• Ogłoszenie:

Nieuruchamiające się pliki .exe

Bezpieczeństwo systemów, usuwanie wirusów, dobieranie programów antywirusowych. Obowiązkowe logi w tym dziale: trzy z FRST + Gmer.

Nieuruchamiające się pliki .exe

Postprzez Tomaszu 17 Lis 2018, 09:26

reklama
Witam.
Kilka dni temu byłem zmuszony przeinstalować system no i byłoby wszystko spoko gdyby nie fakt, że na śmierć zapomniałem się zabezpieczyć. Prawdopodobnie złapałem jakiegoś robala. Pliki exe po dwukliku nie reagują.
Prośba o sprawdzenie logów.

FRST:
Kod: Zaznacz wszystko
Rezultaty skanowania Farbar Recovery Scan Tool (FRST) (x64) Wersja: 15.11.2018
Uruchomiony przez Tomaszu (administrator)  TOMMY (17-11-2018 09:05:32)
Uruchomiony z C:\Users\Tomaszu\Desktop
Załadowane profile: Tomaszu (Dostępne profile: Tomaszu)
Platform: Windows 7 Ultimate (X64) Język: Polski (Polska)
Internet Explorer Wersja 8 (Domyślna przeglądarka: Opera)
Tryb startu: Normal
Instrukcja obsługi Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Procesy (filtrowane) =================

(Załączenie wejścia w fixlist spowoduje zamknięcie procesu. Powiązany plik nie zostanie przeniesiony.)

(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Microsoft Corporation) C:\Windows\SysWOW64\rundll32.exe
() C:\Windows\SysWOW64\HsMgr.exe
() C:\Windows\system\HsMgr64.exe
() E:\Program Files\Everything\Everything.exe
(Hola Networks Ltd.) C:\Program Files\Hola\app\hola.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
() E:\Program Files\NetMeter\NetMeter.exe
(f.lux Software LLC) C:\Users\Tomaszu\AppData\Local\FluxSoftware\Flux\flux.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(CMedia) C:\Program Files\ASUS Xonar DG Audio\Customapp\AsusAudioCenter.exe
() E:\Program Files\Everything\Everything.exe
(Hola Networks Ltd.) C:\Program Files\Hola\app\hola_svc.exe
(Hola Networks Ltd.) C:\Program Files\Hola\app\hola_updater.exe
(Piriform Software Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe
(Microsoft Corporation) C:\Windows\SysWOW64\WerFault.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\x64\aswidsagenta.exe
(Opera Software) C:\Users\Tomaszu\AppData\Local\Programs\Opera\56.0.3051.99\opera.exe
(Opera Software) C:\Users\Tomaszu\AppData\Local\Programs\Opera\56.0.3051.99\opera_crashreporter.exe
(Opera Software) C:\Users\Tomaszu\AppData\Local\Programs\Opera\56.0.3051.99\opera.exe
(Opera Software) C:\Users\Tomaszu\AppData\Local\Programs\Opera\56.0.3051.99\opera.exe
(Opera Software) C:\Users\Tomaszu\AppData\Local\Programs\Opera\56.0.3051.99\opera.exe
(Opera Software) C:\Users\Tomaszu\AppData\Local\Programs\Opera\56.0.3051.99\opera.exe
(Opera Software) C:\Users\Tomaszu\AppData\Local\Programs\Opera\56.0.3051.99\opera.exe
(Opera Software) C:\Users\Tomaszu\AppData\Local\Programs\Opera\56.0.3051.99\opera.exe
(Opera Software) C:\Users\Tomaszu\AppData\Local\Programs\Opera\56.0.3051.99\opera.exe
(Opera Software) C:\Users\Tomaszu\AppData\Local\Programs\Opera\56.0.3051.99\opera.exe
(Opera Software) C:\Users\Tomaszu\AppData\Local\Programs\Opera\56.0.3051.99\opera.exe
(Opera Software) C:\Users\Tomaszu\AppData\Local\Programs\Opera\56.0.3051.99\opera.exe
(IObit) C:\Program Files (x86)\IObit\Driver Booster\6.0.2\Pub\PubMonitor.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvSHIM.exe
(Opera Software) C:\Users\Tomaszu\AppData\Local\Programs\Opera\56.0.3051.99\opera.exe
(Opera Software) C:\Users\Tomaszu\AppData\Local\Programs\Opera\56.0.3051.99\opera.exe
() E:\Różne rzeczy\Programy\Gmer OTL Zoek\zoek.exe
(Microsoft Corporation) C:\Windows\SysWOW64\cmd.exe
(Microsoft Corporation) C:\Windows\SysWOW64\cmd.exe
(Microsoft Corporation) C:\Windows\System32\taskmgr.exe
(Microsoft Corporation) C:\Windows\SysWOW64\notepad.exe
(Opera Software) C:\Users\Tomaszu\AppData\Local\Programs\Opera\56.0.3051.99\opera.exe
(Opera Software) C:\Users\Tomaszu\AppData\Local\Programs\Opera\56.0.3051.99\opera.exe
(Opera Software) C:\Users\Tomaszu\AppData\Local\Programs\Opera\56.0.3051.99\opera.exe
(Opera Software) C:\Users\Tomaszu\AppData\Local\Programs\Opera\56.0.3051.99\opera.exe

==================== Rejestr (filtrowane) ===========================

(Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.)

HKLM\...\Run: [Cmaudio8788] => C:\Windows\syswow64\RunDll32.exe C:\Windows\Syswow64\cmicnfgp.dll,CMICtrlWnd
HKLM\...\Run: [Cmaudio8788GX] => C:\Windows\syswow64\HsMgr.exe [200704 2008-07-11] ()
HKLM\...\Run: [Cmaudio8788GX64] => C:\Windows\system\HsMgr64.exe [282112 2008-07-11] ()
HKLM\...\Run: [Everything] => E:\Program Files\Everything\Everything.exe [2199656 2018-02-09] ()
HKLM\...\Run: [hola] => C:\Program Files\Hola\app\hola.exe [2506176 2018-10-30] (Hola Networks Ltd.) <==== UWAGA
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [18388928 2018-11-10] (Realtek Semiconductor)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [242392 2018-11-11] (AVAST Software)
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Ograniczenia <==== UWAGA
HKU\S-1-5-21-3195122152-1000191773-1615336282-1001\...\Run: [E:\Program Files\NetMeter\NetMeter.exe] => E:\Program Files\NetMeter\NetMeter.exe [331264 2007-08-11] ()
HKU\S-1-5-21-3195122152-1000191773-1615336282-1001\...\Run: [f.lux] => C:\Users\Tomaszu\AppData\Local\FluxSoftware\Flux\flux.exe [1682936 2018-01-17] (f.lux Software LLC)
HKU\S-1-5-21-3195122152-1000191773-1615336282-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [19476424 2018-11-06] (Piriform Software Ltd)
HKU\S-1-5-21-3195122152-1000191773-1615336282-1001\...\Run: [GG] => C:\Users\Tomaszu\AppData\Local\GG\Application\gghub.exe [4078144 2018-11-07] (GG Network S.A.)
HKU\S-1-5-21-3195122152-1000191773-1615336282-1001\...\RunOnce: [FlashPlayerUpdate] => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_31_0_0_122_pepper.exe [1454592 2018-11-11] (Adobe Systems Incorporated)

==================== Internet (filtrowane) ====================

(Załączenie wejścia w fixlist, w przypadku gdy jest to obiekt rejestru, spowoduje usunięcie go z rejestru lub przywrócenie jego domyślnej postaci.)

Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{D897194E-6740-48C1-88B9-4F2A6D7A0885}: [DhcpNameServer] 192.168.1.1

Internet Explorer:
==================
HKU\S-1-5-21-3195122152-1000191773-1615336282-1001\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://www.msn.com/pl-pl/?ocid=iehp
Filter: deflate - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\system32\urlmon.dll [2009-07-14] (Microsoft Corporation)
Filter-x32: deflate - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\SysWOW64\urlmon.dll [2009-07-14] (Microsoft Corporation)
Filter: gzip - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\system32\urlmon.dll [2009-07-14] (Microsoft Corporation)
Filter-x32: gzip - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\SysWOW64\urlmon.dll [2009-07-14] (Microsoft Corporation)

FireFox:
========
FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2018-03-24] (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2018-03-24] (NVIDIA Corporation)

Opera:
=======
OPR Extension: (Unlimited Free VPN - Hola) - C:\Users\Tomaszu\AppData\Roaming\Opera Software\Opera Stable\Extensions\ekmmelpnmfdegjhnmadddcfjcahpajnm [2018-11-09]
OPR Extension: (FreeStyler) - C:\Users\Tomaszu\AppData\Roaming\Opera Software\Opera Stable\Extensions\hihigldmabkodfpehkgdemjklmaebmca [2018-11-09]
OPR Extension: (uBlock Origin) - C:\Users\Tomaszu\AppData\Roaming\Opera Software\Opera Stable\Extensions\kccohkcpppjjkkjppopfnflnebibpida [2018-11-09]
OPR Extension: (Adblock Plus) - C:\Users\Tomaszu\AppData\Roaming\Opera Software\Opera Stable\Extensions\oidhhegpmlfpoeialbgcdocjalghfpkp [2018-11-16]

==================== Usługi (filtrowane) ====================

(Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)

R3 aswbIDSAgent; C:\Program Files\AVAST Software\Avast\x64\aswidsagenta.exe [8188768 2018-11-11] (AVAST Software)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [325024 2018-11-11] (AVAST Software)
R2 Everything; E:\Program Files\Everything\Everything.exe [2199656 2018-02-09] ()
R2 hola_svc; C:\Program Files\Hola\app\hola_svc.exe [20608960 2018-10-30] (Hola Networks Ltd.) <==== UWAGA
R2 hola_updater; C:\Program Files\Hola\app\hola_updater.exe [20608960 2018-10-30] (Hola Networks Ltd.) <==== UWAGA
S2 luminati_net_updater_win_hola_org; C:\Program Files\Hola\app\net_updater64.exe [2017712 2018-10-30] (Luminati Networks Ltd.)
S3 NvContainerLocalSystem; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [522688 2018-03-24] (NVIDIA Corporation)
S3 NvContainerNetworkService; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [522688 2018-03-24] (NVIDIA Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2009-07-14] (Microsoft Corporation)
R2 NVDisplay.ContainerLocalSystem; "C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -s NVDisplay.ContainerLocalSystem -f "C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem" -r -p 30000
R2 NvTelemetryContainer; "C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe" -s NvTelemetryContainer -f "C:\ProgramData\NVIDIA\NvTelemetryContainer.log" -l 3 -d "C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\plugins" -r

===================== Sterowniki (filtrowane) ======================

(Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)

R1 aswArPot; C:\Windows\System32\drivers\aswArPot.sys [201408 2018-11-11] (AVAST Software)
R1 aswbidsdriver; C:\Windows\System32\drivers\aswbidsdrivera.sys [230512 2018-11-11] (AVAST Software)
R0 aswbidsh; C:\Windows\System32\drivers\aswbidsha.sys [201928 2018-11-11] (AVAST Software)
R0 aswblog; C:\Windows\System32\drivers\aswbloga.sys [346760 2018-11-11] (AVAST Software)
R0 aswbuniv; C:\Windows\System32\drivers\aswbuniva.sys [59664 2018-11-11] (AVAST Software)
R1 aswHdsKe; C:\Windows\System32\drivers\aswHdsKe.sys [185240 2018-11-11] (AVAST Software)
S3 aswHwid; C:\Windows\System32\drivers\aswHwid.sys [47064 2018-11-11] (AVAST Software)
R1 aswKbd; C:\Windows\System32\drivers\aswKbd.sys [42456 2018-11-11] (AVAST Software)
R2 aswMonFlt; C:\Windows\System32\drivers\aswMonFlt.sys [163376 2018-11-11] (AVAST Software)
R1 aswRdr; C:\Windows\System32\drivers\aswRdr2.sys [111968 2018-11-11] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\drivers\aswRvrt.sys [88112 2018-11-11] (AVAST Software)
R1 aswSnx; C:\Windows\System32\drivers\aswSnx.sys [1028840 2018-11-11] (AVAST Software)
R1 aswSP; C:\Windows\System32\drivers\aswSP.sys [467904 2018-11-11] (AVAST Software)
R2 aswStm; C:\Windows\System32\drivers\aswStm.sys [208640 2018-11-11] (AVAST Software)
R0 aswVmm; C:\Windows\System32\drivers\aswVmm.sys [381144 2018-11-11] (AVAST Software)
R3 cmudaxp; C:\Windows\System32\drivers\cmudaxp.sys [2734080 2013-04-11] (C-Media Inc)
R1 HWiNFO32; C:\Windows\SysWOW64\drivers\HWiNFO64A.SYS [27552 2018-11-10] (REALiX(tm))
S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [31168 2018-03-24] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [69544 2018-11-10] (NVIDIA Corporation)
R3 nvvhci; C:\Windows\System32\DRIVERS\nvvhci.sys [58816 2018-03-24] (NVIDIA Corporation)
R3 SmbDrvI; C:\Windows\System32\DRIVERS\Smb_driver_Intel.sys [51808 2018-11-10] (Synaptics Incorporated)
U3 fxldipoc; \??\C:\Users\Tomaszu\AppData\Local\Temp\fxldipoc.sys [X] <==== UWAGA

==================== NetSvcs (filtrowane) ===================

(Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)


==================== Jeden miesiąc - utworzone pliki i foldery ========

(Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.)

2018-11-17 09:05 - 2018-11-17 09:05 - 000012447 _____ C:\Users\Tomaszu\Desktop\FRST.txt
2018-11-17 09:03 - 2018-11-17 09:05 - 000000000 ____D C:\FRST
2018-11-17 09:03 - 2018-11-17 09:03 - 002416128 _____ (Farbar) C:\Users\Tomaszu\Desktop\FRST64.exe
2018-11-17 08:17 - 2018-11-17 08:24 - 000000802 _____ C:\runcheck.txt
2018-11-17 08:16 - 2018-11-17 08:16 - 000388608 _____ (Trend Micro Inc.) C:\Users\Tomaszu\Desktop\HijackThis.exe
2018-11-17 07:50 - 2018-11-17 07:50 - 000000000 ____D C:\zoek_backup
2018-11-16 21:40 - 2018-11-16 21:40 - 000387930 _____ C:\Users\Tomaszu\Desktop\1918_CLEO4_setup.exe
2018-11-16 21:37 - 2018-11-16 21:37 - 000108900 _____ C:\Users\Tomaszu\Downloads\bass.dll.zip
2018-11-16 21:34 - 2018-11-16 21:34 - 000089903 _____ C:\Users\Tomaszu\Downloads\bass.zip
2018-11-16 13:37 - 2018-11-17 08:17 - 000000000 ____D C:\Users\Tomaszu\AppData\Roaming\GG
2018-11-16 13:37 - 2018-11-16 13:37 - 000001144 _____ C:\Users\Tomaszu\Desktop\GG.lnk
2018-11-16 13:37 - 2018-11-16 13:37 - 000000000 ____D C:\Users\Tomaszu\AppData\Roaming\Mozilla
2018-11-16 13:37 - 2018-11-16 13:37 - 000000000 ____D C:\Users\Tomaszu\AppData\Roaming\Macromedia
2018-11-16 13:36 - 2018-11-16 13:37 - 000000000 ____D C:\Users\Tomaszu\AppData\Local\GG
2018-11-16 13:36 - 2018-11-16 13:36 - 000001152 _____ C:\Users\Tomaszu\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\GG.lnk
2018-11-16 13:34 - 2018-11-16 13:34 - 000400744 _____ C:\Users\Tomaszu\Desktop\gg-install.exe
2018-11-16 12:48 - 2018-11-16 12:50 - 000000000 ____D C:\Users\Tomaszu\AppData\Roaming\foobar2000
2018-11-13 16:49 - 2018-11-13 17:08 - 000002090 _____ C:\Users\Tomaszu\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\f.lux.lnk
2018-11-13 16:49 - 2018-11-13 16:49 - 000000000 ____D C:\Users\Tomaszu\AppData\Local\FluxSoftware
2018-11-12 17:18 - 2018-11-12 17:18 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\San Andreas Multiplayer
2018-11-12 17:16 - 2018-11-12 17:16 - 016290668 _____ C:\Users\Tomaszu\Desktop\sa-mp-0.3.7-R2-install.exe
2018-11-12 17:00 - 2018-11-17 05:15 - 000003870 _____ C:\Windows\System32\Tasks\CCleaner Update
2018-11-12 17:00 - 2018-11-17 05:15 - 000002806 _____ C:\Windows\System32\Tasks\CCleanerSkipUAC
2018-11-12 17:00 - 2018-11-12 17:00 - 000000822 _____ C:\Users\Public\Desktop\CCleaner.lnk
2018-11-12 17:00 - 2018-11-12 17:00 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
2018-11-12 17:00 - 2018-11-12 17:00 - 000000000 ____D C:\Program Files\CCleaner
2018-11-12 16:59 - 2018-11-12 16:59 - 018071560 _____ (Piriform Software Ltd) C:\Users\Tomaszu\Desktop\ccsetup549.exe
2018-11-12 11:46 - 2018-11-16 14:49 - 000000020 _____ C:\Users\Tomaszu\AppData\Roaming\dsp_LoudMax.ini
2018-11-12 11:35 - 2018-11-12 11:35 - 000050150 _____ C:\Users\Tomaszu\Downloads\future.mid
2018-11-11 20:35 - 2018-11-11 20:35 - 000000000 ____D C:\Users\Tomaszu\AppData\LocalLow\Google
2018-11-11 20:35 - 2018-11-11 20:35 - 000000000 ____D C:\Users\Tomaszu\AppData\Local\NVIDIA
2018-11-11 20:35 - 2018-11-11 20:35 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Earth Pro
2018-11-11 20:34 - 2018-02-07 17:35 - 081014793 _____ (lrepacks.ru ) C:\Users\Tomaszu\Downloads\Google Earth Pro 7.3.1.4507.exe
2018-11-11 20:34 - 2018-01-03 15:22 - 000001353 _____ C:\Users\Tomaszu\Downloads\Éá߻ᬫó¬á portable.cmd
2018-11-11 20:34 - 2018-01-03 15:22 - 000001341 _____ C:\Users\Tomaszu\Downloads\ĺĘňá´ ŃßÔáş«ó¬á.cmd
2018-11-11 20:32 - 2018-11-11 20:33 - 080995761 _____ C:\Users\Tomaszu\Downloads\Google Earth Pro 7.3.1.4507  zarejestrowany.zip
2018-11-11 18:56 - 2018-11-11 18:56 - 000001922 _____ C:\Users\Public\Desktop\Avast Free Antivirus.lnk
2018-11-11 18:56 - 2018-11-11 18:56 - 000000000 ____D C:\Users\Tomaszu\AppData\Roaming\AVAST Software
2018-11-11 18:56 - 2018-11-11 18:56 - 000000000 ____D C:\Users\Tomaszu\AppData\Local\CEF
2018-11-11 18:56 - 2018-11-11 18:56 - 000000000 ____D C:\Users\Tomaszu\AppData\Local\AVAST Software
2018-11-11 18:56 - 2018-11-11 18:56 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVAST Software
2018-11-11 18:55 - 2018-11-17 05:15 - 000000000 ____D C:\Windows\System32\Tasks\Avast Software
2018-11-11 18:54 - 2018-11-11 18:54 - 001142072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ucrtbase.dll
2018-11-11 18:54 - 2018-11-11 18:54 - 001028840 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSnx.sys
2018-11-11 18:54 - 2018-11-11 18:54 - 001001272 _____ (Microsoft Corporation) C:\Windows\system32\ucrtbase.dll
2018-11-11 18:54 - 2018-11-11 18:54 - 000467904 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSP.sys
2018-11-11 18:54 - 2018-11-11 18:54 - 000381144 _____ (AVAST Software) C:\Windows\system32\Drivers\aswVmm.sys
2018-11-11 18:54 - 2018-11-11 18:54 - 000378584 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe
2018-11-11 18:54 - 2018-11-11 18:54 - 000346760 _____ (AVAST Software) C:\Windows\system32\Drivers\aswbloga.sys
2018-11-11 18:54 - 2018-11-11 18:54 - 000230512 _____ (AVAST Software) C:\Windows\system32\Drivers\aswbidsdrivera.sys
2018-11-11 18:54 - 2018-11-11 18:54 - 000208640 _____ (AVAST Software) C:\Windows\system32\Drivers\aswStm.sys
2018-11-11 18:54 - 2018-11-11 18:54 - 000201928 _____ (AVAST Software) C:\Windows\system32\Drivers\aswbidsha.sys
2018-11-11 18:54 - 2018-11-11 18:54 - 000201408 _____ (AVAST Software) C:\Windows\system32\Drivers\aswArPot.sys
2018-11-11 18:54 - 2018-11-11 18:54 - 000185240 _____ (AVAST Software) C:\Windows\system32\Drivers\aswHdsKe.sys
2018-11-11 18:54 - 2018-11-11 18:54 - 000163376 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys
2018-11-11 18:54 - 2018-11-11 18:54 - 000111968 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys
2018-11-11 18:54 - 2018-11-11 18:54 - 000088112 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRvrt.sys
2018-11-11 18:54 - 2018-11-11 18:54 - 000059664 _____ (AVAST Software) C:\Windows\system32\Drivers\aswbuniva.sys
2018-11-11 18:54 - 2018-11-11 18:54 - 000047064 _____ (AVAST Software) C:\Windows\system32\Drivers\aswHwid.sys
2018-11-11 18:54 - 2018-11-11 18:54 - 000042456 _____ (AVAST Software) C:\Windows\system32\Drivers\aswKbd.sys
2018-11-11 18:54 - 2018-11-11 18:54 - 000003910 _____ C:\Windows\System32\Tasks\Avast Emergency Update
2018-11-11 18:54 - 2018-11-11 18:54 - 000000000 ____D C:\Program Files\Common Files\AVAST Software
2018-11-11 18:53 - 2018-11-11 19:56 - 000000000 ____D C:\ProgramData\AVAST Software
2018-11-11 18:53 - 2018-11-11 18:53 - 000000000 ____D C:\Program Files\AVAST Software
2018-11-11 18:52 - 2018-11-11 18:52 - 000178320 _____ (AVAST Software) C:\Users\Tomaszu\Desktop\avast_free_antivirus_setup_online (1).exe
2018-11-11 18:07 - 2018-11-17 05:15 - 000004572 _____ C:\Windows\System32\Tasks\Adobe Flash Player PPAPI Notifier
2018-11-11 18:07 - 2018-11-11 18:07 - 000842240 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2018-11-11 18:07 - 2018-11-11 18:07 - 000175104 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2018-11-11 18:07 - 2018-11-11 18:07 - 000000000 ____D C:\Windows\SysWOW64\Macromed
2018-11-11 18:07 - 2018-11-11 18:07 - 000000000 ____D C:\Windows\system32\Macromed
2018-11-11 18:07 - 2018-11-11 18:07 - 000000000 ____D C:\Users\Tomaszu\AppData\Local\Adobe
2018-11-11 16:11 - 2018-11-11 16:12 - 000000000 ____D C:\Users\Tomaszu\Desktop\speedometer
2018-11-11 15:58 - 2018-11-11 15:58 - 000008205 _____ C:\Windows\unins000.dat
2018-11-11 15:58 - 2018-11-11 15:57 - 001202477 _____ C:\Windows\unins000.exe
2018-11-11 15:57 - 2018-11-11 15:57 - 000894691 _____ (Seemann, Deji, Alien ) C:\Users\Tomaszu\Desktop\CLEO4_setup.exe
2018-11-11 12:34 - 2018-11-11 12:34 - 000000000 ____D C:\Users\Tomaszu\AppData\Roaming\WinRAR
2018-11-11 12:33 - 2018-11-11 12:33 - 000172629 _____ C:\Users\Tomaszu\Desktop\1479033541_speedometer.rar
2018-11-10 20:34 - 2018-11-10 20:34 - 000000000 ____D C:\Users\Tomaszu\Desktop\kopia hssrv
2018-11-10 20:04 - 2018-11-10 20:04 - 000178320 _____ (AVAST Software) C:\Users\Tomaszu\Desktop\avast_free_antivirus_setup_online.exe
2018-11-10 18:37 - 2018-11-10 18:37 - 000000000 ____D C:\ProgramData\PopCap Games
2018-11-10 17:12 - 2018-11-16 21:27 - 000000000 ____D C:\Users\Tomaszu\AppData\Local\CrashDumps
2018-11-10 15:29 - 2018-11-11 22:24 - 000000000 ____D C:\Users\Tomaszu\Documents\TmForever
2018-11-10 15:29 - 2018-11-10 15:48 - 000000000 ____D C:\ProgramData\TmForever
2018-11-10 15:29 - 2006-05-31 07:24 - 000230168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_2.dll
2018-11-10 15:29 - 2006-05-31 07:22 - 000354072 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_2.dll
2018-11-10 15:29 - 2006-03-31 12:41 - 003927248 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_30.dll
2018-11-10 15:29 - 2006-03-31 12:40 - 002388176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_30.dll
2018-11-10 15:29 - 2006-03-31 12:40 - 000352464 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_1.dll
2018-11-10 15:29 - 2006-03-31 12:39 - 000229584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_1.dll
2018-11-10 15:29 - 2006-03-31 12:39 - 000083664 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_1.dll
2018-11-10 15:29 - 2006-03-31 12:39 - 000062672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_1.dll
2018-11-10 15:28 - 2018-11-10 15:28 - 000000779 _____ C:\Users\Public\Desktop\TmNationsForever.lnk
2018-11-10 15:28 - 2018-11-10 15:28 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TmNationsForever
2018-11-10 15:28 - 2006-02-03 08:43 - 003830992 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_29.dll
2018-11-10 15:28 - 2006-02-03 08:43 - 002332368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_29.dll
2018-11-10 15:28 - 2006-02-03 08:42 - 000355536 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_0.dll
2018-11-10 15:28 - 2006-02-03 08:42 - 000230096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_0.dll
2018-11-10 15:28 - 2006-02-03 08:41 - 000016592 _____ (Microsoft Corporation) C:\Windows\system32\x3daudio1_0.dll
2018-11-10 15:28 - 2006-02-03 08:41 - 000014032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\x3daudio1_0.dll
2018-11-10 15:28 - 2005-12-05 18:09 - 003815120 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_28.dll
2018-11-10 15:28 - 2005-12-05 18:09 - 002323664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_28.dll
2018-11-10 15:28 - 2005-07-22 19:59 - 003807440 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_27.dll
2018-11-10 15:28 - 2005-07-22 19:59 - 002319568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_27.dll
2018-11-10 15:28 - 2005-05-26 15:34 - 003767504 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_26.dll
2018-11-10 15:28 - 2005-05-26 15:34 - 002297552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_26.dll
2018-11-10 15:28 - 2005-03-18 17:19 - 003823312 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_25.dll
2018-11-10 15:28 - 2005-02-05 19:45 - 003544272 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_24.dll
2018-11-10 15:28 - 2005-02-05 19:45 - 002222800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_24.dll
2018-11-10 14:34 - 2018-11-10 14:45 - 530600781 _____ C:\Users\Tomaszu\Desktop\tmnationsforever_setup.exe
2018-11-10 12:42 - 2018-11-16 21:12 - 000000000 ____D C:\Users\Tomaszu\AppData\Local\Everything
2018-11-10 12:39 - 2018-11-10 12:39 - 001087424 _____ (Realtek ) C:\Windows\system32\Drivers\Rt64win7.sys
2018-11-10 12:39 - 2018-11-10 12:39 - 000122928 _____ (Realtek Semiconductor Corporation) C:\Windows\system32\RtNicProp64.dll
2018-11-10 12:39 - 2018-11-10 12:39 - 000118896 _____ (Realtek Semiconductor Corporation) C:\Windows\system32\RTNUninst64.dll
2018-11-10 12:38 - 2018-11-10 12:38 - 000218968 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvhda64v.sys
2018-11-10 12:38 - 2018-11-10 12:38 - 000069544 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvvad64v.sys
2018-11-10 12:38 - 2018-11-10 12:38 - 000038232 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdap64.dll
2018-11-10 12:37 - 2018-11-10 12:37 - 000000832 _____ C:\Windows\system32\Drivers\rtkhdasetting.zip
2018-11-10 12:37 - 2018-11-10 12:37 - 000000000 ____H C:\ProgramData\DP45977C.lfl
2018-11-10 12:37 - 2018-11-10 12:37 - 000000000 ____D C:\Windows\SysWOW64\RTCOM
2018-11-10 12:37 - 2018-11-10 12:37 - 000000000 ____D C:\Windows\system32\DAX3
2018-11-10 12:37 - 2018-11-10 12:37 - 000000000 ____D C:\Windows\system32\DAX2
2018-11-10 12:37 - 2018-11-10 12:37 - 000000000 ____D C:\ProgramData\Audyssey Labs
2018-11-10 12:37 - 2018-11-10 12:37 - 000000000 ____D C:\Program Files\Realtek
2018-11-10 12:36 - 2018-11-10 12:36 - 072520672 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoRes64.dat
2018-11-10 12:36 - 2018-11-10 12:36 - 017086581 _____ C:\Windows\system32\Drivers\RTAIODAT.DAT
2018-11-10 12:36 - 2018-11-10 12:36 - 015218576 _____ (Yamaha Corporation) C:\Windows\system32\YamahaAE3.dll
2018-11-10 12:36 - 2018-11-10 12:36 - 007178432 _____ (Dolby Laboratories) C:\Windows\system32\R4EEP64A.dll
2018-11-10 12:36 - 2018-11-10 12:36 - 007101704 _____ (Dolby Laboratories) C:\Windows\system32\DDPP64A.dll
2018-11-10 12:36 - 2018-11-10 12:36 - 006270160 _____ (Dolby Laboratories) C:\Windows\system32\DDPP64AF3.dll
2018-11-10 12:36 - 2018-11-10 12:36 - 006155720 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RTKVHD64.sys
2018-11-10 12:36 - 2018-11-10 12:36 - 005804772 _____ C:\Windows\system32\Drivers\rtvienna.dat
2018-11-10 12:36 - 2018-11-10 12:36 - 005346960 _____ (Dolby Laboratories) C:\Windows\system32\DolbyDAX2APOv211.dll
2018-11-10 12:36 - 2018-11-10 12:36 - 003690856 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RltkAPO64.dll
2018-11-10 12:36 - 2018-11-10 12:36 - 003677120 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTSnMg64.cpl
2018-11-10 12:36 - 2018-11-10 12:36 - 003452112 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkApi64.dll
2018-11-10 12:36 - 2018-11-10 12:36 - 003417976 _____ (DTS, Inc.) C:\Windows\system32\slcnt64.dll
2018-11-10 12:36 - 2018-11-10 12:36 - 003306784 _____ (Yamaha Corporation) C:\Windows\system32\YamahaAE2.dll
2018-11-10 12:36 - 2018-11-10 12:36 - 003223832 _____ (Realtek Semiconductor Corp.) C:\Windows\SysWOW64\RltkAPO.dll
2018-11-10 12:36 - 2018-11-10 12:36 - 003215184 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtPgEx64.dll
2018-11-10 12:36 - 2018-11-10 12:36 - 003128776 _____ (DTS, Inc.) C:\Windows\system32\sltech64.dll
2018-11-10 12:36 - 2018-11-10 12:36 - 002992144 _____ (Audyssey Labs) C:\Windows\system32\AudysseyEfx.dll
2018-11-10 12:36 - 2018-11-10 12:36 - 002930624 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoInstII64.dll
2018-11-10 12:36 - 2018-11-10 12:36 - 002444648 _____ (Dolby Laboratories) C:\Windows\system32\DolbyDAX2APOv201.dll
2018-11-10 12:36 - 2018-11-10 12:36 - 002197936 _____ (Yamaha Corporation) C:\Windows\system32\YamahaAE.dll
2018-11-10 12:36 - 2018-11-10 12:36 - 001971328 _____ (Dolby Laboratories) C:\Windows\system32\DDPD64A.dll
2018-11-10 12:36 - 2018-11-10 12:36 - 001965120 _____ (Dolby Laboratories) C:\Windows\system32\DDPD64AF3.dll
2018-11-10 12:36 - 2018-11-10 12:36 - 001787912 _____ (DTS) C:\Windows\system32\DTSS2SpeakerDLL64.dll
2018-11-10 12:36 - 2018-11-10 12:36 - 001598360 _____ (DTS) C:\Windows\system32\DTSS2HeadphoneDLL64.dll
2018-11-10 12:36 - 2018-11-10 12:36 - 001544216 _____ (Dolby Laboratories) C:\Windows\system32\DAX3APOProp.dll
2018-11-10 12:36 - 2018-11-10 12:36 - 001516232 _____ (DTS) C:\Windows\system32\DTSBoostDLL64.dll
2018-11-10 12:36 - 2018-11-10 12:36 - 001448736 _____ (Dolby Laboratories) C:\Windows\system32\DolbyAPOv251gm.dll
2018-11-10 12:36 - 2018-11-10 12:36 - 001435096 _____ (Synopsys, Inc.) C:\Windows\system32\SRRPTR64.dll
2018-11-10 12:36 - 2018-11-10 12:36 - 001382200 _____ (TOSHIBA Corporation) C:\Windows\system32\tosade.dll
2018-11-10 12:36 - 2018-11-10 12:36 - 001372352 _____ (Dolby Laboratories) C:\Windows\system32\DAX3APOv251.dll
2018-11-10 12:36 - 2018-11-10 12:36 - 001353280 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTCOM64.dll
2018-11-10 12:36 - 2018-11-10 12:36 - 001346568 _____ (Sound Research, Corp.) C:\Windows\system32\SECOMN64.dll
2018-11-10 12:36 - 2018-11-10 12:36 - 001337600 _____ (Toshiba Client Solutions Co., Ltd.) C:\Windows\system32\tossaeapo64.dll
2018-11-10 12:36 - 2018-11-10 12:36 - 001268984 _____ (Sound Research, Corp.) C:\Windows\system32\SEHDHF64.dll
2018-11-10 12:36 - 2018-11-10 12:36 - 001259696 _____ (Dolby Laboratories) C:\Windows\system32\DolbyDAX2APOvlldp.dll
2018-11-10 12:36 - 2018-11-10 12:36 - 001209528 _____ (Sound Research, Corp.) C:\Windows\system32\SEAPO64.dll
2018-11-10 12:36 - 2018-11-10 12:36 - 001164584 _____ (Dolby Laboratories) C:\Windows\system32\DolbyAPOvlldpgm.dll
2018-11-10 12:36 - 2018-11-10 12:36 - 001159144 _____ (Dolby Laboratories) C:\Windows\system32\DolbyDAX2APOProp.dll
2018-11-10 12:36 - 2018-11-10 12:36 - 001133560 _____ (Sound Research, Corp.) C:\Windows\system32\SEHDRA64.dll
2018-11-10 12:36 - 2018-11-10 12:36 - 001041208 _____ (Sound Research, Corp.) C:\Windows\SysWOW64\SECOMN32.dll
2018-11-10 12:36 - 2018-11-10 12:36 - 001000616 _____ (Sound Research, Corp.) C:\Windows\SysWOW64\SEHDHF32.dll
2018-11-10 12:36 - 2018-11-10 12:36 - 000994648 _____ (DTS, Inc.) C:\Windows\system32\sl3apo64.dll
2018-11-10 12:36 - 2018-11-10 12:36 - 000964992 _____ (Sony Corporation) C:\Windows\system32\SFSS_APO.dll
2018-11-10 12:36 - 2018-11-10 12:36 - 000873424 _____ (TOSHIBA Corporation) C:\Windows\system32\tadefxapo264.dll
2018-11-10 12:36 - 2018-11-10 12:36 - 000852096 _____ (Toshiba Client Solutions Co., Ltd.) C:\Windows\system32\tosasfapo64.dll
2018-11-10 12:36 - 2018-11-10 12:36 - 000751264 _____ (DTS) C:\Windows\system32\DTSBassEnhancementDLL64.dll
2018-11-10 12:36 - 2018-11-10 12:36 - 000734736 _____ (DTS) C:\Windows\system32\DTSSymmetryDLL64.dll
2018-11-10 12:36 - 2018-11-10 12:36 - 000715608 _____ (DTS) C:\Windows\system32\DTSVoiceClarityDLL64.dll
2018-11-10 12:36 - 2018-11-10 12:36 - 000714424 _____ (ICEpower a/s) C:\Windows\system32\ICEsoundAPO64.dll
2018-11-10 12:36 - 2018-11-10 12:36 - 000692128 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtDataProc64.dll
2018-11-10 12:36 - 2018-11-10 12:36 - 000604760 _____ (Toshiba Client Solutions Co., Ltd.) C:\Windows\system32\tossaemaxapo64.dll
2018-11-10 12:36 - 2018-11-10 12:36 - 000541080 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSX64.dll
2018-11-10 12:36 - 2018-11-10 12:36 - 000511600 _____ (DTS) C:\Windows\system32\DTSNeoPCDLL64.dll
2018-11-10 12:36 - 2018-11-10 12:36 - 000467120 _____ (Synopsys, Inc.) C:\Windows\system32\SRAPO64.dll
2018-11-10 12:36 - 2018-11-10 12:36 - 000453240 _____ (Dolby Laboratories) C:\Windows\system32\R4EED64A.dll
2018-11-10 12:36 - 2018-11-10 12:36 - 000452696 _____ (DTS) C:\Windows\system32\DTSLimiterDLL64.dll
2018-11-10 12:36 - 2018-11-10 12:36 - 000448568 _____ (DTS) C:\Windows\system32\DTSGainCompensatorDLL64.dll
2018-11-10 12:36 - 2018-11-10 12:36 - 000447136 _____ (Toshiba Client Solutions Co., Ltd.) C:\Windows\system32\toseaeapo64.dll
2018-11-10 12:36 - 2018-11-10 12:36 - 000416472 _____ (Harman) C:\Windows\system32\HMUI.dll
2018-11-10 12:36 - 2018-11-10 12:36 - 000406416 _____ (Dolby Laboratories) C:\Windows\system32\HiFiDAX2APIPCLL.dll
2018-11-10 12:36 - 2018-11-10 12:36 - 000392840 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEP64A.dll
2018-11-10 12:36 - 2018-11-10 12:36 - 000381376 _____ (Synopsys, Inc.) C:\Windows\system32\SRCOM64.dll
2018-11-10 12:36 - 2018-11-10 12:36 - 000378344 _____ (Dolby Laboratories) C:\Windows\system32\HiFiDAX2API.dll
2018-11-10 12:36 - 2018-11-10 12:36 - 000367568 _____ (Dolby Laboratories) C:\Windows\system32\DDPO64AF3.dll
2018-11-10 12:36 - 2018-11-10 12:36 - 000366080 _____ (Windows (R) Win 7 DDK provider) C:\Windows\system32\HMAPO.dll
2018-11-10 12:36 - 2018-11-10 12:36 - 000360304 _____ (Harman) C:\Windows\system32\HMClariFi.dll
2018-11-10 12:36 - 2018-11-10 12:36 - 000343672 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtlCPAPI64.dll
2018-11-10 12:36 - 2018-11-10 12:36 - 000341112 _____ (Synopsys, Inc.) C:\Windows\SysWOW64\SRCOM.dll
2018-11-10 12:36 - 2018-11-10 12:36 - 000341112 _____ (Synopsys, Inc.) C:\Windows\system32\SRCOM.dll
2018-11-10 12:36 - 2018-11-10 12:36 - 000332976 _____ (Dolby Laboratories) C:\Windows\system32\DDPO64A.dll
2018-11-10 12:36 - 2018-11-10 12:36 - 000327232 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DHT64.dll
2018-11-10 12:36 - 2018-11-10 12:36 - 000327232 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DAA64.dll
2018-11-10 12:36 - 2018-11-10 12:36 - 000315944 _____ (Dolby Laboratories) C:\Windows\system32\DDPA64F3.dll
2018-11-10 12:36 - 2018-11-10 12:36 - 000278232 _____ (Dolby Laboratories) C:\Windows\system32\DDPA64.dll
2018-11-10 12:36 - 2018-11-10 12:36 - 000266512 _____ (TODO: <Company name>) C:\Windows\system32\slprp64.dll
2018-11-10 12:36 - 2018-11-10 12:36 - 000261200 _____ (DTS) C:\Windows\system32\DTSGFXAPO64.dll
2018-11-10 12:36 - 2018-11-10 12:36 - 000261160 _____ (DTS) C:\Windows\system32\DTSLFXAPO64.dll
2018-11-10 12:36 - 2018-11-10 12:36 - 000260176 _____ (DTS) C:\Windows\system32\DTSGFXAPONS64.dll
2018-11-10 12:36 - 2018-11-10 12:36 - 000231880 _____ (Synopsys, Inc.) C:\Windows\system32\SFNHK64.dll
2018-11-10 12:36 - 2018-11-10 12:36 - 000230664 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSH64.dll
2018-11-10 12:36 - 2018-11-10 12:36 - 000220352 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEED64A.dll
2018-11-10 12:36 - 2018-11-10 12:36 - 000218232 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSHP64.dll
2018-11-10 12:36 - 2018-11-10 12:36 - 000203800 _____ (Harman) C:\Windows\system32\HMHVS.dll
2018-11-10 12:36 - 2018-11-10 12:36 - 000192944 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCfg64.dll
2018-11-10 12:36 - 2018-11-10 12:36 - 000190896 _____ (Harman) C:\Windows\system32\HMEQ_Voice.dll
2018-11-10 12:36 - 2018-11-10 12:36 - 000190896 _____ (Harman) C:\Windows\system32\HMEQ.dll
2018-11-10 12:36 - 2018-11-10 12:36 - 000179552 _____ (Harman) C:\Windows\system32\HMLimiter.dll
2018-11-10 12:36 - 2018-11-10 12:36 - 000174904 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSWOW64.dll
2018-11-10 12:36 - 2018-11-10 12:36 - 000158656 _____ (TOSHIBA Corporation) C:\Windows\system32\tadefxapo.dll
2018-11-10 12:36 - 2018-11-10 12:36 - 000157304 _____ (Dolby Laboratories) C:\Windows\system32\R4EEL64A.dll
2018-11-10 12:36 - 2018-11-10 12:36 - 000154320 _____ (Harman) C:\Windows\system32\HarmanAudioInterface.dll
2018-11-10 12:36 - 2018-11-10 12:36 - 000139720 _____ (Dolby Laboratories) C:\Windows\system32\R4EEA64A.dll
2018-11-10 12:36 - 2018-11-10 12:36 - 000122280 _____ (Real Sound Lab SIA) C:\Windows\system32\CONEQMSAPOGUILibrary.dll
2018-11-10 12:36 - 2018-11-10 12:36 - 000118560 _____ C:\Windows\system32\AcpiServiceVnA64.dll
2018-11-10 12:36 - 2018-11-10 12:36 - 000116504 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEL64A.dll
2018-11-10 12:36 - 2018-11-10 12:36 - 000105272 _____ C:\Windows\system32\audioLibVc.dll
2018-11-10 12:36 - 2018-11-10 12:36 - 000093872 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEG64A.dll
2018-11-10 12:36 - 2018-11-10 12:36 - 000090880 _____ (Synopsys, Inc.) C:\Windows\system32\SFCOM64.dll
2018-11-10 12:36 - 2018-11-10 12:36 - 000090136 _____ (Dolby Laboratories) C:\Windows\system32\R4EEG64A.dll
2018-11-10 12:36 - 2018-11-10 12:36 - 000088280 _____ (Synopsys, Inc.) C:\Windows\system32\SFAPO64.dll
2018-11-10 12:36 - 2018-11-10 12:36 - 000083584 _____ (Virage Logic Corporation / Sonic Focus) C:\Windows\SysWOW64\SFCOM.dll
2018-11-10 12:36 - 2018-11-10 12:36 - 000075504 _____ (TOSHIBA CORPORATION.) C:\Windows\system32\tepeqapo64.dll
2018-11-10 12:36 - 2018-11-10 12:36 - 000023656 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCoLDR64.dll
2018-11-10 12:30 - 2018-11-10 12:30 - 001804688 _____ (Microsoft Corporation) C:\Windows\system32\WdfCoInstaller01011.dll
2018-11-10 12:30 - 2018-11-10 12:30 - 000051808 _____ (Synaptics Incorporated) C:\Windows\system32\Drivers\Smb_driver_Intel.sys
2018-11-10 12:30 - 2018-11-10 12:30 - 000000000 ____H C:\Windows\system32\Drivers\MsftWdf_Kernel_01011_Coinstaller_Critical.Wdf
2018-11-10 12:30 - 2018-11-10 12:30 - 000000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_Smb_driver_Intel_01011.Wdf
2018-11-10 12:30 - 2018-11-10 12:30 - 000000000 ____D C:\Program Files\Synaptics
2018-11-10 12:30 - 2012-07-26 05:55 - 000785512 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Wdf01000.sys
2018-11-10 12:30 - 2012-07-26 05:55 - 000054376 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdfLdr.sys
2018-11-10 12:30 - 2012-07-26 03:36 - 000009728 _____ (Microsoft Corporation) C:\Windows\system32\Wdfres.dll
2018-11-10 12:30 - 2012-06-02 15:35 - 000000003 _____ C:\Windows\system32\Drivers\MsftWdf_Kernel_01011_Inbox_Critical.Wdf
2018-11-10 12:21 - 2018-11-10 12:26 - 000000000 ____D C:\Users\Tomaszu\AppData\Roaming\NetMeter
2018-11-10 12:13 - 2018-11-10 12:13 - 000000000 ____D C:\Users\Tomaszu\AppData\Roaming\DataWorks
2018-11-10 12:13 - 2018-11-10 12:13 - 000000000 ____D C:\ProgramData\ProductData
2018-11-10 12:12 - 2018-11-17 05:15 - 000003092 _____ C:\Windows\System32\Tasks\Driver Booster Scheduler
2018-11-10 12:12 - 2018-11-17 05:15 - 000002840 _____ C:\Windows\System32\Tasks\Driver Booster SkipUAC (Tomaszu)
2018-11-10 12:12 - 2018-11-10 12:13 - 000000000 ____D C:\Users\Tomaszu\AppData\Roaming\IObit
2018-11-10 12:12 - 2018-11-10 12:13 - 000000000 ____D C:\Users\Tomaszu\AppData\LocalLow\IObit
2018-11-10 12:12 - 2018-11-10 12:13 - 000000000 ____D C:\ProgramData\IObit
2018-11-10 12:12 - 2018-11-10 12:12 - 000027552 _____ (REALiX(tm)) C:\Windows\SysWOW64\Drivers\HWiNFO64A.SYS
2018-11-10 12:12 - 2018-11-10 12:12 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Driver Booster 6
2018-11-10 12:12 - 2018-11-10 12:12 - 000000000 ____D C:\Program Files (x86)\IObit
2018-11-10 12:11 - 2018-11-10 12:12 - 020661800 _____ (IObit ) C:\Users\Tomaszu\Desktop\driver_booster_setup.exe
2018-11-10 12:00 - 2018-11-10 12:00 - 000000000 ____H C:\Windows\system32\Drivers\Msft_User_WpdMtpDr_01_09_00.Wdf
2018-11-10 11:07 - 2018-11-10 11:07 - 000000000 ____H C:\Windows\system32\Drivers\Msft_User_WpdFs_01_09_00.Wdf
2018-11-10 07:01 - 2018-11-13 22:28 - 000000000 ____D C:\Users\Tomaszu\AppData\Roaming\MPC-HC
2018-11-09 21:35 - 2018-11-09 21:35 - 000001015 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hola.lnk
2018-11-09 21:35 - 2018-11-09 21:35 - 000000000 ____D C:\Program Files\Hola
2018-11-09 21:31 - 2018-11-09 21:32 - 000536264 _____ (Hola Networks Ltd.) C:\Users\Tomaszu\Desktop\Hola-Setup.exe
2018-11-09 20:50 - 2018-11-16 21:12 - 000000000 ____D C:\Users\Tomaszu\AppData\Roaming\Everything
2018-11-09 20:50 - 2018-11-09 20:50 - 000000000 ____D C:\Users\Tomaszu\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Everything
2018-11-09 20:48 - 2018-11-12 17:18 - 000000000 ____D C:\Users\Tomaszu\Documents\GTA San Andreas User Files
2018-11-09 20:48 - 2018-11-09 20:48 - 000000000 ____D C:\Users\Tomaszu\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games
2018-11-09 20:35 - 2018-11-09 20:35 - 001478240 _____ () C:\Users\Tomaszu\Desktop\Everything-1.4.1.895.x64-Setup.exe
2018-11-09 20:29 - 2018-10-15 22:48 - 000559880 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
2018-11-09 20:27 - 2018-11-17 05:15 - 000003136 _____ C:\Windows\System32\Tasks\klcp_update
2018-11-09 20:27 - 2018-11-09 20:27 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack
2018-11-09 20:24 - 2018-11-09 20:25 - 046345213 _____ (KLCP ) C:\Users\Tomaszu\Desktop\K-Lite_Codec_Pack_1455_Full.exe
2018-11-09 20:20 - 2018-11-09 20:20 - 000000683 _____ C:\Users\Tomaszu\Desktop\Różne rzeczy.lnk
2018-11-09 20:19 - 2018-11-17 05:15 - 000004094 _____ C:\Windows\System32\Tasks\Opera scheduled Autoupdate 1541791187
2018-11-09 20:19 - 2018-11-09 20:19 - 000001294 _____ C:\Users\Tomaszu\Desktop\Przeglądarka Opera.lnk
2018-11-09 20:19 - 2018-11-09 20:19 - 000001294 _____ C:\Users\Tomaszu\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Przeglądarka Opera.lnk
2018-11-09 20:19 - 2018-11-09 20:19 - 000000000 ____D C:\Users\Tomaszu\AppData\Roaming\Opera Software
2018-11-09 20:19 - 2018-11-09 20:19 - 000000000 ____D C:\Users\Tomaszu\AppData\Local\Opera Software
2018-11-09 20:09 - 2018-11-10 20:33 - 000200704 _____ (C-Media Electronics Inc.) C:\Windows\SysWOW64\HsSrv.dll
2018-11-09 20:09 - 2018-11-09 20:09 - 000419840 _____ (Creative Labs) C:\Windows\system32\wrap_oal.dll
2018-11-09 20:09 - 2018-11-09 20:09 - 000413696 _____ (Creative Labs) C:\Windows\SysWOW64\wrap_oal.dll
2018-11-09 20:09 - 2018-11-09 20:09 - 000111616 _____ (Portions (C) Creative Labs Inc. and NVIDIA Corp.) C:\Windows\system32\OpenAL32.dll
2018-11-09 20:09 - 2018-11-09 20:09 - 000102400 _____ (Portions (C) Creative Labs Inc. and NVIDIA Corp.) C:\Windows\SysWOW64\OpenAL32.dll
2018-11-09 20:09 - 2018-11-09 20:09 - 000058024 _____ C:\Users\Tomaszu\AppData\Local\GDIPFONTCACHEV1.DAT
2018-11-09 20:09 - 2018-11-09 20:09 - 000000000 ____D C:\Users\Tomaszu\AppData\Roaming\ASUS
2018-11-09 20:09 - 2018-11-09 20:09 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ASUS Xonar DG Audio
2018-11-09 20:09 - 2018-11-09 20:09 - 000000000 ____D C:\Program Files (x86)\OpenAL
2018-11-09 20:09 - 2012-11-20 11:24 - 012935168 ____N (C-Media Corporation) C:\Windows\SysWOW64\CmiCnfgp.dll
2018-11-09 20:09 - 2012-09-28 15:45 - 000465408 ____N (C-Media Electronics Inc.) C:\Windows\system32\cmasiopx.dll
2018-11-09 20:09 - 2012-09-28 15:45 - 000303104 ____N (C-Media Electronics Inc.) C:\Windows\SysWOW64\cmasiop.dll
2018-11-09 20:09 - 2012-06-06 09:56 - 000143360 ____N C:\Windows\SysWOW64\VmixP8.dll
2018-11-09 20:09 - 2012-06-04 14:15 - 004533760 ____N C:\Windows\system32\CmiCnfgp.cpl
2018-11-09 20:09 - 2012-01-06 09:30 - 000212992 ____N (C-Media Electronics Inc.) C:\Windows\SysWOW64\HsSrv2.dll
2018-11-09 20:09 - 2012-01-06 09:30 - 000122880 ____N (C-Media Electronics Inc.) C:\Windows\system\HsSrv642.dll
2018-11-09 20:09 - 2012-01-06 09:30 - 000122880 ____N (C-Media Electronics Inc.) C:\Windows\system\HsSrv64.dll
2018-11-09 20:09 - 2011-10-11 16:00 - 000000053 ____N C:\Windows\system32\cmasiopx.ini
2018-11-09 20:09 - 2011-10-11 16:00 - 000000048 ____N C:\Windows\SysWOW64\cmasiop.ini
2018-11-09 20:09 - 2008-07-11 15:04 - 000200704 ____N C:\Windows\SysWOW64\HsMgr.exe
2018-11-09 20:09 - 2008-07-11 15:03 - 000282112 ____N C:\Windows\system\HsMgr64.exe
2018-11-09 20:09 - 2007-12-13 17:12 - 000122880 ____N (CMedia Electronics Inc.) C:\Windows\SysWOW64\Cm_Oal.dll
2018-11-09 20:09 - 2007-12-13 17:12 - 000122880 ____N (CMedia Electronics Inc.) C:\Windows\system32\Cm_Oal.dll
2018-11-09 20:09 - 2007-11-05 01:30 - 001144983 ____N C:\Windows\KB936225x64.msu
2018-11-09 20:09 - 2006-09-13 10:21 - 000200704 ____N (C-Media) C:\Windows\SysWOW64\Cmpaoxy.dll
2018-11-09 20:08 - 2018-11-09 20:09 - 000047026 _____ C:\Windows\Cmicnfgp.ini.cfl
2018-11-09 20:08 - 2018-11-09 20:09 - 000000918 _____ C:\Windows\Cmicnfgp.ini.imi
2018-11-09 20:08 - 2018-11-09 20:09 - 000000857 _____ C:\Windows\system\Cmicnfgp.ini
2018-11-09 20:08 - 2018-11-09 20:09 - 000000140 _____ C:\Windows\system\Dlap.pfx
2018-11-09 20:08 - 2018-11-09 20:09 - 000000000 ____D C:\Program Files\ASUS Xonar DG Audio
2018-11-09 20:08 - 2018-11-09 20:08 - 000000000 ____D C:\Users\Tomaszu\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2018-11-09 20:08 - 2018-11-09 20:08 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2018-11-09 20:08 - 2013-03-27 16:45 - 000005020 ____N C:\Windows\Cmicnfgp.ini.cfg
2018-11-09 20:08 - 2013-03-21 10:11 - 000827904 ____N C:\Windows\system32\Cmeauoxy.exe
2018-11-09 20:08 - 2010-06-03 15:37 - 000000593 ____N C:\Windows\cmudaxp.ini
2018-11-09 20:08 - 2009-08-19 16:00 - 000359424 ____N C:\Windows\system32\CmiInstallResAll64.dll
2018-11-09 20:08 - 2006-10-06 05:45 - 000524768 _____ (Microsoft Corporation) C:\Windows\difxapi.dll
2018-11-09 20:06 - 2018-11-10 12:25 - 000000000 ____D C:\Users\Tomaszu\AppData\Local\NVIDIA Corporation
2018-11-09 20:04 - 2018-11-17 05:15 - 000004146 _____ C:\Windows\System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2018-11-09 20:04 - 2018-11-17 05:15 - 000003922 _____ C:\Windows\System32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2018-11-09 20:04 - 2018-11-17 05:15 - 000003814 _____ C:\Windows\System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2018-11-09 20:04 - 2018-11-17 05:15 - 000003798 _____ C:\Windows\System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2018-11-09 20:04 - 2018-11-17 05:15 - 000003738 _____ C:\Windows\System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2018-11-09 20:04 - 2018-11-17 05:15 - 000003738 _____ C:\Windows\System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2018-11-09 20:04 - 2018-11-17 05:15 - 000003730 _____ C:\Windows\System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2018-11-09 20:04 - 2018-11-17 05:15 - 000003494 _____ C:\Windows\System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2018-11-09 20:04 - 2018-11-09 20:06 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
2018-11-09 20:04 - 2018-03-24 02:13 - 002480064 _____ (NVIDIA Corporation) C:\Windows\system32\nvspcap64.dll
2018-11-09 20:04 - 2018-03-24 02:13 - 002137024 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspcap.dll
2018-11-09 20:04 - 2018-03-24 02:13 - 001310144 _____ (NVIDIA Corporation) C:\Windows\system32\NvRtmpStreamer64.dll
2018-11-09 20:04 - 2018-03-24 02:13 - 000189784 _____ (NVIDIA Corporation) C:\Windows\system32\nvaudcap64v.dll
2018-11-09 20:04 - 2018-03-24 02:13 - 000152408 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvaudcap32v.dll
2018-11-09 20:04 - 2010-05-26 11:41 - 002401112 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_43.dll
2018-11-09 20:04 - 2010-05-26 11:41 - 001998168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_43.dll
2018-11-09 20:04 - 2010-05-26 11:41 - 000511328 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_43.dll
2018-11-09 20:04 - 2010-05-26 11:41 - 000470880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_43.dll
2018-11-09 20:04 - 2010-05-26 11:41 - 000276832 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_43.dll
2018-11-09 20:04 - 2010-05-26 11:41 - 000248672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx11_43.dll
2018-11-09 20:03 - 2018-11-16 21:23 - 000000000 ____D C:\ProgramData\NVIDIA
2018-11-09 20:03 - 2018-11-09 20:04 - 000000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2018-11-09 20:03 - 2018-11-09 20:03 - 000000000 ____D C:\Windows\system32\Drivers\NVIDIA Corporation
2018-11-09 20:03 - 2018-11-09 20:03 - 000000000 ____D C:\Program Files (x86)\VulkanRT
2018-11-09 20:03 - 2018-03-25 17:28 - 000542056 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll
2018-11-09 20:03 - 2018-03-25 17:28 - 000447928 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll
2018-11-09 20:03 - 2018-03-24 02:13 - 000001951 _____ C:\Windows\NvTelemetryContainerRecovery.bat
2018-11-09 20:03 - 2018-03-24 02:13 - 000001951 _____ C:\Windows\NvContainerRecovery.bat
2018-11-09 20:03 - 2018-03-24 00:05 - 000138120 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvStreaming.exe
2018-11-09 20:03 - 2018-03-24 00:02 - 005952392 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll
2018-11-09 20:03 - 2018-03-24 00:02 - 002596320 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc64.dll
2018-11-09 20:03 - 2018-03-24 00:02 - 001767824 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvcr.dll
2018-11-09 20:03 - 2018-03-24 00:02 - 000633224 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshext.dll
2018-11-09 20:03 - 2018-03-24 00:02 - 000451040 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll
2018-11-09 20:03 - 2018-03-24 00:02 - 000123840 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll
2018-11-09 20:03 - 2018-03-24 00:02 - 000083072 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshextr.dll
2018-11-09 20:03 - 2018-03-21 12:22 - 008114212 _____ C:\Windows\system32\nvcoproc.bin
2018-11-09 20:03 - 2017-12-08 23:25 - 000798520 _____ C:\Windows\SysWOW64\vulkan-1.dll
2018-11-09 20:03 - 2017-12-08 23:25 - 000490808 _____ C:\Windows\SysWOW64\vulkaninfo.exe
2018-11-09 20:03 - 2017-12-08 23:24 - 000928568 _____ C:\Windows\system32\vulkan-1.dll
2018-11-09 20:03 - 2017-12-08 23:24 - 000591672 _____ C:\Windows\system32\vulkaninfo.exe
2018-11-09 20:01 - 2018-11-10 12:38 - 001675096 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdagenco6420103.dll
2018-11-09 20:01 - 2018-11-09 20:02 - 000000000 ____D C:\ProgramData\Package Cache
2018-11-09 20:01 - 2018-03-25 17:26 - 035624808 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll
2018-11-09 20:01 - 2018-03-25 17:26 - 028204984 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll
2018-11-09 20:01 - 2018-03-25 17:26 - 017371168 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys
2018-11-09 20:01 - 2018-03-25 17:25 - 000997792 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll
2018-11-09 20:01 - 2018-03-25 17:25 - 000950120 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll
2018-11-09 20:01 - 2018-03-25 17:24 - 040278616 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll
2018-11-09 20:01 - 2018-03-25 17:24 - 035188992 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll
2018-11-09 20:01 - 2018-03-25 17:24 - 003914784 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll
2018-11-09 20:01 - 2018-03-25 17:24 - 003444152 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll
2018-11-09 20:01 - 2018-03-25 17:24 - 001985112 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6439135.dll
2018-11-09 20:01 - 2018-03-25 17:24 - 001683712 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6439135.dll
2018-11-09 20:01 - 2018-03-25 17:24 - 001137056 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll
2018-11-09 20:01 - 2018-03-25 17:24 - 001066584 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll
2018-11-09 20:01 - 2018-03-25 17:13 - 022887280 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2umx.dll
2018-11-09 20:01 - 2018-03-25 17:13 - 019968176 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll
2018-11-09 20:01 - 2018-03-25 17:13 - 000505232 _____ (NVIDIA Corporation) C:\Windows\system32\nvumdshimx.dll
2018-11-09 20:01 - 2018-03-25 17:13 - 000419672 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll
2018-11-09 20:01 - 2018-03-25 17:12 - 019854816 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll
2018-11-09 20:01 - 2018-03-25 17:12 - 018910896 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll
2018-11-09 20:01 - 2018-03-25 17:12 - 016496768 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll
2018-11-09 20:01 - 2018-03-25 17:12 - 015558928 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll
2018-11-09 20:01 - 2018-03-25 17:12 - 013571520 _____ (NVIDIA Corporation) C:\Windows\system32\nvptxJitCompiler.dll
2018-11-09 20:01 - 2018-03-25 17:12 - 011132384 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvptxJitCompiler.dll
2018-11-09 20:01 - 2018-03-25 17:12 - 001153752 _____ (NVIDIA Corporation) C:\Windows\system32\nvfatbinaryLoader.dll
2018-11-09 20:01 - 2018-03-25 17:12 - 000902096 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvfatbinaryLoader.dll
2018-11-09 20:01 - 2018-03-25 17:12 - 000182784 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll
2018-11-09 20:01 - 2018-03-25 17:12 - 000165136 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll
2018-11-09 20:01 - 2018-03-25 17:12 - 000159704 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll
2018-11-09 20:01 - 2018-03-25 17:12 - 000142816 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll
2018-11-09 20:01 - 2018-03-25 17:11 - 012967056 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll
2018-11-09 20:01 - 2018-03-25 17:11 - 011001504 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll
2018-11-09 20:01 - 2018-03-25 17:11 - 004426120 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll
2018-11-09 20:01 - 2018-03-25 17:11 - 003919352 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll
2018-11-09 20:01 - 2018-03-24 02:13 - 000058816 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvvhci.sys
2018-11-09 20:01 - 2018-03-24 02:13 - 000045511 _____ C:\Windows\system32\nvinfo.pb
2018-11-09 20:01 - 2018-03-24 02:13 - 000000669 _____ C:\Windows\SysWOW64\nv-vk32.json
2018-11-09 20:01 - 2018-03-24 02:13 - 000000669 _____ C:\Windows\system32\nv-vk64.json
2018-11-09 20:00 - 2018-11-09 20:06 - 000000000 ____D C:\ProgramData\NVIDIA Corporation
2018-11-09 19:59 - 2018-11-09 20:04 - 000000000 ____D C:\Program Files\NVIDIA Corporation
2018-11-09 19:55 - 2018-11-09 19:55 - 000000000 ____D C:\Program Files (x86)\Intel
2018-11-09 19:55 - 2018-11-09 19:55 - 000000000 ____D C:\Intel
2018-11-09 19:55 - 2007-07-26 16:15 - 000053248 _____ (Windows XP Bundled build C-Centric Single User) C:\Windows\SysWOW64\CSVer.dll
2018-11-09 19:54 - 2018-11-09 19:54 - 000020544 _____ (Windows (R) Server 2003 DDK provider) C:\Windows\gdrv.sys
2018-11-09 19:54 - 2018-11-09 19:54 - 000000010 _____ C:\Windows\GSetup.ini
2018-11-09 19:53 - 2018-11-09 19:53 - 000001421 _____ C:\Users\Tomaszu\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer (64-bit).lnk
2018-11-09 19:52 - 2018-11-12 11:46 - 000000000 ____D C:\Users\Tomaszu\AppData\Local\VirtualStore
2018-11-09 19:52 - 2018-11-09 19:53 - 000001455 _____ C:\Users\Tomaszu\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2018-11-09 19:52 - 2018-11-09 19:52 - 000000020 ___SH C:\Users\Tomaszu\ntuser.ini
2018-11-09 19:52 - 2018-11-09 19:52 - 000000000 _SHDL C:\Users\Tomaszu\Ustawienia lokalne
2018-11-09 19:52 - 2018-11-09 19:52 - 000000000 _SHDL C:\Users\Tomaszu\Szablony
2018-11-09 19:52 - 2018-11-09 19:52 - 000000000 _SHDL C:\Users\Tomaszu\Moje dokumenty
2018-11-09 19:52 - 2018-11-09 19:52 - 000000000 _SHDL C:\Users\Tomaszu\Menu Start
2018-11-09 19:52 - 2018-11-09 19:52 - 000000000 _SHDL C:\Users\Tomaszu\Documents\Moje wideo
2018-11-09 19:52 - 2018-11-09 19:52 - 000000000 _SHDL C:\Users\Tomaszu\Documents\Moje obrazy
2018-11-09 19:52 - 2018-11-09 19:52 - 000000000 _SHDL C:\Users\Tomaszu\Documents\Moja muzyka
2018-11-09 19:52 - 2018-11-09 19:52 - 000000000 _SHDL C:\Users\Tomaszu\Dane aplikacji
2018-11-09 19:52 - 2018-11-09 19:52 - 000000000 _SHDL C:\Users\Tomaszu\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2018-11-09 19:52 - 2018-11-09 19:52 - 000000000 _SHDL C:\Users\Tomaszu\AppData\Local\Historia
2018-11-09 19:52 - 2018-11-09 19:52 - 000000000 _SHDL C:\Users\Tomaszu\AppData\Local\Dane aplikacji
2018-11-09 19:52 - 2009-07-14 19:09 - 000000000 ____D C:\Users\Tomaszu\AppData\Roaming\Media Center Programs
2018-11-09 19:51 - 2018-11-09 19:52 - 000000000 ____D C:\Users\Tomaszu
2018-11-09 19:51 - 2018-11-09 19:51 - 000171136 __RSH C:\W7LDR
2018-11-09 19:51 - 2018-11-09 19:51 - 000000000 _SHDL C:\Users\Public\Documents\Moje wideo
2018-11-09 19:51 - 2018-11-09 19:51 - 000000000 _SHDL C:\Users\Public\Documents\Moje obrazy
2018-11-09 19:51 - 2018-11-09 19:51 - 000000000 _SHDL C:\Users\Public\Documents\Moja muzyka
2018-11-09 19:51 - 2018-11-09 19:51 - 000000000 _SHDL C:\Users\Default\Ustawienia lokalne
2018-11-09 19:51 - 2018-11-09 19:51 - 000000000 _SHDL C:\Users\Default\Szablony
2018-11-09 19:51 - 2018-11-09 19:51 - 000000000 _SHDL C:\Users\Default\Moje dokumenty
2018-11-09 19:51 - 2018-11-09 19:51 - 000000000 _SHDL C:\Users\Default\Menu Start
2018-11-09 19:51 - 2018-11-09 19:51 - 000000000 _SHDL C:\Users\Default\Documents\Moje wideo
2018-11-09 19:51 - 2018-11-09 19:51 - 000000000 _SHDL C:\Users\Default\Documents\Moje obrazy
2018-11-09 19:51 - 2018-11-09 19:51 - 000000000 _SHDL C:\Users\Default\Documents\Moja muzyka
2018-11-09 19:51 - 2018-11-09 19:51 - 000000000 _SHDL C:\Users\Default\Dane aplikacji
2018-11-09 19:51 - 2018-11-09 19:51 - 000000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2018-11-09 19:51 - 2018-11-09 19:51 - 000000000 _SHDL C:\Users\Default\AppData\Local\Historia
2018-11-09 19:51 - 2018-11-09 19:51 - 000000000 _SHDL C:\Users\Default\AppData\Local\Dane aplikacji
2018-11-09 19:51 - 2018-11-09 19:51 - 000000000 _SHDL C:\Users\Default User\Documents\Moje wideo
2018-11-09 19:51 - 2018-11-09 19:51 - 000000000 _SHDL C:\Users\Default User\Documents\Moje obrazy
2018-11-09 19:51 - 2018-11-09 19:51 - 000000000 _SHDL C:\Users\Default User\Documents\Moja muzyka
2018-11-09 19:51 - 2018-11-09 19:51 - 000000000 _SHDL C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2018-11-09 19:51 - 2018-11-09 19:51 - 000000000 _SHDL C:\Users\Default User\AppData\Local\Historia
2018-11-09 19:51 - 2018-11-09 19:51 - 000000000 _SHDL C:\Users\Default User\AppData\Local\Dane aplikacji
2018-11-09 19:51 - 2018-11-09 19:51 - 000000000 _SHDL C:\ProgramData\Ulubione
2018-11-09 19:51 - 2018-11-09 19:51 - 000000000 _SHDL C:\ProgramData\Szablony
2018-11-09 19:51 - 2018-11-09 19:51 - 000000000 _SHDL C:\ProgramData\Pulpit
2018-11-09 19:51 - 2018-11-09 19:51 - 000000000 _SHDL C:\ProgramData\Microsoft\Windows\Start Menu\Programy
2018-11-09 19:51 - 2018-11-09 19:51 - 000000000 _SHDL C:\ProgramData\Menu Start
2018-11-09 19:51 - 2018-11-09 19:51 - 000000000 _SHDL C:\ProgramData\Dokumenty
2018-11-09 19:51 - 2018-11-09 19:51 - 000000000 _SHDL C:\ProgramData\Dane aplikacji
2018-11-09 19:48 - 2018-11-09 19:48 - 000001345 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Media Center.lnk
2018-11-09 19:48 - 2018-11-09 19:48 - 000001326 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows DVD Maker.lnk
2018-11-09 19:43 - 2018-11-13 22:28 - 000000000 ____D C:\Windows\Panther
2018-11-09 19:43 - 2018-11-09 19:43 - 000008192 __RSH C:\BOOTSECT.BAK
2018-11-09 19:43 - 2009-07-14 02:38 - 000383562 __RSH C:\bootmgr
2018-11-09 19:19 - 2013-04-11 19:21 - 002734080 _____ (C-Media Inc) C:\Windows\system32\Drivers\cmudaxp.sys
2018-11-09 19:19 - 2013-04-11 19:21 - 000315392 _____ (C-Media Electronics Inc.) C:\Windows\SysWOW64\CmiFltr.dll
2018-11-09 19:19 - 2013-04-11 19:21 - 000315392 _____ (C-Media Electronics Inc.) C:\Windows\system\CmiFltr.dll
2018-11-09 19:19 - 2013-04-11 19:21 - 000032768 _____ (C-Media Electronics Inc.) C:\Windows\system32\cmudaxp.dll

==================== Jeden miesiąc - zmodyfikowane pliki i foldery ========

(Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.)

2018-11-16 21:30 - 2009-07-14 05:45 - 000010016 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2018-11-16 21:30 - 2009-07-14 05:45 - 000010016 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2018-11-16 21:27 - 2009-07-14 18:55 - 000687590 _____ C:\Windows\system32\perfh015.dat
2018-11-16 21:27 - 2009-07-14 18:55 - 000131176 _____ C:\Windows\system32\perfc015.dat
2018-11-16 21:27 - 2009-07-14 06:13 - 001523412 _____ C:\Windows\system32\PerfStringBackup.INI
2018-11-16 21:27 - 2009-07-14 04:20 - 000000000 ____D C:\Windows\inf
2018-11-16 21:22 - 2009-07-14 06:08 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2018-11-12 11:39 - 2009-07-14 04:20 - 000000000 ____D C:\Windows\LiveKernelReports
2018-11-11 08:43 - 2009-07-14 04:20 - 000000000 ____D C:\Windows\rescache
2018-11-09 20:10 - 2009-07-14 05:45 - 000275536 _____ C:\Windows\system32\FNTCACHE.DAT
2018-11-09 20:09 - 2009-07-14 04:20 - 000000000 ____D C:\Windows\system
2018-11-09 20:03 - 2009-07-14 04:20 - 000000000 ____D C:\Windows\Help
2018-11-09 19:51 - 2009-07-14 04:20 - 000000000 __RHD C:\Users\Public\Libraries
2018-11-09 19:51 - 2009-07-14 04:20 - 000000000 ____D C:\Program Files\Windows NT
2018-11-09 19:48 - 2009-07-14 06:32 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
2018-11-09 19:47 - 2009-07-14 04:20 - 000000000 ____D C:\Windows\system32\sysprep
2018-11-09 19:45 - 2009-07-14 19:09 - 000000000 ____D C:\Windows\CSC
2018-11-09 19:43 - 2009-07-14 06:32 - 000028672 _____ C:\Windows\system32\config\BCD-Template
2018-11-09 19:43 - 2009-07-14 05:45 - 000000000 ____D C:\Windows\Setup
2018-11-09 19:43 - 2009-07-14 04:20 - 000000000 ____D C:\Windows\system32\oobe

==================== Pliki w katalogu głównym wybranych folderów =======

2018-11-12 11:46 - 2018-11-16 14:49 - 000000020 _____ () C:\Users\Tomaszu\AppData\Roaming\dsp_LoudMax.ini

Pliki do przeniesienia lub usunięcia:
====================
C:\Program Files\Hola\app\hola.exe


Niektóre pliki w TEMP:
====================
2018-11-17 08:17 - 2018-11-17 08:17 - 000476672 _____ () C:\Users\Tomaszu\AppData\Local\Temp\7za.exe
2018-11-17 08:17 - 2018-11-17 08:17 - 000388608 _____ (Trend Micro Inc.) C:\Users\Tomaszu\AppData\Local\Temp\hijackthis.exe
2018-11-17 08:17 - 2018-11-17 08:17 - 000030720 _____ (NirSoft) C:\Users\Tomaszu\AppData\Local\Temp\NirCmd.exe
2018-11-17 08:17 - 2018-11-17 08:17 - 000256512 _____ () C:\Users\Tomaszu\AppData\Local\Temp\PEVZ.EXE
2018-11-17 08:17 - 2018-11-17 08:17 - 000069632 _____ () C:\Users\Tomaszu\AppData\Local\Temp\remove.exe
2018-11-17 08:17 - 2018-11-17 08:17 - 000098816 _____ () C:\Users\Tomaszu\AppData\Local\Temp\sed.exe
2018-11-17 08:17 - 2018-11-17 08:17 - 000057344 _____ (Optimum X) C:\Users\Tomaszu\AppData\Local\Temp\shortcut.exe
2018-11-17 08:17 - 2018-11-17 08:17 - 000161792 _____ (SteelWerX) C:\Users\Tomaszu\AppData\Local\Temp\swreg.exe
2018-11-17 08:17 - 2018-11-17 08:17 - 000217088 _____ (SteelWerX) C:\Users\Tomaszu\AppData\Local\Temp\swxcacls.exe
2018-11-17 08:17 - 2018-11-17 08:17 - 000154232 _____ (Noël Danjou) C:\Users\Tomaszu\AppData\Local\Temp\wget.exe
2018-11-17 08:17 - 2018-11-17 08:17 - 000024064 _____ () C:\Users\Tomaszu\AppData\Local\Temp\zoek-delete.exe

==================== Bamital & volsnap ======================

(Brak automatycznej naprawy dla plików które nie przeszły weryfikacji.)

C:\Windows\system32\winlogon.exe => Plik podpisany cyfrowo
C:\Windows\system32\wininit.exe => Plik podpisany cyfrowo
C:\Windows\SysWOW64\wininit.exe => Plik podpisany cyfrowo
C:\Windows\explorer.exe => Plik podpisany cyfrowo
C:\Windows\SysWOW64\explorer.exe => Plik podpisany cyfrowo
C:\Windows\system32\svchost.exe => Plik podpisany cyfrowo
C:\Windows\SysWOW64\svchost.exe => Plik podpisany cyfrowo
C:\Windows\system32\services.exe => Plik podpisany cyfrowo
C:\Windows\system32\User32.dll => Plik podpisany cyfrowo
C:\Windows\SysWOW64\User32.dll => Plik podpisany cyfrowo
C:\Windows\system32\userinit.exe => Plik podpisany cyfrowo
C:\Windows\SysWOW64\userinit.exe => Plik podpisany cyfrowo
C:\Windows\system32\rpcss.dll => Plik podpisany cyfrowo
C:\Windows\system32\dnsapi.dll => Plik podpisany cyfrowo
C:\Windows\SysWOW64\dnsapi.dll => Plik podpisany cyfrowo
C:\Windows\system32\Drivers\volsnap.sys => Plik podpisany cyfrowo

LastRegBack: 2018-11-17 02:45

==================== Koniec  FRST.txt ============================


Shortcut:
Kod: Zaznacz wszystko
Rezultat skanowania skrótów użytkowników (x64) Wersja: 15.11.2018
Uruchomiony przez Tomaszu (17-11-2018 09:06:59)
Uruchomiony z C:\Users\Tomaszu\Desktop
Tryb startu: Normal

==================== Skróty =============================

(Wybrane wejścia mogą zostać załączone w celu ich zresetowania lub usunięcia.)


Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hola.lnk -> C:\Program Files\Hola\app\hola.exe (Hola Networks Ltd.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Media Center.lnk -> C:\Windows\ehome\ehshell.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows DVD Maker.lnk -> C:\Program Files\DVD Maker\DVDMaker.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Fax and Scan.lnk -> C:\Windows\System32\WFS.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\XPS Viewer.lnk -> C:\Windows\System32\xpsrchvw.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR\Podręcznik RARa dla konsoli.lnk -> E:\Program Files (x86)\WinRAR\Rar.txt ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR\Pomoc WinRARa.lnk -> E:\Program Files (x86)\WinRAR\WinRAR.chm ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR\WinRAR.lnk -> E:\Program Files (x86)\WinRAR\WinRAR.exe (Alexander Roshal)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TmNationsForever\Odinstaluj grę TmNationsForever.lnk -> E:\Program Files (x86)\TmNationsForever\unins000.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TmNationsForever\Uruchom grę TmNationsForever.lnk -> E:\Program Files (x86)\TmNationsForever\TmForeverLauncher.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\San Andreas Multiplayer\San Andreas Multiplayer.lnk -> E:\Program Files\Rockstar Games\GTA San Andreas\samp.exe (Brak pliku)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\San Andreas Multiplayer\Uninstall.lnk -> E:\Program Files\Rockstar Games\GTA San Andreas\SAMPUninstall.exe (Brak pliku)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation\GeForce Experience.lnk -> C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe (NVIDIA Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation\3D Vision\3D Vision Photo Viewer.lnk -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvstview.exe (NVIDIA Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance\Create Recovery Disc.lnk -> C:\Windows\System32\recdisc.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance\Remote Assistance.lnk -> C:\Windows\System32\msra.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack\Codec Tweak Tool.lnk -> E:\Program Files (x86)\K-Lite Codec Pack\Tools\CodecTweakTool.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack\Media Player Classic.lnk -> E:\Program Files (x86)\K-Lite Codec Pack\MPC-HC64\mpc-hc64.exe (MPC-HC Team)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack\Uninstall\Uninstall K-Lite Codec Pack.lnk -> E:\Program Files (x86)\K-Lite Codec Pack\unins000.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack\Tools\GraphStudioNext (x64).lnk -> E:\Program Files (x86)\K-Lite Codec Pack\Tools\GraphStudioNext64.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack\Tools\GraphStudioNext.lnk -> E:\Program Files (x86)\K-Lite Codec Pack\Tools\GraphStudioNext.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack\Tools\MediaInfo.lnk -> E:\Program Files (x86)\K-Lite Codec Pack\Tools\mediainfo.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Earth Pro\Google Earth Pro.lnk -> E:\Program Files\Google\Google Earth Pro\client\googleearth.exe (Google)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Earth Pro\Uninstall.lnk -> E:\Program Files\Google\Google Earth Pro\client\unins000.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games\Chess.lnk -> C:\Program Files\Microsoft Games\Chess\Chess.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games\FreeCell.lnk -> C:\Program Files\Microsoft Games\FreeCell\FreeCell.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games\GameExplorer.lnk -> C:\Windows\System32\gameux.dll (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games\Hearts.lnk -> C:\Program Files\Microsoft Games\Hearts\Hearts.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games\Internet Backgammon.lnk -> C:\Program Files\Microsoft Games\Multiplayer\Backgammon\bckgzm.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games\Internet Checkers.lnk -> C:\Program Files\Microsoft Games\Multiplayer\Checkers\chkrzm.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games\Internet Spades.lnk -> C:\Program Files\Microsoft Games\Multiplayer\Spades\shvlzm.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games\Mahjong.lnk -> C:\Program Files\Microsoft Games\Mahjong\Mahjong.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games\Minesweeper.lnk -> C:\Program Files\Microsoft Games\Minesweeper\Minesweeper.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games\More Games from Microsoft.lnk -> C:\Program Files\Microsoft Games\More Games\MoreGames.dll (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games\Purble Place.lnk -> C:\Program Files\Microsoft Games\Purble Place\PurblePlace.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games\Solitaire.lnk -> C:\Program Files\Microsoft Games\Solitaire\Solitaire.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games\Spider Solitaire.lnk -> C:\Program Files\Microsoft Games\SpiderSolitaire\SpiderSolitaire.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Driver Booster 6\Dezinstalacja aplikacji Driver Booster 6.lnk -> C:\Program Files (x86)\IObit\Driver Booster\6.0.2\unins000.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Driver Booster 6\Driver Booster 6.lnk -> C:\Program Files (x86)\IObit\Driver Booster\6.0.2\DriverBooster.exe (IObit)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner\CCleaner.lnk -> C:\Program Files\CCleaner\CCleaner64.exe (Piriform Software Ltd)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVAST Software\Avast Free Antivirus.lnk -> C:\Program Files\AVAST Software\Avast\AvastUI.exe (AVAST Software)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ASUS Xonar DG Audio\Xonar DG Audio Center.lnk -> C:\Program Files\ASUS Xonar DG Audio\Customapp\AsusAudioCenter.exe (CMedia)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Component Services.lnk -> C:\Windows\System32\comexp.msc ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Data Sources (ODBC).lnk -> C:\Windows\System32\odbcad32.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\iSCSI Initiator.lnk -> C:\Windows\System32\iscsicpl.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Memory Diagnostics Tool.lnk -> C:\Windows\System32\MdSched.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Print Management.lnk -> C:\Windows\System32\printmanagement.msc ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\services.lnk -> C:\Windows\System32\services.msc ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\System Configuration.lnk -> C:\Windows\System32\msconfig.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Windows Firewall with Advanced Security.lnk -> C:\Windows\System32\WF.msc ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Calculator.lnk -> C:\Windows\System32\calc.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\displayswitch.lnk -> C:\Windows\System32\displayswitch.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Math Input Panel.lnk -> C:\Program Files\Common Files\Microsoft Shared\ink\mip.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\NetworkProjection.lnk -> C:\Windows\System32\NetProj.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Paint.lnk -> C:\Windows\System32\mspaint.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Remote Desktop Connection.lnk -> C:\Windows\System32\mstsc.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Snipping Tool.lnk -> C:\Windows\System32\SnippingTool.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Sound Recorder.lnk -> C:\Windows\System32\SoundRecorder.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Sticky Notes.lnk -> C:\Windows\System32\StikyNot.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Sync Center.lnk -> C:\Windows\System32\mobsync.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Wordpad.lnk -> C:\Program Files\Windows NT\Accessories\wordpad.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Windows PowerShell\Windows PowerShell (x86).lnk -> C:\Windows\SysWOW64\Windowspowershell\v1.0\powershell.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Windows PowerShell\Windows PowerShell ISE (x86).lnk -> C:\Windows\SysWOW64\WindowsPowerShell\v1.0\PowerShell_ISE.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Windows PowerShell\Windows PowerShell ISE.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\PowerShell_ISE.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Windows PowerShell\Windows PowerShell.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Tablet PC\ShapeCollector.lnk -> C:\Program Files\Common Files\Microsoft Shared\ink\ShapeCollector.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Tablet PC\TabTip.lnk -> C:\Program Files\Common Files\Microsoft Shared\ink\TabTip.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Tablet PC\Windows Journal.lnk -> C:\Program Files\Windows Journal\Journal.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Character Map.lnk -> C:\Windows\System32\charmap.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\dfrgui.lnk -> C:\Windows\System32\dfrgui.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Disk Cleanup.lnk -> C:\Windows\System32\cleanmgr.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\System Information.lnk -> C:\Windows\System32\msinfo32.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\System Restore.lnk -> C:\Windows\System32\rstrui.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Windows Easy Transfer Reports.lnk -> C:\Windows\System32\migwiz\PostMig.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Windows Easy Transfer.lnk -> C:\Windows\System32\migwiz\migwiz.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance\Help.lnk -> C:\Windows\System32\shell32.dll (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Notepad.lnk -> C:\Windows\System32\notepad.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Run.lnk -> C:\Windows\System32\shell32.dll (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Windows Explorer.lnk -> C:\Windows\explorer.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\computer.lnk -> C:\Windows\System32\imageres.dll (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Control Panel.lnk -> C:\Windows\System32\imageres.dll (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Private Character Editor.lnk -> C:\Windows\System32\eudcedit.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Magnify.lnk -> C:\Windows\System32\Magnify.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Narrator.lnk -> C:\Windows\System32\Narrator.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\On-Screen Keyboard.lnk -> C:\Windows\System32\osk.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk -> C:\Windows\System32\imageres.dll (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk -> C:\Windows\explorer.exe (Microsoft Corporation)
Shortcut: C:\Users\Public\Desktop\Avast Free Antivirus.lnk -> C:\Program Files\AVAST Software\Avast\AvastUI.exe (AVAST Software)
Shortcut: C:\Users\Public\Desktop\CCleaner.lnk -> C:\Program Files\CCleaner\CCleaner64.exe (Piriform Software Ltd)
Shortcut: C:\Users\Public\Desktop\TmNationsForever.lnk -> E:\Program Files (x86)\TmNationsForever\TmForeverLauncher.exe ()
Shortcut: C:\Users\Tomaszu\Links\Downloads.lnk -> C:\Users\Tomaszu\Downloads ()
Shortcut: C:\Users\Tomaszu\Links\RecentPlaces.lnk -> [::{22877A6D-37A1-461A-91B0-DBDA5AAEBC99}]
Shortcut: C:\Users\Tomaszu\Desktop\GG.lnk -> C:\Users\Tomaszu\AppData\Local\GG\Application\gghub.exe (GG Network S.A.)
Shortcut: C:\Users\Tomaszu\Desktop\Przeglądarka Opera.lnk -> C:\Users\Tomaszu\AppData\Local\Programs\Opera\launcher.exe (Opera Software)
Shortcut: C:\Users\Tomaszu\Desktop\Różne rzeczy.lnk -> E:\Różne rzeczy ()
Shortcut: C:\Users\Tomaszu\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\f.lux.lnk -> C:\Users\Tomaszu\AppData\Local\FluxSoftware\Flux\flux.exe (f.lux Software LLC)
Shortcut: C:\Users\Tomaszu\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\GG.lnk -> C:\Users\Tomaszu\AppData\Local\GG\Application\gghub.exe (GG Network S.A.)
Shortcut: C:\Users\Tomaszu\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer (64-bit).lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)
Shortcut: C:\Users\Tomaszu\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk -> C:\Program Files (x86)\Internet Explorer\iexplore.exe (Microsoft Corporation)
Shortcut: C:\Users\Tomaszu\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Przeglądarka Opera.lnk -> C:\Users\Tomaszu\AppData\Local\Programs\Opera\launcher.exe (Opera Software)
Shortcut: C:\Users\Tomaszu\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR\Podręcznik RARa dla konsoli.lnk -> E:\Program Files (x86)\WinRAR\Rar.txt ()
Shortcut: C:\Users\Tomaszu\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR\Pomoc WinRARa.lnk -> E:\Program Files (x86)\WinRAR\WinRAR.chm ()
Shortcut: C:\Users\Tomaszu\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR\WinRAR.lnk -> E:\Program Files (x86)\WinRAR\WinRAR.exe (Alexander Roshal)
Shortcut: C:\Users\Tomaszu\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance\Help.lnk -> C:\Windows\System32\shell32.dll (Microsoft Corporation)
Shortcut: C:\Users\Tomaszu\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games\Grand Theft Auto San Andreas™.lnk -> [LF6"pH,R GFSIrYʇCA}A<!FGrand Theft Auto: San Andreas"!(1SPSXFL8C&m]
Shortcut: C:\Users\Tomaszu\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Everything\Odinstaluj Everything.lnk -> E:\Program Files\Everything\Uninstall.exe ()
Shortcut: C:\Users\Tomaszu\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Everything\Wyszukaj wszystko.lnk -> E:\Program Files\Everything\Everything.exe ()
Shortcut: C:\Users\Tomaszu\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation)
Shortcut: C:\Users\Tomaszu\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Notepad.lnk -> C:\Windows\System32\notepad.exe (Microsoft Corporation)
Shortcut: C:\Users\Tomaszu\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Run.lnk -> C:\Windows\System32\shell32.dll (Microsoft Corporation)
Shortcut: C:\Users\Tomaszu\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Windows Explorer.lnk -> C:\Windows\explorer.exe (Microsoft Corporation)
Shortcut: C:\Users\Tomaszu\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\computer.lnk -> C:\Windows\System32\imageres.dll (Microsoft Corporation)
Shortcut: C:\Users\Tomaszu\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Control Panel.lnk -> C:\Windows\System32\imageres.dll (Microsoft Corporation)
Shortcut: C:\Users\Tomaszu\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Private Character Editor.lnk -> C:\Windows\System32\eudcedit.exe (Microsoft Corporation)
Shortcut: C:\Users\Tomaszu\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Magnify.lnk -> C:\Windows\System32\Magnify.exe (Microsoft Corporation)
Shortcut: C:\Users\Tomaszu\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Narrator.lnk -> C:\Windows\System32\Narrator.exe (Microsoft Corporation)
Shortcut: C:\Users\Tomaszu\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\On-Screen Keyboard.lnk -> C:\Windows\System32\osk.exe (Microsoft Corporation)
Shortcut: C:\Users\Tomaszu\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk -> C:\Program Files (x86)\Internet Explorer\iexplore.exe (Microsoft Corporation)
Shortcut: C:\Users\Tomaszu\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Przeglądarka Opera.lnk -> C:\Users\Tomaszu\AppData\Local\Programs\Opera\launcher.exe (Opera Software)
Shortcut: C:\Users\Tomaszu\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk -> C:\Windows\System32\imageres.dll (Microsoft Corporation)
Shortcut: C:\Users\Tomaszu\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk -> C:\Windows\explorer.exe (Microsoft Corporation)
Shortcut: C:\Users\Tomaszu\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Driver Booster 6.lnk -> C:\Program Files (x86)\IObit\Driver Booster\6.0.2\DriverBooster.exe (IObit)
Shortcut: C:\Users\Tomaszu\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\GG.lnk -> C:\Users\Tomaszu\AppData\Local\GG\Application\ggapp.exe (GG Network S.A.)
Shortcut: C:\Users\Tomaszu\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Przeglądarka Opera.lnk -> C:\Users\Tomaszu\AppData\Local\Programs\Opera\launcher.exe (Opera Software)
Shortcut: C:\Users\Tomaszu\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\StartMenu\IrfanView.lnk -> E:\Program Files\IrfanView\i_view32.exe (Irfan Skiljan)
Shortcut: C:\Users\Tomaszu\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\StartMenu\Wyszukaj wszystko.lnk -> E:\Program Files\Everything\Everything.exe ()
Shortcut: C:\Users\Tomaszu\AppData\Local\Microsoft\Windows\GameExplorer\{CA5972A5-1D87-4143-9D7D-413C214600ED}\PlayTasks\0\Zagraj.lnk -> E:\Program Files\Rockstar Games\GTA San Andreas\gta_sa.exe ()
Shortcut: C:\Users\Tomaszu\AppData\Local\GG\Application\gg.lnk -> C:\Users\Tomaszu\AppData\Local\GG\Application\gghub.exe (GG Network S.A.)


ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Default Programs.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.DefaultPrograms
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Windows Update.lnk -> C:\Windows\System32\wuapp.exe (Microsoft Corporation) -> startmenu
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sidebar.lnk -> C:\Program Files\Windows Sidebar\sidebar.exe (Microsoft Corporation) -> /showgadgets
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk -> C:\Program Files (x86)\Windows Media Player\wmplayer.exe (Microsoft Corporation) -> /prefetch:1
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation\3D Vision\3D Vision preview pack 1.lnk -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvstlink.exe (NVIDIA Corporation) -> /show
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation\3D Vision\Disable 3D Vision.lnk -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvstlink.exe (NVIDIA Corporation) -> /disable
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation\3D Vision\Enable 3D Vision.lnk -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvstlink.exe (NVIDIA Corporation) -> /enable
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance\Backup and Restore Center.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.BackupAndRestore
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack\Configuration\DirectVobSub.lnk -> C:\Windows\System32\rundll32.exe (Microsoft Corporation) -> "e:\Program Files (x86)\K-Lite Codec Pack\Filters\DirectVobSub64\vsfilter.dll",DirectVobSub
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack\Configuration\LAV Audio.lnk -> C:\Windows\System32\rundll32.exe (Microsoft Corporation) -> "e:\Program Files (x86)\K-Lite Codec Pack\Filters\LAV64\lavaudio.ax",OpenConfiguration
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack\Configuration\LAV Splitter.lnk -> C:\Windows\System32\rundll32.exe (Microsoft Corporation) -> "e:\Program Files (x86)\K-Lite Codec Pack\Filters\LAV64\lavsplitter.ax",OpenConfiguration
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack\Configuration\LAV Video (MPC-HC internal).lnk -> E:\Program Files (x86)\K-Lite Codec Pack\MPC-HC64\mpc-hc64.exe (MPC-HC Team) -> /configlavvideo
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack\Configuration\LAV Video.lnk -> C:\Windows\System32\rundll32.exe (Microsoft Corporation) -> "e:\Program Files (x86)\K-Lite Codec Pack\Filters\LAV64\lavvideo.ax",OpenConfiguration
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack\Configuration\madVR.lnk -> E:\Program Files (x86)\K-Lite Codec Pack\Filters\madVR\madHcCtrl.exe (madshi.net) -> editLocalSettingsDontWait
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Earth Pro\Google Earth Pro (DirectX mode).lnk -> E:\Program Files\Google\Google Earth Pro\client\googleearth.exe (Google) -> -setDX
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Earth Pro\Google Earth Pro (OpenGL mode).lnk -> E:\Program Files\Google\Google Earth Pro\client\googleearth.exe (Google) -> -setOGL
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Computer Management.lnk -> C:\Windows\System32\compmgmt.msc () -> /s
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Event Viewer.lnk -> C:\Windows\System32\eventvwr.msc () -> /s
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Performance Monitor.lnk -> C:\Windows\System32\perfmon.msc () -> /s
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Security Configuration Management.lnk -> C:\Windows\System32\secpol.msc () -> /s
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Task Scheduler.lnk -> C:\Windows\System32\taskschd.msc () -> /s
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Windows PowerShell Modules.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation) -> -NoExit -ImportSystemModules
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Mobility Center.lnk -> C:\Windows\System32\mblctr.exe (Microsoft Corporation) -> /open
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Welcome Center.lnk -> C:\Windows\System32\rundll32.exe (Microsoft Corporation) -> %SystemRoot%\system32\OobeFldr.dll,ShowWelcomeCenter LaunchedBy_StartMenuShortcut
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Resource Monitor.lnk -> C:\Windows\System32\perfmon.exe (Microsoft Corporation) -> /res
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Task Scheduler.lnk -> C:\Windows\System32\taskschd.msc () -> /s
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Speech Recognition.lnk -> C:\Windows\Speech\Common\sapisvr.exe (Microsoft Corporation) -> -SpeechUX
ShortcutWithArgument: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Ease of Access.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.EaseOfAccessCenter
ShortcutWithArgument: C:\Users\Default\AppData\Roaming\Microsoft\Windows\SendTo\Fax Recipient.lnk -> C:\Windows\System32\WFS.exe (Microsoft Corporation) -> /SendTo
ShortcutWithArgument: C:\Users\Tomaszu\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Internet Explorer (No Add-ons).lnk -> C:\Program Files (x86)\Internet Explorer\iexplore.exe (Microsoft Corporation) ->  -extoff
ShortcutWithArgument: C:\Users\Tomaszu\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Ease of Access.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.EaseOfAccessCenter
ShortcutWithArgument: C:\Users\Tomaszu\AppData\Roaming\Microsoft\Windows\SendTo\Fax Recipient.lnk -> C:\Windows\System32\WFS.exe (Microsoft Corporation) -> /SendTo


InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack\Help\Online Codec Help.url -> URL: hxxp://www.codecguide.com/help.htm
InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner\CCleaner Homepage.url -> URL: hxxp://www.ccleaner.com/ccleaner
InternetURL: C:\Users\Tomaszu\Favorites\Windows Live\Galeria gadżetów Windows Live.url -> URL: hxxp://go.microsoft.com/fwlink/?LinkID=70742
InternetURL: C:\Users\Tomaszu\Favorites\Windows Live\Poczta usługi Windows Live.url -> URL: hxxp://go.microsoft.com/fwlink/?LinkId=72681
InternetURL: C:\Users\Tomaszu\Favorites\Windows Live\Programy usługi Windows Live.url -> URL: hxxp://go.microsoft.com/fwlink/?LinkId=72700
InternetURL: C:\Users\Tomaszu\Favorites\Windows Live\Windows Live Spaces.url -> URL: hxxp://go.microsoft.com/fwlink/?LinkId=72682
InternetURL: C:\Users\Tomaszu\Favorites\MSN — witryny sieci Web\MSN Gospodarka.url -> URL: hxxp://go.microsoft.com/fwlink/?LinkId=68923
InternetURL: C:\Users\Tomaszu\Favorites\MSN — witryny sieci Web\MSN Rozrywka.url -> URL: hxxp://go.microsoft.com/fwlink/?LinkId=68924
InternetURL: C:\Users\Tomaszu\Favorites\MSN — witryny sieci Web\MSN Sport.url -> URL: hxxp://go.microsoft.com/fwlink/?LinkId=68921
InternetURL: C:\Users\Tomaszu\Favorites\MSN — witryny sieci Web\MSN Technologie.url -> URL: hxxp://go.microsoft.com/fwlink/?LinkId=55143
InternetURL: C:\Users\Tomaszu\Favorites\MSN — witryny sieci Web\MSN Wideo.url -> URL: hxxp://go.microsoft.com/fwlink/?LinkId=68922
InternetURL: C:\Users\Tomaszu\Favorites\MSN — witryny sieci Web\Portal MSN.url -> URL: hxxp://go.microsoft.com/fwlink/?LinkId=54729
InternetURL: C:\Users\Tomaszu\Favorites\Microsoft — witryny sieci Web\Centrum bezpieczeństwa Microsoft.url -> URL: hxxp://go.microsoft.com/fwlink/?LinkID=72887
InternetURL: C:\Users\Tomaszu\Favorites\Microsoft — witryny sieci Web\Dodatki programu Internet Explorer.url -> URL: hxxp://go.microsoft.com/fwlink/?LinkId=50893
InternetURL: C:\Users\Tomaszu\Favorites\Microsoft — witryny sieci Web\Microsoft Office Online.url -> URL: hxxp://go.microsoft.com/fwlink/?LinkId=72885
InternetURL: C:\Users\Tomaszu\Favorites\Microsoft — witryny sieci Web\Microsoft Store.url -> URL: hxxp://go.microsoft.com/fwlink/?linkid=140813
InternetURL: C:\Users\Tomaszu\Favorites\Microsoft — witryny sieci Web\Microsoft Technet.url -> URL: hxxp://go.microsoft.com/fwlink/?LinkId=72886
InternetURL: C:\Users\Tomaszu\Favorites\Microsoft — witryny sieci Web\Microsoft w Polsce.url -> URL: hxxp://go.microsoft.com/fwlink/?LinkId=72520
InternetURL: C:\Users\Tomaszu\Favorites\Microsoft — witryny sieci Web\Oryginalne oprogramowanie firmy Microsoft.url -> URL: hxxp://go.microsoft.com/fwlink/?LinkId=72900
InternetURL: C:\Users\Tomaszu\Favorites\Microsoft — witryny sieci Web\Strona główna programu Internet Explorer.url -> URL: hxxp://go.microsoft.com/fwlink/?LinkId=72186
InternetURL: C:\Users\Tomaszu\Favorites\Microsoft — witryny sieci Web\Strona główna systemu Windows.url -> URL: hxxp://go.microsoft.com/fwlink/?LinkId=72629
InternetURL: C:\Users\Tomaszu\Favorites\Microsoft — witryny sieci Web\Technologia RSS.url -> URL: hxxp://go.microsoft.com/fwlink/?LinkId=72889
InternetURL: C:\Users\Tomaszu\Favorites\Microsoft — witryny sieci Web\W domu.url -> URL: hxxp://go.microsoft.com/fwlink/?LinkId=72406
InternetURL: C:\Users\Tomaszu\Favorites\Microsoft — witryny sieci Web\W pracy.url -> URL: hxxp://go.microsoft.com/fwlink/?LinkId=72407
InternetURL: C:\Users\Tomaszu\Favorites\Links for Polska\Bezpieczeństwo w trybie online.url -> URL: hxxp://go.microsoft.com/fwlink/?LinkId=142211
InternetURL: C:\Users\Tomaszu\Favorites\Links for Polska\Bezpieczny Internet.url -> URL: hxxp://go.microsoft.com/fwlink/?LinkId=129626
InternetURL: C:\Users\Tomaszu\Favorites\Links for Polska\Kultura.pl.url -> URL: hxxp://go.microsoft.com/fwlink/?LinkId=129625
InternetURL: C:\Users\Tomaszu\Favorites\Links for Polska\Pogodynka.pl — oficjalny serwis pogodowy IMGW.url -> URL: hxxp://go.microsoft.com/fwlink/?LinkId=129624
InternetURL: C:\Users\Tomaszu\Favorites\Links for Polska\Polska.pl.url -> URL: hxxp://go.microsoft.com/fwlink/?LinkId=129622
InternetURL: C:\Users\Tomaszu\Favorites\Links\Galeria obiektów Web Slice.url -> URL: hxxp://go.microsoft.com/fwlink/?LinkId=121315
InternetURL: C:\Users\Tomaszu\Favorites\Links\Sugerowane witryny.url -> URL: hxxps://ieonline.microsoft.com/#ieslice

==================== Koniec  Shortcut.txt =============================


Addition:
Kod: Zaznacz wszystko
Rezultaty skanu uzupełniającego Farbar Recovery Scan Tool (x64) Wersja: 15.11.2018
Uruchomiony przez Tomaszu (17-11-2018 09:06:13)
Uruchomiony z C:\Users\Tomaszu\Desktop
Windows 7 Ultimate (X64) (2018-11-09 18:51:51)
Tryb startu: Normal
==========================================================


==================== Konta użytkowników: =============================

Administrator (S-1-5-21-3195122152-1000191773-1615336282-500 - Administrator - Disabled)
Gość (S-1-5-21-3195122152-1000191773-1615336282-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-3195122152-1000191773-1615336282-1002 - Limited - Enabled)
Tomaszu (S-1-5-21-3195122152-1000191773-1615336282-1001 - Administrator - Enabled) => C:\Users\Tomaszu

==================== Centrum zabezpieczeń ========================

(Załączenie wejścia w fixlist spowoduje jego usunięcie.)

AV: Avast Antivirus (Enabled - Up to date) {8EA8924E-BC81-DC44-8BB0-8BAE75D86EBF}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Avast Antivirus (Enabled - Up to date) {35C973AA-9ABB-D3CA-B100-B0DC0E5F2402}

==================== Zainstalowane programy ======================

(W fixlist dozwolone tylko załączanie programów adware z flagą "Hidden" w celu ich uwidocznienia. Programy adware powinny zostać w poprawny sposób odinstalowane.)

Adobe Flash Player 31 PPAPI (HKLM-x32\...\Adobe Flash Player PPAPI) (Version: 31.0.0.122 - Adobe Systems Incorporated)
Aktualizacje NVIDIA 31.1.10.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 31.1.10.0 - NVIDIA Corporation) Hidden
Archiwizator WinRAR (HKLM-x32\...\WinRAR archiver) (Version:  - )
ASUS Xonar DG Audio Driver (HKLM\...\C-Media Oxygen HD Audio Driver) (Version:  - )
Avast Free Antivirus (HKLM-x32\...\Avast Antivirus) (Version: 18.7.2354 - AVAST Software)
CCleaner (HKLM\...\CCleaner) (Version: 5.49 - Piriform)
CLEO 4.3 (HKLM-x32\...\{A8F37EB0-C741-41D7-8CAB-5B40ECEEF094}_is1) (Version: 4.3 - Seemann, Deji, Alien)
DisplayDriverAnalyzer (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_DisplayDriverAnalyzer) (Version: 391.35 - NVIDIA Corporation) Hidden
Driver Booster 6 (HKLM-x32\...\Driver Booster_is1) (Version: 6.0.2 - IObit)
Everything 1.4.1.895 (x64) (HKLM\...\Everything) (Version: 1.4.1.895 - David Carpenter)
f.lux (HKU\S-1-5-21-3195122152-1000191773-1615336282-1001\...\Flux) (Version:  - f.lux Software LLC)
GG (HKU\S-1-5-21-3195122152-1000191773-1615336282-1001\...\GG) (Version: 12 - England Sp. z o.o.)
Google Earth Pro 7.3.1.4507 (HKLM\...\Google Earth Pro_is1) (Version: 7.3.1.4507 - lrepacks.ru)
Hola™ 1.111.158 - Better Internet (HKLM\...\Hola) (Version: 1.111.158 - Hola Networks Ltd.) <==== UWAGA
K-Lite Codec Pack 14.5.5 Full (HKLM-x32\...\KLiteCodecPack_is1) (Version: 14.5.5 - KLCP)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005 (HKLM-x32\...\{7f51bdb9-ee21-49ee-94d6-90afc321780e}) (Version: 12.0.21005.1 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 (HKLM-x32\...\{ce085a78-074e-4823-8dc1-8a721b94b76d}) (Version: 12.0.21005.1 - Microsoft Corporation)
NVIDIA GeForce Experience 3.13.1.30 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.13.1.30 - NVIDIA Corporation)
NVIDIA Oprogramowanie systemu PhysX 9.17.0524 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.17.0524 - NVIDIA Corporation)
NVIDIA Sterownik 3D Vision 391.35 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 391.35 - NVIDIA Corporation)
NVIDIA Sterownik graficzny 391.35 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 391.35 - NVIDIA Corporation)
NVIDIA Sterownik kontrolera 3D Vision 390.41 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 390.41 - NVIDIA Corporation)
OpenAL (HKLM-x32\...\OpenAL) (Version:  - )
Opera Stable 56.0.3051.99 (HKU\S-1-5-21-3195122152-1000191773-1615336282-1001\...\Opera 56.0.3051.99) (Version: 56.0.3051.99 - Opera Software)
Panel sterowania NVIDIA 391.35 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel) (Version: 391.35 - NVIDIA Corporation) Hidden
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.8416 - Realtek Semiconductor Corp.)
TmNationsForever (HKLM-x32\...\TmNationsForever_is1) (Version:  - Nadeo)
Vulkan Run Time Libraries 1.0.65.1 (HKLM\...\VulkanRT1.0.65.1) (Version: 1.0.65.1 - LunarG, Inc.) Hidden

==================== Niestandardowe rejestracje CLSID (filtrowane): ==========================

(Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)

ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2018-11-11] (AVAST Software)
ContextMenuHandlers1: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2018-11-11] (AVAST Software)
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => E:\Program Files (x86)\WinRAR\rarext64.dll [2010-03-15] ()
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => E:\Program Files (x86)\WinRAR\rarext.dll [2010-03-15] (Alexander Roshal)
ContextMenuHandlers3: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2018-11-11] (AVAST Software)
ContextMenuHandlers4: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => E:\Program Files (x86)\WinRAR\rarext64.dll [2010-03-15] ()
ContextMenuHandlers4-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => E:\Program Files (x86)\WinRAR\rarext.dll [2010-03-15] (Alexander Roshal)
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\Windows\system32\nvshext.dll [2018-03-24] (NVIDIA Corporation)
ContextMenuHandlers6: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2018-11-11] (AVAST Software)
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => E:\Program Files (x86)\WinRAR\rarext64.dll [2010-03-15] ()
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => E:\Program Files (x86)\WinRAR\rarext.dll [2010-03-15] (Alexander Roshal)

==================== Zaplanowane zadania (filtrowane) =============

(Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)

Task: {024827B5-54EC-4FED-9D63-2D0A1E3742A3} - System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2018-03-24] (NVIDIA Corporation)
Task: {070C2E73-2EA8-4910-97A3-0655E98B7314} - System32\Tasks\Avast Emergency Update => C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [2018-11-11] (AVAST Software)
Task: {0F5E1C8F-90F8-4ED1-9291-475D6D67C685} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2018-03-24] (NVIDIA Corporation)
Task: {11177ADF-E876-4DDB-9683-A77933DC08B5} - System32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvContainer\nvcontainer.exe [2018-03-24] (NVIDIA Corporation)
Task: {120C50B3-BCAB-4A0E-A670-E1760DA9EDF1} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2018-03-24] (NVIDIA Corporation)
Task: {168D6032-4303-4D2A-A6CD-C44D1075A083} - System32\Tasks\Driver Booster SkipUAC (Tomaszu) => C:\Program Files (x86)\IObit\Driver Booster\6.0.2\DriverBooster.exe [2018-09-25] (IObit)
Task: {2F4E7F9D-6DF5-4295-B1FE-4ECCA807F121} - System32\Tasks\Driver Booster Scheduler => C:\Program Files (x86)\IObit\Driver Booster\6.0.2\Scheduler.exe [2018-09-20] (IObit)
Task: {3656AD37-91FB-4648-8BA8-43169C7D18B6} - System32\Tasks\Opera scheduled Autoupdate 1541791187 => C:\Users\Tomaszu\AppData\Local\Programs\Opera\launcher.exe [2018-11-06] (Opera Software)
Task: {3D8CA100-635C-472B-AB6F-366BA8C5DE4D} - System32\Tasks\klcp_update => codectweaktool.exe
Task: {4E05F795-6A19-485F-8FBA-426D20B7C4D3} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [2018-03-24] (NVIDIA Corporation)
Task: {4F4F1896-915C-41FF-9C18-730C81AFCF8A} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [2018-03-24] (NVIDIA Corporation)
Task: {5D8DD5D1-FBC4-4755-A937-9761F02AD2AB} - System32\Tasks\Adobe Flash Player PPAPI Notifier => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_31_0_0_122_pepper.exe [2018-11-11] (Adobe Systems Incorporated)
Task: {642380C6-297A-4C1E-89BC-493080115C48} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2018-11-06] (Piriform Software Ltd)
Task: {7E593793-BD71-49F6-B478-B9C02E727482} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\AVAST Software\Overseer\overseer.exe [2018-11-15] (AVAST Software)
Task: {9A6044A6-7ED3-448A-A8E5-59167504071F} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [2018-03-24] (NVIDIA Corporation)
Task: {B3A12BFB-2506-4C7C-9D95-41BA0B1E52F0} - System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmMon.exe [2018-03-24] (NVIDIA Corporation)
Task: {E695AB35-2F64-479B-8115-B0258359FF89} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [2018-11-06] (Piriform Ltd)

(Załączenie wejścia w fixlist spowoduje przesunięcie pliku zadania (.job). Plik uruchamiany docelowo przez zadanie nie zostanie przeniesiony.)


==================== Skróty & WMI ========================

(Wybrane wejścia mogą zostać załączone w celu ich zresetowania lub usunięcia.)


==================== Załadowane moduły (filtrowane) ==============

2018-11-09 20:04 - 2018-03-24 02:13 - 000544192 _____ () C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem\DisplayDriverAnalyzer\_DisplayDriverCrashAnalyzer64.dll
2018-11-09 20:08 - 2010-03-15 11:28 - 000052224 _____ () E:\Program Files (x86)\WinRAR\rarext64.dll
2018-11-09 20:09 - 2008-07-11 15:04 - 000200704 ____N () C:\Windows\SysWOW64\HsMgr.exe
2018-11-09 20:09 - 2008-07-11 15:03 - 000282112 ____N () C:\Windows\system\HsMgr64.exe
2018-11-09 17:55 - 2018-02-09 05:11 - 002199656 _____ () E:\Program Files\Everything\Everything.exe
2012-12-08 22:38 - 2007-08-11 15:50 - 000331264 _____ () E:\Program Files\NetMeter\NetMeter.exe
2018-11-06 17:14 - 2018-11-06 17:14 - 000097296 _____ () C:\Program Files\CCleaner\lang\lang-1045.dll
2018-11-11 18:54 - 2018-11-11 18:54 - 000730328 _____ () c:\Program Files\AVAST Software\Avast\x64\StreamBack.dll
2018-11-09 20:19 - 2018-11-06 06:54 - 104168024 _____ () C:\Users\Tomaszu\AppData\Local\Programs\Opera\56.0.3051.99\opera_browser.dll
2018-11-09 20:19 - 2018-11-06 06:54 - 005082200 _____ () C:\Users\Tomaszu\AppData\Local\Programs\Opera\56.0.3051.99\libglesv2.dll
2018-11-09 20:19 - 2018-11-06 06:54 - 000116824 _____ () C:\Users\Tomaszu\AppData\Local\Programs\Opera\56.0.3051.99\libegl.dll
2014-05-11 09:07 - 2014-03-08 10:24 - 001285120 _____ () E:\Różne rzeczy\Programy\Gmer OTL Zoek\zoek.exe
2018-11-11 18:54 - 2018-11-11 18:54 - 000919256 _____ () C:\Program Files\AVAST Software\Avast\anen.dll
2018-11-11 18:54 - 2018-11-11 18:54 - 000598232 _____ () C:\Program Files\AVAST Software\Avast\streamback.dll
2018-11-11 18:54 - 2018-11-11 18:54 - 000496856 _____ () C:\Program Files\AVAST Software\Avast\gui_cache.dll
2018-11-11 18:54 - 2018-11-11 18:54 - 000150744 _____ () C:\Program Files\AVAST Software\Avast\hns_tools.dll
2018-11-11 18:54 - 2018-11-11 18:54 - 001112280 _____ () C:\Program Files\AVAST Software\Avast\shepherdsync.dll
2018-11-17 08:54 - 2018-11-17 08:54 - 005724304 _____ () C:\Program Files\AVAST Software\Avast\defs\18111700\algo.dll
2018-11-11 18:56 - 2018-11-11 18:56 - 067126928 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll
2018-11-09 20:09 - 2012-06-06 09:56 - 000143360 ____N () C:\Program Files\ASUS Xonar DG Audio\Customapp\VmixP8.dll

==================== Alternate Data Streams (filtrowane) =========

(Załączenie wejścia w fixlist spowoduje usunięcie strumienia ADS.)


==================== Tryb awaryjny (filtrowane) ===================

(Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Wartość "AlternateShell" zostanie przywrócona.)


==================== Powiązania plików (filtrowane) ===============

(Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci.)


==================== Internet Explorer - Witryny zaufane i z ograniczeniami ===============

(Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru.)

IE trusted site: HKU\S-1-5-21-3195122152-1000191773-1615336282-1001\...\hola.org -> hxxp://hola.org

==================== Hosts - zawartość: ===============================

(Użycie dyrektywy Hosts: w fixlist spowoduje reset pliku Hosts.)

2009-07-14 03:34 - 2018-11-17 08:24 - 000000828 _____ C:\Windows\system32\Drivers\etc\hosts


==================== Inne obszary ============================

(Obecnie brak automatycznej naprawy dla tej sekcji.)

HKU\S-1-5-21-3195122152-1000191773-1615336282-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Tomaszu\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg
DNS Servers: 192.168.1.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Zapora systemu Windows [funkcja włączona]

==================== MSCONFIG/TASK MANAGER - Wyłączone elementy ==

Załączenie wejścia w fixlist spowoduje jego usunięcie.


==================== Reguły Zapory systemu Windows (filtrowane) ===============

(Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)

FirewallRules: [{AD543D5C-BC3F-4D05-8C51-F26EBCA01D39}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
FirewallRules: [{F3944E0C-E4A3-43CE-B5EB-26D0BB63282A}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
FirewallRules: [{9AB5103D-D184-425D-A85F-D256865B9054}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
FirewallRules: [{940D3189-1A2E-4215-9A43-5DAA58483C87}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
FirewallRules: [{2981E88F-BFBC-4E36-9437-EFDFDFF2FC17}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{CA83DACF-5F9F-4D09-959C-95CAC7C7346F}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{13FEB0AA-C895-44E9-9074-9779BDA16531}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\6.0.2\DriverBooster.exe
FirewallRules: [{2533A21F-57AF-4D35-A1F8-583075E2A6F7}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\6.0.2\DriverBooster.exe
FirewallRules: [{67EAE1FD-0ABE-4BBC-9F6B-9C03550D8976}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\6.0.2\DBDownloader.exe
FirewallRules: [{1E750603-A02A-4ED2-8483-1A6CCFF5A688}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\6.0.2\DBDownloader.exe
FirewallRules: [{8120F8DA-BDA4-43DD-9890-22578FFD305B}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\6.0.2\AutoUpdate.exe
FirewallRules: [{AA9E70EF-735E-4B68-96BE-643B660B7711}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\6.0.2\AutoUpdate.exe
FirewallRules: [TCP Query User{FC57D472-BEFB-4CFB-998F-82910406A153}E:\program files (x86)\tmnationsforever\tmforever.exe] => (Allow) E:\program files (x86)\tmnationsforever\tmforever.exe
FirewallRules: [UDP Query User{CC905BEF-6CA4-49BD-BA1D-6468349DFD35}E:\program files (x86)\tmnationsforever\tmforever.exe] => (Allow) E:\program files (x86)\tmnationsforever\tmforever.exe
FirewallRules: [{4C46ED49-2CED-4022-BF8A-E4622E074021}] => (Allow) C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe
FirewallRules: [{881675C2-90F4-44CB-A468-7E7779785730}] => (Allow) C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe
FirewallRules: [{67BBA05B-B922-46C3-BC8C-9CB6A8266AEA}] => (Allow) C:\Program Files\CCleaner\CCUpdate.exe
FirewallRules: [{C674F7F8-3F4D-42A3-B42B-323B52D20AF2}] => (Allow) C:\Program Files\CCleaner\CCUpdate.exe

==================== Punkty Przywracania systemu =========================

17-11-2018 08:20:02 zoek.exe restore point

==================== Wadliwe urządzenia w Menedżerze urządzeń =============


==================== Błędy w Dzienniku zdarzeń: =========================

Dziennik Aplikacja:
==================
Error: (11/16/2018 09:26:23 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nazwa aplikacji powodującej błąd: gta_sa.exe, wersja: 0.0.0.0, sygnatura czasowa: 0x427101ca
Nazwa modułu powodującego błąd: gta_sa.exe, wersja: 0.0.0.0, sygnatura czasowa: 0x427101ca
Kod wyjątku: 0xc0000005
Przesunięcie błędu: 0x00346929
Identyfikator procesu powodującego błąd: 0x920
Godzina uruchomienia aplikacji powodującej błąd: 0x01d47deaa275d7f1
Ścieżka aplikacji powodującej błąd: E:\Program Files\Rockstar Games\GTA San Andreas\gta_sa.exe
Ścieżka modułu powodującego błąd: E:\Program Files\Rockstar Games\GTA San Andreas\gta_sa.exe
Identyfikator raportu: e1f1bb02-e9dd-11e8-83cb-001d7dd23fd1

Error: (11/16/2018 12:55:08 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nazwa aplikacji powodującej błąd: screamer.exe, wersja: 0.4.4.0, sygnatura czasowa: 0x4ce7e200
Nazwa modułu powodującego błąd: unknown, wersja: 0.0.0.0, sygnatura czasowa: 0x00000000
Kod wyjątku: 0xc0000005
Przesunięcie błędu: 0x0206f538
Identyfikator procesu powodującego błąd: 0x1a30
Godzina uruchomienia aplikacji powodującej błąd: 0x01d47da29f037272
Ścieżka aplikacji powodującej błąd: E:\Program Files\Screamer Radio\screamer.exe
Ścieżka modułu powodującego błąd: unknown
Identyfikator raportu: 76167c3e-e996-11e8-b34f-001d7dd23fd1

Error: (11/13/2018 12:03:47 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program gta_sa.exe w wersji 0.0.0.0 zatrzymał interakcję z systemem Windows i został zamknięty. Aby zobaczyć, czy jest dostępnych więcej informacji dotyczących tego problemu, sprawdź historię problemu w panelu sterowania Centrum akcji.

Identyfikator procesu: 15c0

Godzina rozpoczęcia: 01d47b3ff4287649

Godzina zakończenia: 226

Ścieżka aplikacji: E:\Program Files\Rockstar Games\GTA San Andreas\gta_sa.exe

Identyfikator raportu:

Error: (11/12/2018 05:18:23 PM) (Source: SideBySide) (EventID: 33) (User: )
Description: Nie można wygenerować kontekstu aktywacji dla "E:\Program Files (x86)\BlackBeanGames\SBK2011\Sbk2011.exe".
Nie można odnaleźć zestawu zależnego Microsoft.VC90.OpenMP,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="9.0.21022.8".
Użyj narzędzia sxstrace.exe, aby uzyskać szczegółową diagnozę.

Error: (11/12/2018 12:59:34 PM) (Source: SideBySide) (EventID: 33) (User: )
Description: Nie można wygenerować kontekstu aktywacji dla "E:\Program Files (x86)\BlackBeanGames\SBK2011\Sbk2011.exe".
Nie można odnaleźć zestawu zależnego Microsoft.VC90.OpenMP,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="9.0.21022.8".
Użyj narzędzia sxstrace.exe, aby uzyskać szczegółową diagnozę.

Error: (11/11/2018 01:00:20 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nazwa aplikacji powodującej błąd: gta_sa.exe, wersja: 0.0.0.0, sygnatura czasowa: 0x427101ca
Nazwa modułu powodującego błąd: gta_sa.exe, wersja: 0.0.0.0, sygnatura czasowa: 0x427101ca
Kod wyjątku: 0xc0000005
Przesunięcie błędu: 0x0019fe47
Identyfikator procesu powodującego błąd: 0x940
Godzina uruchomienia aplikacji powodującej błąd: 0x01d47941c829c0e0
Ścieżka aplikacji powodującej błąd: E:\Program Files\Rockstar Games\GTA San Andreas\gta_sa.exe
Ścieżka modułu powodującego błąd: E:\Program Files\Rockstar Games\GTA San Andreas\gta_sa.exe
Identyfikator raportu: c6d36a97-e544-11e8-b34f-001d7dd23fd1

Error: (11/10/2018 08:29:18 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nazwa aplikacji powodującej błąd: gta_sa.exe, wersja: 0.0.0.0, sygnatura czasowa: 0x427101ca
Nazwa modułu powodującego błąd: HsSrv.dll, wersja: 1.0.12.106, sygnatura czasowa: 0x4f064d85
Kod wyjątku: 0xc0000005
Przesunięcie błędu: 0x00010b4a
Identyfikator procesu powodującego błąd: 0xe68
Godzina uruchomienia aplikacji powodującej błąd: 0x01d4792b5b10161e
Ścieżka aplikacji powodującej błąd: E:\Program Files\Rockstar Games\GTA San Andreas\gta_sa.exe
Ścieżka modułu powodującego błąd: C:\Windows\SysWOW64\HsSrv.dll
Identyfikator raportu: e9e9251d-e51e-11e8-b34f-001d7dd23fd1

Error: (11/10/2018 08:07:30 PM) (Source: SideBySide) (EventID: 33) (User: )
Description: Nie można wygenerować kontekstu aktywacji dla "E:\Program Files (x86)\BlackBeanGames\SBK2011\Sbk2011.exe".
Nie można odnaleźć zestawu zależnego Microsoft.VC90.OpenMP,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="9.0.21022.8".
Użyj narzędzia sxstrace.exe, aby uzyskać szczegółową diagnozę.


Dziennik System:
=============
Error: (11/17/2018 07:55:06 AM) (Source: Disk) (EventID: 7) (User: )
Description: W urządzeniu \Device\Harddisk0\DR0 wystąpił zły blok.

Error: (11/17/2018 07:55:04 AM) (Source: Disk) (EventID: 7) (User: )
Description: W urządzeniu \Device\Harddisk0\DR0 wystąpił zły blok.

Error: (11/17/2018 07:55:01 AM) (Source: Disk) (EventID: 7) (User: )
Description: W urządzeniu \Device\Harddisk0\DR0 wystąpił zły blok.

Error: (11/17/2018 07:54:59 AM) (Source: Disk) (EventID: 7) (User: )
Description: W urządzeniu \Device\Harddisk0\DR0 wystąpił zły blok.

Error: (11/17/2018 07:53:51 AM) (Source: Disk) (EventID: 7) (User: )
Description: W urządzeniu \Device\Harddisk0\DR0 wystąpił zły blok.

Error: (11/17/2018 07:53:49 AM) (Source: Disk) (EventID: 7) (User: )
Description: W urządzeniu \Device\Harddisk0\DR0 wystąpił zły blok.

Error: (11/17/2018 07:53:47 AM) (Source: Disk) (EventID: 7) (User: )
Description: W urządzeniu \Device\Harddisk0\DR0 wystąpił zły blok.

Error: (11/17/2018 07:53:44 AM) (Source: Disk) (EventID: 7) (User: )
Description: W urządzeniu \Device\Harddisk0\DR0 wystąpił zły blok.


==================== Statystyki pamięci ===========================

Procesor: Intel(R) Core(TM)2 Duo CPU E4600 @ 2.40GHz
Procent pamięci w użyciu: 67%
Całkowita pamięć fizyczna: 4094.49 MB
Dostępna pamięć fizyczna: 1347.12 MB
Całkowita pamięć wirtualna: 8187.13 MB
Dostępna pamięć wirtualna: 4612.23 MB

==================== Dyski ================================

Drive c: () (Fixed) (Total:27.88 GB) (Free:7.16 GB) NTFS ==>[dysk z komponentami startowymi (pozyskano odczytując BCD)]
Drive d: () (Fixed) (Total:31.74 GB) (Free:0.8 GB) NTFS
Drive e: () (Fixed) (Total:536.55 GB) (Free:31.71 GB) NTFS


==================== MBR & Tablica partycji ==================

========================================================
Disk: 0 (MBR Code: Windows 7/8/10) (Size: 596.2 GB) (Disk ID: 1E200E12)
Partition 1: (Active) - (Size=27.9 GB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=568.3 GB) - (Type=0F Extended)

==================== Koniec  Addition.txt ============================


OTL:
Kod: Zaznacz wszystko
OTL logfile created on: 2018-11-17 07:51:55 - Run 1
OTL by OldTimer - Version 3.2.69.0     Folder = E:\Różne rzeczy\Programy\Gmer OTL Zoek
64bit- Ultimate Edition  (Version = 6.1.7600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.7600.16385)
Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd

4,00 Gb Total Physical Memory | 1,86 Gb Available Physical Memory | 46,55% Memory free
8,00 Gb Paging File | 5,10 Gb Available in Paging File | 63,82% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 27,88 Gb Total Space | 7,24 Gb Free Space | 25,99% Space Free | Partition Type: NTFS
Drive D: | 31,74 Gb Total Space | 0,80 Gb Free Space | 2,52% Space Free | Partition Type: NTFS
Drive E: | 536,55 Gb Total Space | 31,71 Gb Free Space | 5,91% Space Free | Partition Type: NTFS

Computer Name: TOMMY | User Name: Tomaszu | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

[color=#E56717]========== Processes (SafeList) ==========[/color]

PRC - [2018-11-14 16:20:21 | 001,694,480 | ---- | M] (IObit) -- C:\Program Files (x86)\IObit\Driver Booster\6.0.2\Pub\PubMonitor.exe
PRC - [2018-11-11 18:56:13 | 011,190,488 | ---- | M] (AVAST Software) -- C:\Program Files\AVAST Software\Avast\AvastUI.exe
PRC - [2018-11-11 18:54:35 | 000,325,024 | ---- | M] (AVAST Software) -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe
PRC - [2018-11-07 13:56:48 | 004,078,144 | ---- | M] (GG Network S.A.) -- C:\Users\Tomaszu\AppData\Local\GG\Application\gghub.exe
PRC - [2018-11-07 13:56:46 | 000,118,832 | ---- | M] (GG Network S.A.) -- C:\Users\Tomaszu\AppData\Local\GG\Application\ggapp.exe
PRC - [2018-03-24 02:13:29 | 000,969,152 | ---- | M] (NVIDIA Corporation) -- C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvSHIM.exe
PRC - [2018-03-24 02:13:29 | 000,757,184 | ---- | M] (NVIDIA Corporation) -- C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe
PRC - [2018-03-24 02:13:29 | 000,469,952 | ---- | M] (NVIDIA Corporation) -- C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe
PRC - [2018-01-17 23:44:06 | 001,682,936 | ---- | M] (f.lux Software LLC) -- C:\Users\Tomaszu\AppData\Local\FluxSoftware\Flux\flux.exe
PRC - [2014-05-10 17:49:49 | 000,602,112 | ---- | M] (OldTimer Tools) -- E:\Różne rzeczy\Programy\Gmer OTL Zoek\OTL_[www.programosy.pl].exe
PRC - [2012-12-13 09:50:42 | 002,007,040 | ---- | M] (CMedia) -- C:\Program Files\ASUS Xonar DG Audio\Customapp\AsusAudioCenter.exe
PRC - [2010-01-08 14:15:29 | 014,383,616 | ---- | M] () -- E:\Program Files\Rockstar Games\GTA San Andreas\gta_sa.exe
PRC - [2009-07-14 02:14:44 | 000,360,448 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\WerFault.exe
PRC - [2008-07-11 15:04:22 | 000,200,704 | ---- | M] () -- C:\Windows\SysWOW64\HsMgr.exe
PRC - [2007-08-11 15:50:00 | 000,331,264 | ---- | M] () -- E:\Program Files\NetMeter\NetMeter.exe


[color=#E56717]========== Modules (No Company Name) ==========[/color]

MOD - [2018-11-11 18:56:16 | 067,126,928 | ---- | M] () -- C:\Program Files\AVAST Software\Avast\libcef.dll
MOD - [2018-11-11 18:54:37 | 000,598,232 | ---- | M] () -- C:\Program Files\AVAST Software\Avast\streamback.dll
MOD - [2018-11-07 13:56:46 | 003,716,144 | ---- | M] () -- C:\Users\Tomaszu\AppData\Local\GG\Application\xulrunner\mozjs.dll
MOD - [2014-01-26 15:10:02 | 000,053,760 | ---- | M] () -- E:\Program Files\Rockstar Games\GTA San Andreas\vorbisFile.dll
MOD - [2012-06-06 09:56:50 | 000,143,360 | ---- | M] () -- C:\Program Files\ASUS Xonar DG Audio\Customapp\VmixP8.dll
MOD - [2010-02-03 19:27:11 | 000,036,864 | ---- | M] () -- E:\Program Files\Rockstar Games\GTA San Andreas\ogg.dll
MOD - [2010-01-08 14:15:29 | 014,383,616 | ---- | M] () -- E:\Program Files\Rockstar Games\GTA San Andreas\gta_sa.exe
MOD - [2008-07-11 15:04:22 | 000,200,704 | ---- | M] () -- C:\Windows\SysWOW64\HsMgr.exe
MOD - [2007-08-11 15:50:00 | 000,331,264 | ---- | M] () -- E:\Program Files\NetMeter\NetMeter.exe
MOD - [2003-11-16 17:48:30 | 000,065,536 | ---- | M] () -- E:\Program Files\Rockstar Games\GTA San Andreas\vorbisHooked.dll
MOD - [2003-11-16 10:48:00 | 001,060,864 | ---- | M] () -- E:\Program Files\Rockstar Games\GTA San Andreas\vorbis.dll


[color=#E56717]========== Services (SafeList) ==========[/color]

SRV:[b]64bit:[/b] - [2018-11-11 18:54:35 | 000,325,024 | ---- | M] (AVAST Software) [Auto | Running] -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe -- (avast! Antivirus)
SRV:[b]64bit:[/b] - [2018-11-11 18:54:33 | 008,188,768 | ---- | M] (AVAST Software) [On_Demand | Running] -- C:\Program Files\AVAST Software\Avast\x64\aswidsagenta.exe -- (aswbIDSAgent)
SRV:[b]64bit:[/b] - [2018-10-30 17:45:58 | 020,608,960 | ---- | M] (Hola Networks Ltd.) [Auto | Running] -- C:\Program Files\Hola\app\hola_updater.exe -- (hola_updater)
SRV:[b]64bit:[/b] - [2018-10-30 17:45:58 | 020,608,960 | ---- | M] (Hola Networks Ltd.) [Auto | Running] -- C:\Program Files\Hola\app\hola_svc.exe -- (hola_svc)
SRV:[b]64bit:[/b] - [2018-03-24 02:13:29 | 000,522,688 | ---- | M] (NVIDIA Corporation) [On_Demand | Stopped] -- C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe -- (NvContainerNetworkService)
SRV:[b]64bit:[/b] - [2018-03-24 02:13:29 | 000,522,688 | ---- | M] (NVIDIA Corporation) [On_Demand | Stopped] -- C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe -- (NvContainerLocalSystem)
SRV:[b]64bit:[/b] - [2018-03-24 00:50:50 | 000,464,272 | ---- | M] (NVIDIA Corporation) [Auto | Running] -- C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe -- (NVDisplay.ContainerLocalSystem)
SRV:[b]64bit:[/b] - [2009-07-14 02:41:27 | 001,011,712 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV:[b]64bit:[/b] - [2009-07-14 02:40:01 | 000,193,536 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\appmgmts.dll -- (AppMgmt)
SRV - [2018-10-30 10:41:16 | 002,017,712 | ---- | M] () [Auto | Stopped] -- C:/Program Files/Hola/app/net_updater64.exe -- (luminati_net_updater_win_hola_org)
SRV - [2018-03-24 02:13:29 | 000,469,952 | ---- | M] (NVIDIA Corporation) [Auto | Running] -- C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe -- (NvTelemetryContainer)
SRV - [2018-02-09 05:11:18 | 002,199,656 | ---- | M] () [Auto | Running] -- E:\Program Files\Everything\Everything.exe -- (Everything)
SRV - [2009-06-10 22:23:09 | 000,066,384 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32)


[color=#E56717]========== Driver Services (SafeList) ==========[/color]

DRV:[b]64bit:[/b] - [2018-11-11 18:54:42 | 000,467,904 | ---- | M] (AVAST Software) [File_System | System | Running] -- C:\Windows\SysNative\drivers\aswSP.sys -- (aswSP)
DRV:[b]64bit:[/b] - [2018-11-11 18:54:42 | 000,381,144 | ---- | M] (AVAST Software) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\aswVmm.sys -- (aswVmm)
DRV:[b]64bit:[/b] - [2018-11-11 18:54:42 | 000,208,640 | ---- | M] (AVAST Software) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\aswStm.sys -- (aswStm)
DRV:[b]64bit:[/b] - [2018-11-11 18:54:42 | 000,088,112 | ---- | M] (AVAST Software) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\aswRvrt.sys -- (aswRvrt)
DRV:[b]64bit:[/b] - [2018-11-11 18:54:41 | 000,201,408 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\aswArPot.sys -- (aswArPot)
DRV:[b]64bit:[/b] - [2018-11-11 18:54:41 | 000,163,376 | ---- | M] (AVAST Software) [File_System | Auto | Running] -- C:\Windows\SysNative\drivers\aswMonFlt.sys -- (aswMonFlt)
DRV:[b]64bit:[/b] - [2018-11-11 18:54:41 | 000,111,968 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\aswRdr2.sys -- (aswRdr)
DRV:[b]64bit:[/b] - [2018-11-11 18:54:41 | 000,047,064 | ---- | M] (AVAST Software) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\aswHwid.sys -- (aswHwid)
DRV:[b]64bit:[/b] - [2018-11-11 18:54:38 | 000,042,456 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\aswKbd.sys -- (aswKbd)
DRV:[b]64bit:[/b] - [2018-11-11 18:54:34 | 001,028,840 | ---- | M] (AVAST Software) [File_System | System | Running] -- C:\Windows\SysNative\drivers\aswSnx.sys -- (aswSnx)
DRV:[b]64bit:[/b] - [2018-11-11 18:54:32 | 000,185,240 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\aswHdsKe.sys -- (aswHdsKe)
DRV:[b]64bit:[/b] - [2018-11-11 18:54:31 | 000,346,760 | ---- | M] (AVAST Software) [File_System | Boot | Running] -- C:\Windows\SysNative\drivers\aswbloga.sys -- (aswblog)
DRV:[b]64bit:[/b] - [2018-11-11 18:54:31 | 000,230,512 | ---- | M] (AVAST Software) [File_System | System | Running] -- C:\Windows\SysNative\drivers\aswbidsdrivera.sys -- (aswbidsdriver)
DRV:[b]64bit:[/b] - [2018-11-11 18:54:31 | 000,201,928 | ---- | M] (AVAST Software) [File_System | Boot | Running] -- C:\Windows\SysNative\drivers\aswbidsha.sys -- (aswbidsh)
DRV:[b]64bit:[/b] - [2018-11-11 18:54:31 | 000,059,664 | ---- | M] (AVAST Software) [File_System | Boot | Running] -- C:\Windows\SysNative\drivers\aswbuniva.sys -- (aswbuniv)
DRV:[b]64bit:[/b] - [2018-11-10 12:39:42 | 001,087,424 | ---- | M] (Realtek                                        ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Rt64win7.sys -- (RTL8167)
DRV:[b]64bit:[/b] - [2018-11-10 12:38:57 | 000,218,968 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\nvhda64v.sys -- (NVHDA)
DRV:[b]64bit:[/b] - [2018-11-10 12:38:08 | 000,069,544 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\nvvad64v.sys -- (nvvad_WaveExtensible)
DRV:[b]64bit:[/b] - [2018-11-10 12:30:12 | 000,051,808 | ---- | M] (Synaptics Incorporated) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Smb_driver_Intel.sys -- (SmbDrvI)
DRV:[b]64bit:[/b] - [2018-03-24 02:13:29 | 000,058,816 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\nvvhci.sys -- (nvvhci)
DRV:[b]64bit:[/b] - [2018-03-24 02:13:29 | 000,031,168 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Stopped] -- C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys -- (NvStreamKms)
DRV:[b]64bit:[/b] - [2013-04-11 19:21:06 | 002,734,080 | ---- | M] (C-Media Inc) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\cmudaxp.sys -- (cmudaxp)
DRV:[b]64bit:[/b] - [2009-07-14 02:52:21 | 000,106,576 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata)
DRV:[b]64bit:[/b] - [2009-07-14 02:52:21 | 000,028,752 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata)
DRV:[b]64bit:[/b] - [2009-07-14 02:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs)
DRV:[b]64bit:[/b] - [2009-07-14 02:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2)
DRV:[b]64bit:[/b] - [2009-07-14 02:47:48 | 000,077,888 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD)
DRV:[b]64bit:[/b] - [2009-07-14 02:47:48 | 000,023,104 | ---- | M] (Microsoft Corporation) [Recognizer | Boot | Unknown] -- C:\Windows\SysNative\drivers\fs_rec.sys -- (Fs_Rec)
DRV:[b]64bit:[/b] - [2009-07-14 02:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor)
DRV:[b]64bit:[/b] - [2009-06-10 21:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv)
DRV:[b]64bit:[/b] - [2009-06-10 21:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv)
DRV:[b]64bit:[/b] - [2009-06-10 21:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a)
DRV:[b]64bit:[/b] - [2009-06-10 21:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir)
DRV - [2018-11-10 12:12:37 | 000,027,552 | ---- | M] (REALiX(tm)) [Kernel | System | Running] -- C:\Windows\SysWOW64\drivers\HWiNFO64A.SYS -- (HWiNFO32)
DRV - [2018-11-09 19:54:47 | 000,020,544 | ---- | M] (Windows (R) Server 2003 DDK provider) [Kernel | On_Demand | Stopped] -- C:\Windows\gdrv.sys -- (gdrv)
DRV - [2009-07-14 02:19:10 | 000,019,008 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\wimmount.sys -- (WIMMount)


[color=#E56717]========== Standard Registry (SafeList) ==========[/color]


[color=#E56717]========== Internet Explorer ==========[/color]

IE:[b]64bit:[/b] - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE:[b]64bit:[/b] - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC

IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://www.msn.com/pl-pl/?ocid=iehp
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = pl
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 1D C8 1C C0 5D 78 D4 01  [binary data]
IE - HKCU\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKCU\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0


[color=#E56717]========== FireFox ==========[/color]

FF - HKLM\Software\MozillaPlugins\@nvidia.com/3DVision: C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
FF - HKLM\Software\MozillaPlugins\@nvidia.com/3DVisionStreaming: C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)



O1 HOSTS File: ([2018-11-15 19:33:57 | 000,000,825 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O4:[b]64bit:[/b] - HKLM..\Run: [AvastUI.exe] C:\Program Files\AVAST Software\Avast\AvLaunch.exe (AVAST Software)
O4:[b]64bit:[/b] - HKLM..\Run: [Cmaudio8788] C:\Windows\Syswow64\cmicnfgp.dll (C-Media Corporation)
O4:[b]64bit:[/b] - HKLM..\Run: [Cmaudio8788GX] C:\Windows\syswow64\HsMgr.exe ()
O4:[b]64bit:[/b] - HKLM..\Run: [Cmaudio8788GX64] C:\Windows\system\HsMgr64.exe ()
O4:[b]64bit:[/b] - HKLM..\Run: [Everything] E:\Program Files\Everything\Everything.exe ()
O4:[b]64bit:[/b] - HKLM..\Run: [hola] C:\Program Files\Hola\app\hola.exe (Hola Networks Ltd.)
O4:[b]64bit:[/b] - HKLM..\Run: [RTHDVCPL] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Realtek Semiconductor)
O4 - HKCU..\Run: [CCleaner Smart Cleaning] C:\Program Files\CCleaner\CCleaner64.exe (Piriform Software Ltd)
O4 - HKCU..\Run: [E:\Program Files\NetMeter\NetMeter.exe] E:\Program Files\NetMeter\NetMeter.exe ()
O4 - HKCU..\Run: [f.lux] C:\Users\Tomaszu\AppData\Local\FluxSoftware\Flux\flux.exe (f.lux Software LLC)
O4 - HKCU..\Run: [GG] C:\Users\Tomaszu\AppData\Local\GG\Application\gghub.exe (GG Network S.A.)
O4 - HKCU..\RunOnce: [FlashPlayerUpdate] C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_31_0_0_122_pepper.exe (Adobe Systems Incorporated)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O13[b]64bit:[/b] - gopher Prefix: missing
O13 - gopher Prefix: missing
O15 - HKCU\..Trusted Domains: hola.org ([]http in Trusted sites)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{D897194E-6740-48C1-88B9-4F2A6D7A0885}: DhcpNameServer = 192.168.1.1
O20:[b]64bit:[/b] - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20:[b]64bit:[/b] - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (userinit.exe) - C:\Windows\SysWow64\userinit.exe (Microsoft Corporation)
O21:[b]64bit:[/b] - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2017-01-25 14:00:52 | 000,000,434 | ---- | M] () - D:\AutoMapaSetupLog.txt -- [ NTFS ]
O34 - HKLM BootExecute: (autocheck autochk *)
O35:[b]64bit:[/b] - HKLM\..comfile [open] -- "%1" %*
O35:[b]64bit:[/b] - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:[b]64bit:[/b] - HKLM\...com [@ = comfile] -- "%1" %*
O37:[b]64bit:[/b] - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)

[color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color]

[2018-11-17 07:50:29 | 000,000,000 | ---D | C] -- C:\zoek_backup
[2018-11-16 13:37:35 | 000,000,000 | ---D | C] -- C:\Users\Tomaszu\AppData\Roaming\Macromedia
[2018-11-16 13:37:20 | 000,000,000 | ---D | C] -- C:\Users\Tomaszu\AppData\Roaming\Mozilla
[2018-11-16 13:37:11 | 000,000,000 | ---D | C] -- C:\Users\Tomaszu\AppData\Roaming\GG
[2018-11-16 13:36:50 | 000,000,000 | ---D | C] -- C:\Users\Tomaszu\AppData\Local\GG
[2018-11-16 12:48:31 | 000,000,000 | ---D | C] -- C:\Users\Tomaszu\AppData\Roaming\foobar2000
[2018-11-13 16:49:31 | 000,000,000 | ---D | C] -- C:\Users\Tomaszu\AppData\Local\FluxSoftware
[2018-11-12 17:18:02 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\San Andreas Multiplayer
[2018-11-12 17:00:05 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
[2018-11-12 17:00:03 | 000,000,000 | ---D | C] -- C:\Program Files\CCleaner
[2018-11-12 16:59:36 | 018,071,560 | ---- | C] (Piriform Software Ltd) -- C:\Users\Tomaszu\Desktop\ccsetup549.exe
[2018-11-11 20:35:21 | 000,000,000 | ---D | C] -- C:\Users\Tomaszu\AppData\Local\NVIDIA
[2018-11-11 20:35:01 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Earth Pro
[2018-11-11 18:56:33 | 000,000,000 | ---D | C] -- C:\Users\Tomaszu\AppData\Roaming\AVAST Software
[2018-11-11 18:56:32 | 000,000,000 | ---D | C] -- C:\Users\Tomaszu\AppData\Local\CEF
[2018-11-11 18:56:21 | 000,000,000 | ---D | C] -- C:\Users\Tomaszu\AppData\Local\AVAST Software
[2018-11-11 18:56:19 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVAST Software
[2018-11-11 18:54:53 | 000,467,904 | ---- | C] (AVAST Software) -- C:\Windows\SysNative\drivers\aswSP.sys
[2018-11-11 18:54:53 | 000,381,144 | ---- | C] (AVAST Software) -- C:\Windows\SysNative\drivers\aswVmm.sys
[2018-11-11 18:54:53 | 000,208,640 | ---- | C] (AVAST Software) -- C:\Windows\SysNative\drivers\aswStm.sys
[2018-11-11 18:54:52 | 001,028,840 | ---- | C] (AVAST Software) -- C:\Windows\SysNative\drivers\aswSnx.sys
[2018-11-11 18:54:52 | 000,201,408 | ---- | C] (AVAST Software) -- C:\Windows\SysNative\drivers\aswArPot.sys
[2018-11-11 18:54:52 | 000,163,376 | ---- | C] (AVAST Software) -- C:\Windows\SysNative\drivers\aswMonFlt.sys
[2018-11-11 18:54:52 | 000,111,968 | ---- | C] (AVAST Software) -- C:\Windows\SysNative\drivers\aswRdr2.sys
[2018-11-11 18:54:52 | 000,088,112 | ---- | C] (AVAST Software) -- C:\Windows\SysNative\drivers\aswRvrt.sys
[2018-11-11 18:54:52 | 000,047,064 | ---- | C] (AVAST Software) -- C:\Windows\SysNative\drivers\aswHwid.sys
[2018-11-11 18:54:52 | 000,042,456 | ---- | C] (AVAST Software) -- C:\Windows\SysNative\drivers\aswKbd.sys
[2018-11-11 18:54:51 | 000,346,760 | ---- | C] (AVAST Software) -- C:\Windows\SysNative\drivers\aswbloga.sys
[2018-11-11 18:54:51 | 000,230,512 | ---- | C] (AVAST Software) -- C:\Windows\SysNative\drivers\aswbidsdrivera.sys
[2018-11-11 18:54:51 | 000,201,928 | ---- | C] (AVAST Software) -- C:\Windows\SysNative\drivers\aswbidsha.sys
[2018-11-11 18:54:51 | 000,185,240 | ---- | C] (AVAST Software) -- C:\Windows\SysNative\drivers\aswHdsKe.sys
[2018-11-11 18:54:51 | 000,059,664 | ---- | C] (AVAST Software) -- C:\Windows\SysNative\drivers\aswbuniva.sys
[2018-11-11 18:54:48 | 001,142,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ucrtbase.dll
[2018-11-11 18:54:48 | 001,001,272 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ucrtbase.dll
[2018-11-11 18:54:48 | 000,378,584 | ---- | C] (AVAST Software) -- C:\Windows\SysNative\aswBoot.exe
[2018-11-11 18:54:47 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\AVAST Software
[2018-11-11 18:53:28 | 000,000,000 | ---D | C] -- C:\Program Files\AVAST Software
[2018-11-11 18:53:06 | 000,000,000 | ---D | C] -- C:\ProgramData\AVAST Software
[2018-11-11 18:52:51 | 000,178,320 | ---- | C] (AVAST Software) -- C:\Users\Tomaszu\Desktop\avast_free_antivirus_setup_online (1).exe
[2018-11-11 18:07:50 | 000,842,240 | ---- | C] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerApp.exe
[2018-11-11 18:07:50 | 000,175,104 | ---- | C] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl
[2018-11-11 18:07:47 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\Macromed
[2018-11-11 18:07:46 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\Macromed
[2018-11-11 18:07:18 | 000,000,000 | ---D | C] -- C:\Users\Tomaszu\AppData\Local\Adobe
[2018-11-11 16:11:46 | 000,000,000 | ---D | C] -- C:\Users\Tomaszu\Desktop\speedometer
[2018-11-11 15:57:42 | 000,894,691 | ---- | C] (Seemann, Deji, Alien                                        ) -- C:\Users\Tomaszu\Desktop\CLEO4_setup.exe
[2018-11-11 12:34:02 | 000,000,000 | ---D | C] -- C:\Users\Tomaszu\AppData\Roaming\WinRAR
[2018-11-10 20:34:10 | 000,000,000 | ---D | C] -- C:\Users\Tomaszu\Desktop\kopia hssrv
[2018-11-10 20:04:30 | 000,178,320 | ---- | C] (AVAST Software) -- C:\Users\Tomaszu\Desktop\avast_free_antivirus_setup_online.exe
[2018-11-10 18:37:29 | 000,000,000 | ---D | C] -- C:\ProgramData\PopCap Games
[2018-11-10 17:12:26 | 000,000,000 | ---D | C] -- C:\Users\Tomaszu\AppData\Local\CrashDumps
[2018-11-10 15:29:10 | 000,000,000 | ---D | C] -- C:\Users\Tomaszu\Documents\TmForever
[2018-11-10 15:29:10 | 000,000,000 | ---D | C] -- C:\ProgramData\TmForever
[2018-11-10 15:29:02 | 000,354,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine2_2.dll
[2018-11-10 15:29:02 | 000,352,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine2_1.dll
[2018-11-10 15:29:02 | 000,230,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine2_2.dll
[2018-11-10 15:29:02 | 000,229,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine2_1.dll
[2018-11-10 15:29:02 | 000,083,664 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xinput1_1.dll
[2018-11-10 15:29:02 | 000,062,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xinput1_1.dll
[2018-11-10 15:29:00 | 003,927,248 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx9_30.dll
[2018-11-10 15:29:00 | 002,388,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_30.dll
[2018-11-10 15:28:59 | 003,830,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx9_29.dll
[2018-11-10 15:28:59 | 002,332,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_29.dll
[2018-11-10 15:28:59 | 000,355,536 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine2_0.dll
[2018-11-10 15:28:59 | 000,230,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine2_0.dll
[2018-11-10 15:28:59 | 000,016,592 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\x3daudio1_0.dll
[2018-11-10 15:28:59 | 000,014,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\x3daudio1_0.dll
[2018-11-10 15:28:58 | 003,823,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx9_25.dll
[2018-11-10 15:28:58 | 003,815,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx9_28.dll
[2018-11-10 15:28:58 | 003,807,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx9_27.dll
[2018-11-10 15:28:58 | 003,767,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx9_26.dll
[2018-11-10 15:28:58 | 002,323,664 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_28.dll
[2018-11-10 15:28:58 | 002,319,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_27.dll
[2018-11-10 15:28:58 | 002,297,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_26.dll
[2018-11-10 15:28:57 | 003,544,272 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx9_24.dll
[2018-11-10 15:28:57 | 002,222,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_24.dll
[2018-11-10 15:28:41 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TmNationsForever
[2018-11-10 12:42:11 | 000,000,000 | ---D | C] -- C:\Users\Tomaszu\AppData\Local\Everything
[2018-11-10 12:39:42 | 001,087,424 | ---- | C] (Realtek                                        ) -- C:\Windows\SysNative\drivers\Rt64win7.sys
[2018-11-10 12:39:42 | 000,122,928 | ---- | C] (Realtek Semiconductor Corporation) -- C:\Windows\SysNative\RtNicProp64.dll
[2018-11-10 12:39:42 | 000,118,896 | ---- | C] (Realtek Semiconductor Corporation) -- C:\Windows\SysNative\RTNUninst64.dll
[2018-11-10 12:38:57 | 000,218,968 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\drivers\nvhda64v.sys
[2018-11-10 12:38:57 | 000,038,232 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\nvhdap64.dll
[2018-11-10 12:38:08 | 000,069,544 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\drivers\nvvad64v.sys
[2018-11-10 12:37:08 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\DAX3
[2018-11-10 12:37:08 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\DAX2
[2018-11-10 12:37:08 | 000,000,000 | ---D | C] -- C:\ProgramData\Audyssey Labs
[2018-11-10 12:37:02 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\RTCOM
[2018-11-10 12:37:02 | 000,000,000 | ---D | C] -- C:\Program Files\Realtek
[2018-11-10 12:36:24 | 015,218,576 | ---- | C] (Yamaha Corporation) -- C:\Windows\SysNative\YamahaAE3.dll
[2018-11-10 12:36:24 | 003,306,784 | ---- | C] (Yamaha Corporation) -- C:\Windows\SysNative\YamahaAE2.dll
[2018-11-10 12:36:24 | 003,128,776 | ---- | C] (DTS, Inc.) -- C:\Windows\SysNative\sltech64.dll
[2018-11-10 12:36:24 | 002,197,936 | ---- | C] (Yamaha Corporation) -- C:\Windows\SysNative\YamahaAE.dll
[2018-11-10 12:36:24 | 001,435,096 | ---- | C] (Synopsys, Inc.) -- C:\Windows\SysNative\SRRPTR64.dll
[2018-11-10 12:36:24 | 001,382,200 | ---- | C] (TOSHIBA Corporation) -- C:\Windows\SysNative\tosade.dll
[2018-11-10 12:36:24 | 001,337,600 | ---- | C] (Toshiba Client Solutions Co., Ltd.) -- C:\Windows\SysNative\tossaeapo64.dll
[2018-11-10 12:36:24 | 000,873,424 | ---- | C] (TOSHIBA Corporation) -- C:\Windows\SysNative\tadefxapo264.dll
[2018-11-10 12:36:24 | 000,852,096 | ---- | C] (Toshiba Client Solutions Co., Ltd.) -- C:\Windows\SysNative\tosasfapo64.dll
[2018-11-10 12:36:24 | 000,604,760 | ---- | C] (Toshiba Client Solutions Co., Ltd.) -- C:\Windows\SysNative\tossaemaxapo64.dll
[2018-11-10 12:36:24 | 000,541,080 | ---- | C] (SRS Labs, Inc.) -- C:\Windows\SysNative\SRSTSX64.dll
[2018-11-10 12:36:24 | 000,467,120 | ---- | C] (Synopsys, Inc.) -- C:\Windows\SysNative\SRAPO64.dll
[2018-11-10 12:36:24 | 000,447,136 | ---- | C] (Toshiba Client Solutions Co., Ltd.) -- C:\Windows\SysNative\toseaeapo64.dll
[2018-11-10 12:36:24 | 000,381,376 | ---- | C] (Synopsys, Inc.) -- C:\Windows\SysNative\SRCOM64.dll
[2018-11-10 12:36:24 | 000,341,112 | ---- | C] (Synopsys, Inc.) -- C:\Windows\SysWow64\SRCOM.dll
[2018-11-10 12:36:24 | 000,341,112 | ---- | C] (Synopsys, Inc.) -- C:\Windows\SysNative\SRCOM.dll
[2018-11-10 12:36:24 | 000,266,512 | ---- | C] (TODO: <Company name>) -- C:\Windows\SysNative\slprp64.dll
[2018-11-10 12:36:24 | 000,230,664 | ---- | C] (SRS Labs, Inc.) -- C:\Windows\SysNative\SRSTSH64.dll
[2018-11-10 12:36:24 | 000,218,232 | ---- | C] (SRS Labs, Inc.) -- C:\Windows\SysNative\SRSHP64.dll
[2018-11-10 12:36:24 | 000,174,904 | ---- | C] (SRS Labs, Inc.) -- C:\Windows\SysNative\SRSWOW64.dll
[2018-11-10 12:36:24 | 000,158,656 | ---- | C] (TOSHIBA Corporation) -- C:\Windows\SysNative\tadefxapo.dll
[2018-11-10 12:36:24 | 000,075,504 | ---- | C] (TOSHIBA CORPORATION.) -- C:\Windows\SysNative\tepeqapo64.dll
[2018-11-10 12:36:23 | 003,417,976 | ---- | C] (DTS, Inc.) -- C:\Windows\SysNative\slcnt64.dll
[2018-11-10 12:36:23 | 003,215,184 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\RtPgEx64.dll
[2018-11-10 12:36:23 | 001,346,568 | ---- | C] (Sound Research, Corp.) -- C:\Windows\SysNative\SECOMN64.dll
[2018-11-10 12:36:23 | 001,268,984 | ---- | C] (Sound Research, Corp.) -- C:\Windows\SysNative\SEHDHF64.dll
[2018-11-10 12:36:23 | 001,209,528 | ---- | C] (Sound Research, Corp.) -- C:\Windows\SysNative\SEAPO64.dll
[2018-11-10 12:36:23 | 001,133,560 | ---- | C] (Sound Research, Corp.) -- C:\Windows\SysNative\SEHDRA64.dll
[2018-11-10 12:36:23 | 001,041,208 | ---- | C] (Sound Research, Corp.) -- C:\Windows\SysWow64\SECOMN32.dll
[2018-11-10 12:36:23 | 001,000,616 | ---- | C] (Sound Research, Corp.) -- C:\Windows\SysWow64\SEHDHF32.dll
[2018-11-10 12:36:23 | 000,994,648 | ---- | C] (DTS, Inc.) -- C:\Windows\SysNative\sl3apo64.dll
[2018-11-10 12:36:23 | 000,964,992 | ---- | C] (Sony Corporation) -- C:\Windows\SysNative\SFSS_APO.dll
[2018-11-10 12:36:23 | 000,343,672 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\RtlCPAPI64.dll
[2018-11-10 12:36:23 | 000,231,880 | ---- | C] (Synopsys, Inc.) -- C:\Windows\SysNative\SFNHK64.dll
[2018-11-10 12:36:23 | 000,090,880 | ---- | C] (Synopsys, Inc.) -- C:\Windows\SysNative\SFCOM64.dll
[2018-11-10 12:36:23 | 000,088,280 | ---- | C] (Synopsys, Inc.) -- C:\Windows\SysNative\SFAPO64.dll
[2018-11-10 12:36:23 | 000,083,584 | ---- | C] (Virage Logic Corporation / Sonic Focus) -- C:\Windows\SysWow64\SFCOM.dll
[2018-11-10 12:36:22 | 007,178,432 | ---- | C] (Dolby Laboratories) -- C:\Windows\SysNative\R4EEP64A.dll
[2018-11-10 12:36:22 | 003,690,856 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\RltkAPO64.dll
[2018-11-10 12:36:22 | 003,452,112 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\RtkApi64.dll
[2018-11-10 12:36:22 | 003,223,832 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\SysWow64\RltkAPO.dll
[2018-11-10 12:36:22 | 002,930,624 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\RCoInstII64.dll
[2018-11-10 12:36:22 | 001,353,280 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\RTCOM64.dll
[2018-11-10 12:36:22 | 000,692,128 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\RtDataProc64.dll
[2018-11-10 12:36:22 | 000,453,240 | ---- | C] (Dolby Laboratories) -- C:\Windows\SysNative\R4EED64A.dll
[2018-11-10 12:36:22 | 000,392,840 | ---- | C] (Dolby Laboratories, Inc.) -- C:\Windows\SysNative\RTEEP64A.dll
[2018-11-10 12:36:22 | 000,327,232 | ---- | C] (Dolby Laboratories, Inc.) -- C:\Windows\SysNative\RP3DHT64.dll
[2018-11-10 12:36:22 | 000,327,232 | ---- | C] (Dolby Laboratories, Inc.) -- C:\Windows\SysNative\RP3DAA64.dll
[2018-11-10 12:36:22 | 000,220,352 | ---- | C] (Dolby Laboratories, Inc.) -- C:\Windows\SysNative\RTEED64A.dll
[2018-11-10 12:36:22 | 000,192,944 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\RtkCfg64.dll
[2018-11-10 12:36:22 | 000,157,304 | ---- | C] (Dolby Laboratories) -- C:\Windows\SysNative\R4EEL64A.dll
[2018-11-10 12:36:22 | 000,139,720 | ---- | C] (Dolby Laboratories) -- C:\Windows\SysNative\R4EEA64A.dll
[2018-11-10 12:36:22 | 000,116,504 | ---- | C] (Dolby Laboratories, Inc.) -- C:\Windows\SysNative\RTEEL64A.dll
[2018-11-10 12:36:22 | 000,093,872 | ---- | C] (Dolby Laboratories, Inc.) -- C:\Windows\SysNative\RTEEG64A.dll
[2018-11-10 12:36:22 | 000,090,136 | ---- | C] (Dolby Laboratories) -- C:\Windows\SysNative\R4EEG64A.dll
[2018-11-10 12:36:22 | 000,023,656 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\RtkCoLDR64.dll
[2018-11-10 12:36:21 | 007,101,704 | ---- | C] (Dolby Laboratories) -- C:\Windows\SysNative\DDPP64A.dll
[2018-11-10 12:36:21 | 006,270,160 | ---- | C] (Dolby Laboratories) -- C:\Windows\SysNative\DDPP64AF3.dll
[2018-11-10 12:36:21 | 005,346,960 | ---- | C] (Dolby Laboratories) -- C:\Windows\SysNative\DolbyDAX2APOv211.dll
[2018-11-10 12:36:21 | 002,444,648 | ---- | C] (Dolby Laboratories) -- C:\Windows\SysNative\DolbyDAX2APOv201.dll
[2018-11-10 12:36:21 | 001,971,328 | ---- | C] (Dolby Laboratories) -- C:\Windows\SysNative\DDPD64A.dll
[2018-11-10 12:36:21 | 001,965,120 | ---- | C] (Dolby Laboratories) -- C:\Windows\SysNative\DDPD64AF3.dll
[2018-11-10 12:36:21 | 001,787,912 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSS2SpeakerDLL64.dll
[2018-11-10 12:36:21 | 001,598,360 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSS2HeadphoneDLL64.dll
[2018-11-10 12:36:21 | 001,544,216 | ---- | C] (Dolby Laboratories) -- C:\Windows\SysNative\DAX3APOProp.dll
[2018-11-10 12:36:21 | 001,516,232 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSBoostDLL64.dll
[2018-11-10 12:36:21 | 001,448,736 | ---- | C] (Dolby Laboratories) -- C:\Windows\SysNative\DolbyAPOv251gm.dll
[2018-11-10 12:36:21 | 001,372,352 | ---- | C] (Dolby Laboratories) -- C:\Windows\SysNative\DAX3APOv251.dll
[2018-11-10 12:36:21 | 001,259,696 | ---- | C] (Dolby Laboratories) -- C:\Windows\SysNative\DolbyDAX2APOvlldp.dll
[2018-11-10 12:36:21 | 001,164,584 | ---- | C] (Dolby Laboratories) -- C:\Windows\SysNative\DolbyAPOvlldpgm.dll
[2018-11-10 12:36:21 | 001,159,144 | ---- | C] (Dolby Laboratories) -- C:\Windows\SysNative\DolbyDAX2APOProp.dll
[2018-11-10 12:36:21 | 000,751,264 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSBassEnhancementDLL64.dll
[2018-11-10 12:36:21 | 000,734,736 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSSymmetryDLL64.dll
[2018-11-10 12:36:21 | 000,715,608 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSVoiceClarityDLL64.dll
[2018-11-10 12:36:21 | 000,714,424 | ---- | C] (ICEpower a/s) -- C:\Windows\SysNative\ICEsoundAPO64.dll
[2018-11-10 12:36:21 | 000,511,600 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSNeoPCDLL64.dll
[2018-11-10 12:36:21 | 000,452,696 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSLimiterDLL64.dll
[2018-11-10 12:36:21 | 000,448,568 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSGainCompensatorDLL64.dll
[2018-11-10 12:36:21 | 000,416,472 | ---- | C] (Harman) -- C:\Windows\SysNative\HMUI.dll
[2018-11-10 12:36:21 | 000,406,416 | ---- | C] (Dolby Laboratories) -- C:\Windows\SysNative\HiFiDAX2APIPCLL.dll
[2018-11-10 12:36:21 | 000,378,344 | ---- | C] (Dolby Laboratories) -- C:\Windows\SysNative\HiFiDAX2API.dll
[2018-11-10 12:36:21 | 000,367,568 | ---- | C] (Dolby Laboratories) -- C:\Windows\SysNative\DDPO64AF3.dll
[2018-11-10 12:36:21 | 000,366,080 | ---- | C] (Windows (R) Win 7 DDK provider) -- C:\Windows\SysNative\HMAPO.dll
[2018-11-10 12:36:21 | 000,360,304 | ---- | C] (Harman) -- C:\Windows\SysNative\HMClariFi.dll
[2018-11-10 12:36:21 | 000,332,976 | ---- | C] (Dolby Laboratories) -- C:\Windows\SysNative\DDPO64A.dll
[2018-11-10 12:36:21 | 000,315,944 | ---- | C] (Dolby Laboratories) -- C:\Windows\SysNative\DDPA64F3.dll
[2018-11-10 12:36:21 | 000,278,232 | ---- | C] (Dolby Laboratories) -- C:\Windows\SysNative\DDPA64.dll
[2018-11-10 12:36:21 | 000,261,200 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSGFXAPO64.dll
[2018-11-10 12:36:21 | 000,261,160 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSLFXAPO64.dll
[2018-11-10 12:36:21 | 000,260,176 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSGFXAPONS64.dll
[2018-11-10 12:36:21 | 000,203,800 | ---- | C] (Harman) -- C:\Windows\SysNative\HMHVS.dll
[2018-11-10 12:36:21 | 000,190,896 | ---- | C] (Harman) -- C:\Windows\SysNative\HMEQ_Voice.dll
[2018-11-10 12:36:21 | 000,190,896 | ---- | C] (Harman) -- C:\Windows\SysNative\HMEQ.dll
[2018-11-10 12:36:21 | 000,179,552 | ---- | C] (Harman) -- C:\Windows\SysNative\HMLimiter.dll
[2018-11-10 12:36:21 | 000,154,320 | ---- | C] (Harman) -- C:\Windows\SysNative\HarmanAudioInterface.dll
[2018-11-10 12:36:20 | 000,122,280 | ---- | C] (Real Sound Lab SIA) -- C:\Windows\SysNative\CONEQMSAPOGUILibrary.dll
[2018-11-10 12:36:19 | 002,992,144 | ---- | C] (Audyssey Labs) -- C:\Windows\SysNative\AudysseyEfx.dll
[2018-11-10 12:36:13 | 072,520,672 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\RCoRes64.dat
[2018-11-10 12:36:12 | 003,677,120 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\RTSnMg64.cpl
[2018-11-10 12:30:25 | 000,054,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\WdfLdr.sys
[2018-11-10 12:30:25 | 000,009,728 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\Wdfres.dll
[2018-11-10 12:30:19 | 000,000,000 | ---D | C] -- C:\Program Files\Synaptics
[2018-11-10 12:30:15 | 001,804,688 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WdfCoInstaller01011.dll
[2018-11-10 12:30:12 | 000,051,808 | ---- | C] (Synaptics Incorporated) -- C:\Windows\SysNative\drivers\Smb_driver_Intel.sys
[2018-11-10 12:21:11 | 000,000,000 | ---D | C] -- C:\Users\Tomaszu\AppData\Roaming\NetMeter
[2018-11-10 12:13:39 | 000,000,000 | ---D | C] -- C:\ProgramData\ProductData
[2018-11-10 12:13:39 | 000,000,000 | ---D | C] -- C:\Users\Tomaszu\AppData\Roaming\DataWorks
[2018-11-10 12:12:37 | 000,027,552 | ---- | C] (REALiX(tm)) -- C:\Windows\SysWow64\drivers\HWiNFO64A.SYS
[2018-11-10 12:12:36 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Driver Booster 6
[2018-11-10 12:12:32 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\IObit
[2018-11-10 12:12:17 | 000,000,000 | ---D | C] -- C:\ProgramData\IObit
[2018-11-10 12:12:12 | 000,000,000 | ---D | C] -- C:\Users\Tomaszu\AppData\Roaming\IObit
[2018-11-10 12:11:42 | 020,661,800 | ---- | C] (IObit                                                       ) -- C:\Users\Tomaszu\Desktop\driver_booster_setup.exe
[2018-11-10 07:01:48 | 000,000,000 | ---D | C] -- C:\Users\Tomaszu\AppData\Roaming\MPC-HC
[2018-11-09 21:35:26 | 000,000,000 | ---D | C] -- C:\Program Files\Hola
[2018-11-09 21:31:59 | 000,536,264 | ---- | C] (Hola Networks Ltd.) -- C:\Users\Tomaszu\Desktop\Hola-Setup.exe
[2018-11-09 20:50:12 | 000,000,000 | ---D | C] -- C:\Users\Tomaszu\AppData\Roaming\Everything
[2018-11-09 20:50:11 | 000,000,000 | ---D | C] -- C:\Users\Tomaszu\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Everything
[2018-11-09 20:48:09 | 000,000,000 | ---D | C] -- C:\Users\Tomaszu\Documents\GTA San Andreas User Files
[2018-11-09 20:48:08 | 000,000,000 | ---D | C] -- C:\Users\Tomaszu\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games
[2018-11-09 20:27:08 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack
[2018-11-09 20:24:38 | 046,345,213 | ---- | C] (KLCP                                                        ) -- C:\Users\Tomaszu\Desktop\K-Lite_Codec_Pack_1455_Full.exe
[2018-11-09 20:19:49 | 000,000,000 | ---D | C] -- C:\Users\Tomaszu\AppData\Local\Opera Software
[2018-11-09 20:19:03 | 000,000,000 | ---D | C] -- C:\Users\Tomaszu\AppData\Local\Programs
[2018-11-09 20:19:03 | 000,000,000 | ---D | C] -- C:\Users\Tomaszu\AppData\Roaming\Opera Software
[2018-11-09 20:09:26 | 000,000,000 | ---D | C] -- C:\Users\Tomaszu\AppData\Roaming\ASUS
[2018-11-09 20:09:25 | 000,419,840 | ---- | C] (Creative Labs) -- C:\Windows\SysNative\wrap_oal.dll
[2018-11-09 20:09:25 | 000,413,696 | ---- | C] (Creative Labs) -- C:\Windows\SysWow64\wrap_oal.dll
[2018-11-09 20:09:25 | 000,111,616 | ---- | C] (Portions (C) Creative Labs Inc. and NVIDIA Corp.) -- C:\Windows\SysNative\OpenAL32.dll
[2018-11-09 20:09:25 | 000,102,400 | ---- | C] (Portions (C) Creative Labs Inc. and NVIDIA Corp.) -- C:\Windows\SysWow64\OpenAL32.dll
[2018-11-09 20:09:25 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\OpenAL
[2018-11-09 20:09:07 | 000,465,408 | ---- | C] (C-Media Electronics Inc.) -- C:\Windows\SysNative\cmasiopx.dll
[2018-11-09 20:09:07 | 000,303,104 | ---- | C] (C-Media Electronics Inc.) -- C:\Windows\SysWow64\cmasiop.dll
[2018-11-09 20:09:07 | 000,212,992 | ---- | C] (C-Media Electronics Inc.) -- C:\Windows\SysWow64\HsSrv2.dll
[2018-11-09 20:09:07 | 000,200,704 | ---- | C] (C-Media) -- C:\Windows\SysWow64\Cmpaoxy.dll
[2018-11-09 20:09:07 | 000,200,704 | ---- | C] (C-Media Electronics Inc.) -- C:\Windows\SysWow64\HsSrv.dll
[2018-11-09 20:09:07 | 000,122,880 | ---- | C] (C-Media Electronics Inc.) -- C:\Windows\System\HsSrv642.dll
[2018-11-09 20:09:07 | 000,122,880 | ---- | C] (C-Media Electronics Inc.) -- C:\Windows\System\HsSrv64.dll
[2018-11-09 20:09:07 | 000,122,880 | ---- | C] (CMedia Electronics Inc.) -- C:\Windows\SysWow64\Cm_Oal.dll
[2018-11-09 20:09:07 | 000,122,880 | ---- | C] (CMedia Electronics Inc.) -- C:\Windows\SysNative\Cm_Oal.dll
[2018-11-09 20:09:07 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ASUS Xonar DG Audio
[2018-11-09 20:09:06 | 012,935,168 | ---- | C] (C-Media Corporation) -- C:\Windows\SysWow64\CmiCnfgp.dll
[2018-11-09 20:08:58 | 000,000,000 | ---D | C] -- C:\Program Files\ASUS Xonar DG Audio
[2018-11-09 20:08:38 | 000,524,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\difxapi.dll
[2018-11-09 20:08:15 | 000,000,000 | ---D | C] -- C:\Users\Tomaszu\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
[2018-11-09 20:08:15 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
[2018-11-09 20:06:05 | 000,000,000 | ---D | C] -- C:\Users\Tomaszu\AppData\Local\NVIDIA Corporation
[2018-11-09 20:04:36 | 002,401,112 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\D3DX9_43.dll
[2018-11-09 20:04:36 | 001,998,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DX9_43.dll
[2018-11-09 20:04:36 | 000,511,328 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx10_43.dll
[2018-11-09 20:04:36 | 000,470,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx10_43.dll
[2018-11-09 20:04:36 | 000,276,832 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx11_43.dll
[2018-11-09 20:04:36 | 000,248,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx11_43.dll
[2018-11-09 20:04:24 | 002,480,064 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\nvspcap64.dll
[2018-11-09 20:04:24 | 002,137,024 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysWow64\nvspcap.dll
[2018-11-09 20:04:24 | 001,310,144 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\NvRtmpStreamer64.dll
[2018-11-09 20:04:21 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
[2018-11-09 20:04:02 | 000,189,784 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\nvaudcap64v.dll
[2018-11-09 20:04:02 | 000,152,408 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysWow64\nvaudcap32v.dll
[2018-11-09 20:03:38 | 000,138,120 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysWow64\nvStreaming.exe
[2018-11-09 20:03:30 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\VulkanRT
[2018-11-09 20:03:23 | 005,952,392 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\nvcpl.dll
[2018-11-09 20:03:23 | 002,596,320 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\nvsvc64.dll
[2018-11-09 20:03:23 | 001,767,824 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\nvsvcr.dll
[2018-11-09 20:03:23 | 000,633,224 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\nv3dappshext.dll
[2018-11-09 20:03:23 | 000,451,040 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\nvmctray.dll
[2018-11-09 20:03:23 | 000,123,840 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\nvshext.dll
[2018-11-09 20:03:23 | 000,083,072 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\nv3dappshextr.dll
[2018-11-09 20:03:14 | 000,000,000 | ---D | C] -- C:\ProgramData\NVIDIA
[2018-11-09 20:03:11 | 000,542,056 | ---- | C] (Khronos Group) -- C:\Windows\SysNative\OpenCL.dll
[2018-11-09 20:03:11 | 000,447,928 | ---- | C] (Khronos Group) -- C:\Windows\SysWow64\OpenCL.dll
[2018-11-09 20:03:02 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\drivers\NVIDIA Corporation
[2018-11-09 20:03:02 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\NVIDIA Corporation
[2018-11-09 20:03:02 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\drivers\NVIDIA Corporation\Drs
[2018-11-09 20:01:46 | 000,000,000 | -HSD | C] -- C:\Windows\Installer
[2018-11-09 20:01:46 | 000,000,000 | ---D | C] -- C:\ProgramData\Package Cache
[2018-11-09 20:01:16 | 000,058,816 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\drivers\nvvhci.sys
[2018-11-09 20:01:14 | 035,624,808 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\nvoglv64.dll
[2018-11-09 20:01:14 | 028,204,984 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysWow64\nvoglv32.dll
[2018-11-09 20:01:14 | 022,887,280 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\nvwgf2umx.dll
[2018-11-09 20:01:14 | 019,968,176 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysWow64\nvwgf2um.dll
[2018-11-09 20:01:14 | 019,854,816 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\nvopencl.dll
[2018-11-09 20:01:14 | 018,910,896 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\nvd3dumx.dll
[2018-11-09 20:01:14 | 016,496,768 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysWow64\nvopencl.dll
[2018-11-09 20:01:14 | 015,558,928 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysWow64\nvd3dum.dll
[2018-11-09 20:01:14 | 013,571,520 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\nvptxJitCompiler.dll
[2018-11-09 20:01:14 | 012,967,056 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\nvcuda.dll
[2018-11-09 20:01:14 | 011,132,384 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysWow64\nvptxJitCompiler.dll
[2018-11-09 20:01:14 | 011,001,504 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysWow64\nvcuda.dll
[2018-11-09 20:01:14 | 003,914,784 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\nvcuvid.dll
[2018-11-09 20:01:14 | 003,444,152 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysWow64\nvcuvid.dll
[2018-11-09 20:01:14 | 001,985,112 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\nvdispco6439135.dll
[2018-11-09 20:01:14 | 001,683,712 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\nvdispgenco6439135.dll
[2018-11-09 20:01:14 | 001,675,096 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\nvhdagenco6420103.dll
[2018-11-09 20:01:14 | 001,153,752 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\nvfatbinaryLoader.dll
[2018-11-09 20:01:14 | 001,137,056 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\NvFBC64.dll
[2018-11-09 20:01:14 | 001,066,584 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysWow64\NvFBC.dll
[2018-11-09 20:01:14 | 000,997,792 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\NvIFR64.dll
[2018-11-09 20:01:14 | 000,950,120 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysWow64\NvIFR.dll
[2018-11-09 20:01:14 | 000,902,096 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysWow64\nvfatbinaryLoader.dll
[2018-11-09 20:01:14 | 000,505,232 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\nvumdshimx.dll
[2018-11-09 20:01:14 | 000,419,672 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysWow64\nvumdshim.dll
[2018-11-09 20:01:14 | 000,182,784 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\nvinitx.dll
[2018-11-09 20:01:14 | 000,165,136 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\nvoglshim64.dll
[2018-11-09 20:01:14 | 000,159,704 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysWow64\nvinit.dll
[2018-11-09 20:01:14 | 000,142,816 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysWow64\nvoglshim32.dll
[2018-11-09 20:01:13 | 040,278,616 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\nvcompiler.dll
[2018-11-09 20:01:13 | 035,188,992 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysWow64\nvcompiler.dll
[2018-11-09 20:01:13 | 004,426,120 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\nvapi64.dll
[2018-11-09 20:01:13 | 003,919,352 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysWow64\nvapi.dll
[2018-11-09 20:01:13 | 000,473,960 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\drivers\NVIDIA Corporation\Drs\dbInstaller.exe
[2018-11-09 20:00:48 | 000,000,000 | ---D | C] -- C:\ProgramData\NVIDIA Corporation
[2018-11-09 19:59:31 | 000,000,000 | ---D | C] -- C:\Program Files\NVIDIA Corporation
[2018-11-09 19:55:47 | 000,053,248 | ---- | C] (Windows XP Bundled build C-Centric Single User) -- C:\Windows\SysWow64\CSVer.dll
[2018-11-09 19:55:47 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Intel
[2018-11-09 19:55:39 | 000,000,000 | ---D | C] -- C:\Intel
[2018-11-09 19:55:33 | 000,000,000 | ---D | C] -- C:\Windows\SoftwareDistribution
[2018-11-09 19:54:42 | 000,020,544 | ---- | C] (Windows (R) Server 2003 DDK provider) -- C:\Windows\gdrv.sys
[2018-11-09 19:52:18 | 000,000,000 | R--D | C] -- C:\Users\Tomaszu\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
[2018-11-09 19:52:18 | 000,000,000 | R--D | C] -- C:\Users\Tomaszu\Searches
[2018-11-09 19:52:18 | 000,000,000 | R--D | C] -- C:\Users\Tomaszu\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
[2018-11-09 19:52:10 | 000,000,000 | ---D | C] -- C:\Users\Tomaszu\AppData\Roaming\Identities
[2018-11-09 19:52:09 | 000,000,000 | R--D | C] -- C:\Users\Tomaszu\Contacts
[2018-11-09 19:52:07 | 000,000,000 | ---D | C] -- C:\Users\Tomaszu\AppData\Local\VirtualStore
[2018-11-09 19:52:00 | 000,000,000 | --SD | C] -- C:\Users\Tomaszu\AppData\Roaming\Microsoft
[2018-11-09 19:52:00 | 000,000,000 | R--D | C] -- C:\Users\Tomaszu\Videos
[2018-11-09 19:52:00 | 000,000,000 | R--D | C] -- C:\Users\Tomaszu\Saved Games
[2018-11-09 19:52:00 | 000,000,000 | R--D | C] -- C:\Users\Tomaszu\Pictures
[2018-11-09 19:52:00 | 000,000,000 | R--D | C] -- C:\Users\Tomaszu\Music
[2018-11-09 19:52:00 | 000,000,000 | R--D | C] -- C:\Users\Tomaszu\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
[2018-11-09 19:52:00 | 000,000,000 | R--D | C] -- C:\Users\Tomaszu\Links
[2018-11-09 19:52:00 | 000,000,000 | R--D | C] -- C:\Users\Tomaszu\Favorites
[2018-11-09 19:52:00 | 000,000,000 | R--D | C] -- C:\Users\Tomaszu\Downloads
[2018-11-09 19:52:00 | 000,000,000 | R--D | C] -- C:\Users\Tomaszu\Documents
[2018-11-09 19:52:00 | 000,000,000 | R--D | C] -- C:\Users\Tomaszu\Desktop
[2018-11-09 19:52:00 | 000,000,000 | R--D | C] -- C:\Users\Tomaszu\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
[2018-11-09 19:52:00 | 000,000,000 | -HSD | C] -- C:\Users\Tomaszu\Ustawienia lokalne
[2018-11-09 19:52:00 | 000,000,000 | -HSD | C] -- C:\Users\Tomaszu\AppData\Local\Temporary Internet Files
[2018-11-09 19:52:00 | 000,000,000 | -HSD | C] -- C:\Users\Tomaszu\Szablony
[2018-11-09 19:52:00 | 000,000,000 | -HSD | C] -- C:\Users\Tomaszu\SendTo
[2018-11-09 19:52:00 | 000,000,000 | -HSD | C] -- C:\Users\Tomaszu\Recent
[2018-11-09 19:52:00 | 000,000,000 | -HSD | C] -- C:\Users\Tomaszu\PrintHood
[2018-11-09 19:52:00 | 000,000,000 | -HSD | C] -- C:\Users\Tomaszu\NetHood
[2018-11-09 19:52:00 | 000,000,000 | -HSD | C] -- C:\Users\Tomaszu\Documents\Moje wideo
[2018-11-09 19:52:00 | 000,000,000 | -HSD | C] -- C:\Users\Tomaszu\Documents\Moje obrazy
[2018-11-09 19:52:00 | 000,000,000 | -HSD | C] -- C:\Users\Tomaszu\Moje dokumenty
[2018-11-09 19:52:00 | 000,000,000 | -HSD | C] -- C:\Users\Tomaszu\Documents\Moja muzyka
[2018-11-09 19:52:00 | 000,000,000 | -HSD | C] -- C:\Users\Tomaszu\Menu Start
[2018-11-09 19:52:00 | 000,000,000 | -HSD | C] -- C:\Users\Tomaszu\AppData\Local\Historia
[2018-11-09 19:52:00 | 000,000,000 | -HSD | C] -- C:\Users\Tomaszu\Dane aplikacji
[2018-11-09 19:52:00 | 000,000,000 | -HSD | C] -- C:\Users\Tomaszu\AppData\Local\Dane aplikacji
[2018-11-09 19:52:00 | 000,000,000 | -HSD | C] -- C:\Users\Tomaszu\Cookies
[2018-11-09 19:52:00 | 000,000,000 | -H-D | C] -- C:\Users\Tomaszu\AppData
[2018-11-09 19:52:00 | 000,000,000 | ---D | C] -- C:\Users\Tomaszu\AppData\Local\Temp
[2018-11-09 19:52:00 | 000,000,000 | ---D | C] -- C:\Users\Tomaszu\AppData\Local\Microsoft
[2018-11-09 19:52:00 | 000,000,000 | ---D | C] -- C:\Users\Tomaszu\AppData\Roaming\Media Center Programs
[2018-11-09 19:51:18 | 000,000,000 | -HSD | C] -- C:\ProgramData\Ulubione
[2018-11-09 19:51:18 | 000,000,000 | -HSD | C] -- C:\ProgramData\Szablony
[2018-11-09 19:51:18 | 000,000,000 | -HSD | C] -- C:\Recovery
[2018-11-09 19:51:18 | 000,000,000 | -HSD | C] -- C:\ProgramData\Pulpit
[2018-11-09 19:51:18 | 000,000,000 | -HSD | C] -- C:\Users\Public\Documents\Moje wideo
[2018-11-09 19:51:18 | 000,000,000 | -HSD | C] -- C:\Users\Public\Documents\Moje obrazy
[2018-11-09 19:51:18 | 000,000,000 | -HSD | C] -- C:\Users\Public\Documents\Moja muzyka
[2018-11-09 19:51:18 | 000,000,000 | -HSD | C] -- C:\ProgramData\Menu Start
[2018-11-09 19:51:18 | 000,000,000 | -HSD | C] -- C:\ProgramData\Dokumenty
[2018-11-09 19:51:18 | 000,000,000 | -HSD | C] -- C:\ProgramData\Dane aplikacji
[2018-11-09 19:44:45 | 000,000,000 | ---D | C] -- C:\Windows\Prefetch
[2018-11-09 19:44:32 | 000,000,000 | -HSD | C] -- C:\System Volume Information
[2018-11-09 19:43:37 | 000,000,000 | ---D | C] -- C:\Windows\Panther
[2018-11-09 19:43:24 | 000,000,000 | -HSD | C] -- C:\Boot
[2018-11-09 19:43:10 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\OEM
[2018-11-09 19:19:23 | 002,734,080 | ---- | C] (C-Media Inc) -- C:\Windows\SysNative\drivers\cmudaxp.sys
[2018-11-09 19:19:22 | 000,315,392 | ---- | C] (C-Media Electronics Inc.) -- C:\Windows\SysWow64\CmiFltr.dll
[2018-11-09 19:19:22 | 000,315,392 | ---- | C] (C-Media Electronics Inc.) -- C:\Windows\System\CmiFltr.dll
[2018-11-09 19:19:22 | 000,032,768 | ---- | C] (C-Media Electronics Inc.) -- C:\Windows\SysNative\cmudaxp.dll

[color=#E56717]========== Files - Modified Within 30 Days ==========[/color]

[2018-11-16 21:40:39 | 000,387,930 | ---- | M] () -- C:\Users\Tomaszu\Desktop\1918_CLEO4_setup.exe
[2018-11-16 21:30:13 | 000,010,016 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2018-11-16 21:30:13 | 000,010,016 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2018-11-16 21:27:07 | 001,523,412 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
[2018-11-16 21:27:07 | 000,687,590 | ---- | M] () -- C:\Windows\SysNative\perfh015.dat
[2018-11-16 21:27:07 | 000,606,992 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
[2018-11-16 21:27:07 | 000,131,176 | ---- | M] () -- C:\Windows\SysNative\perfc015.dat
[2018-11-16 21:27:07 | 000,103,370 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
[2018-11-16 21:22:06 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2018-11-16 21:21:59 | 3220,037,632 | -HS- | M] () -- C:\hiberfil.sys
[2018-11-16 14:49:33 | 000,000,020 | ---- | M] () -- C:\Users\Tomaszu\AppData\Roaming\dsp_LoudMax.ini
[2018-11-16 13:37:04 | 000,001,144 | ---- | M] () -- C:\Users\Tomaszu\Desktop\GG.lnk
[2018-11-16 13:34:32 | 000,400,744 | ---- | M] () -- C:\Users\Tomaszu\Desktop\gg-install.exe
[2018-11-12 17:16:56 | 016,290,668 | ---- | M] () -- C:\Users\Tomaszu\Desktop\sa-mp-0.3.7-R2-install.exe
[2018-11-12 17:00:05 | 000,000,822 | ---- | M] () -- C:\Users\Public\Desktop\CCleaner.lnk
[2018-11-12 16:59:47 | 018,071,560 | ---- | M] (Piriform Software Ltd) -- C:\Users\Tomaszu\Desktop\ccsetup549.exe
[2018-11-12 11:16:21 | 000,014,243 | ---- | M] () -- C:\Users\Tomaszu\Desktop\Schowek02.png
[2018-11-11 18:56:19 | 000,001,922 | ---- | M] () -- C:\Users\Public\Desktop\Avast Free Antivirus.lnk
[2018-11-11 18:54:42 | 000,467,904 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\drivers\aswSP.sys
[2018-11-11 18:54:42 | 000,381,144 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\drivers\aswVmm.sys
[2018-11-11 18:54:42 | 000,208,640 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\drivers\aswStm.sys
[2018-11-11 18:54:42 | 000,088,112 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\drivers\aswRvrt.sys
[2018-11-11 18:54:41 | 000,378,584 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\aswBoot.exe
[2018-11-11 18:54:41 | 000,201,408 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\drivers\aswArPot.sys
[2018-11-11 18:54:41 | 000,163,376 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\drivers\aswMonFlt.sys
[2018-11-11 18:54:41 | 000,111,968 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\drivers\aswRdr2.sys
[2018-11-11 18:54:41 | 000,047,064 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\drivers\aswHwid.sys
[2018-11-11 18:54:40 | 001,142,072 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\ucrtbase.dll
[2018-11-11 18:54:39 | 001,001,272 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\ucrtbase.dll
[2018-11-11 18:54:38 | 000,042,456 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\drivers\aswKbd.sys
[2018-11-11 18:54:34 | 001,028,840 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\drivers\aswSnx.sys
[2018-11-11 18:54:32 | 000,185,240 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\drivers\aswHdsKe.sys
[2018-11-11 18:54:31 | 000,346,760 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\drivers\aswbloga.sys
[2018-11-11 18:54:31 | 000,230,512 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\drivers\aswbidsdrivera.sys
[2018-11-11 18:54:31 | 000,201,928 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\drivers\aswbidsha.sys
[2018-11-11 18:54:31 | 000,059,664 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\drivers\aswbuniva.sys
[2018-11-11 18:52:52 | 000,178,320 | ---- | M] (AVAST Software) -- C:\Users\Tomaszu\Desktop\avast_free_antivirus_setup_online (1).exe
[2018-11-11 18:07:50 | 000,842,240 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerApp.exe
[2018-11-11 18:07:50 | 000,175,104 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl
[2018-11-11 15:58:28 | 000,008,205 | ---- | M] () -- C:\Windows\unins000.dat
[2018-11-11 15:57:50 | 001,202,477 | ---- | M] () -- C:\Windows\unins000.exe
[2018-11-11 15:57:46 | 000,894,691 | ---- | M] (Seemann, Deji, Alien                                        ) -- C:\Users\Tomaszu\Desktop\CLEO4_setup.exe
[2018-11-11 12:33:45 | 000,172,629 | ---- | M] () -- C:\Users\Tomaszu\Desktop\1479033541_speedometer.rar
[2018-11-10 20:33:16 | 000,200,704 | ---- | M] (C-Media Electronics Inc.) -- C:\Windows\SysWow64\HsSrv.dll
[2018-11-10 20:04:31 | 000,178,320 | ---- | M] (AVAST Software) -- C:\Users\Tomaszu\Desktop\avast_free_antivirus_setup_online.exe
[2018-11-10 15:28:41 | 000,000,779 | ---- | M] () -- C:\Users\Public\Desktop\TmNationsForever.lnk
[2018-11-10 14:45:24 | 530,600,781 | ---- | M] () -- C:\Users\Tomaszu\Desktop\tmnationsforever_setup.exe
[2018-11-10 12:39:42 | 001,087,424 | ---- | M] (Realtek                                        ) -- C:\Windows\SysNative\drivers\Rt64win7.sys
[2018-11-10 12:39:42 | 000,122,928 | ---- | M] (Realtek Semiconductor Corporation) -- C:\Windows\SysNative\RtNicProp64.dll
[2018-11-10 12:39:42 | 000,118,896 | ---- | M] (Realtek Semiconductor Corporation) -- C:\Windows\SysNative\RTNUninst64.dll
[2018-11-10 12:38:57 | 001,675,096 | ---- | M] (NVIDIA Corporation) -- C:\Windows\SysNative\nvhdagenco6420103.dll
[2018-11-10 12:38:57 | 000,218,968 | ---- | M] (NVIDIA Corporation) -- C:\Windows\SysNative\drivers\nvhda64v.sys
[2018-11-10 12:38:57 | 000,038,232 | ---- | M] (NVIDIA Corporation) -- C:\Windows\SysNative\nvhdap64.dll
[2018-11-10 12:38:08 | 000,069,544 | ---- | M] (NVIDIA Corporation) -- C:\Windows\SysNative\drivers\nvvad64v.sys
[2018-11-10 12:37:20 | 000,000,832 | ---- | M] () -- C:\Windows\SysNative\drivers\rtkhdasetting.zip
[2018-11-10 12:37:16 | 000,000,000 | -H-- | M] () -- C:\ProgramData\DP45977C.lfl
[2018-11-10 12:36:25 | 015,218,576 | ---- | M] (Yamaha Corporation) -- C:\Windows\SysNative\YamahaAE3.dll
[2018-11-10 12:36:24 | 003,306,784 | ---- | M] (Yamaha Corporation) -- C:\Windows\SysNative\YamahaAE2.dll
[2018-11-10 12:36:24 | 003,128,776 | ---- | M] (DTS, Inc.) -- C:\Windows\SysNative\sltech64.dll
[2018-11-10 12:36:24 | 002,197,936 | ---- | M] (Yamaha Corporation) -- C:\Windows\SysNative\YamahaAE.dll
[2018-11-10 12:36:24 | 001,435,096 | ---- | M] (Synopsys, Inc.) -- C:\Windows\SysNative\SRRPTR64.dll
[2018-11-10 12:36:24 | 001,382,200 | ---- | M] (TOSHIBA Corporation) -- C:\Windows\SysNative\tosade.dll
[2018-11-10 12:36:24 | 001,337,600 | ---- | M] (Toshiba Client Solutions Co., Ltd.) -- C:\Windows\SysNative\tossaeapo64.dll
[2018-11-10 12:36:24 | 000,873,424 | ---- | M] (TOSHIBA Corporation) -- C:\Windows\SysNative\tadefxapo264.dll
[2018-11-10 12:36:24 | 000,852,096 | ---- | M] (Toshiba Client Solutions Co., Ltd.) -- C:\Windows\SysNative\tosasfapo64.dll
[2018-11-10 12:36:24 | 000,604,760 | ---- | M] (Toshiba Client Solutions Co., Ltd.) -- C:\Windows\SysNative\tossaemaxapo64.dll
[2018-11-10 12:36:24 | 000,541,080 | ---- | M] (SRS Labs, Inc.) -- C:\Windows\SysNative\SRSTSX64.dll
[2018-11-10 12:36:24 | 000,467,120 | ---- | M] (Synopsys, Inc.) -- C:\Windows\SysNative\SRAPO64.dll
[2018-11-10 12:36:24 | 000,447,136 | ---- | M] (Toshiba Client Solutions Co., Ltd.) -- C:\Windows\SysNative\toseaeapo64.dll
[2018-11-10 12:36:24 | 000,381,376 | ---- | M] (Synopsys, Inc.) -- C:\Windows\SysNative\SRCOM64.dll
[2018-11-10 12:36:24 | 000,341,112 | ---- | M] (Synopsys, Inc.) -- C:\Windows\SysWow64\SRCOM.dll
[2018-11-10 12:36:24 | 000,341,112 | ---- | M] (Synopsys, Inc.) -- C:\Windows\SysNative\SRCOM.dll
[2018-11-10 12:36:24 | 000,266,512 | ---- | M] (TODO: <Company name>) -- C:\Windows\SysNative\slprp64.dll
[2018-11-10 12:36:24 | 000,230,664 | ---- | M] (SRS Labs, Inc.) -- C:\Windows\SysNative\SRSTSH64.dll
[2018-11-10 12:36:24 | 000,218,232 | ---- | M] (SRS Labs, Inc.) -- C:\Windows\SysNative\SRSHP64.dll
[2018-11-10 12:36:24 | 000,174,904 | ---- | M] (SRS Labs, Inc.) -- C:\Windows\SysNative\SRSWOW64.dll
[2018-11-10 12:36:24 | 000,158,656 | ---- | M] (TOSHIBA Corporation) -- C:\Windows\SysNative\tadefxapo.dll
[2018-11-10 12:36:24 | 000,075,504 | ---- | M] (TOSHIBA CORPORATION.) -- C:\Windows\SysNative\tepeqapo64.dll
[2018-11-10 12:36:23 | 003,417,976 | ---- | M] (DTS, Inc.) -- C:\Windows\SysNative\slcnt64.dll
[2018-11-10 12:36:23 | 003,215,184 | ---- | M] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\RtPgEx64.dll
[2018-11-10 12:36:23 | 001,346,568 | ---- | M] (Sound Research, Corp.) -- C:\Windows\SysNative\SECOMN64.dll
[2018-11-10 12:36:23 | 001,268,984 | ---- | M] (Sound Research, Corp.) -- C:\Windows\SysNative\SEHDHF64.dll
[2018-11-10 12:36:23 | 001,209,528 | ---- | M] (Sound Research, Corp.) -- C:\Windows\SysNative\SEAPO64.dll
[2018-11-10 12:36:23 | 001,133,560 | ---- | M] (Sound Research, Corp.) -- C:\Windows\SysNative\SEHDRA64.dll
[2018-11-10 12:36:23 | 001,041,208 | ---- | M] (Sound Research, Corp.) -- C:\Windows\SysWow64\SECOMN32.dll
[2018-11-10 12:36:23 | 001,000,616 | ---- | M] (Sound Research, Corp.) -- C:\Windows\SysWow64\SEHDHF32.dll
[2018-11-10 12:36:23 | 000,994,648 | ---- | M] (DTS, Inc.) -- C:\Windows\SysNative\sl3apo64.dll
[2018-11-10 12:36:23 | 000,964,992 | ---- | M] (Sony Corporation) -- C:\Windows\SysNative\SFSS_APO.dll
[2018-11-10 12:36:23 | 000,343,672 | ---- | M] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\RtlCPAPI64.dll
[2018-11-10 12:36:23 | 000,231,880 | ---- | M] (Synopsys, Inc.) -- C:\Windows\SysNative\SFNHK64.dll
[2018-11-10 12:36:23 | 000,090,880 | ---- | M] (Synopsys, Inc.) -- C:\Windows\SysNative\SFCOM64.dll
[2018-11-10 12:36:23 | 000,088,280 | ---- | M] (Synopsys, Inc.) -- C:\Windows\SysNative\SFAPO64.dll
[2018-11-10 12:36:23 | 000,083,584 | ---- | M] (Virage Logic Corporation / Sonic Focus) -- C:\Windows\SysWow64\SFCOM.dll
[2018-11-10 12:36:22 | 007,178,432 | ---- | M] (Dolby Laboratories) -- C:\Windows\SysNative\R4EEP64A.dll
[2018-11-10 12:36:22 | 003,690,856 | ---- | M] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\RltkAPO64.dll
[2018-11-10 12:36:22 | 003,452,112 | ---- | M] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\RtkApi64.dll
[2018-11-10 12:36:22 | 003,223,832 | ---- | M] (Realtek Semiconductor Corp.) -- C:\Windows\SysWow64\RltkAPO.dll
[2018-11-10 12:36:22 | 002,930,624 | ---- | M] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\RCoInstII64.dll
[2018-11-10 12:36:22 | 001,353,280 | ---- | M] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\RTCOM64.dll
[2018-11-10 12:36:22 | 000,692,128 | ---- | M] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\RtDataProc64.dll
[2018-11-10 12:36:22 | 000,453,240 | ---- | M] (Dolby Laboratories) -- C:\Windows\SysNative\R4EED64A.dll
[2018-11-10 12:36:22 | 000,392,840 | ---- | M] (Dolby Laboratories, Inc.) -- C:\Windows\SysNative\RTEEP64A.dll
[2018-11-10 12:36:22 | 000,327,232 | ---- | M] (Dolby Laboratories, Inc.) -- C:\Windows\SysNative\RP3DHT64.dll
[2018-11-10 12:36:22 | 000,327,232 | ---- | M] (Dolby Laboratories, Inc.) -- C:\Windows\SysNative\RP3DAA64.dll
[2018-11-10 12:36:22 | 000,220,352 | ---- | M] (Dolby Laboratories, Inc.) -- C:\Windows\SysNative\RTEED64A.dll
[2018-11-10 12:36:22 | 000,192,944 | ---- | M] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\RtkCfg64.dll
[2018-11-10 12:36:22 | 000,157,304 | ---- | M] (Dolby Laboratories) -- C:\Windows\SysNative\R4EEL64A.dll
[2018-11-10 12:36:22 | 000,139,720 | ---- | M] (Dolby Laboratories) -- C:\Windows\SysNative\R4EEA64A.dll
[2018-11-10 12:36:22 | 000,116,504 | ---- | M] (Dolby Laboratories, Inc.) -- C:\Windows\SysNative\RTEEL64A.dll
[2018-11-10 12:36:22 | 000,093,872 | ---- | M] (Dolby Laboratories, Inc.) -- C:\Windows\SysNative\RTEEG64A.dll
[2018-11-10 12:36:22 | 000,090,136 | ---- | M] (Dolby Laboratories) -- C:\Windows\SysNative\R4EEG64A.dll
[2018-11-10 12:36:22 | 000,023,656 | ---- | M] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\RtkCoLDR64.dll
[2018-11-10 12:36:21 | 007,101,704 | ---- | M] (Dolby Laboratories) -- C:\Windows\SysNative\DDPP64A.dll
[2018-11-10 12:36:21 | 006,270,160 | ---- | M] (Dolby Laboratories) -- C:\Windows\SysNative\DDPP64AF3.dll
[2018-11-10 12:36:21 | 005,346,960 | ---- | M] (Dolby Laboratories) -- C:\Windows\SysNative\DolbyDAX2APOv211.dll
[2018-11-10 12:36:21 | 002,444,648 | ---- | M] (Dolby Laboratories) -- C:\Windows\SysNative\DolbyDAX2APOv201.dll
[2018-11-10 12:36:21 | 001,971,328 | ---- | M] (Dolby Laboratories) -- C:\Windows\SysNative\DDPD64A.dll
[2018-11-10 12:36:21 | 001,965,120 | ---- | M] (Dolby Laboratories) -- C:\Windows\SysNative\DDPD64AF3.dll
[2018-11-10 12:36:21 | 001,787,912 | ---- | M] (DTS) -- C:\Windows\SysNative\DTSS2SpeakerDLL64.dll
[2018-11-10 12:36:21 | 001,598,360 | ---- | M] (DTS) -- C:\Windows\SysNative\DTSS2HeadphoneDLL64.dll
[2018-11-10 12:36:21 | 001,544,216 | ---- | M] (Dolby Laboratories) -- C:\Windows\SysNative\DAX3APOProp.dll
[2018-11-10 12:36:21 | 001,516,232 | ---- | M] (DTS) -- C:\Windows\SysNative\DTSBoostDLL64.dll
[2018-11-10 12:36:21 | 001,448,736 | ---- | M] (Dolby Laboratories) -- C:\Windows\SysNative\DolbyAPOv251gm.dll
[2018-11-10 12:36:21 | 001,372,352 | ---- | M] (Dolby Laboratories) -- C:\Windows\SysNative\DAX3APOv251.dll
[2018-11-10 12:36:21 | 001,259,696 | ---- | M] (Dolby Laboratories) -- C:\Windows\SysNative\DolbyDAX2APOvlldp.dll
[2018-11-10 12:36:21 | 001,164,584 | ---- | M] (Dolby Laboratories) -- C:\Windows\SysNative\DolbyAPOvlldpgm.dll
[2018-11-10 12:36:21 | 001,159,144 | ---- | M] (Dolby Laboratories) -- C:\Windows\SysNative\DolbyDAX2APOProp.dll
[2018-11-10 12:36:21 | 000,751,264 | ---- | M] (DTS) -- C:\Windows\SysNative\DTSBassEnhancementDLL64.dll
[2018-11-10 12:36:21 | 000,734,736 | ---- | M] (DTS) -- C:\Windows\SysNative\DTSSymmetryDLL64.dll
[2018-11-10 12:36:21 | 000,715,608 | ---- | M] (DTS) -- C:\Windows\SysNative\DTSVoiceClarityDLL64.dll
[2018-11-10 12:36:21 | 000,714,424 | ---- | M] (ICEpower a/s) -- C:\Windows\SysNative\ICEsoundAPO64.dll
[2018-11-10 12:36:21 | 000,511,600 | ---- | M] (DTS) -- C:\Windows\SysNative\DTSNeoPCDLL64.dll
[2018-11-10 12:36:21 | 000,452,696 | ---- | M] (DTS) -- C:\Windows\SysNative\DTSLimiterDLL64.dll
[2018-11-10 12:36:21 | 000,448,568 | ---- | M] (DTS) -- C:\Windows\SysNative\DTSGainCompensatorDLL64.dll
[2018-11-10 12:36:21 | 000,416,472 | ---- | M] (Harman) -- C:\Windows\SysNative\HMUI.dll
[2018-11-10 12:36:21 | 000,406,416 | ---- | M] (Dolby Laboratories) -- C:\Windows\SysNative\HiFiDAX2APIPCLL.dll
[2018-11-10 12:36:21 | 000,378,344 | ---- | M] (Dolby Laboratories) -- C:\Windows\SysNative\HiFiDAX2API.dll
[2018-11-10 12:36:21 | 000,367,568 | ---- | M] (Dolby Laboratories) -- C:\Windows\SysNative\DDPO64AF3.dll
[2018-11-10 12:36:21 | 000,366,080 | ---- | M] (Windows (R) Win 7 DDK provider) -- C:\Windows\SysNative\HMAPO.dll
[2018-11-10 12:36:21 | 000,360,304 | ---- | M] (Harman) -- C:\Windows\SysNative\HMClariFi.dll
[2018-11-10 12:36:21 | 000,332,976 | ---- | M] (Dolby Laboratories) -- C:\Windows\SysNative\DDPO64A.dll
[2018-11-10 12:36:21 | 000,315,944 | ---- | M] (Dolby Laboratories) -- C:\Windows\SysNative\DDPA64F3.dll
[2018-11-10 12:36:21 | 000,278,232 | ---- | M] (Dolby Laboratories) -- C:\Windows\SysNative\DDPA64.dll
[2018-11-10 12:36:21 | 000,261,200 | ---- | M] (DTS) -- C:\Windows\SysNative\DTSGFXAPO64.dll
[2018-11-10 12:36:21 | 000,261,160 | ---- | M] (DTS) -- C:\Windows\SysNative\DTSLFXAPO64.dll
[2018-11-10 12:36:21 | 000,260,176 | ---- | M] (DTS) -- C:\Windows\SysNative\DTSGFXAPONS64.dll
[2018-11-10 12:36:21 | 000,203,800 | ---- | M] (Harman) -- C:\Windows\SysNative\HMHVS.dll
[2018-11-10 12:36:21 | 000,190,896 | ---- | M] (Harman) -- C:\Windows\SysNative\HMEQ_Voice.dll
[2018-11-10 12:36:21 | 000,190,896 | ---- | M] (Harman) -- C:\Windows\SysNative\HMEQ.dll
[2018-11-10 12:36:21 | 000,179,552 | ---- | M] (Harman) -- C:\Windows\SysNative\HMLimiter.dll
[2018-11-10 12:36:21 | 000,154,320 | ---- | M] (Harman) -- C:\Windows\SysNative\HarmanAudioInterface.dll
[2018-11-10 12:36:20 | 002,992,144 | ---- | M] (Audyssey Labs) -- C:\Windows\SysNative\AudysseyEfx.dll
[2018-11-10 12:36:20 | 000,122,280 | ---- | M] (Real Sound Lab SIA) -- C:\Windows\SysNative\CONEQMSAPOGUILibrary.dll
[2018-11-10 12:36:19 | 000,118,560 | ---- | M] () -- C:\Windows\SysNative\AcpiServiceVnA64.dll
[2018-11-10 12:36:19 | 000,105,272 | ---- | M] () -- C:\Windows\SysNative\audioLibVc.dll
[2018-11-10 12:36:14 | 005,804,772 | ---- | M] () -- C:\Windows\SysNative\drivers\rtvienna.dat
[2018-11-10 12:36:13 | 072,520,672 | ---- | M] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\RCoRes64.dat
[2018-11-10 12:36:13 | 017,086,581 | ---- | M] () -- C:\Windows\SysNative\drivers\RTAIODAT.DAT
[2018-11-10 12:36:13 | 003,677,120 | ---- | M] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\RTSnMg64.cpl
[2018-11-10 12:30:35 | 000,000,000 | -H-- | M] () -- C:\Windows\SysNative\drivers\Msft_Kernel_Smb_driver_Intel_01011.Wdf
[2018-11-10 12:30:34 | 000,000,000 | -H-- | M] () -- C:\Windows\SysNative\drivers\MsftWdf_Kernel_01011_Coinstaller_Critical.Wdf
[2018-11-10 12:30:15 | 001,804,688 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\WdfCoInstaller01011.dll
[2018-11-10 12:30:12 | 000,051,808 | ---- | M] (Synaptics Incorporated) -- C:\Windows\SysNative\drivers\Smb_driver_Intel.sys
[2018-11-10 12:12:37 | 000,027,552 | ---- | M] (REALiX(tm)) -- C:\Windows\SysWow64\drivers\HWiNFO64A.SYS
[2018-11-10 12:12:00 | 020,661,800 | ---- | M] (IObit                                                       ) -- C:\Users\Tomaszu\Desktop\driver_booster_setup.exe
[2018-11-10 12:00:54 | 000,000,000 | -H-- | M] () -- C:\Windows\SysNative\drivers\Msft_User_WpdMtpDr_01_09_00.Wdf
[2018-11-10 11:07:03 | 000,000,000 | -H-- | M] () -- C:\Windows\SysNative\drivers\Msft_User_WpdFs_01_09_00.Wdf
[2018-11-09 21:32:02 | 000,536,264 | ---- | M] (Hola Networks Ltd.) -- C:\Users\Tomaszu\Desktop\Hola-Setup.exe
[2018-11-09 20:35:31 | 001,478,240 | ---- | M] () -- C:\Users\Tomaszu\Desktop\Everything-1.4.1.895.x64-Setup.exe
[2018-11-09 20:25:21 | 046,345,213 | ---- | M] (KLCP                                                        ) -- C:\Users\Tomaszu\Desktop\K-Lite_Codec_Pack_1455_Full.exe
[2018-11-09 20:20:28 | 000,000,683 | ---- | M] () -- C:\Users\Tomaszu\Desktop\Różne rzeczy.lnk
[2018-11-09 20:19:47 | 000,001,294 | ---- | M] () -- C:\Users\Tomaszu\Desktop\Przeglądarka Opera.lnk
[2018-11-09 20:10:38 | 000,275,536 | ---- | M] () -- C:\Windows\SysNative\FNTCACHE.DAT
[2018-11-09 20:09:25 | 000,419,840 | ---- | M] (Creative Labs) -- C:\Windows\SysNative\wrap_oal.dll
[2018-11-09 20:09:25 | 000,413,696 | ---- | M] (Creative Labs) -- C:\Windows\SysWow64\wrap_oal.dll
[2018-11-09 20:09:25 | 000,111,616 | ---- | M] (Portions (C) Creative Labs Inc. and NVIDIA Corp.) -- C:\Windows\SysNative\OpenAL32.dll
[2018-11-09 20:09:25 | 000,102,400 | ---- | M] (Portions (C) Creative Labs Inc. and NVIDIA Corp.) -- C:\Windows\SysWow64\OpenAL32.dll
[2018-11-09 20:09:07 | 000,047,026 | ---- | M] () -- C:\Windows\Cmicnfgp.ini.cfl
[2018-11-09 20:09:06 | 000,000,918 | ---- | M] () -- C:\Windows\Cmicnfgp.ini.imi
[2018-11-09 20:09:06 | 000,000,857 | ---- | M] () -- C:\Windows\System\Cmicnfgp.ini
[2018-11-09 20:09:06 | 000,000,140 | ---- | M] () -- C:\Windows\System\Dlap.pfx
[2018-11-09 19:54:47 | 000,020,544 | ---- | M] (Windows (R) Server 2003 DDK provider) -- C:\Windows\gdrv.sys
[2018-11-09 19:54:44 | 000,000,010 | ---- | M] () -- C:\Windows\GSetup.ini
[2018-11-09 19:51:49 | 000,171,136 | RHS- | M] () -- C:\W7LDR
[2018-11-09 19:48:33 | 000,067,908 | ---- | M] () -- C:\Windows\SysWow64\license.rtf
[2018-11-09 19:48:33 | 000,067,908 | ---- | M] () -- C:\Windows\SysNative\license.rtf
[2018-11-09 19:43:25 | 000,008,192 | RHS- | M] () -- C:\BOOTSECT.BAK

[color=#E56717]========== Files Created - No Company Name ==========[/color]

[2018-11-16 21:40:39 | 000,387,930 | ---- | C] () -- C:\Users\Tomaszu\Desktop\1918_CLEO4_setup.exe
[2018-11-16 13:37:04 | 000,001,144 | ---- | C] () -- C:\Users\Tomaszu\Desktop\GG.lnk
[2018-11-16 13:36:53 | 000,001,152 | ---- | C] () -- C:\Users\Tomaszu\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\GG.lnk
[2018-11-16 13:34:28 | 000,400,744 | ---- | C] () -- C:\Users\Tomaszu\Desktop\gg-install.exe
[2018-11-13 16:49:33 | 000,002,090 | ---- | C] () -- C:\Users\Tomaszu\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\f.lux.lnk
[2018-11-12 17:16:37 | 016,290,668 | ---- | C] () -- C:\Users\Tomaszu\Desktop\sa-mp-0.3.7-R2-install.exe
[2018-11-12 17:00:05 | 000,000,822 | ---- | C] () -- C:\Users\Public\Desktop\CCleaner.lnk
[2018-11-12 11:46:54 | 000,000,020 | ---- | C] () -- C:\Users\Tomaszu\AppData\Roaming\dsp_LoudMax.ini
[2018-11-12 11:16:21 | 000,014,243 | ---- | C] () -- C:\Users\Tomaszu\Desktop\Schowek02.png
[2018-11-11 18:56:19 | 000,001,922 | ---- | C] () -- C:\Users\Public\Desktop\Avast Free Antivirus.lnk
[2018-11-11 15:58:28 | 001,202,477 | ---- | C] () -- C:\Windows\unins000.exe
[2018-11-11 15:58:28 | 000,008,205 | ---- | C] () -- C:\Windows\unins000.dat
[2018-11-11 12:33:43 | 000,172,629 | ---- | C] () -- C:\Users\Tomaszu\Desktop\1479033541_speedometer.rar
[2018-11-10 15:28:41 | 000,000,779 | ---- | C] () -- C:\Users\Public\Desktop\TmNationsForever.lnk
[2018-11-10 14:34:39 | 530,600,781 | ---- | C] () -- C:\Users\Tomaszu\Desktop\tmnationsforever_setup.exe
[2018-11-10 12:37:20 | 000,000,832 | ---- | C] () -- C:\Windows\SysNative\drivers\rtkhdasetting.zip
[2018-11-10 12:37:16 | 000,000,000 | -H-- | C] () -- C:\ProgramData\DP45977C.lfl
[2018-11-10 12:36:19 | 000,118,560 | ---- | C] () -- C:\Windows\SysNative\AcpiServiceVnA64.dll
[2018-11-10 12:36:19 | 000,105,272 | ---- | C] () -- C:\Windows\SysNative\audioLibVc.dll
[2018-11-10 12:36:14 | 005,804,772 | ---- | C] () -- C:\Windows\SysNative\drivers\rtvienna.dat
[2018-11-10 12:36:13 | 017,086,581 | ---- | C] () -- C:\Windows\SysNative\drivers\RTAIODAT.DAT
[2018-11-10 12:30:35 | 000,000,000 | -H-- | C] () -- C:\Windows\SysNative\drivers\Msft_Kernel_Smb_driver_Intel_01011.Wdf
[2018-11-10 12:30:34 | 000,000,000 | -H-- | C] () -- C:\Windows\SysNative\drivers\MsftWdf_Kernel_01011_Coinstaller_Critical.Wdf
[2018-11-10 12:30:26 | 000,000,003 | ---- | C] () -- C:\Windows\SysNative\drivers\MsftWdf_Kernel_01011_Inbox_Critical.Wdf
[2018-11-10 12:00:54 | 000,000,000 | -H-- | C] () -- C:\Windows\SysNative\drivers\Msft_User_WpdMtpDr_01_09_00.Wdf
[2018-11-10 11:07:03 | 000,000,000 | -H-- | C] () -- C:\Windows\SysNative\drivers\Msft_User_WpdFs_01_09_00.Wdf
[2018-11-09 21:35:36 | 000,001,015 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hola.lnk
[2018-11-09 20:35:30 | 001,478,240 | ---- | C] () -- C:\Users\Tomaszu\Desktop\Everything-1.4.1.895.x64-Setup.exe
[2018-11-09 20:20:28 | 000,000,683 | ---- | C] () -- C:\Users\Tomaszu\Desktop\Różne rzeczy.lnk
[2018-11-09 20:19:47 | 000,001,294 | ---- | C] () -- C:\Users\Tomaszu\Desktop\Przeglądarka Opera.lnk
[2018-11-09 20:19:47 | 000,001,294 | ---- | C] () -- C:\Users\Tomaszu\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Przeglądarka Opera.lnk
[2018-11-09 20:09:07 | 000,282,112 | ---- | C] () -- C:\Windows\System\HsMgr64.exe
[2018-11-09 20:09:07 | 000,200,704 | ---- | C] () -- C:\Windows\SysWow64\HsMgr.exe
[2018-11-09 20:09:07 | 000,000,053 | ---- | C] () -- C:\Windows\SysNative\cmasiopx.ini
[2018-11-09 20:09:07 | 000,000,048 | ---- | C] () -- C:\Windows\SysWow64\cmasiop.ini
[2018-11-09 20:09:06 | 004,533,760 | ---- | C] () -- C:\Windows\SysNative\CmiCnfgp.cpl
[2018-11-09 20:09:06 | 001,144,983 | ---- | C] () -- C:\Windows\KB936225x64.msu
[2018-11-09 20:09:06 | 000,143,360 | ---- | C] () -- C:\Windows\SysWow64\VmixP8.dll
[2018-11-09 20:08:58 | 000,827,904 | ---- | C] () -- C:\Windows\SysNative\Cmeauoxy.exe
[2018-11-09 20:08:58 | 000,047,026 | ---- | C] () -- C:\Windows\Cmicnfgp.ini.cfl
[2018-11-09 20:08:58 | 000,000,140 | ---- | C] () -- C:\Windows\System\Dlap.pfx
[2018-11-09 20:08:41 | 000,000,918 | ---- | C] () -- C:\Windows\Cmicnfgp.ini.imi
[2018-11-09 20:08:38 | 000,359,424 | ---- | C] () -- C:\Windows\SysNative\CmiInstallResAll64.dll
[2018-11-09 20:08:38 | 000,005,020 | ---- | C] () -- C:\Windows\Cmicnfgp.ini.cfg
[2018-11-09 20:08:38 | 000,000,857 | ---- | C] () -- C:\Windows\System\Cmicnfgp.ini
[2018-11-09 20:08:38 | 000,000,593 | ---- | C] () -- C:\Windows\cmudaxp.ini
[2018-11-09 20:03:59 | 000,001,951 | ---- | C] () -- C:\Windows\NvTelemetryContainerRecovery.bat
[2018-11-09 20:03:31 | 000,928,568 | ---- | C] () -- C:\Windows\SysNative\vulkan-1.dll
[2018-11-09 20:03:31 | 000,798,520 | ---- | C] () -- C:\Windows\SysWow64\vulkan-1.dll
[2018-11-09 20:03:31 | 000,591,672 | ---- | C] () -- C:\Windows\SysNative\vulkaninfo.exe
[2018-11-09 20:03:31 | 000,490,808 | ---- | C] () -- C:\Windows\SysWow64\vulkaninfo.exe
[2018-11-09 20:03:23 | 008,114,212 | ---- | C] () -- C:\Windows\SysNative\nvcoproc.bin
[2018-11-09 20:03:14 | 000,001,951 | ---- | C] () -- C:\Windows\NvContainerRecovery.bat
[2018-11-09 20:01:14 | 001,479,692 | ---- | C] () -- C:\Windows\SysNative\drivers\NVIDIA Corporation\Drs\nvdrsdb.bin
[2018-11-09 20:01:14 | 000,045,511 | ---- | C] () -- C:\Windows\SysNative\nvinfo.pb
[2018-11-09 20:01:13 | 000,000,669 | ---- | C] () -- C:\Windows\SysNative\nv-vk64.json
[2018-11-09 20:01:13 | 000,000,669 | ---- | C] () -- C:\Windows\SysWow64\nv-vk32.json
[2018-11-09 19:54:44 | 000,000,010 | ---- | C] () -- C:\Windows\GSetup.ini
[2018-11-09 19:53:37 | 000,001,421 | ---- | C] () -- C:\Users\Tomaszu\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer (64-bit).lnk
[2018-11-09 19:52:19 | 000,001,455 | ---- | C] () -- C:\Users\Tomaszu\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
[2018-11-09 19:51:49 | 000,171,136 | RHS- | C] () -- C:\W7LDR
[2018-11-09 19:48:11 | 000,001,345 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Media Center.lnk
[2018-11-09 19:48:03 | 000,001,326 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows DVD Maker.lnk
[2018-11-09 19:44:32 | 3220,037,632 | -HS- | C] () -- C:\hiberfil.sys
[2018-11-09 19:43:25 | 000,008,192 | RHS- | C] () -- C:\BOOTSECT.BAK
[2018-11-09 19:43:24 | 000,383,562 | RHS- | C] () -- C:\bootmgr
[2017-12-08 23:25:12 | 000,798,520 | ---- | C] () -- C:\Windows\SysWow64\vulkan-1-1-0-65-1.dll
[2017-12-08 23:25:00 | 000,490,808 | ---- | C] () -- C:\Windows\SysWow64\vulkaninfo-1-1-0-65-1.exe

[color=#E56717]========== ZeroAccess Check ==========[/color]

[2009-07-14 05:55:00 | 000,000,227 | RHS- | M] () -- C:\Windows\assembly\Desktop.ini

[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64

[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]

[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64

[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
"" = C:\Windows\SysNative\shell32.dll -- [2009-07-14 02:41:54 | 014,161,920 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shell32.dll -- [2009-07-14 02:16:14 | 012,866,560 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\fastprox.dll -- [2009-07-14 02:40:51 | 000,909,312 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = %systemroot%\system32\wbem\fastprox.dll -- [2009-07-14 02:15:20 | 000,605,696 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\wbemess.dll -- [2009-07-14 02:41:56 | 000,505,856 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]

[color=#E56717]========== LOP Check ==========[/color]

[2018-11-09 20:09:27 | 000,000,000 | ---D | M] -- C:\Users\Tomaszu\AppData\Roaming\ASUS
[2018-11-11 18:56:33 | 000,000,000 | ---D | M] -- C:\Users\Tomaszu\AppData\Roaming\AVAST Software
[2018-11-10 12:13:39 | 000,000,000 | ---D | M] -- C:\Users\Tomaszu\AppData\Roaming\DataWorks
[2018-11-16 21:12:44 | 000,000,000 | ---D | M] -- C:\Users\Tomaszu\AppData\Roaming\Everything
[2018-11-16 12:50:22 | 000,000,000 | ---D | M] -- C:\Users\Tomaszu\AppData\Roaming\foobar2000
[2018-11-16 21:22:40 | 000,000,000 | ---D | M] -- C:\Users\Tomaszu\AppData\Roaming\GG
[2018-11-10 12:13:53 | 000,000,000 | ---D | M] -- C:\Users\Tomaszu\AppData\Roaming\IObit
[2018-11-13 22:28:14 | 000,000,000 | ---D | M] -- C:\Users\Tomaszu\AppData\Roaming\MPC-HC
[2018-11-10 12:26:11 | 000,000,000 | ---D | M] -- C:\Users\Tomaszu\AppData\Roaming\NetMeter
[2018-11-09 20:19:03 | 000,000,000 | ---D | M] -- C:\Users\Tomaszu\AppData\Roaming\Opera Software

[color=#E56717]========== Purity Check ==========[/color]



< End of report >


Extras:
Kod: Zaznacz wszystko
OTL Extras logfile created on: 2018-11-17 07:51:55 - Run 1
OTL by OldTimer - Version 3.2.69.0     Folder = E:\Różne rzeczy\Programy\Gmer OTL Zoek
64bit- Ultimate Edition  (Version = 6.1.7600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.7600.16385)
Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd

4,00 Gb Total Physical Memory | 1,86 Gb Available Physical Memory | 46,55% Memory free
8,00 Gb Paging File | 5,10 Gb Available in Paging File | 63,82% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 27,88 Gb Total Space | 7,24 Gb Free Space | 25,99% Space Free | Partition Type: NTFS
Drive D: | 31,74 Gb Total Space | 0,80 Gb Free Space | 2,52% Space Free | Partition Type: NTFS
Drive E: | 536,55 Gb Total Space | 31,71 Gb Free Space | 5,91% Space Free | Partition Type: NTFS

Computer Name: TOMMY | User Name: Tomaszu | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

[color=#E56717]========== Extra Registry (SafeList) ==========[/color]


[color=#E56717]========== File Associations ==========[/color]

[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation)

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation)

[HKEY_CURRENT_USER\SOFTWARE\Classes\<extension>]
.html [@ = OperaStable] -- C:\Users\Tomaszu\AppData\Local\Programs\Opera\Launcher.exe (Opera Software)

[color=#E56717]========== Shell Spawning ==========[/color]

[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [edit] -- Reg Error: Key error.
htmlfile [print] -- rundll32.exe %windir%\system32\mshtml.dll,PrintHTML "%1"
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation)
InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [mplayerc64.enqueue] -- "e:\Program Files (x86)\K-Lite Codec Pack\MPC-HC64\mpc-hc64.exe" /add "%1" (MPC-HC Team)
Directory [mplayerc64.play] -- "e:\Program Files (x86)\K-Lite Codec Pack\MPC-HC64\mpc-hc64.exe" "%1" (MPC-HC Team)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [edit] -- Reg Error: Key error.
htmlfile [print] -- rundll32.exe %windir%\system32\mshtml.dll,PrintHTML "%1"
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [mplayerc64.enqueue] -- "e:\Program Files (x86)\K-Lite Codec Pack\MPC-HC64\mpc-hc64.exe" /add "%1" (MPC-HC Team)
Directory [mplayerc64.play] -- "e:\Program Files (x86)\K-Lite Codec Pack\MPC-HC64\mpc-hc64.exe" "%1" (MPC-HC Team)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

[color=#E56717]========== Security Center Settings ==========[/color]

[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1

[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"VistaSp1" = 28 4D B2 76 41 04 CA 01  [binary data]
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0

[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]

[color=#E56717]========== Firewall Settings ==========[/color]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1

[color=#E56717]========== Authorized Applications List ==========[/color]


[color=#E56717]========== Vista Active Open Ports Exception List ==========[/color]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{02DD5033-F95C-4427-AB4D-20EF17BC65B2}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{0D816EDB-67DF-4593-A133-03C60D79BABF}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{282BF5CE-D747-4AD1-8EBE-F8E3BD0483D5}" = lport=10243 | protocol=6 | dir=in | app=system |
"{2981E88F-BFBC-4E36-9437-EFDFDFF2FC17}" = lport=47995 | protocol=6 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamer.exe |
"{36271654-7814-4BD8-AA7F-E2957F0F0135}" = rport=445 | protocol=6 | dir=out | app=system |
"{4307616C-6CA2-47B7-8A62-048278EFE2F5}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{4CB45FEE-F2EC-40D1-A1E2-CEA51F68A235}" = rport=138 | protocol=17 | dir=out | app=system |
"{4DCCF37A-7D75-48BC-9528-06CD58BE3A28}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{6CFFAADE-820F-4384-9B58-D0D6E3980A6D}" = rport=137 | protocol=17 | dir=out | app=system |
"{8047727B-A8A6-46A2-958B-F4B0D05A0802}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{8EE25081-FA71-4572-AAA7-7E6F6C93FEA7}" = lport=445 | protocol=6 | dir=in | app=system |
"{940D3189-1A2E-4215-9A43-5DAA58483C87}" = lport=47998 | protocol=17 | dir=in | app=c:\program files\nvidia corporation\nvcontainer\nvcontainer.exe |
"{9AB5103D-D184-425D-A85F-D256865B9054}" = lport=5353 | protocol=17 | dir=in | app=c:\program files\nvidia corporation\nvcontainer\nvcontainer.exe |
"{AD543D5C-BC3F-4D05-8C51-F26EBCA01D39}" = lport=47984 | protocol=6 | dir=in | app=c:\program files\nvidia corporation\nvcontainer\nvcontainer.exe |
"{B20A3F33-7DA9-44C8-A223-93B2B09516FD}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{BF4A6868-36F7-4976-AD71-8FED935329E5}" = lport=138 | protocol=17 | dir=in | app=system |
"{C1DE52EF-A12F-47C9-BC08-513CBF0C9BBC}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{CA83DACF-5F9F-4D09-959C-95CAC7C7346F}" = lport=47995 | protocol=17 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamer.exe |
"{CF1409A5-F04A-44A2-9607-95F5F64DA144}" = lport=2869 | protocol=6 | dir=in | app=system |
"{D710C43F-B43E-40DD-9EAC-461381DF2F4B}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 |
"{D7AC87C3-FEB0-4244-8ECD-4C3F99459F1E}" = lport=139 | protocol=6 | dir=in | app=system |
"{E3099086-9F39-41F7-99CA-36839357BAA6}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{E4EF3649-08C6-4D13-9E5E-50BE8602FF7B}" = lport=137 | protocol=17 | dir=in | app=system |
"{E5A32ACB-A22C-4D1C-BD3B-43470CA47C80}" = rport=139 | protocol=6 | dir=out | app=system |
"{EA32F809-3612-4AF1-8BE3-0970E6DD352B}" = rport=10243 | protocol=6 | dir=out | app=system |
"{F102BEA1-B379-4A2F-AC71-7789660229ED}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe |
"{F3944E0C-E4A3-43CE-B5EB-26D0BB63282A}" = lport=48010 | protocol=17 | dir=in | app=c:\program files\nvidia corporation\nvcontainer\nvcontainer.exe |

[color=#E56717]========== Vista Active Application Exception List ==========[/color]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{0006A011-AC9A-4EB5-9418-A7A5FC9923B8}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 |
"{0536DF20-A385-483C-8D77-5F4E0CE64416}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{07C4BDC9-CF90-425A-9ED3-15333C998262}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe |
"{13FEB0AA-C895-44E9-9074-9779BDA16531}" = dir=in | app=c:\program files (x86)\iobit\driver booster\6.0.2\driverbooster.exe |
"{15764AC5-AEF6-439D-B7B1-140E72093BC4}" = protocol=6 | dir=out | app=system |
"{1DB801AB-BAEB-4279-AE47-B8D0A6A80DFA}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
"{1E750603-A02A-4ED2-8483-1A6CCFF5A688}" = dir=out | app=c:\program files (x86)\iobit\driver booster\6.0.2\dbdownloader.exe |
"{2533A21F-57AF-4D35-A1F8-583075E2A6F7}" = dir=out | app=c:\program files (x86)\iobit\driver booster\6.0.2\driverbooster.exe |
"{3580FFAC-6BAF-4C8B-9505-8082BF984246}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{4C46ED49-2CED-4022-BF8A-E4622E074021}" = protocol=6 | dir=in | app=c:\program files\avast software\avast\avemupdate.exe |
"{5EEAB403-412A-48B0-B661-64860A9FC300}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{67BBA05B-B922-46C3-BC8C-9CB6A8266AEA}" = protocol=6 | dir=in | app=c:\program files\ccleaner\ccupdate.exe |
"{67EAE1FD-0ABE-4BBC-9F6B-9C03550D8976}" = dir=in | app=c:\program files (x86)\iobit\driver booster\6.0.2\dbdownloader.exe |
"{6FD198F0-F00A-411A-B207-BE37ED302153}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 |
"{7FA972B1-C1AE-45E7-8130-77E12A00FD18}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
"{8120F8DA-BDA4-43DD-9890-22578FFD305B}" = dir=in | app=c:\program files (x86)\iobit\driver booster\6.0.2\autoupdate.exe |
"{86E77032-415E-4657-8084-AD96B1B24A51}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{881675C2-90F4-44CB-A468-7E7779785730}" = protocol=17 | dir=in | app=c:\program files\avast software\avast\avemupdate.exe |
"{9488F10A-9D35-4EEA-B927-4A42CA75C29A}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{94F131FA-3E60-4F1B-9FDB-71866F92B5C0}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{AA4A1A85-5F68-41D7-8415-4DD44C2C812B}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
"{AA9E70EF-735E-4B68-96BE-643B660B7711}" = dir=out | app=c:\program files (x86)\iobit\driver booster\6.0.2\autoupdate.exe |
"{AFEB04B8-A56F-4671-A760-900B7215DF8E}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
"{B706A616-B8C3-4E7C-9774-41FDF95AEEDD}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
"{C674F7F8-3F4D-42A3-B42B-323B52D20AF2}" = protocol=17 | dir=in | app=c:\program files\ccleaner\ccupdate.exe |
"{C729983D-1E98-431D-88A5-1F8B0D26748E}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
"{C8C138B6-ACAC-4650-A633-5A4DFE584F51}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 |
"{CEB3E732-E656-4B0B-AE92-EE78AFD5F599}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 |
"{FE0F8261-622C-4A0D-8782-B3256B10C164}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"TCP Query User{FC57D472-BEFB-4CFB-998F-82910406A153}E:\program files (x86)\tmnationsforever\tmforever.exe" = protocol=6 | dir=in | app=e:\program files (x86)\tmnationsforever\tmforever.exe |
"UDP Query User{CC905BEF-6CA4-49BD-BA1D-6468349DFD35}E:\program files (x86)\tmnationsforever\tmforever.exe" = protocol=17 | dir=in | app=e:\program files (x86)\tmnationsforever\tmforever.exe |

[color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color]

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{929FBD26-9020-399B-9A7A-751D61F0B942}" = Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.21005
"{A749D8E6-B613-3BE3-8F5F-045C84EBA29B}" = Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.21005
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Ansel" = NVIDIA Ansel
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision" = NVIDIA Sterownik 3D Vision 391.35
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel" = Panel sterowania NVIDIA 391.35
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver" = NVIDIA Sterownik graficzny 391.35
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience" = NVIDIA GeForce Experience 3.13.1.30
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB" = NVIDIA Sterownik kontrolera 3D Vision 390.41
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX" = NVIDIA Oprogramowanie systemu PhysX 9.17.0524
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update" = Aktualizacje NVIDIA 31.1.10.0
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_DisplayDriverAnalyzer" = DisplayDriverAnalyzer
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GFExperience.NvStreamSrv" = NVIDIA SHIELD Streaming
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer" = NVIDIA Install Application
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvBackend" = NVIDIA Backend
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer" = NVIDIA Container
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.ContainerTelemetryApiHelper" = NVIDIA TelemetryApi helper for NvContainer
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.LocalSystem" = NVIDIA LocalSystem Container
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.MessageBus" = NVIDIA Message Bus for NvContainer
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.NetworkService" = NVIDIA NetworkService Container
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.Session" = NVIDIA Session Container
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.User" = NVIDIA User Container
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NVDisplayContainer" = NVIDIA Display Container
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NVDisplayContainerLS" = NVIDIA Display Container LS
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NVDisplayPluginWatchdog" = NVIDIA Display Watchdog Plugin
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NVDisplaySessionContainer" = NVIDIA Display Session Container
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvNodejs" = NVIDIA NodeJS
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvPlugin.Watchdog" = NVIDIA Watchdog Plugin for NvContainer
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvTelemetry" = NVIDIA Telemetry Client
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvTelemetryContainer" = NVIDIA Telemetry Container
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvvHci" = NVIDIA Virtual Host Controller
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_OSC" = Nvidia Share
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_ShadowPlay" = NVIDIA ShadowPlay 3.13.1.30
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_ShieldWirelessController" = NVIDIA SHIELD Wireless Controller Driver
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Update.Core" = NVIDIA Update Core
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_VirtualAudio.Driver" = NVIDIA Virtual Audio 4.04.0
"CCleaner" = CCleaner
"C-Media Oxygen HD Audio Driver" = ASUS Xonar DG Audio Driver
"Everything" = Everything 1.4.1.895 (x64)
"Google Earth Pro_is1" = Google Earth Pro 7.3.1.4507
"Hola" = Hola™ 1.111.158 - Better Internet
"VulkanRT1.0.65.1" = Vulkan Run Time Libraries 1.0.65.1

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{13A4EE12-23EA-3371-91EE-EFB36DDFFF3E}" = Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.21005
"{7f51bdb9-ee21-49ee-94d6-90afc321780e}" = Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005
"{A8F37EB0-C741-41D7-8CAB-5B40ECEEF094}_is1" = CLEO 4.3
"{ce085a78-074e-4823-8dc1-8a721b94b76d}" = Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005
"{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver
"{F8CFEB22-A2E7-3971-9EDA-4B11EDEFC185}" = Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.21005
"Adobe Flash Player PPAPI" = Adobe Flash Player 31 PPAPI
"Avast Antivirus" = Avast Free Antivirus
"Driver Booster_is1" = Driver Booster 6
"KLiteCodecPack_is1" = K-Lite Codec Pack 14.5.5 Full
"NVIDIAStereo" = NVIDIA Stereoscopic 3D Driver
"OpenAL" = OpenAL
"TmNationsForever_is1" = TmNationsForever
"WinRAR archiver" = Archiwizator WinRAR

[color=#E56717]========== HKEY_CURRENT_USER Uninstall List ==========[/color]

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"Flux" = f.lux
"GG" = GG
"Opera 56.0.3051.99" = Opera Stable 56.0.3051.99

[color=#E56717]========== Last 20 Event Log Errors ==========[/color]

[ Application Events ]
Error - 2018-11-10 14:58:26 | Computer Name = Tommy | Source = Application Error | ID = 1000
Description = Nazwa aplikacji powodującej błąd: gta_sa.exe, wersja: 0.0.0.0, sygnatura
czasowa: 0x427101ca  Nazwa modułu powodującego błąd: HsSrv.dll, wersja: 1.0.12.106,
sygnatura czasowa: 0x4f064d85  Kod wyjątku: 0xc0000005  Przesunięcie błędu: 0x00010b4a
Identyfikator
procesu powodującego błąd: 0x5b8  Godzina uruchomienia aplikacji powodującej błąd:
0x01d47926bf2dbaa3  Ścieżka aplikacji powodującej błąd: E:\Program Files\Rockstar
Games\GTA San Andreas\gta_sa.exe  Ścieżka modułu powodującego błąd: C:\Windows\SysWOW64\HsSrv.dll
Identyfikator
raportu: 9a0a84d2-e51a-11e8-b34f-001d7dd23fd1

Error - 2018-11-10 15:07:30 | Computer Name = Tommy | Source = SideBySide | ID = 16842785
Description = Nie można wygenerować kontekstu aktywacji dla "E:\Program Files (x86)\BlackBeanGames\SBK2011\Sbk2011.exe".
Nie
można odnaleźć zestawu zależnego Microsoft.VC90.OpenMP,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="9.0.21022.8".
Użyj
narzędzia sxstrace.exe, aby uzyskać szczegółową diagnozę.

Error - 2018-11-10 15:07:30 | Computer Name = Tommy | Source = SideBySide | ID = 16842785
Description = Nie można wygenerować kontekstu aktywacji dla "E:\Program Files (x86)\BlackBeanGames\SBK2011\Sbk2011.exe".
Nie
można odnaleźć zestawu zależnego Microsoft.VC90.OpenMP,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="9.0.21022.8".
Użyj
narzędzia sxstrace.exe, aby uzyskać szczegółową diagnozę.

Error - 2018-11-10 15:29:18 | Computer Name = Tommy | Source = Application Error | ID = 1000
Description = Nazwa aplikacji powodującej błąd: gta_sa.exe, wersja: 0.0.0.0, sygnatura
czasowa: 0x427101ca  Nazwa modułu powodującego błąd: HsSrv.dll, wersja: 1.0.12.106,
sygnatura czasowa: 0x4f064d85  Kod wyjątku: 0xc0000005  Przesunięcie błędu: 0x00010b4a
Identyfikator
procesu powodującego błąd: 0xe68  Godzina uruchomienia aplikacji powodującej błąd:
0x01d4792b5b10161e  Ścieżka aplikacji powodującej błąd: E:\Program Files\Rockstar
Games\GTA San Andreas\gta_sa.exe  Ścieżka modułu powodującego błąd: C:\Windows\SysWOW64\HsSrv.dll
Identyfikator
raportu: e9e9251d-e51e-11e8-b34f-001d7dd23fd1

Error - 2018-11-10 20:00:20 | Computer Name = Tommy | Source = Application Error | ID = 1000
Description = Nazwa aplikacji powodującej błąd: gta_sa.exe, wersja: 0.0.0.0, sygnatura
czasowa: 0x427101ca  Nazwa modułu powodującego błąd: gta_sa.exe, wersja: 0.0.0.0,
sygnatura czasowa: 0x427101ca  Kod wyjątku: 0xc0000005  Przesunięcie błędu: 0x0019fe47
Identyfikator
procesu powodującego błąd: 0x940  Godzina uruchomienia aplikacji powodującej błąd:
0x01d47941c829c0e0  Ścieżka aplikacji powodującej błąd: E:\Program Files\Rockstar
Games\GTA San Andreas\gta_sa.exe  Ścieżka modułu powodującego błąd: E:\Program Files\Rockstar
Games\GTA San Andreas\gta_sa.exe  Identyfikator raportu: c6d36a97-e544-11e8-b34f-001d7dd23fd1

Error - 2018-11-12 07:59:34 | Computer Name = Tommy | Source = SideBySide | ID = 16842785
Description = Nie można wygenerować kontekstu aktywacji dla "E:\Program Files (x86)\BlackBeanGames\SBK2011\Sbk2011.exe".
Nie
można odnaleźć zestawu zależnego Microsoft.VC90.OpenMP,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="9.0.21022.8".
Użyj
narzędzia sxstrace.exe, aby uzyskać szczegółową diagnozę.

Error - 2018-11-12 12:18:23 | Computer Name = Tommy | Source = SideBySide | ID = 16842785
Description = Nie można wygenerować kontekstu aktywacji dla "E:\Program Files (x86)\BlackBeanGames\SBK2011\Sbk2011.exe".
Nie
można odnaleźć zestawu zależnego Microsoft.VC90.OpenMP,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="9.0.21022.8".
Użyj
narzędzia sxstrace.exe, aby uzyskać szczegółową diagnozę.

Error - 2018-11-13 07:03:47 | Computer Name = Tommy | Source = Application Hang | ID = 1002
Description = Program gta_sa.exe w wersji 0.0.0.0 zatrzymał interakcję z systemem
Windows i został zamknięty. Aby zobaczyć, czy jest dostępnych więcej informacji
dotyczących tego problemu, sprawdź historię problemu w panelu sterowania Centrum
akcji.    Identyfikator procesu: 15c0    Godzina rozpoczęcia: 01d47b3ff4287649    Godzina zakończenia:
226    Ścieżka aplikacji: E:\Program Files\Rockstar Games\GTA San Andreas\gta_sa.exe

Identyfikator
raportu:   

Error - 2018-11-16 07:55:08 | Computer Name = Tommy | Source = Application Error | ID = 1000
Description = Nazwa aplikacji powodującej błąd: screamer.exe, wersja: 0.4.4.0, sygnatura
czasowa: 0x4ce7e200  Nazwa modułu powodującego błąd: unknown, wersja: 0.0.0.0, sygnatura
czasowa: 0x00000000  Kod wyjątku: 0xc0000005  Przesunięcie błędu: 0x0206f538  Identyfikator
procesu powodującego błąd: 0x1a30  Godzina uruchomienia aplikacji powodującej błąd:
0x01d47da29f037272  Ścieżka aplikacji powodującej błąd: E:\Program Files\Screamer
Radio\screamer.exe  Ścieżka modułu powodującego błąd: unknown  Identyfikator raportu:
76167c3e-e996-11e8-b34f-001d7dd23fd1

Error - 2018-11-16 16:26:23 | Computer Name = Tommy | Source = Application Error | ID = 1000
Description = Nazwa aplikacji powodującej błąd: gta_sa.exe, wersja: 0.0.0.0, sygnatura
czasowa: 0x427101ca  Nazwa modułu powodującego błąd: gta_sa.exe, wersja: 0.0.0.0,
sygnatura czasowa: 0x427101ca  Kod wyjątku: 0xc0000005  Przesunięcie błędu: 0x00346929
Identyfikator
procesu powodującego błąd: 0x920  Godzina uruchomienia aplikacji powodującej błąd:
0x01d47deaa275d7f1  Ścieżka aplikacji powodującej błąd: E:\Program Files\Rockstar
Games\GTA San Andreas\gta_sa.exe  Ścieżka modułu powodującego błąd: E:\Program Files\Rockstar
Games\GTA San Andreas\gta_sa.exe  Identyfikator raportu: e1f1bb02-e9dd-11e8-83cb-001d7dd23fd1

[ System Events ]
Error - 2018-11-17 00:23:00 | Computer Name = Tommy | Source = Disk | ID = 262151
Description = W urządzeniu \Device\Harddisk0\DR0 wystąpił zły blok.

Error - 2018-11-17 00:23:03 | Computer Name = Tommy | Source = Disk | ID = 262151
Description = W urządzeniu \Device\Harddisk0\DR0 wystąpił zły blok.

Error - 2018-11-17 02:53:44 | Computer Name = Tommy | Source = Disk | ID = 262151
Description = W urządzeniu \Device\Harddisk0\DR0 wystąpił zły blok.

Error - 2018-11-17 02:53:47 | Computer Name = Tommy | Source = Disk | ID = 262151
Description = W urządzeniu \Device\Harddisk0\DR0 wystąpił zły blok.

Error - 2018-11-17 02:53:49 | Computer Name = Tommy | Source = Disk | ID = 262151
Description = W urządzeniu \Device\Harddisk0\DR0 wystąpił zły blok.

Error - 2018-11-17 02:53:51 | Computer Name = Tommy | Source = Disk | ID = 262151
Description = W urządzeniu \Device\Harddisk0\DR0 wystąpił zły blok.

Error - 2018-11-17 02:54:59 | Computer Name = Tommy | Source = Disk | ID = 262151
Description = W urządzeniu \Device\Harddisk0\DR0 wystąpił zły blok.

Error - 2018-11-17 02:55:01 | Computer Name = Tommy | Source = Disk | ID = 262151
Description = W urządzeniu \Device\Harddisk0\DR0 wystąpił zły blok.

Error - 2018-11-17 02:55:04 | Computer Name = Tommy | Source = Disk | ID = 262151
Description = W urządzeniu \Device\Harddisk0\DR0 wystąpił zły blok.

Error - 2018-11-17 02:55:06 | Computer Name = Tommy | Source = Disk | ID = 262151
Description = W urządzeniu \Device\Harddisk0\DR0 wystąpił zły blok.


< End of report >


ZOEK:
Kod: Zaznacz wszystko
Zoek.exe v5.0.0.0 Updated 07-March-2014
Tool run by Tomaszu on 2018-11-17 at  8:17:09,85.
Microsoft Windows 7 Ultimate  6.1.7600  x64
Running in: Normal Mode No Internet Access Detected
Launched: E:\Różne rzeczy\Programy\Gmer OTL Zoek\zoek.exe [Scan all users]   [Deep Scan]

==== System Restore Info ======================

2018-11-17 08:20:08 Zoek.exe System Restore Point Created Succesfully.

==== Running Processes ======================

C:\Program Files\AVAST Software\Avast\AvastSvc.exe
C:\Windows\SysWOW64\rundll32.exe
C:\Windows\SysWOW64\HsMgr.exe
E:\Program Files\NetMeter\NetMeter.exe
C:\Users\Tomaszu\AppData\Local\FluxSoftware\Flux\flux.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files\ASUS Xonar DG Audio\Customapp\ASUSAUDIOCENTER.EXE
C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe
C:\Windows\SysWOW64\WerFault.exe
C:\Program Files (x86)\IObit\Driver Booster\6.0.2\Pub\PubMonitor.exe
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvSHIM.exe
E:\Różne rzeczy\Programy\Gmer OTL Zoek\zoek.exe
C:\Windows\SysWOW64\cmd.exe
C:\Windows\SysWOW64\cmd.exe
C:\Windows\SysWOW64\cmd.exe

==== System Specs ======================

Windows: Windows 7 Ultimate (64-bit) (Build 7600)
Memory (RAM): 4095 MB
CPU Info: Intel(R) Core(TM)2 Duo CPU     E4600  @ 2.40GHz
CPU Speed: 2398,8 MHz
Sound Card: Głośniki (ASUS Xonar DG Audio D |
S/PDIF Pass-through Device (ASU |
Realtek Digital Output (Realtek |
Display Adapters: NVIDIA GeForce GT 610 | NVIDIA GeForce GT 610 | RDPDD Chained DD | RDP Encoder Mirror Driver | RDP Reflector Display Driver
Monitors: 1x; Rodzajowy monitor PnP |
Screen Resolution: 1920 X 1080 - 32 bit
Network: Network Present
Network Adapters: Realtek PCIe GbE Family Controller
CD / DVD Drives: 1x (F: | ) F: TSSTcorpCD/DVDW SH-S182M
Ports: COM1 LPT1
Mouse: 5 Button Wheel Mouse Present
Hard Disks: C:  27,9GB | D:  31,7GB | E:  536,5GB
Hard Disks - Free: C:  7,2GB | D:  820,3MB | E:  31,7GB
Manufacturer *: Award Software International, Inc.
BIOS Info: AT/AT COMPATIBLE | 11/29/07 | ACRSYS - 42302e31
Time Zone: Środkowoeuropejski czas stand.
Motherboard *: Gigabyte Technology Co., Ltd. P35-DS3L
Country: Polska
Language: PLK

==== System Specs (Software) ======================

Anti-Virus: Avast Antivirus On-access scanning disabled (Outdated)
Anti-Spyware: Windows Defender disabled (Outdated)
Anti-Spyware: Avast Antivirus disabled (Outdated)
Default Browser: Opera Internet Browser   56.0.3051.99
Internet Explorer version: 8.0.7600.16385

==== Files Recently Created / Modified ======================

====== C:\Windows ====
2018-11-11 14:58:28   B4C984482D24240A7FAA49FCAC35BFC7   1202477   ----a-w-   C:\Windows\unins000.exe
2018-11-11 14:58:28   4ED82ACF0247C68DADF7503ED3C4B317   8205   ----a-w-   C:\Windows\unins000.dat
2018-11-09 19:09:06   C333C2778E2505A718E0A78A1A2C9D2E   40358   ------w-   C:\Windows\Xonar DG Audio.ico
2018-11-09 19:09:06   9F009D41E2577BA3D50D6EB37E866422   1144983   ------w-   C:\Windows\KB936225x64.msu
2018-11-09 19:08:58   D284099EC4703C5DCB3C672F7999BF6C   47026   ----a-w-   C:\Windows\Cmicnfgp.ini.cfl
2018-11-09 19:08:41   1AC9F2FE12440A9145A49AEB6FAE0BEB   918   ----a-w-   C:\Windows\Cmicnfgp.ini.imi
2018-11-09 19:08:38   A868A604E789D5B944160109B509B0F5   593   ------w-   C:\Windows\cmudaxp.ini
2018-11-09 19:08:38   A0EDDF98E1EB176C514046F35F9BB252   5020   ------w-   C:\Windows\Cmicnfgp.ini.cfg
2018-11-09 19:08:38   9CADC91DF349C198FFB5477A5B23B6C2   524768   ----a-w-   C:\Windows\difxapi.dll
2018-11-09 19:03:59   74F28574BB8F61FFC7DD419FE6B6E0D5   1951   ----a-w-   C:\Windows\NvTelemetryContainerRecovery.bat
2018-11-09 19:03:14   74F28574BB8F61FFC7DD419FE6B6E0D5   1951   ----a-w-   C:\Windows\NvContainerRecovery.bat
2018-11-09 18:54:44   D90BD390F621B6D5BC7F2B2C5CDAF99A   10   ----a-w-   C:\Windows\GSetup.ini
2018-11-09 18:54:42   F51FB25E1328FA14F446A8B24AC52709   20544   ----a-w-   C:\Windows\gdrv.sys
====== C:\Users\Tomaszu\AppData\Local\Temp ====
====== Java Cache =====
====== C:\Windows\SysWOW64 =====
2018-11-11 17:54:48   D6326267AE77655F312D2287903DB4D3   1142072   ----a-w-   C:\Windows\SysWOW64\ucrtbase.dll
2018-11-11 17:07:50   908A2AF4BD0EEB94621A6E9DB3D42149   175104   ----a-w-   C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2018-11-11 17:07:50   095F482E5CB81F12ABE7011BA32E14AE   842240   ----a-w-   C:\Windows\SysWOW64\FlashPlayerApp.exe
2018-11-10 14:29:02   F1726346E583442541FE73429F8E9C10   62672   ----a-w-   C:\Windows\SysWOW64\xinput1_1.dll
2018-11-10 14:29:02   7C9952111F4C743B9F0D8B68B6ED93C9   229584   ----a-w-   C:\Windows\SysWOW64\xactengine2_1.dll
2018-11-10 14:29:02   5C4D3843B491C047B7A619901FBD2EC1   230168   ----a-w-   C:\Windows\SysWOW64\xactengine2_2.dll
2018-11-10 14:29:00   E415862612E65F10D7D888443ECD7594   2388176   ----a-w-   C:\Windows\SysWOW64\d3dx9_30.dll
2018-11-10 14:28:59   99F4FC172A5ACE36CF00AA7038D23F2C   2332368   ----a-w-   C:\Windows\SysWOW64\d3dx9_29.dll
2018-11-10 14:28:59   4E961525CC7FF0E5D7DA19E170B7C14C   14032   ----a-w-   C:\Windows\SysWOW64\x3daudio1_0.dll
2018-11-10 14:28:59   2112FE0C46662D429347A7D7B49E3ECE   230096   ----a-w-   C:\Windows\SysWOW64\xactengine2_0.dll
2018-11-10 14:28:58   BE19B603DFBAA829EE5B7749B3BA97DB   2323664   ----a-w-   C:\Windows\SysWOW64\d3dx9_28.dll
2018-11-10 14:28:58   852EDC778A7A50077694F84D8E601234   2319568   ----a-w-   C:\Windows\SysWOW64\d3dx9_27.dll
2018-11-10 14:28:58   523AB607EEF81CC4D909E7FEBD8A788E   2297552   ----a-w-   C:\Windows\SysWOW64\d3dx9_26.dll
2018-11-10 14:28:57   BC831661963763AC4D504C5CABB1FDD9   2222800   ----a-w-   C:\Windows\SysWOW64\d3dx9_24.dll
2018-11-10 11:36:24   C1352B36E6CB2D42BB9DD7E65EA8D950   341112   ----a-w-   C:\Windows\SysWOW64\SRCOM.dll
2018-11-10 11:36:23   D9F2257DC37A1CA8CF6D68EAEAADDBDF   83584   ----a-w-   C:\Windows\SysWOW64\SFCOM.dll
2018-11-10 11:36:23   D3B79DFDC37DEC93555B8E55F512DAAE   1041208   ----a-w-   C:\Windows\SysWOW64\SECOMN32.dll
2018-11-10 11:36:23   69F7F508806651A7B6D37956741BF3FC   1000616   ----a-w-   C:\Windows\SysWOW64\SEHDHF32.dll
2018-11-10 11:36:22   1B9C3CFFCD1913B1A807C17977C57407   3223832   ----a-w-   C:\Windows\SysWOW64\RltkAPO.dll
2018-11-09 19:09:25   5FB883AE7A93A069207A15AC8B86CA86   413696   ----a-w-   C:\Windows\SysWOW64\wrap_oal.dll
2018-11-09 19:09:25   27F100DDD1B016087162CE506BB1FDDF   102400   ----a-w-   C:\Windows\SysWOW64\OpenAL32.dll
2018-11-09 19:09:07   DC63352F62FEBF6F2B83FE0C7BDB9596   303104   ------w-   C:\Windows\SysWOW64\cmasiop.dll
2018-11-09 19:09:07   C5B7C06DFB15CDB2445541BD227931DD   48   ------w-   C:\Windows\SysWOW64\cmasiop.ini
2018-11-09 19:09:07   8AC47B5D5A2521C194B9433B9A0159D6   200704   ------w-   C:\Windows\SysWOW64\Cmpaoxy.dll
2018-11-09 19:09:07   7BE70DD7F03A01C24DACFB0C83A0629B   200704   ----a-w-   C:\Windows\SysWOW64\HsSrv.dll
2018-11-09 19:09:07   1CB2F37F3A13FA1389ED068007D65693   212992   ------w-   C:\Windows\SysWOW64\HsSrv2.dll
2018-11-09 19:09:07   0740D338A42F7778760F2B0CB6DA5830   200704   ------w-   C:\Windows\SysWOW64\HsMgr.exe
2018-11-09 19:09:07   06FB32873596CBB20E1DC83677940FAF   122880   ------w-   C:\Windows\SysWOW64\Cm_Oal.dll
2018-11-09 19:09:06   5310ED3BB9C26A81D0A7220E0ACF0681   143360   ------w-   C:\Windows\SysWOW64\VmixP8.dll
2018-11-09 19:09:06   22ADC465B3068EDAEDDF3B104BDB8F72   12935168   ------w-   C:\Windows\SysWOW64\CmiCnfgp.dll
2018-11-09 19:04:36   8E0BB968FF41D80E5F2C747C04DB79AE   248672   ----a-w-   C:\Windows\SysWOW64\d3dx11_43.dll
2018-11-09 19:04:36   86E39E9161C3D930D93822F1563C280D   1998168   ----a-w-   C:\Windows\SysWOW64\D3DX9_43.dll
2018-11-09 19:04:36   20C835843FCEC4DEDFCD7BFFA3B91641   470880   ----a-w-   C:\Windows\SysWOW64\d3dx10_43.dll
2018-11-09 19:04:24   CD91D10C2A52142F40BA7183E5882A32   2137024   ----a-w-   C:\Windows\SysWOW64\nvspcap.dll
2018-11-09 19:04:02   3583201B8CCADC3C0C42573FCDE747DA   152408   ----a-w-   C:\Windows\SysWOW64\nvaudcap32v.dll
2018-11-09 19:03:38   9CB14144261BE3DA233BC74240ED537E   138120   ----a-w-   C:\Windows\SysWOW64\nvStreaming.exe
2018-11-09 19:03:31   ECAD282D3035068CFB021D159C91B514   798520   ----a-w-   C:\Windows\SysWOW64\vulkan-1.dll
2018-11-09 19:03:31   35065D5FFEFB6886F77AA6A7E5DF901B   490808   ----a-w-   C:\Windows\SysWOW64\vulkaninfo.exe
2018-11-09 19:03:11   94DC69FBFA44762461FC440C0DD5827A   447928   ----a-w-   C:\Windows\SysWOW64\OpenCL.dll
2018-11-09 19:01:14   F707BFB168FF51672498B73ABA67F476   11001504   ----a-w-   C:\Windows\SysWOW64\nvcuda.dll
2018-11-09 19:01:14   E1707C52D869A289408AC95CD42E71F4   159704   ----a-w-   C:\Windows\SysWOW64\nvinit.dll
2018-11-09 19:01:14   D44EE061E515F0CC7BF394DC8B8BB9DB   142816   ----a-w-   C:\Windows\SysWOW64\nvoglshim32.dll
2018-11-09 19:01:14   C0D18CEDEB193FF2541E4DBB6844AD64   1066584   ----a-w-   C:\Windows\SysWOW64\NvFBC.dll
2018-11-09 19:01:14   B34589ABEB8FBDBDF9AFB59BB223FDDF   16496768   ----a-w-   C:\Windows\SysWOW64\nvopencl.dll
2018-11-09 19:01:14   B33739B472ECEA600F962FF170C48F22   902096   ----a-w-   C:\Windows\SysWOW64\nvfatbinaryLoader.dll
2018-11-09 19:01:14   A9C359601B866CD623344091035ACDD6   419672   ----a-w-   C:\Windows\SysWOW64\nvumdshim.dll
2018-11-09 19:01:14   752FA728737217470E0053E73056928F   11132384   ----a-w-   C:\Windows\SysWOW64\nvptxJitCompiler.dll
2018-11-09 19:01:14   55EAA81B0BD61C568489FC05088E7E4C   15558928   ----a-w-   C:\Windows\SysWOW64\nvd3dum.dll
2018-11-09 19:01:14   3CD0847AB73EEF36A05F2C9B2377020A   3444152   ----a-w-   C:\Windows\SysWOW64\nvcuvid.dll
2018-11-09 19:01:14   1AFAB993ABFB368BC5D77B6B2652F2DE   19968176   ----a-w-   C:\Windows\SysWOW64\nvwgf2um.dll
2018-11-09 19:01:14   02BCAA85A495BF5DA3982431F91406C7   950120   ----a-w-   C:\Windows\SysWOW64\NvIFR.dll
2018-11-09 19:01:14   01AF2862E075D9D6B860DD65AFAD0ED9   28204984   ----a-w-   C:\Windows\SysWOW64\nvoglv32.dll
2018-11-09 19:01:13   35529F011EBEADA2963F286168C54AFE   3919352   ----a-w-   C:\Windows\SysWOW64\nvapi.dll
2018-11-09 19:01:13   15BBF5FA18AEDB303EBF34777A52E2AF   35188992   ----a-w-   C:\Windows\SysWOW64\nvcompiler.dll
2018-11-09 19:01:13   086279344068D7029717526620409786   669   ----a-w-   C:\Windows\SysWOW64\nv-vk32.json
2018-11-09 18:55:47   54D1179501A47D1610CD621DDDF55853   53248   ----a-w-   C:\Windows\SysWOW64\CSVer.dll
2018-11-09 18:19:22   B8B44F6431C68171BB4B2380D238AC6F   315392   ----a-w-   C:\Windows\SysWOW64\CmiFltr.dll
====== C:\Windows\SysWOW64\drivers =====
2018-11-10 11:12:37   EF558A02D734A1403583E95CCEEC2487   27552   ----a-w-   C:\Windows\SysWOW64\drivers\HWiNFO64A.SYS
====== C:\Windows\Sysnative =====
2018-11-11 17:54:48   5B1C91B53AC3C3026D50DE8C05ABA139   1001272   ----a-w-   C:\Windows\Sysnative\ucrtbase.dll
2018-11-11 17:54:48   365FED0EC2439677A1ABC8632AFD090B   378584   ----a-w-   C:\Windows\Sysnative\aswBoot.exe
2018-11-10 14:29:02   DC5A914C34EB12056531777D4DD0F44E   354072   ----a-w-   C:\Windows\Sysnative\xactengine2_2.dll
2018-11-10 14:29:02   6F9D3289D8B166E478AFFF9EFA92C42C   83664   ----a-w-   C:\Windows\Sysnative\xinput1_1.dll
2018-11-10 14:29:02   0CC809422AB40974DFF8078392E4D507   352464   ----a-w-   C:\Windows\Sysnative\xactengine2_1.dll
2018-11-10 14:29:00   E09A9CF383ACF4A28038561E62277377   3927248   ----a-w-   C:\Windows\Sysnative\d3dx9_30.dll
2018-11-10 14:28:59   F77D5AB654881E683CFF6650916C424E   16592   ----a-w-   C:\Windows\Sysnative\x3daudio1_0.dll
2018-11-10 14:28:59   CE5753F9A27837259EB52F3F47F39593   355536   ----a-w-   C:\Windows\Sysnative\xactengine2_0.dll
2018-11-10 14:28:59   68B35CBDB4A8CC424718BBCC894FEEEA   3830992   ----a-w-   C:\Windows\Sysnative\d3dx9_29.dll
2018-11-10 14:28:58   914C3237E4D145A18DCD1D0D4C8659E1   3807440   ----a-w-   C:\Windows\Sysnative\d3dx9_27.dll
2018-11-10 14:28:58   88BAC8306D4EC79A82B1FFA17DC8CF4A   3815120   ----a-w-   C:\Windows\Sysnative\d3dx9_28.dll
2018-11-10 14:28:58   4C56E7C5B2A61353E534C7D15D05856D   3823312   ----a-w-   C:\Windows\Sysnative\d3dx9_25.dll
2018-11-10 14:28:58   44F5C5E27D6825E4E62420BC29B8B533   3767504   ----a-w-   C:\Windows\Sysnative\d3dx9_26.dll
2018-11-10 14:28:57   B165DF72E13E6AF74D47013504319921   3544272   ----a-w-   C:\Windows\Sysnative\d3dx9_24.dll
2018-11-10 11:39:42   5E132F24076EEE540A0B5B61475B00D0   122928   ----a-w-   C:\Windows\Sysnative\RtNicProp64.dll
2018-11-10 11:39:42   0401E06AE189041D2F4E16E4FCC23215   118896   ----a-w-   C:\Windows\Sysnative\RTNUninst64.dll
2018-11-10 11:38:57   B0413AC1AB3FC05AF80951C8FF526D62   38232   ----a-w-   C:\Windows\Sysnative\nvhdap64.dll
2018-11-10 11:36:24   F5674EEF2D37D723702969E1A65520AE   1337600   ----a-w-   C:\Windows\Sysnative\tossaeapo64.dll
2018-11-10 11:36:24   E712A21D676886E43937EE35FAA69A2F   174904   ----a-w-   C:\Windows\Sysnative\SRSWOW64.dll
2018-11-10 11:36:24   E4D740AAC9922F443C64DB14DF8C188E   230664   ----a-w-   C:\Windows\Sysnative\SRSTSH64.dll
2018-11-10 11:36:24   C9BC9592D258761B184987F6718DBEE7   15218576   ----a-w-   C:\Windows\Sysnative\YamahaAE3.dll
2018-11-10 11:36:24   C2437DF08BD0626D66D7D6E77E63BAEA   75504   ----a-w-   C:\Windows\Sysnative\tepeqapo64.dll
2018-11-10 11:36:24   C1352B36E6CB2D42BB9DD7E65EA8D950   341112   ----a-w-   C:\Windows\Sysnative\SRCOM.dll
2018-11-10 11:36:24   BE27AF8851B9BD853B5D49E24E939529   873424   ----a-w-   C:\Windows\Sysnative\tadefxapo264.dll
2018-11-10 11:36:24   A561036A8C4E99F0C3CD8125ADB750D3   1382200   ----a-w-   C:\Windows\Sysnative\tosade.dll
2018-11-10 11:36:24   9D496B1B3EAE6885A243C8AF1F5EC4E1   852096   ----a-w-   C:\Windows\Sysnative\tosasfapo64.dll
2018-11-10 11:36:24   7B0017AC9628791CAE3E2253C970687C   218232   ----a-w-   C:\Windows\Sysnative\SRSHP64.dll
2018-11-10 11:36:24   766D88E92F92DFE59ABD23D19F3C76A5   266512   ----a-w-   C:\Windows\Sysnative\slprp64.dll
2018-11-10 11:36:24   6DD50E49843ED09C13C63ADCD44CAD48   467120   ----a-w-   C:\Windows\Sysnative\SRAPO64.dll
2018-11-10 11:36:24   6939494829AF51B506BF7C6E4AA711AF   3306784   ----a-w-   C:\Windows\Sysnative\YamahaAE2.dll
2018-11-10 11:36:24   65C35A2F756F18DC682D05E7CDEDF34F   381376   ----a-w-   C:\Windows\Sysnative\SRCOM64.dll
2018-11-10 11:36:24   6426677532CD952B78E3BE2D69813CC5   541080   ----a-w-   C:\Windows\Sysnative\SRSTSX64.dll
2018-11-10 11:36:24   50CCD6E730B2030A371374BAEB4395EF   604760   ----a-w-   C:\Windows\Sysnative\tossaemaxapo64.dll
2018-11-10 11:36:24   2A70D6E70B3055B0D1777B7195C1CD29   158656   ----a-w-   C:\Windows\Sysnative\tadefxapo.dll
2018-11-10 11:36:24   11CAB16FE265B692065B93B7637ACD3F   1435096   ----a-w-   C:\Windows\Sysnative\SRRPTR64.dll
2018-11-10 11:36:24   0B250C48C1314D037D6329FF18464A2E   2197936   ----a-w-   C:\Windows\Sysnative\YamahaAE.dll
2018-11-10 11:36:24   093D538B9B8441A9887B7B9C8EA36ACF   3128776   ----a-w-   C:\Windows\Sysnative\sltech64.dll
2018-11-10 11:36:24   012E54340C3548892C72CB9308F176C8   447136   ----a-w-   C:\Windows\Sysnative\toseaeapo64.dll
2018-11-10 11:36:23   DCF66AD823E676F74EC38027C3D1E205   90880   ----a-w-   C:\Windows\Sysnative\SFCOM64.dll
2018-11-10 11:36:23   C432733B666FED8660779C62A6E0E9A9   964992   ----a-w-   C:\Windows\Sysnative\SFSS_APO.dll
2018-11-10 11:36:23   A739530CAF26D2D82CC38A21E7501259   3215184   ----a-w-   C:\Windows\Sysnative\RtPgEx64.dll
2018-11-10 11:36:23   748F70EF6B5B28FB2F5D63B4334FF291   1209528   ----a-w-   C:\Windows\Sysnative\SEAPO64.dll
2018-11-10 11:36:23   629E7A59D568BA6F44E183A236EDF849   1133560   ----a-w-   C:\Windows\Sysnative\SEHDRA64.dll
2018-11-10 11:36:23   3DEF3CD91610617466B2CBB49AF64994   994648   ----a-w-   C:\Windows\Sysnative\sl3apo64.dll
2018-11-10 11:36:23   3BFF26233B8558F46308F8DAA6F5A7DC   3417976   ----a-w-   C:\Windows\Sysnative\slcnt64.dll
2018-11-10 11:36:23   3362F85CA8EB8561FDA8DCFCB5946F6E   231880   ----a-w-   C:\Windows\Sysnative\SFNHK64.dll
2018-11-10 11:36:23   1627281417CCB457F10FBD19D916F3D0   88280   ----a-w-   C:\Windows\Sysnative\SFAPO64.dll
2018-11-10 11:36:23   10F34011D3382E85504B1E413D4A8466   343672   ----a-w-   C:\Windows\Sysnative\RtlCPAPI64.dll
2018-11-10 11:36:23   0D84725155E9DE135DAB6690C7890038   1346568   ----a-w-   C:\Windows\Sysnative\SECOMN64.dll
2018-11-10 11:36:23   0AD978C124773CC1A6A2435CD6C89390   1268984   ----a-w-   C:\Windows\Sysnative\SEHDHF64.dll
2018-11-10 11:36:22   F85DC88FDF77860805ACC31C6526DED8   116504   ----a-w-   C:\Windows\Sysnative\RTEEL64A.dll
2018-11-10 11:36:22   EBDF2C537D820A392A9566AE16C0D092   392840   ----a-w-   C:\Windows\Sysnative\RTEEP64A.dll
2018-11-10 11:36:22   DABB87807980F2E1A398FDE47064F7E8   3452112   ----a-w-   C:\Windows\Sysnative\RtkApi64.dll
2018-11-10 11:36:22   CE4B563ABEA7F6477C7F6B37B4D8727C   7178432   ----a-w-   C:\Windows\Sysnative\R4EEP64A.dll
2018-11-10 11:36:22   C67BCD5A4FDCF4BAB15F23445D969922   23656   ----a-w-   C:\Windows\Sysnative\RtkCoLDR64.dll
2018-11-10 11:36:22   BF4BBCAA61A151DD846690CF01D1ABA7   90136   ----a-w-   C:\Windows\Sysnative\R4EEG64A.dll
2018-11-10 11:36:22   BCA3E4F444F7803053B1772867D2D3A7   1353280   ----a-w-   C:\Windows\Sysnative\RTCOM64.dll
2018-11-10 11:36:22   ABAB6D56300C93083B7BFF3A1074CBE7   692128   ----a-w-   C:\Windows\Sysnative\RtDataProc64.dll
2018-11-10 11:36:22   A15BC7E646A21F73A41504C1B9D53C7B   93872   ----a-w-   C:\Windows\Sysnative\RTEEG64A.dll
2018-11-10 11:36:22   844F9D9C85671CF25F2108BE01987181   220352   ----a-w-   C:\Windows\Sysnative\RTEED64A.dll
2018-11-10 11:36:22   5E6814679565F86E527158F5FCA4D384   3690856   ----a-w-   C:\Windows\Sysnative\RltkAPO64.dll
2018-11-10 11:36:22   424A4481219910F588415CC8F74340C3   192944   ----a-w-   C:\Windows\Sysnative\RtkCfg64.dll
2018-11-10 11:36:22   2AFE0602729B8B598DD2672AE7124E32   157304   ----a-w-   C:\Windows\Sysnative\R4EEL64A.dll
2018-11-10 11:36:22   1FADA063A4A63DDC969169CA29C224BB   327232   ----a-w-   C:\Windows\Sysnative\RP3DHT64.dll
2018-11-10 11:36:22   1D79DA20CCA699E3C2677CC728A8D68C   327232   ----a-w-   C:\Windows\Sysnative\RP3DAA64.dll
2018-11-10 11:36:22   0D77A76813251FAB31FD4F12FDAEF359   2930624   ----a-w-   C:\Windows\Sysnative\RCoInstII64.dll
2018-11-10 11:36:22   084FD97B3767FCF62E424C6D113A4C57   139720   ----a-w-   C:\Windows\Sysnative\R4EEA64A.dll
2018-11-10 11:36:22   07E3141CEC291512AC871EDCA3C6F0E0   453240   ----a-w-   C:\Windows\Sysnative\R4EED64A.dll
2018-11-10 11:36:21   FF43489CD75B5B7ECAD87E4EC52FF9DA   511600   ----a-w-   C:\Windows\Sysnative\DTSNeoPCDLL64.dll
2018-11-10 11:36:21   FBF9099BAAA6CED890B47C4F71C27FA1   278232   ----a-w-   C:\Windows\Sysnative\DDPA64.dll
2018-11-10 11:36:21   F8EF3D1C673A37205079CBF07324FB78   203800   ----a-w-   C:\Windows\Sysnative\HMHVS.dll
2018-11-10 11:36:21   E8D1FEFF957AC5E496BEE1F0BF2791A3   261200   ----a-w-   C:\Windows\Sysnative\DTSGFXAPO64.dll
2018-11-10 11:36:21   E6BFD5E513A620584698FA6FBE4BA660   190896   ----a-w-   C:\Windows\Sysnative\HMEQ.dll
2018-11-10 11:36:21   E4FFBB458ECDF4C7A778E85D97E4CFFC   1159144   ----a-w-   C:\Windows\Sysnative\DolbyDAX2APOProp.dll
2018-11-10 11:36:21   E171652332A6E8346F3518B59B93A7EB   1164584   ----a-w-   C:\Windows\Sysnative\DolbyAPOvlldpgm.dll
2018-11-10 11:36:21   CDBD73BD8A7CBA74A0FEC905B12BFFA8   1598360   ----a-w-   C:\Windows\Sysnative\DTSS2HeadphoneDLL64.dll
2018-11-10 11:36:21   C201E9E04C4D2FCFD4CF5031FDA13894   2444648   ----a-w-   C:\Windows\Sysnative\DolbyDAX2APOv201.dll
2018-11-10 11:36:21   C0D1D2C4E3A3AA657BD45CDC74FDAD25   1372352   ----a-w-   C:\Windows\Sysnative\DAX3APOv251.dll
2018-11-10 11:36:21   BC58149C3A42A8E04C528E653A56F483   1787912   ----a-w-   C:\Windows\Sysnative\DTSS2SpeakerDLL64.dll
2018-11-10 11:36:21   BBCC21F2D72A3C9F9182CB31EE5AA008   1259696   ----a-w-   C:\Windows\Sysnative\DolbyDAX2APOvlldp.dll
2018-11-10 11:36:21   B9A28048B9F67EDAD5A928F507790B40   378344   ----a-w-   C:\Windows\Sysnative\HiFiDAX2API.dll
2018-11-10 11:36:21   B655B9282114E0580ECDEAC22C4F29E7   406416   ----a-w-   C:\Windows\Sysnative\HiFiDAX2APIPCLL.dll
2018-11-10 11:36:21   B2037E7441667F7356395156EA6E0FF3   1516232   ----a-w-   C:\Windows\Sysnative\DTSBoostDLL64.dll
2018-11-10 11:36:21   A76609AFA0895646608426405F981E16   5346960   ----a-w-   C:\Windows\Sysnative\DolbyDAX2APOv211.dll
2018-11-10 11:36:21   A402C3E5F8525EE89B9A51A413A00003   715608   ----a-w-   C:\Windows\Sysnative\DTSVoiceClarityDLL64.dll
2018-11-10 11:36:21   9A11EE4FE57D4BF5E1CB0320EFF21496   360304   ----a-w-   C:\Windows\Sysnative\HMClariFi.dll
2018-11-10 11:36:21   912D508AA532624D8B7B48CD5020427A   190896   ----a-w-   C:\Windows\Sysnative\HMEQ_Voice.dll
2018-11-10 11:36:21   91062F0D9AC1A25D8A6752153E8DA7B9   6270160   ----a-w-   C:\Windows\Sysnative\DDPP64AF3.dll
2018-11-10 11:36:21   8A6D83B04F89B55B2742C9DCB7E1F7D6   315944   ----a-w-   C:\Windows\Sysnative\DDPA64F3.dll
2018-11-10 11:36:21   84190DC4726B2EC3E0F6C81C4E939DB8   714424   ----a-w-   C:\Windows\Sysnative\ICEsoundAPO64.dll
2018-11-10 11:36:21   7CCB6E27DF771B16997D143ED602DE70   154320   ----a-w-   C:\Windows\Sysnative\HarmanAudioInterface.dll
2018-11-10 11:36:21   7B303D36338E44924B8119A92DFBEBCC   1448736   ----a-w-   C:\Windows\Sysnative\DolbyAPOv251gm.dll
2018-11-10 11:36:21   749AA8F723EE121F85900889073F6BF6   366080   ----a-w-   C:\Windows\Sysnative\HMAPO.dll
2018-11-10 11:36:21   738704BB56D7FA53FB9C7DC822E88BB6   332976   ----a-w-   C:\Windows\Sysnative\DDPO64A.dll
2018-11-10 11:36:21   71C60CC1D9A2006E3F33147846814C4C   179552   ----a-w-   C:\Windows\Sysnative\HMLimiter.dll
2018-11-10 11:36:21   63117E793B5F01EB714E99D0000F2868   416472   ----a-w-   C:\Windows\Sysnative\HMUI.dll
2018-11-10 11:36:21   5EB5414A0145144D07C2EF22B170F7E3   448568   ----a-w-   C:\Windows\Sysnative\DTSGainCompensatorDLL64.dll
2018-11-10 11:36:21   5802A6642AB74288FDFB1AD079690A78   452696   ----a-w-   C:\Windows\Sysnative\DTSLimiterDLL64.dll
2018-11-10 11:36:21   449E7EB86D8CE125BEC31F1C5FBE8306   1971328   ----a-w-   C:\Windows\Sysnative\DDPD64A.dll
2018-11-10 11:36:21   3E38EE85BA22FE4526A6F73C2A074722   751264   ----a-w-   C:\Windows\Sysnative\DTSBassEnhancementDLL64.dll
2018-11-10 11:36:21   3D1FD3D5D4017AA80843AA8479F8D842   1965120   ----a-w-   C:\Windows\Sysnative\DDPD64AF3.dll
2018-11-10 11:36:21   311AEB3024724752BA11D52786E52A57   260176   ----a-w-   C:\Windows\Sysnative\DTSGFXAPONS64.dll
2018-11-10 11:36:21   2D57D08B6096E5BB77924DAF90CBB027   7101704   ----a-w-   C:\Windows\Sysnative\DDPP64A.dll
2018-11-10 11:36:21   1FB76B3782457F699D9944DB562B028E   734736   ----a-w-   C:\Windows\Sysnative\DTSSymmetryDLL64.dll
2018-11-10 11:36:21   117786E6B16303E4C5674C8F4DF2C1DD   1544216   ----a-w-   C:\Windows\Sysnative\DAX3APOProp.dll
2018-11-10 11:36:21   0D0602037F2F2CB8E5AD2B8E873D79C7   367568   ----a-w-   C:\Windows\Sysnative\DDPO64AF3.dll
2018-11-10 11:36:21   093E1A0EEAD55856482F0E7031D3A603   261160   ----a-w-   C:\Windows\Sysnative\DTSLFXAPO64.dll
2018-11-10 11:36:20   5A48A846D076421D098872C5B1C7E067   122280   ----a-w-   C:\Windows\Sysnative\CONEQMSAPOGUILibrary.dll
2018-11-10 11:36:19   7DB661DFB9A2D10B85C2B67BA8E37228   105272   ----a-w-   C:\Windows\Sysnative\audioLibVc.dll
2018-11-10 11:36:19   4058D7BE696A52834FB5FABAE68D3D95   118560   ----a-w-   C:\Windows\Sysnative\AcpiServiceVnA64.dll
2018-11-10 11:36:19   06442DF02909C5E4A51682979A193501   2992144   ----a-w-   C:\Windows\Sysnative\AudysseyEfx.dll
2018-11-10 11:36:13   83896990621B9858E83555CA7EEC7C10   72520672   ----a-w-   C:\Windows\Sysnative\RCoRes64.dat
2018-11-10 11:36:12   681AA049E7A6E12F32338A3F6D97D63C   3677120   ----a-w-   C:\Windows\Sysnative\RTSnMg64.cpl
2018-11-10 11:30:25   51DFBD18A435BAEC1F71A692373ECE4F   9728   ----a-w-   C:\Windows\Sysnative\Wdfres.dll
2018-11-10 11:30:15   8389823E41B9C84DF6FC2AE514A5B03D   1804688   ----a-w-   C:\Windows\Sysnative\WdfCoInstaller01011.dll
2018-11-09 19:29:37   C2009D0B514A33DAE22F174F9CD50AC6   559880   ------w-   C:\Windows\Sysnative\MpSigStub.exe
2018-11-09 19:09:25   C0931D5268C84343A19E158D7F8D4A1B   111616   ----a-w-   C:\Windows\Sysnative\OpenAL32.dll
2018-11-09 19:09:25   7E17D0060DD9270800C469A52F982A3C   419840   ----a-w-   C:\Windows\Sysnative\wrap_oal.dll
2018-11-09 19:09:07   4879B899B7DD732371B34D8179F66615   465408   ------w-   C:\Windows\Sysnative\cmasiopx.dll
2018-11-09 19:09:07   30E9C0F4DE5D3F63397C62D4B9E731A2   53   ------w-   C:\Windows\Sysnative\cmasiopx.ini
2018-11-09 19:09:07   06FB32873596CBB20E1DC83677940FAF   122880   ------w-   C:\Windows\Sysnative\Cm_Oal.dll
2018-11-09 19:09:06   ED31B969F049D2E5F4315653B71277EA   4533760   ------w-   C:\Windows\Sysnative\CmiCnfgp.cpl
2018-11-09 19:08:58   B6BCBD1E2F5D534E3D60028058F2A573   827904   ------w-   C:\Windows\Sysnative\Cmeauoxy.exe
2018-11-09 19:08:38   11BB3D5DC9336037C14A46873FA1FFDF   359424   ------w-   C:\Windows\Sysnative\CmiInstallResAll64.dll
2018-11-09 19:04:36   AD7FA9485059F4DC53C98B49CAB13F0B   511328   ----a-w-   C:\Windows\Sysnative\d3dx10_43.dll
2018-11-09 19:04:36   9D6429F410597750B2DC2579B2347303   276832   ----a-w-   C:\Windows\Sysnative\d3dx11_43.dll
2018-11-09 19:04:36   7160FC226391C0B50C85571FA1A546E5   2401112   ----a-w-   C:\Windows\Sysnative\D3DX9_43.dll
2018-11-09 19:04:24   6B626D80CE314ABE27A3456882E440AB   2480064   ----a-w-   C:\Windows\Sysnative\nvspcap64.dll
2018-11-09 19:04:24   0F837A3B196E46F5F5673BF81F61C400   1310144   ----a-w-   C:\Windows\Sysnative\NvRtmpStreamer64.dll
2018-11-09 19:04:02   5EB76CC2CDD0680B70E3DA0A3B219604   189784   ----a-w-   C:\Windows\Sysnative\nvaudcap64v.dll
2018-11-09 19:03:31   95253BF8F996BEA19BFA974F61277E87   591672   ----a-w-   C:\Windows\Sysnative\vulkaninfo.exe
2018-11-09 19:03:31   5450A69087D2F6955A253CB2BF86503C   928568   ----a-w-   C:\Windows\Sysnative\vulkan-1.dll
2018-11-09 19:03:23   BED94E70C10EFF09AEF94D18CA7FF7F7   8114212   ----a-w-   C:\Windows\Sysnative\nvcoproc.bin
2018-11-09 19:03:23   AB9DD59C848BFC81E7BD195A969111BE   5952392   ----a-w-   C:\Windows\Sysnative\nvcpl.dll
2018-11-09 19:03:23   7D37CDA8F902DEAEC29D00827B171F55   451040   ----a-w-   C:\Windows\Sysnative\nvmctray.dll
2018-11-09 19:03:23   59D5C0A007669C8456AB71C10FAA6246   2596320   ----a-w-   C:\Windows\Sysnative\nvsvc64.dll
2018-11-09 19:03:23   1510F4A12C643239DB9FEF8831C0ECF0   1767824   ----a-w-   C:\Windows\Sysnative\nvsvcr.dll
2018-11-09 19:03:23   0C14A5B11F261CD2837A76A29DF00C09   123840   ----a-w-   C:\Windows\Sysnative\nvshext.dll
2018-11-09 19:03:23   031E8BE2683137CB4DE701C6AB5B2266   633224   ----a-w-   C:\Windows\Sysnative\nv3dappshext.dll
2018-11-09 19:03:23   0064BD842942579979E372C85819E55A   83072   ----a-w-   C:\Windows\Sysnative\nv3dappshextr.dll
2018-11-09 19:03:11   378CC6B109C08F453AF428004F127FC5   542056   ----a-w-   C:\Windows\Sysnative\OpenCL.dll
2018-11-09 19:01:14   FF1FE81B43B7D89CC7F4008EB69AACDB   997792   ----a-w-   C:\Windows\Sysnative\NvIFR64.dll
2018-11-09 19:01:14   F083D20E50E2873CD36B3F8CA3BB093F   1675096   ----a-w-   C:\Windows\Sysnative\nvhdagenco6420103.dll
2018-11-09 19:01:14   EF4A31C35A5437D71CEDBB6063FC6156   3914784   ----a-w-   C:\Windows\Sysnative\nvcuvid.dll
2018-11-09 19:01:14   DDE84D4BDB48A1594B133B40113ACF53   1153752   ----a-w-   C:\Windows\Sysnative\nvfatbinaryLoader.dll
2018-11-09 19:01:14   C96BAB16D4B76FB74A9BB990105D7193   13571520   ----a-w-   C:\Windows\Sysnative\nvptxJitCompiler.dll
2018-11-09 19:01:14   BFB2693C55EC905035A5C60D9A5FC82C   12967056   ----a-w-   C:\Windows\Sysnative\nvcuda.dll
2018-11-09 19:01:14   BC7A3170ABFEC9AE3006408D76EB2C96   35624808   ----a-w-   C:\Windows\Sysnative\nvoglv64.dll
2018-11-09 19:01:14   B96DD3F3F4BFE6CBA160FA57453B2D04   1137056   ----a-w-   C:\Windows\Sysnative\NvFBC64.dll
2018-11-09 19:01:14   B9523C64B43E68B09CD2B463BF4F7E0F   22887280   ----a-w-   C:\Windows\Sysnative\nvwgf2umx.dll
2018-11-09 19:01:14   B7B233B7790C0001785D4A09F1A7A8AE   19854816   ----a-w-   C:\Windows\Sysnative\nvopencl.dll
2018-11-09 19:01:14   B3BEA7996E7BF0D04C6E96E1DA551A69   182784   ----a-w-   C:\Windows\Sysnative\nvinitx.dll
2018-11-09 19:01:14   5E775E10466D24937189E474702442BF   505232   ----a-w-   C:\Windows\Sysnative\nvumdshimx.dll
2018-11-09 19:01:14   3CC0D27924992F61F808CE2214B5BBC3   1683712   ----a-w-   C:\Windows\Sysnative\nvdispgenco6439135.dll
2018-11-09 19:01:14   3A0F328C33256D5DA9BA4FA0DA24CF40   1985112   ----a-w-   C:\Windows\Sysnative\nvdispco6439135.dll
2018-11-09 19:01:14   3773873B61166E5D2B6334A82F4BD0BB   18910896   ----a-w-   C:\Windows\Sysnative\nvd3dumx.dll
2018-11-09 19:01:14   219817045E66914BFE65F22B82EB73CD   165136   ----a-w-   C:\Windows\Sysnative\nvoglshim64.dll
2018-11-09 19:01:14   1BAA5246AF741F83B5130C001BEE9DB0   45511   ----a-w-   C:\Windows\Sysnative\nvinfo.pb
2018-11-09 19:01:13   F0F4DA57937F064881F751786244B7AF   669   ----a-w-   C:\Windows\Sysnative\nv-vk64.json
2018-11-09 19:01:13   B1A7C573DFE51ED188B049BE9D8B250E   4426120   ----a-w-   C:\Windows\Sysnative\nvapi64.dll
2018-11-09 19:01:13   82701CCB77AD4C238770F75E9438510F   40278616   ----a-w-   C:\Windows\Sysnative\nvcompiler.dll
2018-11-09 18:19:22   D0202455E9140E0F8847F50B5F03FF8F   32768   ----a-w-   C:\Windows\Sysnative\cmudaxp.dll
====== C:\Windows\Sysnative\drivers =====
2018-11-11 17:54:53   7AAA1AB2D4D049CF58662CD7BB133B2E   381144   ----a-w-   C:\Windows\Sysnative\drivers\aswVmm.sys
2018-11-11 17:54:53   328A8079F476E99C533452B1135A60EF   467904   ----a-w-   C:\Windows\Sysnative\drivers\aswSP.sys
2018-11-11 17:54:53   203572379396A1695C3AAF6616DAB4A0   208640   ----a-w-   C:\Windows\Sysnative\drivers\aswStm.sys
2018-11-11 17:54:52   F9F3D0C8DC9CB368253FC0AECBFF0D41   111968   ----a-w-   C:\Windows\Sysnative\drivers\aswRdr2.sys
2018-11-11 17:54:52   B08E33A7709D7E9FAAC08A7BEFC008F9   42456   ----a-w-   C:\Windows\Sysnative\drivers\aswKbd.sys
2018-11-11 17:54:52   84C4D8AE023CA9BB60694FA467141247   201408   ----a-w-   C:\Windows\Sysnative\drivers\aswArPot.sys
2018-11-11 17:54:52   7DCC7B90D68D5F63C6F007B0CFBD9415   1028840   ----a-w-   C:\Windows\Sysnative\drivers\aswSnx.sys
2018-11-11 17:54:52   779F8900D4D44A64E3BC2EE2221CFE3A   163376   ----a-w-   C:\Windows\Sysnative\drivers\aswMonFlt.sys
2018-11-11 17:54:52   3787CD4B671844C4D658B3FAAB50181B   88112   ----a-w-   C:\Windows\Sysnative\drivers\aswRvrt.sys
2018-11-11 17:54:52   2A692EE66D52EE66A2AAC989A555C22C   47064   ----a-w-   C:\Windows\Sysnative\drivers\aswHwid.sys
2018-11-11 17:54:51   EF90A390599D9F9D1B90D5B825D46311   201928   ----a-w-   C:\Windows\Sysnative\drivers\aswbidsha.sys
2018-11-11 17:54:51   E77D733E8DDB7B5ED8B0C02B1B2A0FE9   59664   ----a-w-   C:\Windows\Sysnative\drivers\aswbuniva.sys
2018-11-11 17:54:51   6EEF83486C5F2219ABCE09EBBF6EE701   185240   ----a-w-   C:\Windows\Sysnative\drivers\aswHdsKe.sys
2018-11-11 17:54:51   049B6EFDDC6CDDF8BD63D636831FBC8B   230512   ----a-w-   C:\Windows\Sysnative\drivers\aswbidsdrivera.sys
2018-11-10 11:39:42   DEF25E9AEC9ED3802F292FB815E00BD3   1087424   ----a-w-   C:\Windows\Sysnative\drivers\Rt64win7.sys
2018-11-10 11:38:57   658530B9A4DEAB7BC0EC89AA8E130269   218968   ----a-w-   C:\Windows\Sysnative\drivers\nvhda64v.sys
2018-11-10 11:38:08   31A62118FFA56D758D3CA4D00EAEA430   69544   ----a-w-   C:\Windows\Sysnative\drivers\nvvad64v.sys
2018-11-10 11:37:20   DBB6EE3AAEBF0CACB3006CF2905137AF   832   ----a-w-   C:\Windows\Sysnative\drivers\rtkhdasetting.zip
2018-11-10 11:36:25   94EAABB2500E8639FB35B9629EB67D5D   6155720   ----a-w-   C:\Windows\Sysnative\drivers\RTKVHD64.sys
2018-11-10 11:36:14   7D7FBC9504575D97885A858EA93684F5   5804772   ----a-w-   C:\Windows\Sysnative\drivers\rtvienna.dat
2018-11-10 11:36:13   B66E43347EC85843CC985F2FCC7BB9E5   17086581   ----a-w-   C:\Windows\Sysnative\drivers\RTAIODAT.DAT
2018-11-10 11:30:35   D41D8CD98F00B204E9800998ECF8427E   0   ---ha-w-   C:\Windows\Sysnative\drivers\Msft_Kernel_Smb_driver_Intel_01011.Wdf
2018-11-10 11:30:34   D41D8CD98F00B204E9800998ECF8427E   0   ---ha-w-   C:\Windows\Sysnative\drivers\MsftWdf_Kernel_01011_Coinstaller_Critical.Wdf
2018-11-10 11:30:26   933222B19FF3E7EA5F65517EA1F7D57E   3   ----a-w-   C:\Windows\Sysnative\drivers\MsftWdf_Kernel_01011_Inbox_Critical.Wdf
2018-11-10 11:30:25   AEA0A67275CFBA0E463E00C6E9A1DDAE   54376   ----a-w-   C:\Windows\Sysnative\drivers\WdfLdr.sys
2018-11-10 11:30:25   442783E2CB0DA19873B7A63833FF4CB4   785512   ----a-w-   C:\Windows\Sysnative\drivers\Wdf01000.sys
2018-11-10 11:30:12   D4D4DC7B52E9C02274F3C7534BD679F9   51808   ----a-w-   C:\Windows\Sysnative\drivers\Smb_driver_Intel.sys
2018-11-10 11:00:54   D41D8CD98F00B204E9800998ECF8427E   0   ---ha-w-   C:\Windows\Sysnative\drivers\Msft_User_WpdMtpDr_01_09_00.Wdf
2018-11-10 10:07:03   D41D8CD98F00B204E9800998ECF8427E   0   ---ha-w-   C:\Windows\Sysnative\drivers\Msft_User_WpdFs_01_09_00.Wdf
2018-11-09 19:01:16   6F34CDC03E80AB53383527072833A731   58816   ----a-w-   C:\Windows\Sysnative\drivers\nvvhci.sys
2018-11-09 19:01:14   7EB24095EE77767ECC51B2E2660A8488   17371168   ----a-w-   C:\Windows\Sysnative\drivers\nvlddmkm.sys
2018-11-09 18:19:23   A22223EBADA0DA435D82FF97067E9CC5   2734080   ----a-w-   C:\Windows\Sysnative\drivers\cmudaxp.sys
====== C:\Windows\Tasks ======
2018-11-11 17:54:59   50EC24426145561C4F05C47708DD61A6   3910   ----a-w-   C:\Windows\Sysnative\Tasks\Avast Emergency Update
2018-11-11 17:07:50   F969C6B378C2490A5E0C0C7D8D468F47   4572   ----a-w-   C:\Windows\Sysnative\Tasks\Adobe Flash Player PPAPI Notifier
2018-11-10 11:12:39   27CF71541233E6C7D0FEC6530B8C4EE7   2840   ----a-w-   C:\Windows\Sysnative\Tasks\Driver Booster SkipUAC (Tomaszu)
2018-11-10 11:12:39   1BD2F92A30B1CDEFAB7956C781410DCC   3092   ----a-w-   C:\Windows\Sysnative\Tasks\Driver Booster Scheduler
2018-11-09 19:27:15   8C103E4885FA9D7289201C410B76CB23   3136   ----a-w-   C:\Windows\Sysnative\Tasks\klcp_update
2018-11-09 19:19:47   2D0D2691DB145464B39BD608FE25532C   4094   ----a-w-   C:\Windows\Sysnative\Tasks\Opera scheduled Autoupdate 1541791187
2018-11-09 19:04:22   6D942C9E07C810B68033EA5BFEF10C35   3798   ----a-w-   C:\Windows\Sysnative\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2018-11-09 19:04:21   3C0F7172EC3F5F97DA68462DE913397D   3814   ----a-w-   C:\Windows\Sysnative\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2018-11-09 19:04:13   77CA02667385F94C71245A15BB267A31   4146   ----a-w-   C:\Windows\Sysnative\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2018-11-09 19:04:10   C6C4E3CC37EB6FF79B95BE721D6FE7E5   3738   ----a-w-   C:\Windows\Sysnative\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2018-11-09 19:04:09   B6AB76FCF43458D89E045C49FB8E7697   3738   ----a-w-   C:\Windows\Sysnative\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2018-11-09 19:04:09   4D656907EC768BDF92B5706DEE3CB6C4   3730   ----a-w-   C:\Windows\Sysnative\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
====== C:\Windows\Temp ======
======= C:\Program Files =====
2018-11-10 11:37:02   --------   d-----w-   C:\Program Files\Realtek
2018-11-10 11:30:19   --------   d-----w-   C:\Program Files\Synaptics
2018-11-09 20:35:26   --------   d-----w-   C:\Program Files\Hola
2018-11-09 19:08:58   --------   d-----w-   C:\Program Files\ASUS Xonar DG Audio
2018-11-09 18:59:31   --------   d-----w-   C:\Program Files\NVIDIA Corporation
======= C:\PROGRA~2 =====
2018-11-10 11:12:32   --------   d-----w-   C:\PROGRA~2\IObit
2018-11-09 19:09:25   --------   d-----w-   C:\PROGRA~2\OpenAL
2018-11-09 19:03:30   --------   d-----w-   C:\PROGRA~2\VulkanRT
2018-11-09 19:03:02   --------   d-----w-   C:\PROGRA~2\NVIDIA Corporation
2018-11-09 18:55:47   --------   d-----w-   C:\PROGRA~2\Intel
======= C: =====
2018-11-09 18:51:49   F1160C8A191401F7155ADDF5EA44C24E   171136   --sha-r-   C:\W7LDR
2018-11-09 18:43:25   119EAF1BAD5755D06B0DCD7063BFC72A   8192   --sha-r-   C:\BOOTSECT.BAK
2018-11-09 18:43:24   D6AE2D5521DD93AEBC90D411D099FA36   383562   --sha-r-   C:\bootmgr
====== C:\Users\Tomaszu\AppData\Roaming ======
2018-11-16 12:37:20   --------   d-----w-   C:\Users\Tomaszu\AppData\Roaming\Mozilla
2018-11-16 12:37:11   --------   d-----w-   C:\Users\Tomaszu\AppData\Roaming\GG
2018-11-16 12:36:50   --------   d-----w-   C:\Users\Tomaszu\AppData\Local\GG
2018-11-16 11:48:31   --------   d-----w-   C:\Users\Tomaszu\AppData\Roaming\foobar2000
2018-11-13 15:49:31   --------   d-----w-   C:\Users\Tomaszu\AppData\Local\FluxSoftware
2018-11-12 10:46:54   93D9415C2E4F22ED46372493D91EA0ED   20   ----a-w-   C:\Users\Tomaszu\AppData\Roaming\dsp_LoudMax.ini
2018-11-11 19:35:21   --------   d-----w-   C:\Users\Tomaszu\AppData\Local\NVIDIA
2018-11-11 19:35:16   --------   d-----w-   C:\Users\Tomaszu\AppData\Locallow\Google
2018-11-11 17:56:32   --------   d-----w-   C:\Users\Tomaszu\AppData\Local\CEF
2018-11-11 17:07:18   --------   d-----w-   C:\Users\Tomaszu\AppData\Local\Adobe
2018-11-11 11:34:02   --------   d-----w-   C:\Users\Tomaszu\AppData\Roaming\WinRAR
2018-11-10 16:12:26   --------   d-----w-   C:\Users\Tomaszu\AppData\Local\CrashDumps
2018-11-10 11:42:32   3099CE2C54819DF55D9B6E7C6FF7A19C   139496   ----a-w-   C:\Windows\serviceprofiles\Localservice\AppData\Local\FontCache3.0.0.0.dat
2018-11-10 11:42:11   --------   d-----w-   C:\Users\Tomaszu\AppData\Local\Everything
2018-11-10 11:21:11   --------   d-----w-   C:\Users\Tomaszu\AppData\Roaming\NetMeter
2018-11-10 11:13:39   --------   d-----w-   C:\Users\Tomaszu\AppData\Roaming\DataWorks
2018-11-10 11:12:42   --------   d-----w-   C:\Users\Tomaszu\AppData\Locallow\IObit
2018-11-10 11:12:12   --------   d-----w-   C:\Users\Tomaszu\AppData\Roaming\IObit
2018-11-10 06:01:48   --------   d-----w-   C:\Users\Tomaszu\AppData\Roaming\MPC-HC
2018-11-09 19:50:12   --------   d-----w-   C:\Users\Tomaszu\AppData\Roaming\Everything
2018-11-09 19:50:11   --------   d-----w-   C:\Users\Tomaszu\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Everything
2018-11-09 19:48:08   --------   d-----w-   C:\Users\Tomaszu\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games
2018-11-09 19:19:49   --------   d-----w-   C:\Users\Tomaszu\AppData\Local\Opera Software
2018-11-09 19:19:03   --------   d-----w-   C:\Users\Tomaszu\AppData\Roaming\Opera Software
2018-11-09 19:19:03   --------   d-----w-   C:\Users\Tomaszu\AppData\Local\Programs
2018-11-09 19:09:27   E7D77B8A756D6EC043C4B9F8873D2F3E   58024   ----a-w-   C:\Users\Tomaszu\AppData\Local\GDIPFONTCACHEV1.DAT
2018-11-09 19:09:26   --------   d-----w-   C:\Users\Tomaszu\AppData\Roaming\ASUS
2018-11-09 19:08:15   --------   d-----w-   C:\Users\Tomaszu\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2018-11-09 19:06:05   --------   d-----w-   C:\Users\Tomaszu\AppData\Local\NVIDIA Corporation
2018-11-09 18:54:18   --------   d-s---w-   C:\Users\Tomaszu\AppData\Locallow\Microsoft
2018-11-09 18:52:21   --------   d-----w-   C:\Windows\serviceprofiles\Localservice\AppData\Local\PnrpSqm
2018-11-09 18:52:18   --------   d-----r-   C:\Users\Tomaszu\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
2018-11-09 18:52:18   --------   d-----r-   C:\Users\Tomaszu\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
2018-11-09 18:52:10   --------   d-----w-   C:\Users\Tomaszu\AppData\Roaming\Identities
2018-11-09 18:52:07   --------   d-----w-   C:\Users\Tomaszu\AppData\Local\VirtualStore
2018-11-09 18:52:00   --------   d-s---w-   C:\Users\Tomaszu\AppData\Roaming\Microsoft
2018-11-09 18:52:00   --------   d-----w-   C:\Users\Tomaszu\AppData\Roaming\Media Center Programs
2018-11-09 18:52:00   --------   d-----w-   C:\Users\Tomaszu\AppData\Local\Temp
2018-11-09 18:52:00   --------   d-----w-   C:\Users\Tomaszu\AppData\Local\Microsoft
2018-11-09 18:52:00   --------   d-----r-   C:\Users\Tomaszu\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2018-11-09 18:52:00   --------   d-----r-   C:\Users\Tomaszu\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2018-11-09 18:51:12   --------   d-----w-   C:\Windows\serviceprofiles\Localservice\AppData\Roaming\PeerNetworking
====== C:\Users\Tomaszu ======
2018-11-16 20:40:39   AF5E3CB5EBA818D645E1583B473EE392   387930   ----a-w-   C:\Users\Tomaszu\Desktop\1918_CLEO4_setup.exe
2018-11-16 12:34:28   6589EABA3FD32E5C493A18440F4908CA   400744   ----a-w-   C:\Users\Tomaszu\Desktop\gg-install.exe
2018-11-12 16:18:02   --------   d-----w-   C:\ProgramData\Microsoft\Windows\Start Menu\Programs\San Andreas Multiplayer
2018-11-12 16:16:37   48BC151197B81F61D8766A9F45D24894   16290668   ----a-w-   C:\Users\Tomaszu\Desktop\sa-mp-0.3.7-R2-install.exe
2018-11-12 15:59:36   9A7ADBAE0D95D0D1FEB9904F3BCEDABB   18071560   ----a-w-   C:\Users\Tomaszu\Desktop\ccsetup549.exe
2018-11-11 19:35:01   --------   d-----w-   C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Earth Pro
2018-11-11 19:34:03   C4E25E2DA3019D81032E4DEA15291CDD   81014793   ----a-w-   C:\Users\Tomaszu\Downloads\Google Earth Pro 7.3.1.4507.exe
2018-11-11 17:52:51   D7F2C4E5FDD84688DAE7AD5CF6F84AB0   178320   ----a-w-   C:\Users\Tomaszu\Desktop\avast_free_antivirus_setup_online (1).exe
2018-11-11 14:57:42   6913E2D579EB012A9CF6EB1E156290A0   894691   ----a-w-   C:\Users\Tomaszu\Desktop\CLEO4_setup.exe
2018-11-10 19:04:30   C2E370D3EC88484E8BB9F64B875D2928   178320   ----a-w-   C:\Users\Tomaszu\Desktop\avast_free_antivirus_setup_online.exe
2018-11-10 17:37:29   --------   d-----w-   C:\ProgramData\PopCap Games
2018-11-10 14:29:10   --------   d-----w-   C:\ProgramData\TmForever
2018-11-10 14:28:41   --------   d-----w-   C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TmNationsForever
2018-11-10 13:34:39   2A36D70989F94BA9369993749FF20640   530600781   ----a-w-   C:\Users\Tomaszu\Desktop\tmnationsforever_setup.exe
2018-11-10 11:37:16   D41D8CD98F00B204E9800998ECF8427E   0   ---ha-w-   C:\ProgramData\DP45977C.lfl
2018-11-10 11:37:08   --------   d-----w-   C:\ProgramData\Audyssey Labs
2018-11-10 11:13:39   --------   d-----w-   C:\ProgramData\ProductData
2018-11-10 11:12:36   --------   d-----w-   C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Driver Booster 6
2018-11-10 11:12:17   --------   d-----w-   C:\ProgramData\IObit
2018-11-10 11:11:42   8A38440A5631DF73500DB64A8EF6DB54   20661800   ----a-w-   C:\Users\Tomaszu\Desktop\driver_booster_setup.exe
2018-11-09 20:31:59   E276A4732128A59268054ACD09BD2CDD   536264   ----a-w-   C:\Users\Tomaszu\Desktop\Hola-Setup.exe
2018-11-09 19:35:30   A4E9802632D9441ED55B0292153B98F9   1478240   ----a-w-   C:\Users\Tomaszu\Desktop\Everything-1.4.1.895.x64-Setup.exe
2018-11-09 19:27:08   --------   d-----w-   C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack
2018-11-09 19:24:38   2A36B32A781D8B5951C5B6F9C3680164   46345213   ----a-w-   C:\Users\Tomaszu\Desktop\K-Lite_Codec_Pack_1455_Full.exe
2018-11-09 19:09:07   --------   d-----w-   C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ASUS Xonar DG Audio
2018-11-09 19:08:15   --------   d-----w-   C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2018-11-09 19:04:21   --------   d-----w-   C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
2018-11-09 19:03:14   --------   d-----w-   C:\ProgramData\NVIDIA
2018-11-09 19:01:46   --------   d-----w-   C:\ProgramData\Package Cache
2018-11-09 19:00:48   --------   d-----w-   C:\ProgramData\NVIDIA Corporation
2018-11-09 18:52:18   --------   d-----r-   C:\Users\Tomaszu\Searches
2018-11-09 18:52:09   --------   d-----r-   C:\Users\Tomaszu\Contacts
2018-11-09 18:52:00   6FC234AD3752E1267B34FB12BCD6718B   20   --sh--w-   C:\Users\Tomaszu\ntuser.ini
2018-11-09 18:52:00   --------   d--h--w-   C:\Users\Tomaszu\AppData
2018-11-09 18:52:00   --------   d-----r-   C:\Users\Tomaszu\Videos
2018-11-09 18:52:00   --------   d-----r-   C:\Users\Tomaszu\Saved Games
2018-11-09 18:52:00   --------   d-----r-   C:\Users\Tomaszu\Pictures
2018-11-09 18:52:00   --------   d-----r-   C:\Users\Tomaszu\Music
2018-11-09 18:52:00   --------   d-----r-   C:\Users\Tomaszu\Links
2018-11-09 18:52:00   --------   d-----r-   C:\Users\Tomaszu\Favorites
2018-11-09 18:52:00   --------   d-----r-   C:\Users\Tomaszu\Downloads
2018-11-09 18:52:00   --------   d-----r-   C:\Users\Tomaszu\Documents
2018-11-09 18:52:00   --------   d-----r-   C:\Users\Tomaszu\Desktop

====== C: exe-files ==
2018-11-16 20:40:39   AF5E3CB5EBA818D645E1583B473EE392   387930   ----a-w-   C:\Users\Tomaszu\Desktop\1918_CLEO4_setup.exe
2018-11-16 12:37:03   38A0B72A5BB681A2CB1024861AC8D851   135547   ----a-w-   C:\Users\Tomaszu\AppData\Local\GG\Application\uninstall.exe
2018-11-16 12:34:28   6589EABA3FD32E5C493A18440F4908CA   400744   ----a-w-   C:\Users\Tomaszu\Desktop\gg-install.exe
2018-11-13 15:49:31   95CDBA4539254FEB15BF132C47CA0BB4   57313   ----a-w-   C:\Users\Tomaszu\AppData\Local\FluxSoftware\Flux\uninstall.exe
2018-11-12 16:16:37   48BC151197B81F61D8766A9F45D24894   16290668   ----a-w-   C:\Users\Tomaszu\Desktop\sa-mp-0.3.7-R2-install.exe
2018-11-12 15:59:36   9A7ADBAE0D95D0D1FEB9904F3BCEDABB   18071560   ----a-w-   C:\Users\Tomaszu\Desktop\ccsetup549.exe
2018-11-11 19:34:03   C4E25E2DA3019D81032E4DEA15291CDD   81014793   ----a-w-   C:\Users\Tomaszu\Downloads\Google Earth Pro 7.3.1.4507.exe
2018-11-11 17:54:48   365FED0EC2439677A1ABC8632AFD090B   378584   ----a-w-   C:\Windows\System32\aswBoot.exe
2018-11-11 17:52:51   D7F2C4E5FDD84688DAE7AD5CF6F84AB0   178320   ----a-w-   C:\Users\Tomaszu\Desktop\avast_free_antivirus_setup_online (1).exe
2018-11-11 17:07:50   095F482E5CB81F12ABE7011BA32E14AE   842240   ----a-w-   C:\Windows\SysWOW64\FlashPlayerApp.exe
2018-11-11 14:58:28   B4C984482D24240A7FAA49FCAC35BFC7   1202477   ----a-w-   C:\Windows\unins000.exe
2018-11-11 14:57:42   6913E2D579EB012A9CF6EB1E156290A0   894691   ----a-w-   C:\Users\Tomaszu\Desktop\CLEO4_setup.exe
2018-11-10 19:04:30   C2E370D3EC88484E8BB9F64B875D2928   178320   ----a-w-   C:\Users\Tomaszu\Desktop\avast_free_antivirus_setup_online.exe
2018-11-10 13:34:39   2A36D70989F94BA9369993749FF20640   530600781   ----a-w-   C:\Users\Tomaszu\Desktop\tmnationsforever_setup.exe
2018-11-10 11:36:19   C8740795CDD585F44A5947FE02222D1D   2443088   ----a-w-   C:\Program Files\Realtek\Audio\HDA\RtlUpd64.exe
2018-11-10 11:36:19   943DF7CC8C5CC61DCCCCC7CD557D8763   9270208   ----a-w-   C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
2018-11-10 11:36:19   378B3819E27B660D98663511BDDA2401   324544   ----a-w-   C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
2018-11-10 11:36:19   332816BB7FBEA8E87016CA265B0B8887   571488   ----a-w-   C:\Program Files\Realtek\Audio\HDA\vncutil64.exe
2018-11-10 11:36:18   E581B953D73CDB8CB6B04761E4858B7F   18388928   ----a-w-   C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
2018-11-10 11:36:18   AB04A7B941723C7F52D576B20FFADDCC   75480   ----a-w-   C:\Program Files\Realtek\Audio\HDA\CreateRtkToastLnk.exe
2018-11-10 11:36:18   7D921BDEAEBFA113007EB7EEBC4089E1   1505728   ----a-w-   C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
2018-11-10 11:36:18   48FC4C429AE825FE02C5449B58B7C075   226064   ----a-w-   C:\Program Files\Realtek\Audio\HDA\DTSAudioService64.exe
2018-11-10 11:36:18   06ACA18280CF6675D262579A23AEC602   3954624   ----a-w-   C:\Program Files\Realtek\Audio\HDA\EP64.exe
2018-11-10 11:13:52   86436B826824D4587C8EE02D967A9338   1694480   ----a-w-   C:\Program Files (x86)\IObit\Driver Booster\6.0.2\Pub\PubMonitor.exe
2018-11-10 11:13:52   248A1B8E35157E0756B57CF414D8BC45   2194192   ----a-w-   C:\Program Files (x86)\IObit\Driver Booster\6.0.2\Pub\PubMonitorBox.exe
2018-11-10 11:13:52   0EF1D78F6BE970FC8EC4D5E78A294A8A   1539856   ----a-w-   C:\Program Files (x86)\IObit\Driver Booster\6.0.2\Pub\IotUpdater.exe
2018-11-10 11:12:36   E719CF532D99CFAD3FB17114B15EFFAE   747280   ----a-w-   C:\Program Files (x86)\IObit\Driver Booster\6.0.2\ScreenShot.exe
2018-11-10 11:12:36   D4DECA1C09309BAF2B50FAD99E116BCF   2635536   ----a-w-   C:\Program Files (x86)\IObit\Driver Booster\6.0.2\IObitDownloader.exe
2018-11-10 11:12:36   93E061A10EDFE385163A1276BBD6DAAA   561936   ----a-w-   C:\Program Files (x86)\IObit\Driver Booster\6.0.2\PPuninst.exe
2018-11-10 11:12:36   6D554EEC9ECB403A903127E2F42D8595   690960   ----a-w-   C:\Program Files (x86)\IObit\Driver Booster\6.0.2\MlwScan.exe
2018-11-10 11:12:35   7F9BEA6C1519280450C77C9CB74F0450   584976   ----a-w-   C:\Program Files (x86)\IObit\Driver Booster\6.0.2\TaskbarPin\ICONPIN64.exe
2018-11-10 11:12:34   F7F18A6EA9B8A0C3D917C4FE348023A2   928032   ----a-w-   C:\Program Files (x86)\IObit\Driver Booster\6.0.2\DpInst\x86\dpinst.exe
2018-11-10 11:12:34   B01067C4F7E6ED8EE96689D59A79358D   171280   ----a-w-   C:\Program Files (x86)\IObit\Driver Booster\6.0.2\HWiNFO\HWiNFO.exe
2018-11-10 11:12:34   A3DDC5ECD46804A9A180520525D52212   1053472   ----a-w-   C:\Program Files (x86)\IObit\Driver Booster\6.0.2\DpInst\x64\dpinst.exe
2018-11-10 11:12:34   455AAF0520EAF3CC0D8C33DB22D0A2C6   381712   ----a-w-   C:\Program Files (x86)\IObit\Driver Booster\6.0.2\TaskbarPin\ICONPIN32.exe
2018-11-10 11:12:33   FDC1572C1F72DE19B3ED2CA2EEE330DC   215312   ----a-w-   C:\Program Files (x86)\IObit\Driver Booster\6.0.2\ChangeIcon.exe
2018-11-10 11:12:33   F4F7294D0D501598FD0D3141DFE28C46   602384   ----a-w-   C:\Program Files (x86)\IObit\Driver Booster\6.0.2\DrvInstall\DpInstX32.exe
2018-11-10 11:12:33   EA54D7F1B69032462376D57DC1750F97   101648   ----a-w-   C:\Program Files (x86)\IObit\Driver Booster\6.0.2\ScanDisp.exe
2018-11-10 11:12:33   DB6F1172A832110DBCDCB17A0E4DB87B   2412304   ----a-w-   C:\Program Files (x86)\IObit\Driver Booster\6.0.2\FaultFixes.exe
2018-11-10 11:12:33   D3A9C2AFFBBEF0CF4DFB4A519B67B5F0   1741072   ----a-w-   C:\Program Files (x86)\IObit\Driver Booster\6.0.2\CareScan.exe
2018-11-10 11:12:33   D12517634B200E0AA101BB98AE7E69E5   1375504   ----a-w-   C:\Program Files (x86)\IObit\Driver Booster\6.0.2\DriverUpdate.exe
2018-11-10 11:12:33   CD86D33C36AC0EFEA68458474DDFEBAC   1677584   ----a-w-   C:\Program Files (x86)\IObit\Driver Booster\6.0.2\DBDownloader.exe
2018-11-10 11:12:33   C6CB7E5B988FBF74A4817618BD94EDA8   2927376   ----a-w-   C:\Program Files (x86)\IObit\Driver Booster\6.0.2\SetupHlp.exe
2018-11-10 11:12:33   B72280B69B413E5B8CCA401CCC77512F   910096   ----a-w-   C:\Program Files (x86)\IObit\Driver Booster\6.0.2\DrvInstall\DpInstX64.exe
2018-11-10 11:12:33   B073F8FAC5580D766D02BE3B352C11A2   1788688   ----a-w-   C:\Program Files (x86)\IObit\Driver Booster\6.0.2\Bugreport.exe
2018-11-10 11:12:33   8965EADE68C1465975D2C494A57BAF87   2686736   ----a-w-   C:\Program Files (x86)\IObit\Driver Booster\6.0.2\AutoUpdate.exe
2018-11-10 11:12:33   82B7E911CFD44C247503DBD44121E19C   149776   ----a-w-   C:\Program Files (x86)\IObit\Driver Booster\6.0.2\Scheduler.exe
2018-11-10 11:12:33   53DF0C7E578AF609BC7EF8593A4DA487   2299152   ----a-w-   C:\Program Files (x86)\IObit\Driver Booster\6.0.2\AutoNts.exe
2018-11-10 11:12:33   47735E7C62D6BF2A58E00519037BC380   1121552   ----a-w-   C:\Program Files (x86)\IObit\Driver Booster\6.0.2\Backup.exe
2018-11-10 11:12:33   476C923161756B0F1498F7B9A5BA237C   161552   ----a-w-   C:\Program Files (x86)\IObit\Driver Booster\6.0.2\AUpdate.exe
2018-11-10 11:12:33   431DFA477B8508AFEDFEC07BFCBE2F96   100112   ----a-w-   C:\Program Files (x86)\IObit\Driver Booster\6.0.2\ScanWinUpd.exe
2018-11-10 11:12:33   3503F309CCADB1D84C831BB2D6DF0573   1396496   ----a-w-   C:\Program Files (x86)\IObit\Driver Booster\6.0.2\InstStat.exe
2018-11-10 11:12:33   33274CF58F49DE70DEC386251BF8F487   1986832   ----a-w-   C:\Program Files (x86)\IObit\Driver Booster\6.0.2\Boost.exe
2018-11-10 11:12:33   11364FF084BA3CD6EF916BE031A711C9   90896   ----a-w-   C:\Program Files (x86)\IObit\Driver Booster\6.0.2\RttHlp.exe
2018-11-10 11:12:33   0CB100E4AF9B2D00071DF211A5FEB919   863504   ----a-w-   C:\Program Files (x86)\IObit\Driver Booster\DriverBooster.exe
2018-11-10 11:12:33   0BDEC5AB8D5D7482F780C05A473669CF   133904   ----a-w-   C:\Program Files (x86)\IObit\Driver Booster\6.0.2\NoteIcon.exe
2018-11-10 11:12:32   645A723945F3A30F0EF1AF6FF266670D   1213216   ----a-w-   C:\Program Files (x86)\IObit\Driver Booster\6.0.2\unins000.exe
2018-11-10 11:12:32   3A9AE522891400F4F343E80200392FBE   7140112   ----a-w-   C:\Program Files (x86)\IObit\Driver Booster\6.0.2\DriverBooster.exe
2018-11-10 11:11:42   8A38440A5631DF73500DB64A8EF6DB54   20661800   ----a-w-   C:\Users\Tomaszu\Desktop\driver_booster_setup.exe
=== C: other files ==
2018-11-16 20:37:01   F400BC346537B538BE10B56764D71D16   108900   ----a-w-   C:\Users\Tomaszu\Downloads\bass.dll.zip
2018-11-16 20:34:04   12340DCFBDC7D95CAF37EE8BE702EB86   89903   ----a-w-   C:\Users\Tomaszu\Downloads\bass.zip
2018-11-11 20:54:44   FC8A891F9D21147F180698FA07ACB487   5609712   ----a-w-   C:\ProgramData\TmForever\Cache\87B4AC07FA9806187F14219D1F898AFC_Skins%5cVehicles%5cStadiumCar%5cblinlotusnouveau.zip
2018-11-11 20:54:27   C4063349A1897EC5CC75C895321CCB3E   95706   ----a-w-   C:\ProgramData\TmForever\Cache\3ECB1C3295C875CCC57E89A1493306C4_Skins%5cany%5cadvertisement%5cTMX%5cBD-Loop_L.zip
2018-11-11 20:54:27   B7C93B93CD9ED23BBFC253A6A987F053   97145   ----a-w-   C:\ProgramData\TmForever\Cache\53F087A9A653C2BF3BD29ECD933BC9B7_Skins%5cany%5cadvertisement%5cTMX%5cBD-Right-22.zip
2018-11-11 20:54:27   3C8994B9034835C10DBD9CEC5993A1DB   96170   ----a-w-   C:\ProgramData\TmForever\Cache\DBA19359EC9CBD0DC1354803B994893C_Skins%5cany%5cadvertisement%5cTMX%5cBD-Right-45.zip
2018-11-11 19:32:05   B8B55104F0964F690529C85E31F16B0B   80995761   ----a-w-   C:\Users\Tomaszu\Downloads\Google Earth Pro 7.3.1.4507  zarejestrowany.zip
2018-11-11 17:54:53   7AAA1AB2D4D049CF58662CD7BB133B2E   381144   ----a-w-   C:\Windows\System32\drivers\aswVmm.sys
2018-11-11 17:54:53   328A8079F476E99C533452B1135A60EF   467904   ----a-w-   C:\Windows\System32\drivers\aswSP.sys
2018-11-11 17:54:53   203572379396A1695C3AAF6616DAB4A0   208640   ----a-w-   C:\Windows\System32\drivers\aswStm.sys
2018-11-11 17:54:52   F9F3D0C8DC9CB368253FC0AECBFF0D41   111968   ----a-w-   C:\Windows\System32\drivers\aswRdr2.sys
2018-11-11 17:54:52   B08E33A7709D7E9FAAC08A7BEFC008F9   42456   ----a-w-   C:\Windows\System32\drivers\aswKbd.sys
2018-11-11 17:54:52   84C4D8AE023CA9BB60694FA467141247   201408   ----a-w-   C:\Windows\System32\drivers\aswArPot.sys
2018-11-11 17:54:52   7DCC7B90D68D5F63C6F007B0CFBD9415   1028840   ----a-w-   C:\Windows\System32\drivers\aswSnx.sys
2018-11-11 17:54:52   779F8900D4D44A64E3BC2EE2221CFE3A   163376   ----a-w-   C:\Windows\System32\drivers\aswMonFlt.sys
2018-11-11 17:54:52   3787CD4B671844C4D658B3FAAB50181B   88112   ----a-w-   C:\Windows\System32\drivers\aswRvrt.sys
2018-11-11 17:54:52   2A692EE66D52EE66A2AAC989A555C22C   47064   ----a-w-   C:\Windows\System32\drivers\aswHwid.sys
2018-11-11 17:54:51   EF90A390599D9F9D1B90D5B825D46311   201928   ----a-w-   C:\Windows\System32\drivers\aswbidsha.sys
2018-11-11 17:54:51   E77D733E8DDB7B5ED8B0C02B1B2A0FE9   59664   ----a-w-   C:\Windows\System32\drivers\aswbuniva.sys
2018-11-11 17:54:51   6EEF83486C5F2219ABCE09EBBF6EE701   185240   ----a-w-   C:\Windows\System32\drivers\aswHdsKe.sys
2018-11-11 17:54:51   049B6EFDDC6CDDF8BD63D636831FBC8B   230512   ----a-w-   C:\Windows\System32\drivers\aswbidsdrivera.sys
2018-11-11 13:43:04   DA1E6B4924E33FC2DEC603C35AE82CE7   686438   ----a-w-   C:\ProgramData\TmForever\Cache\E72CE85AC303C6DEC23FE324496B1EDA_37.187.140.109%5cthundermusic%5cletsrock.zip
2018-11-11 13:38:41   58CCE8F3BC0E7EC836E164E6203E6DD8   14463   ----a-w-   C:\ProgramData\TmForever\Cache\D86D3E20E664E136C87E0EBCF3E8CC58_tags%5cgargamel159.tags.zip
2018-11-11 13:38:39   59A327B0A52B9AC175D51ED879FC5D00   77147   ----a-w-   C:\ProgramData\TmForever\Cache\005DFC79D81ED575C19A2BA5B027A359_Skins%5cVehicles%5cStadiumCar%5cKeiner.zip
2018-11-11 13:38:36   629AE7E9FCF7325EC21BDB04D985C574   10733   ----a-w-   C:\ProgramData\TmForever\Cache\74C585D904DB1BC25E32F7FCE9E79A62_tags%5cspeeddevil075.tags.zip
2018-11-11 13:38:34   668258219477CFF505BC303B1FC73DAB   21379   ----a-w-   C:\ProgramData\TmForever\Cache\AB3DC71F3B30BC05F5CF779421588266_tags%5cr4v3r.tags.zip
2018-11-11 13:38:04   55D72EE3110F6D84408016C6961136A1   1458060   ----a-w-   C:\ProgramData\TmForever\Cache\A1361196C6168040846D0F11E32ED755_panel.fast-servers.pl%5cftp_xxdsimi%5clrthird.zip
2018-11-11 13:38:03   0B811C7293720D9ED3926F2576F2A8AC   17799   ----a-w-   C:\ProgramData\TmForever\Cache\ACA8F276256F92D39E0D7293721C810B_Skins%5cAny%5cAdvertisement%5cSign_finish.zip
2018-11-10 14:35:10   C9158670E2AE7BFEF8BEB56BFB1D1EC7   1464789   ----a-w-   C:\ProgramData\TmForever\Cache\C71E1DFB6BB5BEF8FE7BAEE2708615C9_Skins%5cStadium%5cMod%5cformel1.zip
2018-11-10 14:35:08   713329E1EA29205B491761B2A54097DD   121104   ----a-w-   C:\ProgramData\TmForever\Cache\DD9740A5B26117495B2029EAE1293371_Skins%5cany%5cadvertisement%5cTMX%5cSD-TMX_Island.zip
2018-11-10 14:35:07   F6B28208CB21AF51991ABF96DE8A06EC   133092   ----a-w-   C:\ProgramData\TmForever\Cache\EC068ADE96BF1A9951AF21CB0882B2F6_Skins%5cany%5cadvertisement%5cTMX%5cSD-TMX_Snow.zip
2018-11-10 14:35:07   EAD62FEBA9E7284528346D33CA3E40EE   95636   ----a-w-   C:\ProgramData\TmForever\Cache\EE403ECA336D34284528E7A9EB2FD6EA_Skins%5cany%5cadvertisement%5cTMX%5cSD-TMX_Original.zip
2018-11-10 14:35:07   C6ED3E2DAA8CBF8F5BBFE94012975C8E   129836   ----a-w-   C:\ProgramData\TmForever\Cache\8E5C971240E9BF5B8FBF8CAA2D3EEDC6_Skins%5cany%5cadvertisement%5cTMX%5cSD-TMX_Coast.zip
2018-11-10 14:35:07   A273007733826BA3914859ABBD7C40D8   87041   ----a-w-   C:\ProgramData\TmForever\Cache\D8407CBDAB594891A36B8233770073A2_Skins%5cany%5cadvertisement%5cTMX%5cSD-TMX_Simple.zip
2018-11-10 14:35:07   9B4FCA095F3FBE545934E2256C1CE3BC   126725   ----a-w-   C:\ProgramData\TmForever\Cache\BCE31C6C25E2345954BE3F5F09CA4F9B_Skins%5cany%5cadvertisement%5cTMX%5cSD-TMX_Bay.zip
2018-11-10 14:35:07   39C968A0BC02C6B139EB484086235C15   86354   ----a-w-   C:\ProgramData\TmForever\Cache\155C23864048EB39B1C602BCA068C939_Skins%5cany%5cadvertisement%5cTMX%5cSD-TMX_Sunrise.zip
2018-11-10 14:35:06   E6DA8E7F62B2DFF4B5B707F35DC2347B   100697   ----a-w-   C:\ProgramData\TmForever\Cache\7B34C25DF307B7B5F4DFB2627F8EDAE6_Skins%5cany%5cadvertisement%5cTMX%5cRD-Down_Double_L.zip
2018-11-10 14:35:06   A729C69D666607786F408270FBE7024A   112663   ----a-w-   C:\ProgramData\TmForever\Cache\4A02E7FB7082406F780766669DC629A7_Skins%5cany%5cadvertisement%5cTMX%5cSD-TMX_Alu.zip
2018-11-10 14:35:06   A67DBD7491C5AE658DBADD385EF9B833   118960   ----a-w-   C:\ProgramData\TmForever\Cache\33B8F95E38DDBA8D65AEC59174BD7DA6_Skins%5cany%5cadvertisement%5cTMX%5cSD-TMU_4.zip
2018-11-10 14:35:06   8A66DB4FFC3EA2A9D352BF79C9B13528   115740   ----a-w-   C:\ProgramData\TmForever\Cache\2835B1C979BF52D3A9A23EFC4FDB668A_Skins%5cany%5cadvertisement%5cTMX%5cSD-TMX_Steel.zip
2018-11-10 14:35:06   7AD2C2EC497AA40D1391AB9F1E7FE00E   110367   ----a-w-   C:\ProgramData\TmForever\Cache\0EE07F1E9FAB91130DA47A49ECC2D27A_Skins%5cany%5cadvertisement%5cTMX%5cSD-TMX_Rally.zip
2018-11-10 14:35:06   30C842B5E6C8F9165468DAE74A38857F   74182   ----a-w-   C:\ProgramData\TmForever\Cache\7F85384AE7DA685416F9C8E6B542C830_Skins%5cany%5cadvertisement%5cTMX%5cSD-TMU_2.zip
2018-11-10 14:35:06   1E0B4C5D7F893B0EABEA1BACF8F9BA8B   98446   ----a-w-   C:\ProgramData\TmForever\Cache\8BBAF9F8AC1BEAAB0E3B897F5D4C0B1E_Skins%5cany%5cadvertisement%5cTMX%5cRD-Left_Tripple.zip
2018-11-10 14:35:05   A97626210BBDE0A1769DB74143981A07   97519   ----a-w-   C:\ProgramData\TmForever\Cache\071A984341B79D76A1E0BD0B212676A9_Skins%5cany%5cadvertisement%5cTMX%5cRD-Down_Double.zip
2018-11-10 14:35:05   8035011ABF3E1BDE5B0EE80C673A3465   99219   ----a-w-   C:\ProgramData\TmForever\Cache\65343A670CE80E5BDE1B3EBF1A013580_Skins%5cany%5cadvertisement%5cTMX%5cRD-Down_Double_R.zip
2018-11-10 14:30:59   F3A71849E2EAD5A4B051D880E9D1AE3B   98367   ----a-w-   C:\ProgramData\TmForever\Cache\3BAED1E980D851B0A4D5EAE24918A7F3_Skins%5cany%5cadvertisement%5cTMX%5cGD-Chicane_L.zip
2018-11-10 14:30:59   D3B1520CA3C11D7054715A47423A8031   103159   ----a-w-   C:\ProgramData\TmForever\Cache\31803A42475A7154701DC1A30C52B1D3_Skins%5cany%5cadvertisement%5cTMX%5cGD-Finish.zip
2018-11-10 14:30:59   91B9BE01DE8374417AA60EAD1D619A0E   98715   ----a-w-   C:\ProgramData\TmForever\Cache\0E9A611DAD0EA67A417483DE01BEB991_Skins%5cany%5cadvertisement%5cTMX%5cGD-Chicane_R.zip
2018-11-10 14:30:59   8E0EA11D6E29B8341B6DA908BC2EEA61   96538   ----a-w-   C:\ProgramData\TmForever\Cache\61EA2EBC08A96D1B34B8296E1DA10E8E_Skins%5cany%5cadvertisement%5cTMX%5cGD-Right-90.zip
2018-11-10 14:30:58   D3C5A9D3F9DCD7E9EB0119C5EBD71D8E   96057   ----a-w-   C:\ProgramData\TmForever\Cache\8E1DD7EBC51901EBE9D7DCF9D3A9C5D3_Skins%5cany%5cadvertisement%5cTMX%5cGD-Loop_L.zip
2018-11-10 14:30:58   B8444894791964CF6911073C0791D45A   100329   ----a-w-   C:\ProgramData\TmForever\Cache\5AD491073C071169CF641979944844B8_Skins%5cany%5cadvertisement%5cTMX%5cGD-CheckPoint.zip
2018-11-10 14:30:58   7AF802F63951688E142F12EAF8DD9FE6   100508   ----a-w-   C:\ProgramData\TmForever\Cache\E69FDDF8EA122F148E685139F602F87A_Skins%5cany%5cadvertisement%5cTMX%5cGD-Ad_Focus.zip
2018-11-10 14:30:57   378CA71781F1706BB19388917B5BA4D0   96387   ----a-w-   C:\ProgramData\TmForever\Cache\D0A45B7B918893B16B70F18117A78C37_Skins%5cany%5cadvertisement%5cTMX%5cGD-Loop_R.zip
2018-11-10 14:30:04   74054F480767168C9E214A60BEAA017A   1351828   ----a-w-   C:\ProgramData\TmForever\Manialinks\localmanialinks%2floadscreens%2fimg%2fpl.1.zip
2018-11-10 14:30:01   814695DEE74F10AA4E3EF8C52D88DBE7   7457   ----a-w-   C:\ProgramData\TmForever\Manialinks\localmanialinks%2floadscreens.1.zip
2018-11-10 11:39:42   DEF25E9AEC9ED3802F292FB815E00BD3   1087424   ----a-w-   C:\Windows\System32\drivers\Rt64win7.sys
2018-11-10 11:38:57   658530B9A4DEAB7BC0EC89AA8E130269   218968   ----a-w-   C:\Windows\System32\drivers\nvhda64v.sys
2018-11-10 11:38:08   31A62118FFA56D758D3CA4D00EAEA430   69544   ----a-w-   C:\Windows\System32\drivers\nvvad64v.sys
2018-11-10 11:37:20   DBB6EE3AAEBF0CACB3006CF2905137AF   832   ----a-w-   C:\Windows\System32\drivers\rtkhdasetting.zip
2018-11-10 11:36:25   94EAABB2500E8639FB35B9629EB67D5D   6155720   ----a-w-   C:\Windows\System32\drivers\RTKVHD64.sys
2018-11-10 11:30:25   AEA0A67275CFBA0E463E00C6E9A1DDAE   54376   ----a-w-   C:\Windows\System32\drivers\WdfLdr.sys
2018-11-10 11:30:25   442783E2CB0DA19873B7A63833FF4CB4   785512   ----a-w-   C:\Windows\System32\drivers\Wdf01000.sys
2018-11-10 11:30:12   D4D4DC7B52E9C02274F3C7534BD679F9   51808   ----a-w-   C:\Windows\System32\drivers\Smb_driver_Intel.sys
2018-11-10 11:12:37   EF558A02D734A1403583E95CCEEC2487   27552   ----a-w-   C:\Windows\SysWOW64\drivers\HWiNFO64A.SYS

==== Startup Registry Enabled ======================

[HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"="%ProgramFiles%\Windows\Sidebar.exe /autoRun"

[HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"="%ProgramFiles%\Windows\Sidebar.exe /autoRun"

[HKEY_USERS\S-1-5-21-3195122152-1000191773-1615336282-1001\Software\Microsoft\Windows\CurrentVersion\Run]
"E:\Program Files\NetMeter\NetMeter.exe"="E:\Program Files\NetMeter\NetMeter.exe"
"f.lux"="C:\Users\Tomaszu\AppData\Local\FluxSoftware\Flux\flux.exe /noshow"
"CCleaner Smart Cleaning"="C:\Program Files\CCleaner\CCleaner64.exe /MONITOR"
"GG"="C:\Users\Tomaszu\AppData\Local\GG\Application\gghub.exe"

[HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"mctadmin"="C:\Windows\System32\mctadmin.exe"

[HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"mctadmin"="C:\Windows\System32\mctadmin.exe"

[HKEY_USERS\S-1-5-21-3195122152-1000191773-1615336282-1001\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"FlashPlayerUpdate"="C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_31_0_0_122_pepper.exe -update pepperplugin"

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"E:\Program Files\NetMeter\NetMeter.exe"="E:\Program Files\NetMeter\NetMeter.exe"
"f.lux"="C:\Users\Tomaszu\AppData\Local\FluxSoftware\Flux\flux.exe /noshow"
"CCleaner Smart Cleaning"="C:\Program Files\CCleaner\CCleaner64.exe /MONITOR"
"GG"="C:\Users\Tomaszu\AppData\Local\GG\Application\gghub.exe"

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"FlashPlayerUpdate"="C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_31_0_0_122_pepper.exe -update pepperplugin"

==== Startup Registry Enabled x64 ======================

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Cmaudio8788"="C:\Windows\syswow64\RunDll32.exe C:\Windows\Syswow64\cmicnfgp.dll,CMICtrlWnd"
"Cmaudio8788GX"="C:\Windows\syswow64\HsMgr.exe Envoke"
"Cmaudio8788GX64"="C:\Windows\system\HsMgr64.exe Envoke"
"Everything"="E:\Program Files\Everything\Everything.exe -startup"
"hola"="C:\Program Files\Hola\app\hola.exe --silent"
"RTHDVCPL"="C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s"
"AvastUI.exe"="C:\Program Files\AVAST Software\Avast\AvLaunch.exe /gui"

==== Other Scheduled Tasks ======================

"C:\Windows\SysNative\tasks\Adobe Flash Player PPAPI Notifier" [C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_31_0_0_122_pepper.exe]
"C:\Windows\SysNative\tasks\Avast Emergency Update" [C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe]
"C:\Windows\SysNative\tasks\CCleaner Update" [C:\Program Files\CCleaner\CCUpdate.exe]
"C:\Windows\SysNative\tasks\CCleanerSkipUAC" ["C:\Program Files\CCleaner\CCleaner.exe"]
"C:\Windows\SysNative\tasks\Driver Booster Scheduler" [C:\Program Files (x86)\IObit\Driver Booster\6.0.2\Scheduler.exe]
"C:\Windows\SysNative\tasks\Driver Booster SkipUAC (Tomaszu)" [C:\Program Files (x86)\IObit\Driver Booster\6.0.2\DriverBooster.exe]
"C:\Windows\SysNative\tasks\klcp_update" [codectweaktool.exe]
"C:\Windows\SysNative\tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}" [C:\Program Files (x86)\NVIDIA Corporation\NvContainer\nvcontainer.exe]
"C:\Windows\SysNative\tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}" [C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe]
"C:\Windows\SysNative\tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}" ["C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe"]
"C:\Windows\SysNative\tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}" [C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe]
"C:\Windows\SysNative\tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}" [C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe]
"C:\Windows\SysNative\tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}" [C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe]
"C:\Windows\SysNative\tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}" [C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmMon.exe]
"C:\Windows\SysNative\tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}" [C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe]
"C:\Windows\SysNative\tasks\Opera scheduled Autoupdate 1541791187" [C:\Users\Tomaszu\AppData\Local\Programs\Opera\launcher.exe]
"C:\Windows\SysNative\tasks\Avast Software\Overseer" [C:\Program Files\Common Files\AVAST Software\Overseer\overseer.exe]

==== Firefox Extensions ======================

==== Firefox Plugins ======================


==== IE Start and Search Settings ======================

[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157"
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
"DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"

==== All HKCU SearchScopes ======================

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes
{0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing  Url="http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC"

==== HijackThis Entries ======================

F2 - REG:system.ini: UserInit=userinit.exe
O4 - HKCU\..\Run: [E:\Program Files\NetMeter\NetMeter.exe] E:\Program Files\NetMeter\NetMeter.exe
O4 - HKCU\..\Run: [f.lux] "C:\Users\Tomaszu\AppData\Local\FluxSoftware\Flux\flux.exe" /noshow
O4 - HKCU\..\Run: [CCleaner Smart Cleaning] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKCU\..\Run: [GG] "C:\Users\Tomaszu\AppData\Local\GG\Application\gghub.exe"
O4 - HKCU\..\RunOnce: [FlashPlayerUpdate] C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_31_0_0_122_pepper.exe -update pepperplugin
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'USŁUGA LOKALNA')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'USŁUGA LOKALNA')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'USŁUGA SIECIOWA')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'USŁUGA SIECIOWA')
O15 - Trusted Zone: http://*.hola.org
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: aswbIDSAgent - AVAST Software - C:\Program Files\AVAST Software\Avast\x64\aswidsagenta.exe
O23 - Service: Avast Antivirus (avast! Antivirus) - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: Everything - Unknown owner - E:\Program Files\Everything\Everything.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Hola Better Internet Engine (hola_svc) - Hola Networks Ltd. - C:\Program Files\Hola\app\hola_svc.exe
O23 - Service: Hola Better Internet Updater (hola_updater) - Hola Networks Ltd. - C:\Program Files\Hola\app\hola_updater.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Luminati Net Updater (luminati_net_updater_win_hola_org) - Luminati Networks Ltd. - C:/Program Files/Hola/app/net_updater64.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NVIDIA LocalSystem Container (NvContainerLocalSystem) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
O23 - Service: NVIDIA NetworkService Container (NvContainerNetworkService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
O23 - Service: NVIDIA Display Container LS (NVDisplay.ContainerLocalSystem) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
O23 - Service: NVIDIA Telemetry Container (NvTelemetryContainer) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

==== C:\zoek_backup content ======================

C:\zoek_backup (files=0 folders=0 0 bytes)

==== EOF on 2018-11-17 at  8:24:34,74 ======================



GMER niczego nie wykrył.
Awatar użytkownika
Tomaszu
~user
 
Posty: 1850
Dołączenie: 13 Lip 2006, 12:12
Miejscowość: Strzegowo ^^
Pochwały: 116



Nieuruchamiające się pliki .exe

Postprzez ordynat 17 Lis 2018, 12:21

Nie widzę tu żadnej infekcji.

Jedynie podejrzany jest program:
Hola™ 1.111.158 - Better Internet (HKLM\...\Hola) (Version: 1.111.158 - Hola Networks Ltd.) <==== UWAGA

Ale nie jestem przekonany, że ten program blokuje *.exe.

W logu Addition.txt jest tylko ślad blokowania niektórych programów, np:
E:\Program Files (x86)\BlackBeanGames\SBK2011\Sbk2011.exe
E:\Program Files\Rockstar Games\GTA San Andreas\gta_sa.exe
Ale to z powodu braku jakiegoś elementu w Systemie.

-------------------------------
Error: (11/17/2018 07:55:06 AM) (Source: Disk) (EventID: 7) (User: )
Description: W urządzeniu \Device\Harddisk0\DR0 wystąpił zły blok.

http://www.fixitpc.pl/topic/5553-blad-sterownik-wykryl-blad-kontrolera-na-deviceharddiskxdrx-i-jego-interpretacja/
http://www.fixitpc.pl/forum/43-hardware/

Autor postu otrzymał pochwałę
ordynat
~user
 
Posty: 4765
Dołączenie: 02 Kwi 2010, 11:18
Pochwały: 866



Nieuruchamiające się pliki .exe

Postprzez Tomaszu 17 Lis 2018, 16:15

Jeśli nie widać robali to kamień z serca :-) Program hola nie ma raczej z tym związku, bo zainstalowany był wcześniej a problem z .exe mam od wczoraj.
No nic, problem ciągle pozostaje i rozwiązania będę musiał szukać dalej.
Awatar użytkownika
Tomaszu
~user
 
Posty: 1850
Dołączenie: 13 Lip 2006, 12:12
Miejscowość: Strzegowo ^^
Pochwały: 116



Nieuruchamiające się pliki .exe

Postprzez ordynat 17 Lis 2018, 17:28

A co wykrywa antywirus?
ordynat
~user
 
Posty: 4765
Dołączenie: 02 Kwi 2010, 11:18
Pochwały: 866




Powróć do Bezpieczeństwo

Kto jest na forum

Użytkownicy przeglądający to forum: Brak zarejestrowanych użytkowników oraz 6 gości