 21:08 - 000894464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.CloudStore.Schema.DesktopShell.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000875520 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcntel.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000796576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxgi.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000792064 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Storage.Search.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000791048 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicensingWinRT.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000791040 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.immersiveshell.serviceprovider.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000786944 _____ (Microsoft Corporation) C:\WINDOWS\system32\usercpl.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000783752 _____ (Microsoft Corporation) C:\WINDOWS\system32\kernel32.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000736696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000706048 _____ (Microsoft Corporation) C:\WINDOWS\system32\daxexec.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000700416 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockController.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000658424 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000650752 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepic.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000650288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kernel32.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000644088 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000641680 _____ (Microsoft Corporation) C:\WINDOWS\system32\sechost.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000630784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Gaming.Input.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000628744 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000626176 _____ C:\WINDOWS\system32\aemarebackup.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000608768 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppcext.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000603648 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsEnvironment.Desktop.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000598016 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
2024-10-23 21:08 - 2024-10-23 21:08 - 000593920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\usercpl.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000590848 _____ (Microsoft Corporation) C:\WINDOWS\system32\apphelp.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000582112 _____ (Microsoft Corporation) C:\WINDOWS\system32\AboutSettingsHandlers.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000574976 _____ (Microsoft Corporation) C:\WINDOWS\system32\slui.exe
2024-10-23 21:08 - 2024-10-23 21:08 - 000550912 _____ (Microsoft Corporation) C:\WINDOWS\system32\QuietHours.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000541696 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhext.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000521304 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlows.exe
2024-10-23 21:08 - 2024-10-23 21:08 - 000507376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\advapi32.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000503808 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceEnroller.exe
2024-10-23 21:08 - 2024-10-23 21:08 - 000503792 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\FWPKCLNT.SYS
2024-10-23 21:08 - 2024-10-23 21:08 - 000497664 _____ (Microsoft Corporation) C:\WINDOWS\system32\omadmclient.exe
2024-10-23 21:08 - 2024-10-23 21:08 - 000488448 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockScreenData.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000486696 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmcmnutils.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000485664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sechost.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000478720 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockHostingFramework.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000456184 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys
2024-10-23 21:08 - 2024-10-23 21:08 - 000453632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\uxtheme.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000448000 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgeIso.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000423936 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmregistration.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000391824 _____ (Microsoft Corporation) C:\WINDOWS\system32\GameInputInbox.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000391680 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationControllerPS.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000391168 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppLockerCSP.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000386024 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExecModelClient.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000373760 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmenterprisediagnostics.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000365056 _____ (Microsoft Corporation) C:\WINDOWS\system32\UpdateDeploymentProvider.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000349696 _____ (Microsoft Corporation) C:\WINDOWS\system32\drvinst.exe
2024-10-23 21:08 - 2024-10-23 21:08 - 000341504 _____ (Microsoft Corporation) C:\WINDOWS\system32\msIso.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000327680 _____ (Microsoft Corporation) C:\WINDOWS\system32\DMPushRouterCore.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000326144 _____ (Microsoft Corporation) C:\WINDOWS\system32\netplwiz.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000318464 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxSip.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000316416 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppcomapi.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000315904 _____ (Microsoft Corporation) C:\WINDOWS\system32\pdh.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000305664 _____ (Microsoft Corporation) C:\WINDOWS\system32\directxdatabaseupdater.exe
2024-10-23 21:08 - 2024-10-23 21:08 - 000305152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ahcache.sys
2024-10-23 21:08 - 2024-10-23 21:08 - 000303104 _____ (Microsoft Corporation) C:\WINDOWS\system32\wkssvc.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000295936 _____ (Microsoft Corporation) C:\WINDOWS\system32\coredpus.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000294912 _____ (Microsoft Corporation) C:\WINDOWS\system32\MicrosoftAccountTokenProvider.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000291448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExecModelClient.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000267776 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdd.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000265120 _____ (Microsoft Corporation) C:\WINDOWS\system32\EditionUpgradeManagerObj.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000264192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Win32CompatibilityAppraiserCSP.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000255104 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompatTelRunner.exe
2024-10-23 21:08 - 2024-10-23 21:08 - 000252928 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Gpu.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000251392 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgiadaptercache.exe
2024-10-23 21:08 - 2024-10-23 21:08 - 000250880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msieftp.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000250368 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_BatteryUsage.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000227840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netplwiz.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000225872 _____ (Microsoft Corporation) C:\WINDOWS\system32\omadmapi.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000225792 _____ C:\WINDOWS\system32\CloudIdWxhExtension.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000222720 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcaui.exe
2024-10-23 21:08 - 2024-10-23 21:08 - 000215040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Taskbar.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000211440 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\appid.sys
2024-10-23 21:08 - 2024-10-23 21:08 - 000210944 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXApplicabilityBlob.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000208896 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneSettingsClient.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000190744 _____ (Microsoft Corporation) C:\WINDOWS\system32\EditionUpgradeHelper.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000189952 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmcertinst.exe
2024-10-23 21:08 - 2024-10-23 21:08 - 000185352 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys
2024-10-23 21:08 - 2024-10-23 21:08 - 000180736 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscript.exe
2024-10-23 21:08 - 2024-10-23 21:08 - 000175104 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmmigrator.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000173056 _____ (Microsoft Corporation) C:\WINDOWS\system32\cscript.exe
2024-10-23 21:08 - 2024-10-23 21:08 - 000157696 _____ (Microsoft Corporation) C:\WINDOWS\system32\srpapi.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000153088 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Startup.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000147968 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\luafv.sys
2024-10-23 21:08 - 2024-10-23 21:08 - 000143360 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32appinventorycsp.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000142336 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputLocaleManager.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000138752 _____ (Microsoft Corporation) C:\WINDOWS\system32\CustomInstallExec.exe
2024-10-23 21:08 - 2024-10-23 21:08 - 000136176 _____ (Microsoft Corporation) C:\WINDOWS\system32\offlinelsa.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000135680 _____ (Microsoft Corporation) C:\WINDOWS\system32\omadmprc.exe
2024-10-23 21:08 - 2024-10-23 21:08 - 000133944 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32u.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000133120 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxSysprep.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000132608 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcaui.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000109568 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcacli.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000109560 _____ (Microsoft Corporation) C:\WINDOWS\system32\GameInput.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000107000 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dam.sys
2024-10-23 21:08 - 2024-10-23 21:08 - 000104960 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcadm.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000103424 _____ (Microsoft Corporation) C:\WINDOWS\system32\unenrollhook.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000095744 _____ (Microsoft Corporation) C:\WINDOWS\system32\acppage.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000093176 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceReactivation.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000091136 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcalua.exe
2024-10-23 21:08 - 2024-10-23 21:08 - 000088576 _____ (Microsoft Corporation) C:\WINDOWS\system32\EditBufferTestHook.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000083456 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceCensus.exe
2024-10-23 21:08 - 2024-10-23 21:08 - 000081920 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmlocalmanagement.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000066048 _____ (Microsoft Corporation) C:\WINDOWS\system32\CertEnrollCtrl.exe
2024-10-23 21:08 - 2024-10-23 21:08 - 000055808 _____ (Microsoft Corporation) C:\WINDOWS\system32\enrollmentapi.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000054400 _____ (Microsoft Corporation) C:\WINDOWS\system32\GameInputSvc.exe
2024-10-23 21:08 - 2024-10-23 21:08 - 000049664 _____ (Microsoft Corporation) C:\WINDOWS\system32\XInputUap.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000045056 _____ (Microsoft Corporation) C:\WINDOWS\system32\LaunchWinApp.exe
2024-10-23 21:08 - 2024-10-23 21:08 - 000044032 _____ (Microsoft Corporation) C:\WINDOWS\system32\WordBreakers.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000038400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XInputUap.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000034304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LaunchWinApp.exe
2024-10-23 21:08 - 2024-10-23 21:08 - 000025600 _____ (Microsoft Corporation) C:\WINDOWS\system32\appidtel.exe
2024-10-23 21:08 - 2024-10-23 21:08 - 000018432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\applockerfltr.sys
2024-10-23 21:08 - 2024-10-23 21:08 - 000018424 _____ (Microsoft Corporation) C:\WINDOWS\system32\hal.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000012800 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcaevts.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000010752 _____ (Microsoft Corporation) C:\WINDOWS\system32\DMAlertListener.ProxyStub.dll
2024-10-23 21:07 - 2024-10-23 21:08 - 017531904 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2024-10-23 21:07 - 2024-10-23 21:07 - 005925432 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
2024-10-23 21:07 - 2024-10-23 21:07 - 005815960 _____ (Microsoft Corporation) C:\WINDOWS\system32\StartTileData.dll
2024-10-23 21:07 - 2024-10-23 21:07 - 003964928 _____ (Microsoft Corporation) C:\WINDOWS\system32\tellib.dll
2024-10-23 21:07 - 2024-10-23 21:07 - 002500096 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.CloudStore.dll
2024-10-23 21:07 - 2024-10-23 21:07 - 001820824 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMALFXGFXDSP.dll
2024-10-23 21:07 - 2024-10-23 21:07 - 001580544 _____ (Microsoft Corporation) C:\WINDOWS\system32\SpeechPal.dll
2024-10-23 21:07 - 2024-10-23 21:07 - 000967168 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdiWiFi.sys
2024-10-23 21:07 - 2024-10-23 21:07 - 000887480 _____ (Microsoft Corporation) C:\WINDOWS\system32\pkeyhelper.dll
2024-10-23 21:07 - 2024-10-23 21:07 - 000861696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.CloudStore.Schema.Shell.dll
2024-10-23 21:07 - 2024-10-23 21:07 - 000829952 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudRestoreLauncher.dll
2024-10-23 21:07 - 2024-10-23 21:07 - 000803808 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_StorageSense.dll
2024-10-23 21:07 - 2024-10-23 21:07 - 000758784 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\nwifi.sys
2024-10-23 21:07 - 2024-10-23 21:07 - 000715000 _____ (Microsoft Corporation) C:\WINDOWS\system32\advapi32.dll
2024-10-23 21:07 - 2024-10-23 21:07 - 000475648 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmTasks.dll
2024-10-23 21:07 - 2024-10-23 21:07 - 000473088 _____ (Microsoft Corporation) C:\WINDOWS\system32\fcon.dll
2024-10-23 21:07 - 2024-10-23 21:07 - 000448000 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_WorkAccess.dll
2024-10-23 21:07 - 2024-10-23 21:07 - 000415224 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mssecflt.sys
2024-10-23 21:07 - 2024-10-23 21:07 - 000388608 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\portcls.sys
2024-10-23 21:07 - 2024-10-23 21:07 - 000378880 _____ (Microsoft Corporation) C:\WINDOWS\system32\SysFxUI.dll
2024-10-23 21:07 - 2024-10-23 21:07 - 000312800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdbus.sys
2024-10-23 21:07 - 2024-10-23 21:07 - 000304640 _____ (Microsoft Corporation) C:\WINDOWS\system32\msieftp.dll
2024-10-23 21:07 - 2024-10-23 21:07 - 000273912 _____ (Microsoft Corporation) C:\WINDOWS\system32\clipesu.exe
2024-10-23 21:07 - 2024-10-23 21:07 - 000263680 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcdboot.exe
2024-10-23 21:07 - 2024-10-23 21:07 - 000203232 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dumpsd.sys
2024-10-23 21:07 - 2024-10-23 21:07 - 000180224 _____ (Microsoft Corporation) C:\WINDOWS\system32\UCPDMgr.exe
2024-10-23 21:07 - 2024-10-23 21:07 - 000169440 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vmbus.sys
2024-10-23 21:07 - 2024-10-23 21:07 - 000168960 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDMAgent.exe
2024-10-23 21:07 - 2024-10-23 21:07 - 000162304 _____ C:\WINDOWS\system32\DataStoreCacheDumpTool.exe
2024-10-23 21:07 - 2024-10-23 21:07 - 000152576 _____ (Microsoft Corporation) C:\WINDOWS\system32\RjvMDMConfig.dll
2024-10-23 21:07 - 2024-10-23 21:07 - 000140808 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssecuser.dll
2024-10-23 21:07 - 2024-10-23 21:07 - 000135168 _____ (Microsoft Corporation) C:\WINDOWS\system32\SenseSubAuth.dll
2024-10-23 21:07 - 2024-10-23 21:07 - 000098304 _____ (Microsoft Corporation) C:\WINDOWS\bfsvc.exe
2024-10-23 21:07 - 2024-10-23 21:07 - 000097792 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\drmk.sys
2024-10-23 21:07 - 2024-10-23 21:07 - 000086016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\UCPD.sys
2024-10-23 21:07 - 2024-10-23 21:07 - 000071152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mssecwfp.sys
2024-10-23 21:07 - 2024-10-23 21:07 - 000067080 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssecwfpu.dll
2024-10-23 21:07 - 2024-10-23 21:07 - 000057856 _____ (Microsoft Corporation) C:\WINDOWS\system32\readCloudDataSettings.exe
2024-10-23 21:07 - 2024-10-23 21:07 - 000030656 _____ (Microsoft Corporation) C:\WINDOWS\system32\vmbuspipe.dll
2024-10-23 21:07 - 2024-10-23 21:07 - 000027656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\msseccore.sys
2024-10-23 21:07 - 2024-10-23 21:07 - 000017360 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\drmkaud.sys
2024-10-23 14:18 - 2024-10-23 14:18 - 000000000 ___HD C:\$WinREAgent
2024-10-23 14:18 - 2024-10-10 05:31 - 000497664 _____ (Microsoft Corporation) C:\WINDOWS\system32\poqexec.exe
2024-10-23 14:18 - 2024-10-10 04:57 - 000392704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\poqexec.exe
2024-10-14 15:12 - 2024-10-22 15:19 - 000000000 ____D C:\Users\Andrzej\AppData\Roaming\.minecraft
2024-10-09 13:29 - 2024-10-09 13:29 - 001970176 _____ (Microsoft Corporation) C:\WINDOWS\system32\PeerDistSvc.dll
2024-10-09 13:29 - 2024-10-09 13:29 - 001892352 _____ C:\WINDOWS\system32\libcrypto.dll
2024-10-09 13:29 - 2024-10-09 13:29 - 001090048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpcore.dll
2024-10-09 13:29 - 2024-10-09 13:29 - 000675840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sqlsrv32.dll
2024-10-09 13:29 - 2024-10-09 13:29 - 000594480 _____ (curl, hxxps://curl.se/) C:\WINDOWS\SysWOW64\curl.exe
2024-10-09 13:29 - 2024-10-09 13:29 - 000333824 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasppp.dll
2024-10-09 13:29 - 2024-10-09 13:29 - 000287744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasppp.dll
2024-10-09 13:29 - 2024-10-09 13:29 - 000227840 _____ (Microsoft Corporation) C:\WINDOWS\system32\PeerDist.dll
2024-10-09 13:29 - 2024-10-09 13:29 - 000226304 _____ (Microsoft Corporation) C:\WINDOWS\system32\PeerDistCleaner.dll
2024-10-09 13:29 - 2024-10-09 13:29 - 000197632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tapi32.dll
2024-10-09 13:29 - 2024-10-09 13:29 - 000185344 _____ (Microsoft Corporation) C:\WINDOWS\system32\PeerDistWSDDiscoProv.dll
2024-10-09 13:29 - 2024-10-09 13:29 - 000176640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\IndexedDbLegacy.dll
2024-10-09 13:29 - 2024-10-09 13:29 - 000162304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cic.dll
2024-10-09 13:29 - 2024-10-09 13:29 - 000138752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mmcbase.dll
2024-10-09 13:29 - 2024-10-09 13:29 - 000118784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mmcshext.dll
2024-10-09 13:29 - 2024-10-09 13:29 - 000098304 _____ (Microsoft Corporation) C:\WINDOWS\system32\PeerDistHttpTrans.dll
2024-10-09 13:29 - 2024-10-09 13:29 - 000042496 _____ (Microsoft Corporation) C:\WINDOWS\system32\PeerDistAD.dll
2024-10-09 13:28 - 2024-10-09 13:28 - 002029120 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2024-10-09 13:28 - 2024-10-09 13:28 - 002007424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\refs.sys
2024-10-09 13:28 - 2024-10-09 13:28 - 001894776 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpserverbase.dll
2024-10-09 13:28 - 2024-10-09 13:28 - 001700568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll
2024-10-09 13:28 - 2024-10-09 13:28 - 001641456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpserverbase.dll
2024-10-09 13:28 - 2024-10-09 13:28 - 001638400 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcorets.dll
2024-10-09 13:28 - 2024-10-09 13:28 - 001515008 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpsharercom.dll
2024-10-09 13:28 - 2024-10-09 13:28 - 001307648 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcore.dll
2024-10-09 13:28 - 2024-10-09 13:28 - 001272320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpsharercom.dll
2024-10-09 13:28 - 2024-10-09 13:28 - 001151984 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReAgent.dll
2024-10-09 13:28 - 2024-10-09 13:28 - 001131248 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll
2024-10-09 13:28 - 2024-10-09 13:28 - 001107968 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll
2024-10-09 13:28 - 2024-10-09 13:28 - 001074688 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorSvc.dll
2024-10-09 13:28 - 2024-10-09 13:28 - 000998888 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\refsv1.sys
2024-10-09 13:28 - 2024-10-09 13:28 - 000952304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ReAgent.dll
2024-10-09 13:28 - 2024-10-09 13:28 - 000942592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TpmCoreProvisioning.dll
2024-10-09 13:28 - 2024-10-09 13:28 - 000931928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32full.dll
2024-10-09 13:28 - 2024-10-09 13:28 - 000924168 _____ (Microsoft Corporation) C:\WINDOWS\system32\securekernel.exe
2024-10-09 13:28 - 2024-10-09 13:28 - 000920064 _____ (Microsoft Corporation) C:\WINDOWS\system32\mprddm.dll
2024-10-09 13:28 - 2024-10-09 13:28 - 000864616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctf.dll
2024-10-09 13:28 - 2024-10-09 13:28 - 000842240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll
2024-10-09 13:28 - 2024-10-09 13:28 - 000775168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mprddm.dll
2024-10-09 13:28 - 2024-10-09 13:28 - 000748624 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys
2024-10-09 13:28 - 2024-10-09 13:28 - 000736256 _____ (Microsoft Corporation) C:\WINDOWS\system32\vpnike.dll
2024-10-09 13:28 - 2024-10-09 13:28 - 000715448 _____ C:\WINDOWS\system32\TextShaping.dll
2024-10-09 13:28 - 2024-10-09 13:28 - 000704000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Core.TextInput.dll
2024-10-09 13:28 - 2024-10-09 13:28 - 000676400 _____ (curl, hxxps://curl.se/) C:\WINDOWS\system32\curl.exe
2024-10-09 13:28 - 2024-10-09 13:28 - 000657888 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\afd.sys
2024-10-09 13:28 - 2024-10-09 13:28 - 000654336 _____ (Microsoft Corporation) C:\WINDOWS\system32\ipnathlp.dll
2024-10-09 13:28 - 2024-10-09 13:28 - 000619408 _____ C:\WINDOWS\SysWOW64\TextShaping.dll
2024-10-09 13:28 - 2024-10-09 13:28 - 000601088 _____ (Microsoft Corporation) C:\WINDOWS\system32\schannel.dll
2024-10-09 13:28 - 2024-10-09 13:28 - 000537600 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputSwitch.dll
2024-10-09 13:28 - 2024-10-09 13:28 - 000531968 _____ (Microsoft Corporation) C:\WINDOWS\system32\mprapi.dll
2024-10-09 13:28 - 2024-10-09 13:28 - 000528072 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcryptprimitives.dll
2024-10-09 13:28 - 2024-10-09 13:28 - 000503296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cldflt.sys
2024-10-09 13:28 - 2024-10-09 13:28 - 000495104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\schannel.dll
2024-10-09 13:28 - 2024-10-09 13:28 - 000479232 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpclip.exe
2024-10-09 13:28 - 2024-10-09 13:28 - 000457216 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ks.sys
2024-10-09 13:28 - 2024-10-09 13:28 - 000450424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Classpnp.sys
2024-10-09 13:28 - 2024-10-09 13:28 - 000440320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mprapi.dll
2024-10-09 13:28 - 2024-10-09 13:28 - 000429056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputSwitch.dll
2024-10-09 13:28 - 2024-10-09 13:28 - 000426496 _____ (Microsoft Corporation) C:\WINDOWS\system32\rastls.dll
2024-10-09 13:28 - 2024-10-09 13:28 - 000425992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\clfs.sys
2024-10-09 13:28 - 2024-10-09 13:28 - 000384344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcryptprimitives.dll
2024-10-09 13:28 - 2024-10-09 13:28 - 000364544 _____ (Microsoft Corporation) C:\WINDOWS\system32\BootMenuUX.dll
2024-10-09 13:28 - 2024-10-09 13:28 - 000349696 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncryptprov.dll
2024-10-09 13:28 - 2024-10-09 13:28 - 000343552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rastls.dll
2024-10-09 13:28 - 2024-10-09 13:28 - 000332288 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2024-10-09 13:28 - 2024-10-09 13:28 - 000272896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ncryptprov.dll
2024-10-09 13:28 - 2024-10-09 13:28 - 000252928 _____ (Microsoft Corporation) C:\WINDOWS\system32\tapi32.dll
2024-10-09 13:28 - 2024-10-09 13:28 - 000241152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2024-10-09 13:28 - 2024-10-09 13:28 - 000237056 _____ (Microsoft Corporation) C:\WINDOWS\system32\IndexedDbLegacy.dll
2024-10-09 13:28 - 2024-10-09 13:28 - 000209920 _____ (Microsoft Corporation) C:\WINDOWS\system32\cic.dll
2024-10-09 13:28 - 2024-10-09 13:28 - 000190464 _____ (Microsoft Corporation) C:\WINDOWS\system32\raschap.dll
2024-10-09 13:28 - 2024-10-09 13:28 - 000186368 _____ (Microsoft Corporation) C:\WINDOWS\system32\mmcbase.dll
2024-10-09 13:28 - 2024-10-09 13:28 - 000176640 _____ (Microsoft Corporation) C:\WINDOWS\system32\msdart.dll
2024-10-09 13:28 - 2024-10-09 13:28 - 000161792 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorageUsage.dll
2024-10-09 13:28 - 2024-10-09 13:28 - 000154464 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncrypt.dll
2024-10-09 13:28 - 2024-10-09 13:28 - 000154112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\raschap.dll
2024-10-09 13:28 - 2024-10-09 13:28 - 000152072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tm.sys
2024-10-09 13:28 - 2024-10-09 13:28 - 000150976 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.System.Profile.HardwareId.dll
2024-10-09 13:28 - 2024-10-09 13:28 - 000143872 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecureBootEncodeUEFI.exe
2024-10-09 13:28 - 2024-10-09 13:28 - 000143360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msdart.dll
2024-10-09 13:28 - 2024-10-09 13:28 - 000136192 _____ (Microsoft Corporation) C:\WINDOWS\system32\mmcshext.dll
2024-10-09 13:28 - 2024-10-09 13:28 - 000131328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ncrypt.dll
2024-10-09 13:28 - 2024-10-09 13:28 - 000098160 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpudd.dll
2024-10-09 13:28 - 2024-10-09 13:28 - 000094208 _____ (Microsoft Corporation) C:\WINDOWS\system32\keyiso.dll
2024-10-09 13:28 - 2024-10-09 13:28 - 000067072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\keyiso.dll
2024-10-09 13:28 - 2024-10-09 13:28 - 000043008 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcredentialprovider.dll
2024-10-09 13:28 - 2024-10-09 13:28 - 000038400 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mskssrv.sys
2024-10-09 13:28 - 2024-10-09 13:28 - 000032776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdpvideominiport.sys
2024-10-09 13:28 - 2024-10-09 13:28 - 000003584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TpmCertResources.dll
2024-10-09 13:27 - 2024-10-09 13:27 - 001284608 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll
2024-10-09 13:27 - 2024-10-09 13:27 - 001173504 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmCoreProvisioning.dll
2024-10-09 13:27 - 2024-10-09 13:27 - 000725984 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storport.sys
2024-10-09 13:27 - 2024-10-09 13:27 - 000398336 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\MbbCx.sys
2024-10-09 13:27 - 2024-10-09 13:27 - 000267264 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\winnat.sys
2024-10-09 13:27 - 2024-10-09 13:27 - 000086528 _____ (Microsoft Corporation) C:\WINDOWS\system32\PrinterCleanupTask.dll
2024-10-09 13:27 - 2024-10-09 13:27 - 000046080 _____ (Microsoft Corporation) C:\WINDOWS\system32\spool\prtprocs\x64\winprint.dll
2024-10-09 13:27 - 2024-10-09 13:27 - 000031744 _____ (Microsoft Corporation) C:\WINDOWS\system32\FaxPrinterInstaller.dll
2024-10-09 13:27 - 2024-10-09 13:27 - 000003584 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmCertResources.dll
2024-10-04 11:01 - 2024-10-04 11:01 - 000000000 _____ C:\Users\Andrzej\Downloads\4NhwtzAs.htm

==================== Jeden miesiąc (zmodyfikowane) ==================

(Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.)

2024-11-03 15:21 - 2023-04-08 08:05 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2024-11-03 15:19 - 2024-08-25 08:22 - 000000000 ____D C:\Users\Andrzej\AppData\Local\Malwarebytes
2024-11-03 14:47 - 2023-04-08 08:49 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2024-11-03 10:10 - 2024-08-12 15:38 - 000002448 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2024-11-03 10:10 - 2024-08-12 15:38 - 000002286 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk
2024-11-02 17:43 - 2023-04-08 08:49 - 000000000 ____D C:\WINDOWS\AppReadiness
2024-11-02 17:21 - 2024-08-25 07:36 - 000000000 ____D C:\Program Files\CCleaner
2024-11-01 21:18 - 2023-04-08 08:07 - 000000000 ____D C:\ProgramData\NVIDIA
2024-11-01 20:43 - 2023-04-10 09:35 - 000000000 ____D C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38
2024-11-01 16:31 - 2023-04-08 08:49 - 000000000 ___HD C:\Program Files\WindowsApps
2024-11-01 16:21 - 2023-04-08 08:49 - 000000000 ____D C:\WINDOWS\SystemTemp
2024-11-01 16:21 - 2019-04-09 19:40 - 000002213 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2024-10-31 09:05 - 2023-04-08 08:07 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd
2024-10-31 08:56 - 2023-04-08 08:40 - 000000000 ____D C:\Users\Andrzej\AppData\Local\Packages
2024-10-30 13:16 - 2023-04-08 08:15 - 000000000 ____D C:\Users\Andrzej
2024-10-29 19:29 - 2023-04-10 09:35 - 000000000 ____D C:\WINDOWS\system32\Tasks\Mozilla
2024-10-29 19:27 - 2023-04-10 09:35 - 000001283 _____ C:\Users\Andrzej\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Firefox.lnk
2024-10-29 16:54 - 2023-04-08 08:54 - 000784340 _____ C:\WINDOWS\system32\perfh015.dat
2024-10-29 16:54 - 2023-04-08 08:54 - 000152236 _____ C:\WINDOWS\system32\perfc015.dat
2024-10-29 16:54 - 2023-04-08 08:46 - 000000000 ____D C:\WINDOWS\INF
2024-10-29 16:54 - 2023-04-08 08:25 - 001767984 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2024-10-29 16:50 - 2023-04-08 08:07 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2024-10-29 16:49 - 2020-12-10 09:39 - 000008192 ___SH C:\DumpStack.log.tmp
2024-10-28 17:32 - 2023-04-08 08:04 - 000261280 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2024-10-28 17:31 - 2023-04-08 08:49 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2024-10-28 17:31 - 2023-04-08 08:49 - 000000000 ____D C:\WINDOWS\SystemResources
2024-10-28 17:31 - 2023-04-08 08:49 - 000000000 ____D C:\WINDOWS\system32\setup
2024-10-28 17:31 - 2023-04-08 08:49 - 000000000 ____D C:\WINDOWS\system32\oobe
2024-10-28 17:31 - 2023-04-08 08:49 - 000000000 ____D C:\WINDOWS\system32\Dism
2024-10-28 17:31 - 2023-04-08 08:49 - 000000000 ____D C:\WINDOWS\system32\appraiser
2024-10-28 17:31 - 2023-04-08 08:39 - 000524288 _____ C:\WINDOWS\system32\config\BBI
2024-10-28 17:30 - 2023-04-08 08:49 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2024-10-28 17:30 - 2023-04-08 08:49 - 000000000 ____D C:\WINDOWS\ShellExperiences
2024-10-28 17:30 - 2023-04-08 08:49 - 000000000 ____D C:\WINDOWS\DiagTrack
2024-10-28 17:30 - 2023-04-08 08:49 - 000000000 ____D C:\WINDOWS\bcastdvr
2024-10-28 17:30 - 2023-04-08 08:49 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection
2024-10-28 17:04 - 2023-04-08 09:16 - 000003592 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-1289171223-1415797552-1881391752-1001
2024-10-28 17:04 - 2023-04-08 08:46 - 000003384 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-1289171223-1415797552-1881391752-1001
2024-10-28 17:04 - 2023-04-08 08:15 - 000002433 _____ C:\Users\Andrzej\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2024-10-23 21:17 - 2023-04-08 08:40 - 000000000 ____D C:\WINDOWS\CbsTemp
2024-10-23 21:07 - 2023-04-08 08:09 - 003016192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2024-10-22 15:22 - 2023-12-08 13:56 - 000000000 ____D C:\Users\Andrzej\AppData\Local\CrashDumps
2024-10-21 17:48 - 2024-09-17 13:02 - 000000000 ____D C:\Users\Andrzej\AppData\Roaming\.tlauncher
2024-10-21 17:48 - 2024-09-17 13:00 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TLauncher
2024-10-18 15:40 - 2023-04-08 08:49 - 000000000 ____D C:\WINDOWS\appcompat
2024-10-18 15:38 - 2024-08-25 07:37 - 000000666 _____ C:\WINDOWS\Tasks\CCleanerCrashReporting.job
2024-10-18 09:04 - 2023-10-11 15:23 - 000000000 ____D C:\Program Files\RUXIM
2024-10-17 13:18 - 2023-04-13 18:33 - 000004324 _____ C:\WINDOWS\system32\Tasks\Opera scheduled Autoupdate 1681407227
2024-10-17 13:18 - 2023-04-13 18:33 - 000001396 _____ C:\Users\Andrzej\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Przeglądarka Opera.lnk
2024-10-16 13:55 - 2024-08-25 07:37 - 000003936 _____ C:\WINDOWS\system32\Tasks\CCleaner Update
2024-10-16 13:55 - 2024-08-25 07:37 - 000003382 _____ C:\WINDOWS\system32\Tasks\CCleanerCrashReporting
2024-10-12 07:13 - 2023-04-08 08:55 - 000000000 ____D C:\WINDOWS\system32\OpenSSH
2024-10-11 17:13 - 2024-01-21 13:32 - 000000000 ____D C:\Users\Andrzej\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Roblox
2024-10-11 17:10 - 2024-01-09 09:22 - 000000000 ____D C:\Program Files\Binance
2024-10-10 06:04 - 2023-04-08 08:07 - 000003566 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2024-10-10 06:04 - 2023-04-08 08:07 - 000003442 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2024-10-09 12:37 - 2023-04-08 12:02 - 000000000 ____D C:\WINDOWS\system32\MRT
2024-10-09 12:24 - 2023-04-08 12:02 - 201324920 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe

==================== Pliki w katalogu głównym wybranych folderów ========

2023-07-28 12:04 - 2023-07-28 12:04 - 000000049 _____ () C:\Users\Andrzej\AppData\Roaming\.crystalinst

==================== SigCheck ============================

(Brak automatycznej naprawy dla plików które nie przeszły weryfikacji.)

==================== Koniec  FRST.txt ========================

5 minut temu, androlo napisał(a):

Rezultaty skanowania Farbar Recovery Scan Tool (FRST) (x64) Wersja: 03-11-2024
Uruchomiony przez Andrzej (administrator)  DESKTOP-P0OGB8U (Gigabyte Technology Co., Ltd. G41MT-S2PT) (03-11-2024 15:31:23)
Uruchomiony z C:\Users\Andrzej\Desktop\FRST64.exe
Załadowane profile: Andrzej
Platforma: Microsoft Windows 10 Pro Wersja 22H2 19045.5073 (X64) Język: Polski (Polska)
Domyślna przeglądarka: Edge
Tryb startu: Normal

==================== Procesy (filtrowane) =================

(Załączenie wejścia w fixlist spowoduje zamknięcie procesu. Powiązany plik nie zostanie przeniesiony.)

(C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe ->) (Oracle America, Inc. -> Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exe
(C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe ->) (Malwarebytes Inc. -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\Malwarebytes.exe
(explorer.exe ->) (Google LLC -> Google LLC) C:\Program Files\Google\Chrome\Application\chrome.exe <20>
(explorer.exe ->) (Opera Norway AS -> Opera Software) C:\Users\Andrzej\AppData\Local\Programs\Opera\assistant\browser_assistant.exe <2>
(explorer.exe ->) (ResolveDevOps Limited -> ResolveDevOps Limited) C:\Users\Andrzej\AppData\Roaming\ProductAuthenticationService\pas.exe
(Gen Digital Inc. -> Piriform Software Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe <6>
(Oracle America, Inc. -> Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(services.exe ->) (Malwarebytes Inc. -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24090.11-0\MpDefenderCoreService.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24090.11-0\MsMpEng.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24090.11-0\NisSrv.exe
(services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe <2>
(svchost.exe ->) (24803D75-212C-471A-BC57-9EF86AB91435 -> ) C:\Program Files\WindowsApps\5319275A.WhatsAppDesktop_2.2443.7.0_x64__cv1g1gvanyjgm\WhatsApp.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Users\Andrzej\AppData\Local\Microsoft\OneDrive\24.196.0929.0005\FileCoAuth.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <3>
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MoUsoCoreWorker.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\SysWOW64\dllhost.exe
(Telegram FZ-LLC -> Telegram FZ-LLC) C:\Windows.old\Users\Andrzej\AppData\Roaming\Telegram Desktop\Telegram.exe

==================== Rejestr (filtrowane) ===================

(Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.)

HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [334896 2015-06-08] (Oracle America, Inc. -> Oracle Corporation)
HKU\S-1-5-21-1289171223-1415797552-1881391752-1001\...\Run: [vidnotifier.exe] => C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\vidnotifier\vidnotifier.exe (Brak pliku)
HKU\S-1-5-21-1289171223-1415797552-1881391752-1001\...\Run: [MicrosoftEdgeAutoLaunch_A52C360296CF425025DAAC4E20097A1E] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start [3856424 2024-10-31] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-1289171223-1415797552-1881391752-1001\...\Run: [Opera Browser Assistant] => C:\Users\Andrzej\AppData\Local\Programs\Opera\assistant\browser_assistant.exe [4049312 2024-07-18] (Opera Norway AS -> Opera Software)
HKU\S-1-5-21-1289171223-1415797552-1881391752-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [45227312 2024-10-15] (Gen Digital Inc. -> Piriform Software Ltd)
HKU\S-1-5-21-1289171223-1415797552-1881391752-1001\...\Run: [SteamServerBrowser] => C:\Users\Andrzej\AppData\Roaming\SteamServerBrowser\SteamServerBrowser.exe [289304 2024-09-12] (Lyrha Software Technologies Inc. -> )
HKU\S-1-5-21-1289171223-1415797552-1881391752-1001\...\Run: [ProductAuthenticationService] => C:\Users\Andrzej\AppData\Roaming\ProductAuthenticationService\pas.exe [1004072 2019-05-07] (ResolveDevOps Limited -> ResolveDevOps Limited) <==== UWAGA
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\130.0.6723.92\Installer\chrmstp.exe [2024-11-01] (Google LLC -> Google LLC)
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Ograniczenia <==== UWAGA

==================== Zaplanowane zadania (filtrowane) =================

(Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)

Task: {CDAADDCA-5D30-4478-ADD4-CA6E2BD17EBD} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [829408 2024-10-15] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {DE5A6AFF-0108-4A28-9721-CAEC1E122429} - System32\Tasks\CCleanerCrashReporting => C:\Program Files\CCleaner\CCleanerBugReport.exe [5983536 2024-10-15] (Gen Digital Inc. -> Gen Digital Inc.) -> --product 90 --send dumps|report --path "C:\Program Files\CCleaner\LOG" --programpath "C:\Program Files\CCleaner" --guid "b9da3580-5c89-4519-a1a6-e816d3f9afdb" --version "6.29.11342" --silent
Task: {41BE9163-0E48-4629-A7FD-A6752CBDCAC5} - System32\Tasks\CCleanerSkipUAC - Andrzej => C:\Program Files\CCleaner\CCleaner.exe [39090480 2024-10-15] (Gen Digital Inc. -> Piriform Software Ltd)
Task: {EAFE9267-A972-4BC3-9FA1-8EC0637A72D9} - System32\Tasks\GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem131.0.6776.0{6B35148C-F917-403C-9BFC-6CE2B5C48E38} => C:\Program Files (x86)\Google\GoogleUpdater\131.0.6776.0\updater.exe [5507168 2024-10-14] (Google LLC -> Google LLC)
Task: {A980043B-D6D4-4445-B315-85D777A09213} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24090.11-0\MpCmdRun.exe [1687360 2024-10-31] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {51143FED-D372-49D6-A819-ED6ECF2BB8A5} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24090.11-0\MpCmdRun.exe [1687360 2024-10-31] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {BFED2E85-F5A8-45B5-B8E8-85AB279BB79B} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24090.11-0\MpCmdRun.exe [1687360 2024-10-31] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {2DB36FEF-92BC-4EDC-B8B4-3F2842C96D6B} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24090.11-0\MpCmdRun.exe [1687360 2024-10-31] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {8D895BB7-F7FA-4EE0-BF68-4207AB7F5BC1} - System32\Tasks\Mozilla\Firefox Background Update EBD1FE2FECB66480 => C:\Users\Andrzej\AppData\Local\Mozilla Firefox\firefox.exe [671808 2024-10-29] (Mozilla Corporation -> Mozilla Corporation) -> C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\EBD1FE2FECB66480\--MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\EBD1FE2FECB66480\backgroundupdate.moz_log --backgroundtask background (dane wartości zawierają 6 znaków więcej).
Task: {820885AA-C06F-434E-B236-368E1B1A38A8} - System32\Tasks\Mozilla\Firefox Background Update S-1-5-21-1289171223-1415797552-1881391752-1001 EBD1FE2FECB66480 => C:\Users\Andrzej\AppData\Local\Mozilla Firefox\firefox.exe [671808 2024-10-29] (Mozilla Corporation -> Mozilla Corporation) -> C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\EBD1FE2FECB66480\--MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\EBD1FE2FECB66480\backgroundupdate.moz_log --backgroundtask background (dane wartości zawierają 6 znaków więcej).
Task: {2EB8C59A-C524-45D6-803F-C5ABA27E802A} - System32\Tasks\Mozilla\Firefox Default Browser Agent EBD1FE2FECB66480 => C:\Users\Andrzej\AppData\Local\Mozilla Firefox\default-browser-agent.exe [34368 2024-10-29] (Mozilla Corporation -> Mozilla Foundation)
Task: {04F2AA17-BB37-43EE-81F2-820C952EDC1E} - System32\Tasks\Opera scheduled assistant Autoupdate 1724046931 => C:\Users\Andrzej\AppData\Local\Programs\Opera\launcher.exe [1573784 2024-10-17] (Opera Norway AS -> Opera Software) -> --scheduledautoupdate --component-name=assistant --component-path="C:\Users\Andrzej\AppData\Local\Programs\Opera\assistant" $(Arg0)
Task: {0CDADB7D-D876-4EBB-85BF-9F65F57823D8} - System32\Tasks\Opera scheduled Autoupdate 1681407227 => C:\Users\Andrzej\AppData\Local\Programs\Opera\autoupdate\opera_autoupdate.exe [5812120 2024-10-15] (Opera Norway AS -> Opera Software)

(Załączenie wejścia w fixlist spowoduje przesunięcie pliku zadania (.job). Plik uruchamiany docelowo przez zadanie nie zostanie przeniesiony.)

Task: C:\WINDOWS\Tasks\CCleanerCrashReporting.job => C:\Program Files\CCleaner\CCleanerBugReport.exe

==================== Internet (filtrowane) ====================

(Załączenie wejścia w fixlist, w przypadku gdy jest to obiekt rejestru, spowoduje usunięcie go z rejestru lub przywrócenie jego domyślnej postaci.)

Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{aa00c091-22af-4907-9b7b-3335604d73c5}: [DhcpNameServer] 192.168.0.1

Edge: 
=======
Edge DefaultProfile: Default
Edge Profile: C:\Users\Andrzej\AppData\Local\Microsoft\Edge\User Data\Default [2024-11-03]
Edge Notifications: Default -> hxxps://web.telegram.org
Edge Extension: (Keplr) - C:\Users\Andrzej\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\dmkamcknogkgcdfhhbddcghachkejeap [2024-11-02]
Edge Extension: (Dokumenty Google offline) - C:\Users\Andrzej\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2024-10-17]
Edge Extension: (BTRoblox - Making Roblox Better) - C:\Users\Andrzej\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\hbkpclpemjeibhioopcebchdmohaieln [2024-10-14]
Edge Extension: (Edge relevant text changes) - C:\Users\Andrzej\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2024-01-24]

FireFox:
========
FF DefaultProfile: ltaqy3of.default
FF ProfilePath: C:\Users\Andrzej\AppData\Roaming\Mozilla\Firefox\Profiles\ltaqy3of.default [2023-04-10]
FF ProfilePath: C:\Users\Andrzej\AppData\Roaming\Mozilla\Firefox\Profiles\aq8z5sji.default-release [2024-11-03]
FF Notifications: Mozilla\Firefox\Profiles\aq8z5sji.default-release -> hxxps://www.51015kids.eu; hxxps://www.urzadzamy.pl; hxxps://natemat.pl; hxxps://www.oglaszamy24.pl; hxxps://erli.pl; hxxps://homla.com.pl; hxxps://www.weranda.pl; hxxps://www.ceneo.pl; hxxps://www.onet.pl; hxxps://www.se.pl; hxxps://styl.fm; hxxps://johndog.pl; hxxps://slaskie.travel; hxxps://rblx.land; hxxps://pl.pinterest.com; hxxps://www.mjakmama24.pl; hxxps://www.eska.pl; hxxps://czytam.pl; hxxps://wamiz.pl; hxxps://www.psy.pl; hxxps://zrzutka.pl; hxxps://wielun.naszemiasto.pl; hxxps://strongwhale.xyz; hxxps://butydlamalucha.pl; hxxps://40luckybirdcasino.com; hxxps://www.wefindanswers.co; hxxps://nutridome.pl; hxxps://konkursy.radiozet.pl; hxxps://bizzoocasino.com; hxxps://allrightcasino61.com; hxxps://nxejt.darkdepthdriller.top; hxxps://20bettin.com; hxxps://polki.pl; hxxps://casino80.com; hxxps://portalparentingowy.pl; hxxps://www.aasapolska.pl; hxxps://www.smartsearchresults.com; hxxps://www.filmweb.pl; hxxps://kb.pl; hxxps://prawdziwehistorie.kobieta.pl; hxxps://laboratoriumpanidomu.pl; hxxps://reporteryoung.pl; hxxps://mokida.com; hxxps://www.sport-shop.pl; hxxps://eobuwie.com.pl; hxxps://wiadomosci.wp.pl; hxxps://mamineskarby.pl; hxxps://www.gloskultury.pl; hxxps://www.sportrabat.pl; hxxps://hitnspin1004.com; hxxps://vod.tvp.pl; hxxps://twojahistoria.pl; hxxps://www.fakt.pl; hxxps://pl.coccodrillo.eu; hxxps://www.limango.pl; hxxps://endo.pl; hxxps://born2be.pl
FF Plugin: @java.com/DTPlugin,version=11.51.2 -> C:\Program Files\Java\jre1.8.0_51\bin\dtplugin\npDeployJava1.dll [2024-09-17] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.51.2 -> C:\Program Files\Java\jre1.8.0_51\bin\plugin2\npjp2.dll [2024-09-17] (Oracle America, Inc. -> Oracle Corporation)

Chrome: 
=======
CHR Profile: C:\Users\Andrzej\AppData\Local\Google\Chrome\User Data\Default [2024-11-03]
CHR Notifications: Default -> hxxps://account.skrill.com; hxxps://smakosze.pl; hxxps://szybkagotowka.pl; hxxps://www.aasapolska.pl
CHR Extension: (RoPro - popraw swoje doznanie z Roblox) - C:\Users\Andrzej\AppData\Local\Google\Chrome\User Data\Default\Extensions\adbacgifemdbhdkfppmeilbgppmhaobf [2024-10-19]
CHR Extension: (Compass Wallet for Sei) - C:\Users\Andrzej\AppData\Local\Google\Chrome\User Data\Default\Extensions\anokgmphncpekkhclmingpimjmcooifb [2024-10-27]
CHR Extension: (Keplr) - C:\Users\Andrzej\AppData\Local\Google\Chrome\User Data\Default\Extensions\dmkamcknogkgcdfhhbddcghachkejeap [2024-11-02]
CHR Extension: (BNB Chain Wallet) - C:\Users\Andrzej\AppData\Local\Google\Chrome\User Data\Default\Extensions\fhbohimaelbohpjbbldcngcnapndodjp [2024-07-19]
CHR Extension: (MyTonWallet · My TON Wallet) - C:\Users\Andrzej\AppData\Local\Google\Chrome\User Data\Default\Extensions\fldfpgipfncgndfolcbkdeeknbbbnhcc [2024-11-01]
CHR Extension: (StarKey Wallet - The official wallet for Supra) - C:\Users\Andrzej\AppData\Local\Google\Chrome\User Data\Default\Extensions\hcjhpkgbmechpabifbggldplacolbkoh [2024-10-31]
CHR Extension: (TronLink) - C:\Users\Andrzej\AppData\Local\Google\Chrome\User Data\Default\Extensions\ibnejdfjmmkpcnlpebklmnkoeoihofec [2024-10-12]
CHR Extension: (ZilPay) - C:\Users\Andrzej\AppData\Local\Google\Chrome\User Data\Default\Extensions\klnaejjgbibmhlephnhpmaofohgkpgkd [2024-07-19]
CHR Extension: (MetaMask) - C:\Users\Andrzej\AppData\Local\Google\Chrome\User Data\Default\Extensions\nkbihfbeogaeaoehlefnkodbefgpgknn [2024-11-02]
CHR Extension: (Płatności w sklepie Chrome Web Store) - C:\Users\Andrzej\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2023-04-08]
CHR Profile: C:\Users\Andrzej\AppData\Local\Google\Chrome\User Data\System Profile [2023-09-27]

Opera: 
=======
OPR DefaultProfile: Default

==================== Usługi (filtrowane) ===================

(Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)

S3 CCleanerPerformanceOptimizerService; C:\Program Files\CCleaner\CCleanerPerformanceOptimizerService.exe [1087792 2024-10-15] (Gen Digital Inc. -> Piriform Software Ltd)
R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe [9258144 2024-11-03] (Malwarebytes Inc. -> Malwarebytes)
S3 MBVpnTunnelService; C:\Program Files\Malwarebytes\Anti-Malware\MBVpnTunnelService.exe [3073888 2024-08-25] (Malwarebytes Inc. -> Malwarebytes)
R2 MDCoreSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24090.11-0\MpDefenderCoreService.exe [1447680 2024-10-31] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [559368 2024-10-23] (Microsoft Windows Publisher -> Microsoft Corporation)
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24090.11-0\NisSrv.exe [3199672 2024-10-31] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24090.11-0\MsMpEng.exe [141952 2024-10-31] (Microsoft Windows Publisher -> Microsoft Corporation)

===================== Sterowniki (filtrowane) ===================

(Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)

S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [280064 2022-10-12] (Microsoft Corporation) [Brak podpisu cyfrowego]
S3 BthHFEnum; C:\WINDOWS\System32\drivers\bthhfenum.sys [147968 2022-04-14] (Microsoft Corporation) [Brak podpisu cyfrowego]
R2 mbamchameleon; C:\WINDOWS\System32\Drivers\MbamChameleon.sys [231504 2024-09-02] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes)
S0 MbamElam; C:\WINDOWS\System32\DRIVERS\MbamElam.sys [21480 2024-08-25] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes)
R3 MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [239568 2024-08-25] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes)
S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [22104 2024-10-31] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [606624 2024-10-31] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [105888 2024-10-31] (Microsoft Windows -> Microsoft Corporation)

==================== NetSvcs (filtrowane) ===================

(Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)


==================== Jeden miesiąc (utworzone) (Wszystkie) =========

(Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.)

2024-11-03 15:31 - 2024-11-03 15:34 - 000018254 _____ C:\Users\Andrzej\Desktop\FRST.txt
2024-11-03 15:28 - 2024-11-03 15:33 - 000000000 ____D C:\FRST
2024-11-03 15:27 - 2024-11-03 15:27 - 002397696 _____ (Farbar) C:\Users\Andrzej\Desktop\FRST64.exe
2024-10-29 19:30 - 2024-10-29 19:31 - 000000000 ____D C:\Users\Andrzej\Downloads\75
2024-10-29 19:28 - 2024-10-29 19:28 - 055220078 _____ C:\Users\Andrzej\Downloads\75.rar
2024-10-29 17:08 - 2024-10-29 17:08 - 000000000 ____D C:\Users\Andrzej\AppData\Roaming\WinRAR
2024-10-29 17:07 - 2024-10-29 17:08 - 000000000 ____D C:\Users\Andrzej\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2024-10-29 17:07 - 2024-10-29 17:08 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2024-10-29 17:07 - 2024-10-29 17:08 - 000000000 ____D C:\Program Files (x86)\WinRAR
2024-10-29 17:06 - 2024-10-29 17:06 - 003753104 _____ (Alexander Roshal) C:\Users\Andrzej\Desktop\winrar-x32-701pl.exe
2024-10-29 14:56 - 2024-11-03 15:03 - 000000000 ____D C:\Users\Andrzej\AppData\Local\Mozilla Firefox
2024-10-23 21:10 - 2024-10-23 21:10 - 018084864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2024-10-23 21:10 - 2024-10-23 21:10 - 007229440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll
2024-10-23 21:10 - 2024-10-23 21:10 - 006519296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2024-10-23 21:10 - 2024-10-23 21:10 - 004804120 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2024-10-23 21:10 - 2024-10-23 21:10 - 004308992 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll
2024-10-23 21:10 - 2024-10-23 21:10 - 003658752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll
2024-10-23 21:10 - 2024-10-23 21:10 - 003565032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll
2024-10-23 21:10 - 2024-10-23 21:10 - 002521272 _____ (Microsoft Corporation) C:\WINDOWS\system32\msmpeg2vdec.dll
2024-10-23 21:10 - 2024-10-23 21:10 - 002405368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.AppAgent.dll
2024-10-23 21:10 - 2024-10-23 21:10 - 002222080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.ModernAppAgent.dll
2024-10-23 21:10 - 2024-10-23 21:10 - 001646576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Microsoft.Uev.AppAgent.dll
2024-10-23 21:10 - 2024-10-23 21:10 - 001617408 _____ (Microsoft Corporation) C:\WINDOWS\system32\wbengine.exe
2024-10-23 21:10 - 2024-10-23 21:10 - 001441792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mmc.exe
2024-10-23 21:10 - 2024-10-23 21:10 - 001241088 _____ (Microsoft Corporation) C:\WINDOWS\system32\CustomShellHost.exe
2024-10-23 21:10 - 2024-10-23 21:10 - 001220608 _____ (Microsoft Corporation) C:\WINDOWS\system32\AgentService.exe
2024-10-23 21:10 - 2024-10-23 21:10 - 001217536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.CommonBridge.dll
2024-10-23 21:10 - 2024-10-23 21:10 - 001137136 _____ (Microsoft Corporation) C:\WINDOWS\system32\DolbyDecMFT.dll
2024-10-23 21:10 - 2024-10-23 21:10 - 001050112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstsc.exe
2024-10-23 21:10 - 2024-10-23 21:10 - 000990720 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapi.dll
2024-10-23 21:10 - 2024-10-23 21:10 - 000932352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\opengl32.dll
2024-10-23 21:10 - 2024-10-23 21:10 - 000925696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FXSRESM.dll
2024-10-23 21:10 - 2024-10-23 21:10 - 000925696 _____ (Microsoft Corporation) C:\WINDOWS\system32\FXSRESM.dll
2024-10-23 21:10 - 2024-10-23 21:10 - 000804344 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fvevol.sys
2024-10-23 21:10 - 2024-10-23 21:10 - 000768000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fveapi.dll
2024-10-23 21:10 - 2024-10-23 21:10 - 000750080 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppReadiness.dll
2024-10-23 21:10 - 2024-10-23 21:10 - 000737280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msdtcprx.dll
2024-10-23 21:10 - 2024-10-23 21:10 - 000619520 _____ (Microsoft Corporation) C:\WINDOWS\system32\FXSCOMEX.dll
2024-10-23 21:10 - 2024-10-23 21:10 - 000615424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\nshwfp.dll
2024-10-23 21:10 - 2024-10-23 21:10 - 000504832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FXSCOMEX.dll
2024-10-23 21:10 - 2024-10-23 21:10 - 000474624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxdiagn.dll
2024-10-23 21:10 - 2024-10-23 21:10 - 000437248 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapibase.dll
2024-10-23 21:10 - 2024-10-23 21:10 - 000417280 _____ (Microsoft Corporation) C:\WINDOWS\system32\FXSTIFF.dll
2024-10-23 21:10 - 2024-10-23 21:10 - 000366080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fveapibase.dll
2024-10-23 21:10 - 2024-10-23 21:10 - 000326656 _____ (Microsoft Corporation) C:\WINDOWS\system32\FXSAPI.dll
2024-10-23 21:10 - 2024-10-23 21:10 - 000258560 _____ (Microsoft Corporation) C:\WINDOWS\system32\FXST30.dll
2024-10-23 21:10 - 2024-10-23 21:10 - 000253952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FXSAPI.dll
2024-10-23 21:10 - 2024-10-23 21:10 - 000094848 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dumpfve.sys
2024-10-23 21:10 - 2024-10-23 21:10 - 000094208 _____ (Microsoft Corporation) C:\WINDOWS\system32\FXSCOM.dll
2024-10-23 21:10 - 2024-10-23 21:10 - 000081408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xolehlp.dll
2024-10-23 21:10 - 2024-10-23 21:10 - 000077824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FXSCOM.dll
2024-10-23 21:10 - 2024-10-23 21:10 - 000062976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iemigplugin.dll
2024-10-23 21:10 - 2024-10-23 21:10 - 000054784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tsgqec.dll
2024-10-23 21:10 - 2024-10-23 21:10 - 000031744 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinFax.dll
2024-10-23 21:10 - 2024-10-23 21:10 - 000025600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WinFax.dll
2024-10-23 21:10 - 2024-10-23 21:10 - 000012800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msdtcspoffln.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 026269696 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 023451648 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 008380928 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 007734784 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 006164040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 002865152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CertEnroll.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 002767872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys
2024-10-23 21:09 - 2024-10-23 21:09 - 002320232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 001955840 _____ (Microsoft Corporation) C:\WINDOWS\system32\mmc.exe
2024-10-23 21:09 - 2024-10-23 21:09 - 001915392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExplorerFrame.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 001686016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user32.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 001684992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 001660920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxPackaging.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 001633288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d9.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 001575416 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe
2024-10-23 21:09 - 2024-10-23 21:09 - 001389568 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcastdvruserservice.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 001303560 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe
2024-10-23 21:09 - 2024-10-23 21:09 - 001285632 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstsc.exe
2024-10-23 21:09 - 2024-10-23 21:09 - 001167976 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipUp.exe
2024-10-23 21:09 - 2024-10-23 21:09 - 001074688 _____ (Microsoft Corporation) C:\WINDOWS\system32\opengl32.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 001033112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\crypt32.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 000980472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webservices.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 000948224 _____ (Microsoft Corporation) C:\WINDOWS\system32\RecoveryDrive.exe
2024-10-23 21:09 - 2024-10-23 21:09 - 000922624 _____ (Microsoft Corporation) C:\WINDOWS\system32\msdtcprx.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 000886784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tdh.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 000821856 _____ (Microsoft Corporation) C:\WINDOWS\system32\tcblaunch.exe
2024-10-23 21:09 - 2024-10-23 21:09 - 000819712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Management.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 000794608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Services.TargetedContent.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 000790016 _____ (Microsoft Corporation) C:\WINDOWS\system32\nshwfp.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 000782336 _____ (Microsoft Corporation) C:\WINDOWS\system32\wiaservc.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 000765952 _____ (Microsoft Corporation) C:\WINDOWS\system32\sqlsrv32.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 000762368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dmenrollengine.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 000738784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wer.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 000654336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\apphelp.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 000623104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Storage.Search.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 000576512 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxdiagn.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 000546304 _____ (Microsoft Corporation) C:\WINDOWS\system32\IESettingSync.exe
2024-10-23 21:09 - 2024-10-23 21:09 - 000541184 _____ (Microsoft Corporation) C:\WINDOWS\system32\nltest.exe
2024-10-23 21:09 - 2024-10-23 21:09 - 000527360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\daxexec.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 000520704 _____ (Microsoft Corporation) C:\WINDOWS\system32\CPFilters.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 000500224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aepic.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 000412912 _____ (Microsoft Corporation) C:\WINDOWS\system32\SgrmEnclave_secure.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 000403456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgeIso.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 000391112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dmcmnutils.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 000339456 _____ (Microsoft Corporation) C:\WINDOWS\system32\UnifiedConsent.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 000336896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mdmregistration.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 000332800 _____ (Microsoft Corporation) C:\WINDOWS\system32\sti.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 000330240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32k.sys
2024-10-23 21:09 - 2024-10-23 21:09 - 000329728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LockScreenData.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 000295936 _____ C:\WINDOWS\system32\EsclScan.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 000272896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msIso.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 000266752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\pdh.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 000264192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxSip.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 000258560 _____ (Microsoft Corporation) C:\WINDOWS\system32\McpManagementService.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 000253952 _____ (Microsoft Corporation) C:\WINDOWS\system32\DAFESCL.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 000225264 _____ (Microsoft Corporation) C:\WINDOWS\system32\tcbloader.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 000210944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MicrosoftAccountTokenProvider.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 000199680 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Clipboard.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 000194560 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcwutl.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 000184320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\pcaui.exe
2024-10-23 21:09 - 2024-10-23 21:09 - 000178176 _____ C:\WINDOWS\system32\EsclProtocol.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 000175744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\omadmapi.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 000173568 _____ (Microsoft Corporation) C:\WINDOWS\system32\EDPCleanup.exe
2024-10-23 21:09 - 2024-10-23 21:09 - 000170496 _____ (Microsoft Corporation) C:\WINDOWS\system32\EsclWiaDriver.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 000166400 _____ (Microsoft Corporation) C:\WINDOWS\system32\iscsiexe.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 000163840 _____ (Microsoft Corporation) C:\WINDOWS\system32\edpcsp.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 000159744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OneSettingsClient.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 000158208 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbsapi.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 000155136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wscript.exe
2024-10-23 21:09 - 2024-10-23 21:09 - 000153088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cscript.exe
2024-10-23 21:09 - 2024-10-23 21:09 - 000134656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bridge.sys
2024-10-23 21:09 - 2024-10-23 21:09 - 000131072 _____ (Microsoft Corporation) C:\WINDOWS\system32\iscsiwmiv2.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 000119792 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvloader.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 000112128 _____ (Microsoft Corporation) C:\WINDOWS\system32\wiarpc.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 000108544 _____ (Microsoft Corporation) C:\WINDOWS\system32\xolehlp.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 000104448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\pcaui.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 000100320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\winhvr.sys
2024-10-23 21:09 - 2024-10-23 21:09 - 000096248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hvservice.sys
2024-10-23 21:09 - 2024-10-23 21:09 - 000094136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32u.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 000084480 _____ (Microsoft Corporation) C:\WINDOWS\system32\iscsiwmi.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 000082432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\pcacli.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 000079872 _____ (Microsoft Corporation) C:\WINDOWS\system32\iscsidsc.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 000079360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\unenrollhook.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 000075264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\acppage.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 000071168 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsgqec.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 000065536 _____ (Microsoft Corporation) C:\WINDOWS\system32\iemigplugin.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 000060928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mdmlocalmanagement.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 000051200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CertEnrollCtrl.exe
2024-10-23 21:09 - 2024-10-23 21:09 - 000050688 _____ (Microsoft Corporation) C:\WINDOWS\system32\iscsicli.exe
2024-10-23 21:09 - 2024-10-23 21:09 - 000042504 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\winhv.sys
2024-10-23 21:09 - 2024-10-23 21:09 - 000040448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\enrollmentapi.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 000037376 _____ (Microsoft Corporation) C:\WINDOWS\system32\iscsium.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 000022536 _____ (Microsoft Corporation) C:\WINDOWS\system32\kdhvcom.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 000020992 _____ (Microsoft Corporation) C:\WINDOWS\system32\bridgeunattend.exe
2024-10-23 21:09 - 2024-10-23 21:09 - 000018944 _____ (Microsoft Corporation) C:\WINDOWS\system32\wiatrace.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 000015872 _____ (Microsoft Corporation) C:\WINDOWS\system32\msdtcspoffln.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 000013141 _____ C:\WINDOWS\system32\DrtmAuthTxt.wim
2024-10-23 21:09 - 2024-10-23 21:09 - 000012800 _____ (Microsoft Corporation) C:\WINDOWS\system32\iscsied.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 000007680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DMAlertListener.ProxyStub.dll
2024-10-23 21:09 - 2024-10-23 21:09 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\bridgeres.dll
2024-10-23 21:08 - 2024-10-23 21:09 - 006423864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 014744576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 010872312 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2024-10-23 21:08 - 2024-10-23 21:08 - 008047768 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 007824096 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 006970880 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.pcshell.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 006343680 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 005203824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe
2024-10-23 21:08 - 2024-10-23 21:08 - 004844032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 004797440 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputService.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 004751872 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 004669320 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppsvc.exe
2024-10-23 21:08 - 2024-10-23 21:08 - 004013056 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsThresholdAdminFlowUI.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 003894784 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 003815416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2024-10-23 21:08 - 2024-10-23 21:08 - 003807744 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2024-10-23 21:08 - 2024-10-23 21:08 - 003750400 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeContent.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 003582464 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 003352576 _____ (Microsoft Corporation) C:\WINDOWS\system32\CertEnroll.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 003262464 _____ (Microsoft Corporation) C:\WINDOWS\system32\aitstatic.exe
2024-10-23 21:08 - 2024-10-23 21:08 - 003142088 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 003025920 _____ (Microsoft Corporation) C:\WINDOWS\system32\windowsudk.shellcommon.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 003002344 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys
2024-10-23 21:08 - 2024-10-23 21:08 - 002915840 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2024-10-23 21:08 - 2024-10-23 21:08 - 002870368 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 002642432 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 002585328 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 002553344 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 002487808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windowsudk.shellcommon.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 002423808 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExplorerFrame.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 002379776 _____ (Microsoft Corporation) C:\WINDOWS\system32\smartscreen.exe
2024-10-23 21:08 - 2024-10-23 21:08 - 002358496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 002262536 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 002251264 _____ (Microsoft Corporation) C:\WINDOWS\system32\ISM.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 002018760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 001950208 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 001886888 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d9.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 001882624 _____ (Microsoft Corporation) C:\WINDOWS\system32\wevtsvc.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 001862112 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxPackaging.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 001852408 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2024-10-23 21:08 - 2024-10-23 21:08 - 001814016 _____ (Microsoft Corporation) C:\WINDOWS\system32\MoUsoCoreWorker.exe
2024-10-23 21:08 - 2024-10-23 21:08 - 001804288 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 001787248 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 001691648 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 001574440 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2024-10-23 21:08 - 2024-10-23 21:08 - 001574400 _____ (Microsoft Corporation) C:\WINDOWS\system32\aadtb.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 001481704 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys
2024-10-23 21:08 - 2024-10-23 21:08 - 001428232 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2024-10-23 21:08 - 2024-10-23 21:08 - 001410672 _____ (Microsoft Corporation) C:\WINDOWS\system32\crypt32.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 001391048 _____ (Microsoft Corporation) C:\WINDOWS\system32\webservices.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 001246208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aadtb.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 001238752 _____ (Microsoft Corporation) C:\WINDOWS\system32\ShellAppRuntime.exe
2024-10-23 21:08 - 2024-10-23 21:08 - 001230848 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationController.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 001225304 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2024-10-23 21:08 - 2024-10-23 21:08 - 001220616 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHostCommon.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 001208240 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplyTrustOffline.exe
2024-10-23 21:08 - 2024-10-23 21:08 - 001205232 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Services.TargetedContent.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 001193984 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusUpdateHandlers.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 001181184 _____ C:\WINDOWS\system32\MBR2GPT.EXE
2024-10-23 21:08 - 2024-10-23 21:08 - 001141248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Management.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 001128960 _____ (Microsoft Corporation) C:\WINDOWS\system32\tdh.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 001113752 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipSVC.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 001107936 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ClipSp.sys
2024-10-23 21:08 - 2024-10-23 21:08 - 001086976 _____ (Microsoft Corporation) C:\WINDOWS\system32\aadcloudap.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 001040896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 001039368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CloudExperienceHostCommon.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 001015112 _____ (Microsoft Corporation) C:\WINDOWS\system32\TextInputFramework.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 001014784 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasmans.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000995328 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcsvc.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000993376 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgi.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000985056 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000963072 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmenrollengine.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000954104 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000940536 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcasvc.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000930384 _____ (Microsoft Corporation) C:\WINDOWS\system32\wer.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000920048 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000916480 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Gaming.Input.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000897016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys
2024-10-23 21:08 - 2024-10-23 21:08 - 000894464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.CloudStore.Schema.DesktopShell.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000875520 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcntel.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000796576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxgi.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000792064 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Storage.Search.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000791048 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicensingWinRT.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000791040 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.immersiveshell.serviceprovider.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000786944 _____ (Microsoft Corporation) C:\WINDOWS\system32\usercpl.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000783752 _____ (Microsoft Corporation) C:\WINDOWS\system32\kernel32.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000736696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000706048 _____ (Microsoft Corporation) C:\WINDOWS\system32\daxexec.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000700416 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockController.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000658424 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000650752 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepic.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000650288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kernel32.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000644088 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000641680 _____ (Microsoft Corporation) C:\WINDOWS\system32\sechost.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000630784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Gaming.Input.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000628744 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000626176 _____ C:\WINDOWS\system32\aemarebackup.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000608768 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppcext.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000603648 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsEnvironment.Desktop.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000598016 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
2024-10-23 21:08 - 2024-10-23 21:08 - 000593920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\usercpl.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000590848 _____ (Microsoft Corporation) C:\WINDOWS\system32\apphelp.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000582112 _____ (Microsoft Corporation) C:\WINDOWS\system32\AboutSettingsHandlers.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000574976 _____ (Microsoft Corporation) C:\WINDOWS\system32\slui.exe
2024-10-23 21:08 - 2024-10-23 21:08 - 000550912 _____ (Microsoft Corporation) C:\WINDOWS\system32\QuietHours.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000541696 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhext.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000521304 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlows.exe
2024-10-23 21:08 - 2024-10-23 21:08 - 000507376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\advapi32.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000503808 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceEnroller.exe
2024-10-23 21:08 - 2024-10-23 21:08 - 000503792 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\FWPKCLNT.SYS
2024-10-23 21:08 - 2024-10-23 21:08 - 000497664 _____ (Microsoft Corporation) C:\WINDOWS\system32\omadmclient.exe
2024-10-23 21:08 - 2024-10-23 21:08 - 000488448 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockScreenData.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000486696 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmcmnutils.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000485664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sechost.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000478720 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockHostingFramework.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000456184 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys
2024-10-23 21:08 - 2024-10-23 21:08 - 000453632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\uxtheme.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000448000 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgeIso.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000423936 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmregistration.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000391824 _____ (Microsoft Corporation) C:\WINDOWS\system32\GameInputInbox.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000391680 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationControllerPS.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000391168 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppLockerCSP.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000386024 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExecModelClient.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000373760 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmenterprisediagnostics.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000365056 _____ (Microsoft Corporation) C:\WINDOWS\system32\UpdateDeploymentProvider.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000349696 _____ (Microsoft Corporation) C:\WINDOWS\system32\drvinst.exe
2024-10-23 21:08 - 2024-10-23 21:08 - 000341504 _____ (Microsoft Corporation) C:\WINDOWS\system32\msIso.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000327680 _____ (Microsoft Corporation) C:\WINDOWS\system32\DMPushRouterCore.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000326144 _____ (Microsoft Corporation) C:\WINDOWS\system32\netplwiz.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000318464 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxSip.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000316416 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppcomapi.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000315904 _____ (Microsoft Corporation) C:\WINDOWS\system32\pdh.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000305664 _____ (Microsoft Corporation) C:\WINDOWS\system32\directxdatabaseupdater.exe
2024-10-23 21:08 - 2024-10-23 21:08 - 000305152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ahcache.sys
2024-10-23 21:08 - 2024-10-23 21:08 - 000303104 _____ (Microsoft Corporation) C:\WINDOWS\system32\wkssvc.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000295936 _____ (Microsoft Corporation) C:\WINDOWS\system32\coredpus.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000294912 _____ (Microsoft Corporation) C:\WINDOWS\system32\MicrosoftAccountTokenProvider.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000291448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExecModelClient.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000267776 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdd.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000265120 _____ (Microsoft Corporation) C:\WINDOWS\system32\EditionUpgradeManagerObj.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000264192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Win32CompatibilityAppraiserCSP.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000255104 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompatTelRunner.exe
2024-10-23 21:08 - 2024-10-23 21:08 - 000252928 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Gpu.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000251392 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgiadaptercache.exe
2024-10-23 21:08 - 2024-10-23 21:08 - 000250880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msieftp.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000250368 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_BatteryUsage.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000227840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netplwiz.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000225872 _____ (Microsoft Corporation) C:\WINDOWS\system32\omadmapi.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000225792 _____ C:\WINDOWS\system32\CloudIdWxhExtension.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000222720 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcaui.exe
2024-10-23 21:08 - 2024-10-23 21:08 - 000215040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Taskbar.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000211440 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\appid.sys
2024-10-23 21:08 - 2024-10-23 21:08 - 000210944 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXApplicabilityBlob.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000208896 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneSettingsClient.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000190744 _____ (Microsoft Corporation) C:\WINDOWS\system32\EditionUpgradeHelper.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000189952 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmcertinst.exe
2024-10-23 21:08 - 2024-10-23 21:08 - 000185352 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys
2024-10-23 21:08 - 2024-10-23 21:08 - 000180736 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscript.exe
2024-10-23 21:08 - 2024-10-23 21:08 - 000175104 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmmigrator.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000173056 _____ (Microsoft Corporation) C:\WINDOWS\system32\cscript.exe
2024-10-23 21:08 - 2024-10-23 21:08 - 000157696 _____ (Microsoft Corporation) C:\WINDOWS\system32\srpapi.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000153088 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Startup.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000147968 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\luafv.sys
2024-10-23 21:08 - 2024-10-23 21:08 - 000143360 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32appinventorycsp.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000142336 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputLocaleManager.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000138752 _____ (Microsoft Corporation) C:\WINDOWS\system32\CustomInstallExec.exe
2024-10-23 21:08 - 2024-10-23 21:08 - 000136176 _____ (Microsoft Corporation) C:\WINDOWS\system32\offlinelsa.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000135680 _____ (Microsoft Corporation) C:\WINDOWS\system32\omadmprc.exe
2024-10-23 21:08 - 2024-10-23 21:08 - 000133944 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32u.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000133120 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxSysprep.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000132608 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcaui.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000109568 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcacli.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000109560 _____ (Microsoft Corporation) C:\WINDOWS\system32\GameInput.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000107000 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dam.sys
2024-10-23 21:08 - 2024-10-23 21:08 - 000104960 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcadm.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000103424 _____ (Microsoft Corporation) C:\WINDOWS\system32\unenrollhook.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000095744 _____ (Microsoft Corporation) C:\WINDOWS\system32\acppage.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000093176 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceReactivation.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000091136 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcalua.exe
2024-10-23 21:08 - 2024-10-23 21:08 - 000088576 _____ (Microsoft Corporation) C:\WINDOWS\system32\EditBufferTestHook.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000083456 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceCensus.exe
2024-10-23 21:08 - 2024-10-23 21:08 - 000081920 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmlocalmanagement.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000066048 _____ (Microsoft Corporation) C:\WINDOWS\system32\CertEnrollCtrl.exe
2024-10-23 21:08 - 2024-10-23 21:08 - 000055808 _____ (Microsoft Corporation) C:\WINDOWS\system32\enrollmentapi.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000054400 _____ (Microsoft Corporation) C:\WINDOWS\system32\GameInputSvc.exe
2024-10-23 21:08 - 2024-10-23 21:08 - 000049664 _____ (Microsoft Corporation) C:\WINDOWS\system32\XInputUap.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000045056 _____ (Microsoft Corporation) C:\WINDOWS\system32\LaunchWinApp.exe
2024-10-23 21:08 - 2024-10-23 21:08 - 000044032 _____ (Microsoft Corporation) C:\WINDOWS\system32\WordBreakers.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000038400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XInputUap.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000034304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LaunchWinApp.exe
2024-10-23 21:08 - 2024-10-23 21:08 - 000025600 _____ (Microsoft Corporation) C:\WINDOWS\system32\appidtel.exe
2024-10-23 21:08 - 2024-10-23 21:08 - 000018432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\applockerfltr.sys
2024-10-23 21:08 - 2024-10-23 21:08 - 000018424 _____ (Microsoft Corporation) C:\WINDOWS\system32\hal.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000012800 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcaevts.dll
2024-10-23 21:08 - 2024-10-23 21:08 - 000010752 _____ (Microsoft Corporation) C:\WINDOWS\system32\DMAlertListener.ProxyStub.dll
2024-10-23 21:07 - 2024-10-23 21:08 - 017531904 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2024-10-23 21:07 - 2024-10-23 21:07 - 005925432 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
2024-10-23 21:07 - 2024-10-23 21:07 - 005815960 _____ (Microsoft Corporation) C:\WINDOWS\system32\StartTileData.dll
2024-10-23 21:07 - 2024-10-23 21:07 - 003964928 _____ (Microsoft Corporation) C:\WINDOWS\system32\tellib.dll
2024-10-23 21:07 - 2024-10-23 21:07 - 002500096 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.CloudStore.dll
2024-10-23 21:07 - 2024-10-23 21:07 - 001820824 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMALFXGFXDSP.dll
2024-10-23 21:07 - 2024-10-23 21:07 - 001580544 _____ (Microsoft Corporation) C:\WINDOWS\system32\SpeechPal.dll
2024-10-23 21:07 - 2024-10-23 21:07 - 000967168 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdiWiFi.sys
2024-10-23 21:07 - 2024-10-23 21:07 - 000887480 _____ (Microsoft Corporation) C:\WINDOWS\system32\pkeyhelper.dll
2024-10-23 21:07 - 2024-10-23 21:07 - 000861696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.CloudStore.Schema.Shell.dll
2024-10-23 21:07 - 2024-10-23 21:07 - 000829952 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudRestoreLauncher.dll
2024-10-23 21:07 - 2024-10-23 21:07 - 000803808 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_StorageSense.dll
2024-10-23 21:07 - 2024-10-23 21:07 - 000758784 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\nwifi.sys
2024-10-23 21:07 - 2024-10-23 21:07 - 000715000 _____ (Microsoft Corporation) C:\WINDOWS\system32\advapi32.dll
2024-10-23 21:07 - 2024-10-23 21:07 - 000475648 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmTasks.dll
2024-10-23 21:07 - 2024-10-23 21:07 - 000473088 _____ (Microsoft Corporation) C:\WINDOWS\system32\fcon.dll
2024-10-23 21:07 - 2024-10-23 21:07 - 000448000 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_WorkAccess.dll
2024-10-23 21:07 - 2024-10-23 21:07 - 000415224 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mssecflt.sys
2024-10-23 21:07 - 2024-10-23 21:07 - 000388608 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\portcls.sys
2024-10-23 21:07 - 2024-10-23 21:07 - 000378880 _____ (Microsoft Corporation) C:\WINDOWS\system32\SysFxUI.dll
2024-10-23 21:07 - 2024-10-23 21:07 - 000312800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdbus.sys
2024-10-23 21:07 - 2024-10-23 21:07 - 000304640 _____ (Microsoft Corporation) C:\WINDOWS\system32\msieftp.dll
2024-10-23 21:07 - 2024-10-23 21:07 - 000273912 _____ (Microsoft Corporation) C:\WINDOWS\system32\clipesu.exe
2024-10-23 21:07 - 2024-10-23 21:07 - 000263680 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcdboot.exe
2024-10-23 21:07 - 2024-10-23 21:07 - 000203232 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dumpsd.sys
2024-10-23 21:07 - 2024-10-23 21:07 - 000180224 _____ (Microsoft Corporation) C:\WINDOWS\system32\UCPDMgr.exe
2024-10-23 21:07 - 2024-10-23 21:07 - 000169440 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vmbus.sys
2024-10-23 21:07 - 2024-10-23 21:07 - 000168960 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDMAgent.exe
2024-10-23 21:07 - 2024-10-23 21:07 - 000162304 _____ C:\WINDOWS\system32\DataStoreCacheDumpTool.exe
2024-10-23 21:07 - 2024-10-23 21:07 - 000152576 _____ (Microsoft Corporation) C:\WINDOWS\system32\RjvMDMConfig.dll
2024-10-23 21:07 - 2024-10-23 21:07 - 000140808 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssecuser.dll
2024-10-23 21:07 - 2024-10-23 21:07 - 000135168 _____ (Microsoft Corporation) C:\WINDOWS\system32\SenseSubAuth.dll
2024-10-23 21:07 - 2024-10-23 21:07 - 000098304 _____ (Microsoft Corporation) C:\WINDOWS\bfsvc.exe
2024-10-23 21:07 - 2024-10-23 21:07 - 000097792 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\drmk.sys
2024-10-23 21:07 - 2024-10-23 21:07 - 000086016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\UCPD.sys
2024-10-23 21:07 - 2024-10-23 21:07 - 000071152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mssecwfp.sys
2024-10-23 21:07 - 2024-10-23 21:07 - 000067080 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssecwfpu.dll
2024-10-23 21:07 - 2024-10-23 21:07 - 000057856 _____ (Microsoft Corporation) C:\WINDOWS\system32\readCloudDataSettings.exe
2024-10-23 21:07 - 2024-10-23 21:07 - 000030656 _____ (Microsoft Corporation) C:\WINDOWS\system32\vmbuspipe.dll
2024-10-23 21:07 - 2024-10-23 21:07 - 000027656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\msseccore.sys
2024-10-23 21:07 - 2024-10-23 21:07 - 000017360 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\drmkaud.sys
2024-10-23 14:18 - 2024-10-23 14:18 - 000000000 ___HD C:\$WinREAgent
2024-10-23 14:18 - 2024-10-10 05:31 - 000497664 _____ (Microsoft Corporation) C:\WINDOWS\system32\poqexec.exe
2024-10-23 14:18 - 2024-10-10 04:57 - 000392704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\poqexec.exe
2024-10-14 15:12 - 2024-10-22 15:19 - 000000000 ____D C:\Users\Andrzej\AppData\Roaming\.minecraft
2024-10-09 13:29 - 2024-10-09 13:29 - 001970176 _____ (Microsoft Corporation) C:\WINDOWS\system32\PeerDistSvc.dll
2024-10-09 13:29 - 2024-10-09 13:29 - 001892352 _____ C:\WINDOWS\system32\libcrypto.dll
2024-10-09 13:29 - 2024-10-09 13:29 - 001090048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpcore.dll
2024-10-09 13:29 - 2024-10-09 13:29 - 000675840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sqlsrv32.dll
2024-10-09 13:29 - 2024-10-09 13:29 - 000594480 _____ (curl, hxxps://curl.se/) C:\WINDOWS\SysWOW64\curl.exe
2024-10-09 13:29 - 2024-10-09 13:29 - 000333824 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasppp.dll
2024-10-09 13:29 - 2024-10-09 13:29 - 000287744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasppp.dll
2024-10-09 13:29 - 2024-10-09 13:29 - 000227840 _____ (Microsoft Corporation) C:\WINDOWS\system32\PeerDist.dll
2024-10-09 13:29 - 2024-10-09 13:29 - 000226304 _____ (Microsoft Corporation) C:\WINDOWS\system32\PeerDistCleaner.dll
2024-10-09 13:29 - 2024-10-09 13:29 - 000197632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tapi32.dll
2024-10-09 13:29 - 2024-10-09 13:29 - 000185344 _____ (Microsoft Corporation) C:\WINDOWS\system32\PeerDistWSDDiscoProv.dll
2024-10-09 13:29 - 2024-10-09 13:29 - 000176640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\IndexedDbLegacy.dll
2024-10-09 13:29 - 2024-10-09 13:29 - 000162304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cic.dll
2024-10-09 13:29 - 2024-10-09 13:29 - 000138752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mmcbase.dll
2024-10-09 13:29 - 2024-10-09 13:29 - 000118784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mmcshext.dll
2024-10-09 13:29 - 2024-10-09 13:29 - 000098304 _____ (Microsoft Corporation) C:\WINDOWS\system32\PeerDistHttpTrans.dll
2024-10-09 13:29 - 2024-10-09 13:29 - 000042496 _____ (Microsoft Corporation) C:\WINDOWS\system32\PeerDistAD.dll
2024-10-09 13:28 - 2024-10-09 13:28 - 002029120 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2024-10-09 13:28 - 2024-10-09 13:28 - 002007424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\refs.sys
2024-10-09 13:28 - 2024-10-09 13:28 - 001894776 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpserverbase.dll
2024-10-09 13:28 - 2024-10-09 13:28 - 001700568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll
2024-10-09 13:28 - 2024-10-09 13:28 - 001641456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpserverbase.dll
2024-10-09 13:28 - 2024-10-09 13:28 - 001638400 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcorets.dll
2024-10-09 13:28 - 2024-10-09 13:28 - 001515008 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpsharercom.dll
2024-10-09 13:28 - 2024-10-09 13:28 - 001307648 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcore.dll
2024-10-09 13:28 - 2024-10-09 13:28 - 001272320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpsharercom.dll
2024-10-09 13:28 - 2024-10-09 13:28 - 001151984 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReAgent.dll
2024-10-09 13:28 - 2024-10-09 13:28 - 001131248 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll
2024-10-09 13:28 - 2024-10-09 13:28 - 001107968 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll
2024-10-09 13:28 - 2024-10-09 13:28 - 001074688 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorSvc.dll
2024-10-09 13:28 - 2024-10-09 13:28 - 000998888 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\refsv1.sys
2024-10-09 13:28 - 2024-10-09 13:28 - 000952304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ReAgent.dll
2024-10-09 13:28 - 2024-10-09 13:28 - 000942592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TpmCoreProvisioning.dll
2024-10-09 13:28 - 2024-10-09 13:28 - 000931928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32full.dll
2024-10-09 13:28 - 2024-10-09 13:28 - 000924168 _____ (Microsoft Corporation) C:\WINDOWS\system32\securekernel.exe
2024-10-09 13:28 - 2024-10-09 13:28 - 000920064 _____ (Microsoft Corporation) C:\WINDOWS\system32\mprddm.dll
2024-10-09 13:28 - 2024-10-09 13:28 - 000864616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctf.dll
2024-10-09 13:28 - 2024-10-09 13:28 - 000842240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll
2024-10-09 13:28 - 2024-10-09 13:28 - 000775168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mprddm.dll
2024-10-09 13:28 - 2024-10-09 13:28 - 000748624 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys
2024-10-09 13:28 - 2024-10-09 13:28 - 000736256 _____ (Microsoft Corporation) C:\WINDOWS\system32\vpnike.dll
2024-10-09 13:28 - 2024-10-09 13:28 - 000715448 _____ C:\WINDOWS\system32\TextShaping.dll
2024-10-09 13:28 - 2024-10-09 13:28 - 000704000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Core.TextInput.dll
2024-10-09 13:28 - 2024-10-09 13:28 - 000676400 _____ (curl, hxxps://curl.se/) C:\WINDOWS\system32\curl.exe
2024-10-09 13:28 - 2024-10-09 13:28 - 000657888 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\afd.sys
2024-10-09 13:28 - 2024-10-09 13:28 - 000654336 _____ (Microsoft Corporation) C:\WINDOWS\system32\ipnathlp.dll
2024-10-09 13:28 - 2024-10-09 13:28 - 000619408 _____ C:\WINDOWS\SysWOW64\TextShaping.dll
2024-10-09 13:28 - 2024-10-09 13:28 - 000601088 _____ (Microsoft Corporation) C:\WINDOWS\system32\schannel.dll
2024-10-09 13:28 - 2024-10-09 13:28 - 000537600 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputSwitch.dll
2024-10-09 13:28 - 2024-10-09 13:28 - 000531968 _____ (Microsoft Corporation) C:\WINDOWS\system32\mprapi.dll
2024-10-09 13:28 - 2024-10-09 13:28 - 000528072 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcryptprimitives.dll
2024-10-09 13:28 - 2024-10-09 13:28 - 000503296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cldflt.sys
2024-10-09 13:28 - 2024-10-09 13:28 - 000495104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\schannel.dll
2024-10-09 13:28 - 2024-10-09 13:28 - 000479232 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpclip.exe
2024-10-09 13:28 - 2024-10-09 13:28 - 000457216 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ks.sys
2024-10-09 13:28 - 2024-10-09 13:28 - 000450424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Classpnp.sys
2024-10-09 13:28 - 2024-10-09 13:28 - 000440320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mprapi.dll
2024-10-09 13:28 - 2024-10-09 13:28 - 000429056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputSwitch.dll
2024-10-09 13:28 - 2024-10-09 13:28 - 000426496 _____ (Microsoft Corporation) C:\WINDOWS\system32\rastls.dll
2024-10-09 13:28 - 2024-10-09 13:28 - 000425992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\clfs.sys
2024-10-09 13:28 - 2024-10-09 13:28 - 000384344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcryptprimitives.dll
2024-10-09 13:28 - 2024-10-09 13:28 - 000364544 _____ (Microsoft Corporation) C:\WINDOWS\system32\BootMenuUX.dll
2024-10-09 13:28 - 2024-10-09 13:28 - 000349696 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncryptprov.dll
2024-10-09 13:28 - 2024-10-09 13:28 - 000343552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rastls.dll
2024-10-09 13:28 - 2024-10-09 13:28 - 000332288 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2024-10-09 13:28 - 2024-10-09 13:28 - 000272896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ncryptprov.dll
2024-10-09 13:28 - 2024-10-09 13:28 - 000252928 _____ (Microsoft Corporation) C:\WINDOWS\system32\tapi32.dll
2024-10-09 13:28 - 2024-10-09 13:28 - 000241152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2024-10-09 13:28 - 2024-10-09 13:28 - 000237056 _____ (Microsoft Corporation) C:\WINDOWS\system32\IndexedDbLegacy.dll
2024-10-09 13:28 - 2024-10-09 13:28 - 000209920 _____ (Microsoft Corporation) C:\WINDOWS\system32\cic.dll
2024-10-09 13:28 - 2024-10-09 13:28 - 000190464 _____ (Microsoft Corporation) C:\WINDOWS\system32\raschap.dll
2024-10-09 13:28 - 2024-10-09 13:28 - 000186368 _____ (Microsoft Corporation) C:\WINDOWS\system32\mmcbase.dll
2024-10-09 13:28 - 2024-10-09 13:28 - 000176640 _____ (Microsoft Corporation) C:\WINDOWS\system32\msdart.dll
2024-10-09 13:28 - 2024-10-09 13:28 - 000161792 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorageUsage.dll
2024-10-09 13:28 - 2024-10-09 13:28 - 000154464 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncrypt.dll
2024-10-09 13:28 - 2024-10-09 13:28 - 000154112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\raschap.dll
2024-10-09 13:28 - 2024-10-09 13:28 - 000152072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tm.sys
2024-10-09 13:28 - 2024-10-09 13:28 - 000150976 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.System.Profile.HardwareId.dll
2024-10-09 13:28 - 2024-10-09 13:28 - 000143872 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecureBootEncodeUEFI.exe
2024-10-09 13:28 - 2024-10-09 13:28 - 000143360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msdart.dll
2024-10-09 13:28 - 2024-10-09 13:28 - 000136192 _____ (Microsoft Corporation) C:\WINDOWS\system32\mmcshext.dll
2024-10-09 13:28 - 2024-10-09 13:28 - 000131328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ncrypt.dll
2024-10-09 13:28 - 2024-10-09 13:28 - 000098160 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpudd.dll
2024-10-09 13:28 - 2024-10-09 13:28 - 000094208 _____ (Microsoft Corporation) C:\WINDOWS\system32\keyiso.dll
2024-10-09 13:28 - 2024-10-09 13:28 - 000067072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\keyiso.dll
2024-10-09 13:28 - 2024-10-09 13:28 - 000043008 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcredentialprovider.dll
2024-10-09 13:28 - 2024-10-09 13:28 - 000038400 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mskssrv.sys
2024-10-09 13:28 - 2024-10-09 13:28 - 000032776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdpvideominiport.sys
2024-10-09 13:28 - 2024-10-09 13:28 - 000003584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TpmCertResources.dll
2024-10-09 13:27 - 2024-10-09 13:27 - 001284608 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll
2024-10-09 13:27 - 2024-10-09 13:27 - 001173504 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmCoreProvisioning.dll
2024-10-09 13:27 - 2024-10-09 13:27 - 000725984 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storport.sys
2024-10-09 13:27 - 2024-10-09 13:27 - 000398336 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\MbbCx.sys
2024-10-09 13:27 - 2024-10-09 13:27 - 000267264 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\winnat.sys
2024-10-09 13:27 - 2024-10-09 13:27 - 000086528 _____ (Microsoft Corporation) C:\WINDOWS\system32\PrinterCleanupTask.dll
2024-10-09 13:27 - 2024-10-09 13:27 - 000046080 _____ (Microsoft Corporation) C:\WINDOWS\system32\spool\prtprocs\x64\winprint.dll
2024-10-09 13:27 - 2024-10-09 13:27 - 000031744 _____ (Microsoft Corporation) C:\WINDOWS\system32\FaxPrinterInstaller.dll
2024-10-09 13:27 - 2024-10-09 13:27 - 000003584 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmCertResources.dll
2024-10-04 11:01 - 2024-10-04 11:01 - 000000000 _____ C:\Users\Andrzej\Downloads\4NhwtzAs.htm

==================== Jeden miesiąc (zmodyfikowane) ==================

(Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.)

2024-11-03 15:21 - 2023-04-08 08:05 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2024-11-03 15:19 - 2024-08-25 08:22 - 000000000 ____D C:\Users\Andrzej\AppData\Local\Malwarebytes
2024-11-03 14:47 - 2023-04-08 08:49 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2024-11-03 10:10 - 2024-08-12 15:38 - 000002448 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2024-11-03 10:10 - 2024-08-12 15:38 - 000002286 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk
2024-11-02 17:43 - 2023-04-08 08:49 - 000000000 ____D C:\WINDOWS\AppReadiness
2024-11-02 17:21 - 2024-08-25 07:36 - 000000000 ____D C:\Program Files\CCleaner
2024-11-01 21:18 - 2023-04-08 08:07 - 000000000 ____D C:\ProgramData\NVIDIA
2024-11-01 20:43 - 2023-04-10 09:35 - 000000000 ____D C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38
2024-11-01 16:31 - 2023-04-08 08:49 - 000000000 ___HD C:\Program Files\WindowsApps
2024-11-01 16:21 - 2023-04-08 08:49 - 000000000 ____D C:\WINDOWS\SystemTemp
2024-11-01 16:21 - 2019-04-09 19:40 - 000002213 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2024-10-31 09:05 - 2023-04-08 08:07 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd
2024-10-31 08:56 - 2023-04-08 08:40 - 000000000 ____D C:\Users\Andrzej\AppData\Local\Packages
2024-10-30 13:16 - 2023-04-08 08:15 - 000000000 ____D C:\Users\Andrzej
2024-10-29 19:29 - 2023-04-10 09:35 - 000000000 ____D C:\WINDOWS\system32\Tasks\Mozilla
2024-10-29 19:27 - 2023-04-10 09:35 - 000001283 _____ C:\Users\Andrzej\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Firefox.lnk
2024-10-29 16:54 - 2023-04-08 08:54 - 000784340 _____ C:\WINDOWS\system32\perfh015.dat
2024-10-29 16:54 - 2023-04-08 08:54 - 000152236 _____ C:\WINDOWS\system32\perfc015.dat
2024-10-29 16:54 - 2023-04-08 08:46 - 000000000 ____D C:\WINDOWS\INF
2024-10-29 16:54 - 2023-04-08 08:25 - 001767984 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2024-10-29 16:50 - 2023-04-08 08:07 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2024-10-29 16:49 - 2020-12-10 09:39 - 000008192 ___SH C:\DumpStack.log.tmp
2024-10-28 17:32 - 2023-04-08 08:04 - 000261280 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2024-10-28 17:31 - 2023-04-08 08:49 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2024-10-28 17:31 - 2023-04-08 08:49 - 000000000 ____D C:\WINDOWS\SystemResources
2024-10-28 17:31 - 2023-04-08 08:49 - 000000000 ____D C:\WINDOWS\system32\setup
2024-10-28 17:31 - 2023-04-08 08:49 - 000000000 ____D C:\WINDOWS\system32\oobe
2024-10-28 17:31 - 2023-04-08 08:49 - 000000000 ____D C:\WINDOWS\system32\Dism
2024-10-28 17:31 - 2023-04-08 08:49 - 000000000 ____D C:\WINDOWS\system32\appraiser
2024-10-28 17:31 - 2023-04-08 08:39 - 000524288 _____ C:\WINDOWS\system32\config\BBI
2024-10-28 17:30 - 2023-04-08 08:49 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2024-10-28 17:30 - 2023-04-08 08:49 - 000000000 ____D C:\WINDOWS\ShellExperiences
2024-10-28 17:30 - 2023-04-08 08:49 - 000000000 ____D C:\WINDOWS\DiagTrack
2024-10-28 17:30 - 2023-04-08 08:49 - 000000000 ____D C:\WINDOWS\bcastdvr
2024-10-28 17:30 - 2023-04-08 08:49 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection
2024-10-28 17:04 - 2023-04-08 09:16 - 000003592 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-1289171223-1415797552-1881391752-1001
2024-10-28 17:04 - 2023-04-08 08:46 - 000003384 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-1289171223-1415797552-1881391752-1001
2024-10-28 17:04 - 2023-04-08 08:15 - 000002433 _____ C:\Users\Andrzej\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2024-10-23 21:17 - 2023-04-08 08:40 - 000000000 ____D C:\WINDOWS\CbsTemp
2024-10-23 21:07 - 2023-04-08 08:09 - 003016192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2024-10-22 15:22 - 2023-12-08 13:56 - 000000000 ____D C:\Users\Andrzej\AppData\Local\CrashDumps
2024-10-21 17:48 - 2024-09-17 13:02 - 000000000 ____D C:\Users\Andrzej\AppData\Roaming\.tlauncher
2024-10-21 17:48 - 2024-09-17 13:00 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TLauncher
2024-10-18 15:40 - 2023-04-08 08:49 - 000000000 ____D C:\WINDOWS\appcompat
2024-10-18 15:38 - 2024-08-25 07:37 - 000000666 _____ C:\WINDOWS\Tasks\CCleanerCrashReporting.job
2024-10-18 09:04 - 2023-10-11 15:23 - 000000000 ____D C:\Program Files\RUXIM
2024-10-17 13:18 - 2023-04-13 18:33 - 000004324 _____ C:\WINDOWS\system32\Tasks\Opera scheduled Autoupdate 1681407227
2024-10-17 13:18 - 2023-04-13 18:33 - 000001396 _____ C:\Users\Andrzej\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Przeglądarka Opera.lnk
2024-10-16 13:55 - 2024-08-25 07:37 - 000003936 _____ C:\WINDOWS\system32\Tasks\CCleaner Update
2024-10-16 13:55 - 2024-08-25 07:37 - 000003382 _____ C:\WINDOWS\system32\Tasks\CCleanerCrashReporting
2024-10-12 07:13 - 2023-04-08 08:55 - 000000000 ____D C:\WINDOWS\system32\OpenSSH
2024-10-11 17:13 - 2024-01-21 13:32 - 000000000 ____D C:\Users\Andrzej\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Roblox
2024-10-11 17:10 - 2024-01-09 09:22 - 000000000 ____D C:\Program Files\Binance
2024-10-10 06:04 - 2023-04-08 08:07 - 000003566 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2024-10-10 06:04 - 2023-04-08 08:07 - 000003442 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2024-10-09 12:37 - 2023-04-08 12:02 - 000000000 ____D C:\WINDOWS\system32\MRT
2024-10-09 12:24 - 2023-04-08 12:02 - 201324920 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe

==================== Pliki w katalogu głównym wybranych folderów ========

2023-07-28 12:04 - 2023-07-28 12:04 - 000000049 _____ () C:\Users\Andrzej\AppData\Roaming\.crystalinst

==================== SigCheck ============================

(Brak automatycznej naprawy dla plików które nie przeszły weryfikacji.)

==================== Koniec  FRST.txt ========================

 

Rezultaty skanu uzupełniającego Farbar Recovery Scan Tool (x64) Wersja: 03-11-2024
Uruchomiony przez Andrzej (03-11-2024 15:38:31)
Uruchomiony z C:\Users\Andrzej\Desktop
Microsoft Windows 10 Pro Wersja 22H2 19045.5073 (X64) (2023-04-08 07:39:47)
Tryb startu: Normal
==========================================================


==================== Konta użytkowników: =============================


(Załączenie wejścia w fixlist spowoduje jego usunięcie.)

Administrator (S-1-5-21-1289171223-1415797552-1881391752-500 - Administrator - Disabled)
Andrzej (S-1-5-21-1289171223-1415797552-1881391752-1001 - Administrator - Enabled) => C:\Users\Andrzej
Gość (S-1-5-21-1289171223-1415797552-1881391752-501 - Limited - Disabled)
Konto domyślne (S-1-5-21-1289171223-1415797552-1881391752-503 - Limited - Disabled)
WDAGUtilityAccount (S-1-5-21-1289171223-1415797552-1881391752-504 - Limited - Disabled)

==================== Centrum zabezpieczeń ========================

(Załączenie wejścia w fixlist spowoduje jego usunięcie.)

AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Zainstalowane programy ======================

(W fixlist dozwolone tylko załączanie programów adware z flagą "Hidden" w celu ich uwidocznienia. Programy adware powinny zostać w poprawny sposób odinstalowane.)

Asystent aktualizacji do systemu Windows 10 (HKLM-x32\...\{D5C69738-B486-402E-85AC-2456D98A64E4}) (Version: 1.4.19041.2183 - Microsoft Corporation)
Avast Update Helper (HKLM-x32\...\{19C3AB22-3718-4E4D-B203-242F5001565B}) (Version: 1.8.1631.4 - AVAST Software) Hidden
CCleaner (HKLM\...\CCleaner) (Version: 6.29 - Piriform)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 130.0.6723.92 - Google LLC)
Java 8 Update 51 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F86418051F0}) (Version: 8.0.510 - Oracle Corporation)
Malwarebytes version 5.2.0.140 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 5.2.0.140 - Malwarebytes)
MetaTrader 5 (HKLM\...\MetaTrader 5) (Version: 5.00 - MetaQuotes Ltd.)
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 130.0.2849.68 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-1289171223-1415797552-1881391752-1001\...\OneDriveSetup.exe) (Version: 24.196.0929.0005 - Microsoft Corporation)
Microsoft Update Health Tools (HKLM\...\{1FC1A6C2-576E-489A-9B4A-92D21F542136}) (Version: 3.74.0.0 - Microsoft Corporation)
Mozilla Firefox (x64 pl) (HKU\S-1-5-21-1289171223-1415797552-1881391752-1001\...\Mozilla Firefox 132.0 (x64 pl)) (Version: 132.0 - Mozilla)
Opera Stable 114.0.5282.102 (HKU\S-1-5-21-1289171223-1415797552-1881391752-1001\...\Opera 114.0.5282.102) (Version: 114.0.5282.102 - Opera Software)
Środowisko uruchomieniowe Microsoft Edge WebView2 (HKLM-x32\...\Microsoft EdgeWebView) (Version: 130.0.2849.56 - Microsoft Corporation)
TLauncher (HKLM-x32\...\TLauncher) (Version: 2.924 - TLauncher Inc.)
Update for x64-based Windows Systems (KB5001716) (HKLM\...\{DA80A019-4C3B-4DAA-ACA1-6937D7CAAF9E}) (Version: 8.94.0.0 - Microsoft Corporation)
WinRAR 7.01 (32-bitowy) (HKLM-x32\...\WinRAR archiver) (Version: 7.01.0 - win.rar GmbH)
Zoom (HKU\S-1-5-21-1289171223-1415797552-1881391752-1001\...\ZoomUMX) (Version: 5.15.10 (20823) - Zoom Video Communications, Inc.)

Packages:
=========

Dodatek Aparat multimediów dla aplikacji Zdjęcia -> C:\Program Files\WindowsApps\Microsoft.Photos.MediaEngineDLC_1.0.0.0_x64__8wekyb3d8bbwe [2024-01-31] (Microsoft Corporation)
WhatsApp -> C:\Program Files\WindowsApps\5319275A.WhatsAppDesktop_2.2443.7.0_x64__cv1g1gvanyjgm [2024-11-01] (WhatsApp Inc.) [Startup Task]
Wyszukiwanie w sieci Web z poziomu usługi Microsoft Bing -> C:\Program Files\WindowsApps\Microsoft.BingSearch_1.1.0.0_x64__8wekyb3d8bbwe [2024-10-24] (Microsoft Corporation)

==================== Niestandardowe rejestracje CLSID (filtrowane): ==============

(Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)

ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext64.dll [2024-05-17] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext.dll [2024-05-17] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2024-08-25] (Malwarebytes Inc. -> Malwarebytes)
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\system32\nvshext.dll [2017-10-27] (NVIDIA Corporation -> NVIDIA Corporation)
ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2024-08-25] (Malwarebytes Inc. -> Malwarebytes)
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext64.dll [2024-05-17] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext.dll [2024-05-17] (win.rar GmbH -> Alexander Roshal)

==================== Codecs (filtrowane) ====================

==================== Skróty & WMI ========================

==================== Załadowane moduły (filtrowane) =============

==================== Alternate Data Streams (filtrowane) ========

==================== Tryb awaryjny (filtrowane) ==================

(Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Wartość "AlternateShell" zostanie przywrócona.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service"

==================== Powiązania plików (filtrowane) =================

==================== Internet Explorer (filtrowane) =============

BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_51\bin\ssv.dll [2024-09-17] (Oracle America, Inc. -> Oracle Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_51\bin\jp2ssv.dll [2024-09-17] (Oracle America, Inc. -> Oracle Corporation)

==================== Hosts - zawartość: =========================

(Użycie dyrektywy Hosts: w fixlist spowoduje reset pliku Hosts.)

2023-04-08 08:49 - 2023-04-08 08:46 - 000000824 _____ C:\WINDOWS\system32\drivers\etc\hosts

==================== Inne obszary ===========================

(Obecnie brak automatycznej naprawy dla tej sekcji.)

HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\ProgramData\Oracle\Java\javapath;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;%SYSTEMROOT%\System32\OpenSSH\
HKU\S-1-5-21-1289171223-1415797552-1881391752-1001\Control Panel\Desktop\\Wallpaper -> c:\windows\web\wallpaper\windows\img0.jpg
DNS Servers: 192.168.0.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Zapora systemu Windows [funkcja włączona]

Network Binding:
=============
Ethernet: Realtek PCIe GbE Family Controller -> rt640x64.sys

==================== MSCONFIG/TASK MANAGER - Wyłączone elementy ==

==================== Reguły Zapory systemu Windows (filtrowane) ================

(Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)

FirewallRules: [TCP Query User{79A71B96-51C6-42BC-B2D8-93057D3D79DC}C:\users\andrzej\appdata\roaming\crystal-launcher\runtime\64\jdk-17.0.1+12\bin\javaw.exe] => (Block) C:\users\andrzej\appdata\roaming\crystal-launcher\runtime\64\jdk-17.0.1+12\bin\javaw.exe
FirewallRules: [UDP Query User{B1A4CBAB-0C00-4331-96CA-19F9B10507A2}C:\users\andrzej\appdata\roaming\crystal-launcher\runtime\64\jdk-17.0.1+12\bin\javaw.exe] => (Block) C:\users\andrzej\appdata\roaming\crystal-launcher\runtime\64\jdk-17.0.1+12\bin\javaw.exe
FirewallRules: [TCP Query User{0F36551E-B66A-4D4D-A90C-1D98251885FD}C:\users\andrzej\appdata\local\programs\opera\opera.exe] => (Block) C:\users\andrzej\appdata\local\programs\opera\opera.exe (Opera Norway AS -> Opera Software)
FirewallRules: [UDP Query User{02D070A4-23A2-41F2-815C-A4156614C833}C:\users\andrzej\appdata\local\programs\opera\opera.exe] => (Block) C:\users\andrzej\appdata\local\programs\opera\opera.exe (Opera Norway AS -> Opera Software)
FirewallRules: [{1D0EAF41-F9F4-4529-90FF-FFB2A66A2DAD}] => (Allow) C:\Users\Andrzej\AppData\Roaming\Zoom\bin\Zoom.exe (Zoom Video Communications, Inc. -> Zoom Video Communications, Inc.)
FirewallRules: [{A7072852-1314-4716-AD8A-34C9E5794716}] => (Allow) C:\Users\Andrzej\AppData\Roaming\Zoom\bin\airhost.exe => Brak pliku
FirewallRules: [{C3B1048E-4FFC-4631-BAF9-4C2AEE8B8AA5}] => (Allow) C:\Users\Andrzej\AppData\Roaming\Zoom\bin\airhost.exe => Brak pliku
FirewallRules: [{FCB41F17-A434-42F0-A2C4-DB230204AB2E}] => (Allow) C:\Program Files\Trade Quo\metatester64.exe => Brak pliku
FirewallRules: [TCP Query User{51B8C5CD-0797-4BFC-B831-C238F8A140FB}C:\program files\binance\binance.exe] => (Block) C:\program files\binance\binance.exe => Brak pliku
FirewallRules: [UDP Query User{73CA49E8-16C0-48C9-91AE-A31018819A70}C:\program files\binance\binance.exe] => (Block) C:\program files\binance\binance.exe => Brak pliku
FirewallRules: [TCP Query User{62771D65-7ADC-4736-9FDD-7505A72CDC31}C:\users\andrzej\appdata\roaming\crystal-launcher\runtime\64\jdk-17.0.1+12\bin\javaw.exe] => (Block) C:\users\andrzej\appdata\roaming\crystal-launcher\runtime\64\jdk-17.0.1+12\bin\javaw.exe
FirewallRules: [UDP Query User{66A5AE38-BC1B-4D9B-AF33-7127D58D072C}C:\users\andrzej\appdata\roaming\crystal-launcher\runtime\64\jdk-17.0.1+12\bin\javaw.exe] => (Block) C:\users\andrzej\appdata\roaming\crystal-launcher\runtime\64\jdk-17.0.1+12\bin\javaw.exe
FirewallRules: [TCP Query User{0661BF21-6824-4FDE-900A-2942D8229B58}C:\gry\counter-strike 1.6 v43\hl.exe] => (Block) C:\gry\counter-strike 1.6 v43\hl.exe => Brak pliku
FirewallRules: [UDP Query User{B882A559-69E2-4BBB-A40B-CF92D801825A}C:\gry\counter-strike 1.6 v43\hl.exe] => (Block) C:\gry\counter-strike 1.6 v43\hl.exe => Brak pliku
FirewallRules: [TCP Query User{FA0BFE0D-C4B1-4DB2-98E8-A84A644BEE40}C:\users\andrzej\appdata\local\programs\opera\opera.exe] => (Block) C:\users\andrzej\appdata\local\programs\opera\opera.exe (Opera Norway AS -> Opera Software)
FirewallRules: [UDP Query User{434E6293-2F9F-46AF-81D0-F209EC978980}C:\users\andrzej\appdata\local\programs\opera\opera.exe] => (Block) C:\users\andrzej\appdata\local\programs\opera\opera.exe (Opera Norway AS -> Opera Software)
FirewallRules: [TCP Query User{D83A7446-7BEE-46C3-9FF7-8E4917557EE9}C:\users\andrzej\appdata\roaming\.tlauncher\starter\jre_default\jre-17.0.10-windows-x64\bin\java.exe] => (Block) C:\users\andrzej\appdata\roaming\.tlauncher\starter\jre_default\jre-17.0.10-windows-x64\bin\java.exe
FirewallRules: [UDP Query User{5610F3A9-4070-44A2-A719-660DA4030131}C:\users\andrzej\appdata\roaming\.tlauncher\starter\jre_default\jre-17.0.10-windows-x64\bin\java.exe] => (Block) C:\users\andrzej\appdata\roaming\.tlauncher\starter\jre_default\jre-17.0.10-windows-x64\bin\java.exe
FirewallRules: [TCP Query User{9C4329FA-A6C2-48F3-AAA8-EC3ABEA08637}C:\users\andrzej\appdata\roaming\.minecraft\runtime\java-runtime-delta\windows\java-runtime-delta\bin\javaw.exe] => (Block) C:\users\andrzej\appdata\roaming\.minecraft\runtime\java-runtime-delta\windows\java-runtime-delta\bin\javaw.exe
FirewallRules: [UDP Query User{21028F2E-AF56-466D-A7D7-EC22F302ED0C}C:\users\andrzej\appdata\roaming\.minecraft\runtime\java-runtime-delta\windows\java-runtime-delta\bin\javaw.exe] => (Block) C:\users\andrzej\appdata\roaming\.minecraft\runtime\java-runtime-delta\windows\java-runtime-delta\bin\javaw.exe
FirewallRules: [{78965F5D-D7E9-41A6-B40D-6092AD7B1048}] => (Allow) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\130.0.2849.56\msedgewebview2.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{FBAEDE00-CE26-430E-AF64-A0D8F2DB2073}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [{209E815C-483C-4FA6-AD52-2D79CADF91C4}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.131.3202.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{86FB7C18-CB73-4A47-8749-F6957767B76D}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.131.3202.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{06A94ED6-5B1E-4C5A-BE21-6725FF9520CC}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.131.3202.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{B720E128-B147-49F8-B7A7-169310A25992}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.131.3202.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)

==================== Punkty Przywracania systemu =========================

30-10-2024 09:46:41 Zaplanowany punkt kontrolny

==================== Wadliwe urządzenia w Menedżerze urządzeń ============


==================== Błędy w Dzienniku zdarzeń: ========================

Dziennik Aplikacja:
==================
Error: (11/03/2024 12:03:02 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program ShellExperienceHost.exe w wersji 10.0.19041.5072 przestał współpracować z systemem Windows i został zamknięty. Aby zobaczyć, czy jest dostępnych więcej informacji dotyczących tego problemu, sprawdź historię problemów w oknie Zabezpieczenia i konserwacja w Panelu sterowania.

Identyfikator procesu: 24dc

Godzina rozpoczęcia: 01db2d43332f5fd6

Godzina zakończenia: 4294967295

Ścieżka aplikacji: C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe

Identyfikator raportu: 62868757-c652-440a-a25e-0a2e14292639

Pełna nazwa pakietu powodującego błąd: Microsoft.Windows.ShellExperienceHost_10.0.19041.5072_neutral_neutral_cw5n1h2txyewy

Identyfikator aplikacji powiązanej z pakietem powodującym błąd: App

Typ zawieszenia: Quiesce

Error: (11/03/2024 12:03:02 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program CHXSmartScreen.exe w wersji 10.0.19041.3636 przestał współpracować z systemem Windows i został zamknięty. Aby zobaczyć, czy jest dostępnych więcej informacji dotyczących tego problemu, sprawdź historię problemów w oknie Zabezpieczenia i konserwacja w Panelu sterowania.

Identyfikator procesu: 1d80

Godzina rozpoczęcia: 01db2ddfa43ef655

Godzina zakończenia: 4294967295

Ścieżka aplikacji: C:\Windows\SystemApps\Microsoft.Windows.AppRep.ChxApp_cw5n1h2txyewy\CHXSmartScreen.exe

Identyfikator raportu: 9a080aef-aaf2-49ff-ba68-9fac565d109d

Pełna nazwa pakietu powodującego błąd: Microsoft.Windows.Apprep.ChxApp_1000.19041.4239.0_neutral_neutral_cw5n1h2txyewy

Identyfikator aplikacji powiązanej z pakietem powodującym błąd: App

Typ zawieszenia: Quiesce

Error: (10/22/2024 03:33:30 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program LockApp.exe w wersji 10.0.19041.4957 przestał współpracować z systemem Windows i został zamknięty. Aby zobaczyć, czy jest dostępnych więcej informacji dotyczących tego problemu, sprawdź historię problemów w oknie Zabezpieczenia i konserwacja w Panelu sterowania.

Identyfikator procesu: 2f74

Godzina rozpoczęcia: 01db248b76dccfc8

Godzina zakończenia: 4294967295

Ścieżka aplikacji: C:\Windows\SystemApps\Microsoft.LockApp_cw5n1h2txyewy\LockApp.exe

Identyfikator raportu: a5f4970d-286c-4116-87fe-6b59c4ec7ecc

Pełna nazwa pakietu powodującego błąd: Microsoft.LockApp_10.0.19041.4239_neutral__cw5n1h2txyewy

Identyfikator aplikacji powiązanej z pakietem powodującym błąd: WindowsDefaultLockScreen

Typ zawieszenia: Quiesce

Error: (10/22/2024 03:23:19 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nazwa aplikacji powodującej błąd: LockApp.exe, wersja: 10.0.19041.4957, sygnatura czasowa: 0xe55dc552
Nazwa modułu powodującego błąd: msvcrt.dll, wersja: 7.0.19041.3636, sygnatura czasowa: 0x9bf60e04
Kod wyjątku: 0x40000015
Przesunięcie błędu: 0x000000000000ae22
Identyfikator procesu powodującego błąd: 0x2f74
Godzina uruchomienia aplikacji powodującej błąd: 0x01db248b76dccfc8
Ścieżka aplikacji powodującej błąd: C:\WINDOWS\SystemApps\Microsoft.LockApp_cw5n1h2txyewy\LockApp.exe
Ścieżka modułu powodującego błąd: C:\WINDOWS\System32\msvcrt.dll
Identyfikator raportu: 6a69162e-1a29-415e-b16d-27d487b1abd4
Pełna nazwa pakietu powodującego błąd: Microsoft.LockApp_10.0.19041.4239_neutral__cw5n1h2txyewy
Identyfikator aplikacji względem pakietu powodującego błąd: WindowsDefaultLockScreen

Error: (10/22/2024 03:22:38 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nazwa aplikacji powodującej błąd: LockApp.exe, wersja: 10.0.19041.4957, sygnatura czasowa: 0xe55dc552
Nazwa modułu powodującego błąd: msvcrt.dll, wersja: 7.0.19041.3636, sygnatura czasowa: 0x9bf60e04
Kod wyjątku: 0x40000015
Przesunięcie błędu: 0x000000000000ae22
Identyfikator procesu powodującego błąd: 0x2f74
Godzina uruchomienia aplikacji powodującej błąd: 0x01db248b76dccfc8
Ścieżka aplikacji powodującej błąd: C:\WINDOWS\SystemApps\Microsoft.LockApp_cw5n1h2txyewy\LockApp.exe
Ścieżka modułu powodującego błąd: C:\WINDOWS\System32\msvcrt.dll
Identyfikator raportu: 92e491f5-2ed5-448a-a27a-ca4a9cbdfa0f
Pełna nazwa pakietu powodującego błąd: Microsoft.LockApp_10.0.19041.4239_neutral__cw5n1h2txyewy
Identyfikator aplikacji względem pakietu powodującego błąd: WindowsDefaultLockScreen

Error: (10/22/2024 03:12:06 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program HxOutlook.exe w wersji 16.0.14326.22078 przestał współpracować z systemem Windows i został zamknięty. Aby zobaczyć, czy jest dostępnych więcej informacji dotyczących tego problemu, sprawdź historię problemów w oknie Zabezpieczenia i konserwacja w Panelu sterowania.

Identyfikator procesu: 213c

Godzina rozpoczęcia: 01db23d8e1d99835

Godzina zakończenia: 4294967295

Ścieżka aplikacji: C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.14326.22078.0_x64__8wekyb3d8bbwe\HxOutlook.exe

Identyfikator raportu: 204057a0-1bf4-4eb9-98cf-9e7b075a5b12

Pełna nazwa pakietu powodującego błąd: microsoft.windowscommunicationsapps_16005.14326.22078.0_x64__8wekyb3d8bbwe

Identyfikator aplikacji powiązanej z pakietem powodującym błąd: microsoft.windowslive.mail

Typ zawieszenia: Quiesce

Error: (10/12/2024 08:20:43 AM) (Source: Firefox Notification Server) (EventID: 0) (User: )
Description: Event-ID 0

Error: (10/11/2024 07:14:10 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program SearchApp.exe w wersji 10.0.19041.4957 przestał współpracować z systemem Windows i został zamknięty. Aby zobaczyć, czy jest dostępnych więcej informacji dotyczących tego problemu, sprawdź historię problemów w oknie Zabezpieczenia i konserwacja w Panelu sterowania.

Identyfikator procesu: 40

Godzina rozpoczęcia: 01db1c092f6bd2f5

Godzina zakończenia: 4294967295

Ścieżka aplikacji: C:\Windows\SystemApps\Microsoft.Windows.Search_cw5n1h2txyewy\SearchApp.exe

Identyfikator raportu: 5bccbf70-817c-414c-b1b2-9efec8295273

Pełna nazwa pakietu powodującego błąd: Microsoft.Windows.Search_1.14.17.19041_neutral_neutral_cw5n1h2txyewy

Identyfikator aplikacji powiązanej z pakietem powodującym błąd: ShellFeedsUI

Typ zawieszenia: Quiesce


Dziennik System:
=============
Error: (11/01/2024 09:18:08 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-P0OGB8U)
Description: Serwer Microsoft.XboxGamingOverlay_7.224.9242.0_x64__8wekyb3d8bbwe!App.AppXrfdt3p0f38tc4nxz7ajrd5as6ctb0dck.mca nie zarejestrował się w modelu DCOM w wymaganym czasie.

Error: (11/01/2024 09:18:04 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-P0OGB8U)
Description: Serwer Microsoft.XboxGamingOverlay_7.224.9242.0_x64__8wekyb3d8bbwe!App.AppXrfdt3p0f38tc4nxz7ajrd5as6ctb0dck.mca nie zarejestrował się w modelu DCOM w wymaganym czasie.

Error: (10/31/2024 01:14:56 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-P0OGB8U)
Description: Serwer {2593F8B9-4EAF-457C-B68A-50F6B8EA6B54} nie zarejestrował się w modelu DCOM w wymaganym czasie.

Error: (10/31/2024 01:14:56 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-P0OGB8U)
Description: Serwer Microsoft.AAD.BrokerPlugin_1000.19041.4239.0_neutral_neutral_cw5n1h2txyewy!Windows.Security.Authentication.Web.Core.BackgroundGetTokenTask.ClassId.WebAccountProvider nie zarejestrował się w modelu DCOM w wymaganym czasie.

Error: (10/31/2024 09:19:08 AM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: ZARZĄDZANIE NT)
Description: Instalacja nie powiodła się: system Windows nie mógł zainstalować następującej aktualizacji, ponieważ wystąpił błąd 0x80073d02: 9NKSQGP7F2NH-5319275A.WhatsAppDesktop.

Error: (10/31/2024 09:04:34 AM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: ZARZĄDZANIE NT)
Description: Instalacja nie powiodła się: system Windows nie mógł zainstalować następującej aktualizacji, ponieważ wystąpił błąd 0x80240009: Aktualizacja platformy chroniącej przed złośliwym kodem Microsoft Defender Antivirus — KB4052623 (Wersja 4.18.24090.11) — Bieżący kanał (ogólna dostępność).

Error: (10/30/2024 01:16:52 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-P0OGB8U)
Description: Serwer {2593F8B9-4EAF-457C-B68A-50F6B8EA6B54} nie zarejestrował się w modelu DCOM w wymaganym czasie.

Error: (10/30/2024 01:16:52 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-P0OGB8U)
Description: Serwer Microsoft.AAD.BrokerPlugin_1000.19041.4239.0_neutral_neutral_cw5n1h2txyewy!Windows.Security.Authentication.Web.Core.BackgroundGetTokenTask.ClassId.WebAccountProvider nie zarejestrował się w modelu DCOM w wymaganym czasie.


Windows Defender:
================
Date: 2024-11-03 10:11:55
Description: 
Skanowanie produktu Program antywirusowy Microsoft Defender zostało zatrzymane przed ukończeniem.
Identyfikator skanowania: {270F3C95-9E35-4C30-AA80-14B528206CAB}
Typ skanowania: Narzędzia chroniące przed złośliwym oprogramowaniem
Parametry skanowania: Szybkie skanowanie
Użytkownik: ZARZĄDZANIE NT\SYSTEM

Date: 2024-11-02 17:31:58
Description: 
Skanowanie produktu Program antywirusowy Microsoft Defender zostało zatrzymane przed ukończeniem.
Identyfikator skanowania: {77FAA359-8D3E-45B0-980F-DA933AB2519E}
Typ skanowania: Narzędzia chroniące przed złośliwym oprogramowaniem
Parametry skanowania: Szybkie skanowanie
Użytkownik: ZARZĄDZANIE NT\SYSTEM

Date: 2024-11-01 16:32:07
Description: 
Skanowanie produktu Program antywirusowy Microsoft Defender zostało zatrzymane przed ukończeniem.
Identyfikator skanowania: {384AE62A-A565-41F2-A221-9DCF9EFB5ED6}
Typ skanowania: Narzędzia chroniące przed złośliwym oprogramowaniem
Parametry skanowania: Szybkie skanowanie
Użytkownik: ZARZĄDZANIE NT\SYSTEM

Date: 2024-10-31 10:10:05
Description: 
Skanowanie produktu Program antywirusowy Microsoft Defender zostało zatrzymane przed ukończeniem.
Identyfikator skanowania: {C1FD6ECE-D02A-4D94-805A-644637FC7EF9}
Typ skanowania: Narzędzia chroniące przed złośliwym oprogramowaniem
Parametry skanowania: Szybkie skanowanie
Użytkownik: ZARZĄDZANIE NT\SYSTEM

Date: 2024-10-30 06:49:35
Description: 
Skanowanie produktu Program antywirusowy Microsoft Defender zostało zatrzymane przed ukończeniem.
Identyfikator skanowania: {2F0FC0D2-E74E-46CD-97BA-2C4DAA591F80}
Typ skanowania: Narzędzia chroniące przed złośliwym oprogramowaniem
Parametry skanowania: Szybkie skanowanie
Użytkownik: ZARZĄDZANIE NT\SYSTEM
Event[0]:

Date: 2024-10-31 09:04:34
Description: 
Produkt Program antywirusowy Microsoft Defender napotkał błąd podczas próby aktualizacji analizy zabezpieczeń.
Nowa wersja analizy zabezpieczeń: 
Poprzednia wersja analizy zabezpieczeń: 1.421.14.0
Źródło aktualizacji: Serwer usługi Microsoft Update
Typ analizy zabezpieczeń: Oprogramowanie antywirusowe
Typ aktualizacji: Pełne
Użytkownik: ZARZĄDZANIE NT\SYSTEM
Bieżąca wersja aparatu: 
Poprzednia wersja aparatu: 1.1.24090.11
Kod błędu: 0x80240009
Opis błędu: Podczas sprawdzania aktualizacji wystąpił nieoczekiwany problem. Aby uzyskać informacje na temat instalowania aktualizacji i rozwiązywania problemów z nimi, zobacz Pomoc i obsługę techniczną. 

Date: 2024-10-16 12:33:10
Description: 
Agent ochrony w czasie rzeczywistym produktu Program antywirusowy Microsoft Defender wykrył błąd i jego uruchomienie nie powiodło się.
Funkcja: Przy dostępie
Kod błędu: 0x80004005
Opis błędu: Nieokreślony błąd. 
Przyczyna: Sterownik filtru pominął skanowanie elementów i pracuje w trybie przekazywania. Może to być spowodowane niskim stanem zasobów.

Date: 2024-07-19 15:36:06
Description: 
Produkt Program antywirusowy Microsoft Defender napotkał błąd podczas próby aktualizacji analizy zabezpieczeń.
Nowa wersja analizy zabezpieczeń: 
Poprzednia wersja analizy zabezpieczeń: 1.415.140.0
Źródło aktualizacji: Serwer usługi Microsoft Update
Typ analizy zabezpieczeń: Oprogramowanie antywirusowe
Typ aktualizacji: Pełne
Użytkownik: ZARZĄDZANIE NT\SYSTEM
Bieżąca wersja aparatu: 
Poprzednia wersja aparatu: 1.1.24060.5
Kod błędu: 0x80070102
Opis błędu: Upłynął limit czasu operacji oczekiwania. 

Date: 2024-07-19 15:36:06
Description: 
Produkt Program antywirusowy Microsoft Defender napotkał błąd podczas próby aktualizacji analizy zabezpieczeń.
Nowa wersja analizy zabezpieczeń: 
Poprzednia wersja analizy zabezpieczeń: 1.415.140.0
Źródło aktualizacji: Serwer usługi Microsoft Update
Typ analizy zabezpieczeń: Oprogramowanie antywirusowe
Typ aktualizacji: Pełne
Użytkownik: ZARZĄDZANIE NT\SYSTEM
Bieżąca wersja aparatu: 
Poprzednia wersja aparatu: 1.1.24060.5
Kod błędu: 0x80070102
Opis błędu: Upłynął limit czasu operacji oczekiwania. 

Date: 2024-05-18 08:26:39
Description: 
Produkt Program antywirusowy Microsoft Defender napotkał błąd podczas próby aktualizacji analizy zabezpieczeń.
Nowa wersja analizy zabezpieczeń: 
Poprzednia wersja analizy zabezpieczeń: 1.411.216.0
Źródło aktualizacji: Serwer usługi Microsoft Update
Typ analizy zabezpieczeń: Oprogramowanie antywirusowe
Typ aktualizacji: Pełne
Użytkownik: ZARZĄDZANIE NT\SYSTEM
Bieżąca wersja aparatu: 
Poprzednia wersja aparatu: 1.1.24040.1
Kod błędu: 0x80240009
Opis błędu: Podczas sprawdzania aktualizacji wystąpił nieoczekiwany problem. Aby uzyskać informacje na temat instalowania aktualizacji i rozwiązywania problemów z nimi, zobacz Pomoc i obsługę techniczną. 

CodeIntegrity:
===============
Date: 2024-10-24 10:09:55
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\System32\SIHClient.exe) attempted to load \Device\HarddiskVolume2\Program Files\Malwarebytes\Anti-Malware\mbamsi64.dll that did not meet the Windows signing level requirements.


==================== Statystyki pamięci =========================== 

BIOS: Award Software International, Inc. FA 08/03/2011
Płyta główna: Gigabyte Technology Co., Ltd. G41MT-S2PT
Procesor: Intel(R) Celeron(R) CPU E3400 @ 2.60GHz
Procent pamięci w użyciu: 81%
Całkowita pamięć fizyczna: 4094.49 MB
Dostępna pamięć fizyczna: 773.11 MB
Całkowita pamięć wirtualna: 10258.93 MB
Dostępna pamięć wirtualna: 4577.82 MB

==================== Dyski ================================

Drive c: () (Fixed) (Total:118.19 GB) (Free:47.62 GB) (Model: SSDPR-CX400-128 ATA Device) NTFS

\\?\Volume{c2a75580-0000-0000-0000-100000000000}\ (Zastrzeżone przez system) (Fixed) (Total:0.54 GB) (Free:0.5 GB) NTFS
\\?\Volume{c2a75580-0000-0000-0000-60ae1d000000}\ () (Fixed) (Total:0.52 GB) (Free:0.08 GB) NTFS

==================== MBR & Tablica partycji ====================

==========================================================
Disk: 0 (MBR Code: Windows 7/8/10) (Size: 119.2 GB) (Disk ID: C2A75580)
Partition 1: (Active) - (Size=549 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=118.2 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=528 MB) - (Type=27)

==================== Koniec  Addition.txt =======================

  • Sad 1
Opublikowano (edytowane)

W logach czysto, tylko kosmetyka Wklejo notatnika poniższy tekst:

Cytat

HKU\S-1-5-21-1289171223-1415797552-1881391752-1001\...\Run: [ProductAuthenticationService] => C:\Users\Andrzej\AppData\Roaming\ProductAuthenticationService\pas.exe [1004072 2019-05-07] (ResolveDevOps Limited -> ResolveDevOps Limited) <==== UWAGA
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Ograniczenia <==== UWAGA

FirewallRules: [{A7072852-1314-4716-AD8A-34C9E5794716}] => (Allow) C:\Users\Andrzej\AppData\Roaming\Zoom\bin\airhost.exe => Brak pliku
FirewallRules: [{C3B1048E-4FFC-4631-BAF9-4C2AEE8B8AA5}] => (Allow) C:\Users\Andrzej\AppData\Roaming\Zoom\bin\airhost.exe => Brak pliku
FirewallRules: [{FCB41F17-A434-42F0-A2C4-DB230204AB2E}] => (Allow) C:\Program Files\Trade Quo\metatester64.exe => Brak pliku
FirewallRules: [TCP Query User{51B8C5CD-0797-4BFC-B831-C238F8A140FB}C:\program files\binance\binance.exe] => (Block) C:\program files\binance\binance.exe => Brak pliku
FirewallRules: [UDP Query User{73CA49E8-16C0-48C9-91AE-A31018819A70}C:\program files\binance\binance.exe] => (Block) C:\program files\binance\binance.exe => Brak pliku
EmptyTemp:
EmptyEventLogs:

Plik zapisz jako FixList.txt i w FRST naciśnij NAPRAW

Zrób pełny skan systemu za pomocą Eset Online skaner --->> https://www.eset.com/pl/home/online-scanner/

jeśli coś znajdzie wywal to a raport z usuwania ewent screen wrzuć na forum

Edytowane przez raven555
Opublikowano
11 godzin temu, androlo napisał(a):

Nazwa urządzenia    DESKTOP-P0OGB8U
Procesor    Intel(R) Celeron(R) CPU        E3400  @ 2.60GHz   2.60 GHz
Zainstalowana pamięć RAM    4,00 GB
Identyfikator urządzenia    F886D545-9048-4121-A864-2869D0384210
Identyfikator produktu    00331-20300-00000-AA556
Typ systemu    64-bitowy system operacyjny, procesor x64
Pióro i urządzenia dotykowe    Brak obsługi pióra i wprowadzania dotykowego dla tego ekranu
 

Wymień procesor, dokup adapter https://allegro.pl/oferta/intel-xeon-quad-e5450-3-00ghz-12m-1333-s771-10148682016#bundles, dorzuć 2x4gb ddr3 1333/1600 mhz zobaczysz które tańsze, zaaktualizuj bios do najnowszej wersji

9 godzin temu, raven555 napisał(a):

Możliwe że masz jakiś syf , Wrzuć komplet logów z FRST

Przecież to od razu widać że komputer prehistoryczny i jak ma to dobrze działać? Niech się cieszy że w ogóle mu się coś otwiera, ten procesor powinien już daawno wylądować w muzeum.

Jeśli chcesz dodać odpowiedź, zaloguj się lub zarejestruj nowe konto

Jedynie zarejestrowani użytkownicy mogą komentować zawartość tej strony.

Zarejestruj nowe konto

Załóż nowe konto. To bardzo proste!

Zarejestruj się

Zaloguj się

Posiadasz już konto? Zaloguj się poniżej.

Zaloguj się
  • Ostatnio przeglądający   0 użytkowników

    • Brak zarejestrowanych użytkowników przeglądających tę stronę.
×
×
  • Dodaj nową pozycję...