Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

GDCB Ransomware infection


  • This topic is locked This topic is locked
1 reply to this topic

#1 maniekkonrad

maniekkonrad

  • Members
  • 2 posts
  • OFFLINE
  •  
  • Local time:04:09 AM

Posted 19 February 2018 - 12:46 PM

I ve been infected by Ransomware. Most of my files are decrypted and I can not open them also my computer is running slowly. It happend today and i dont know what to do, so I depend on you. Here are contents of FRST.txt as well as Addition.txt
 

Rezultaty skanowania Farbar Recovery Scan Tool (FRST) (x86) Wersja: 17.02.2018
Uruchomiony przez user (administrator)  USER-KOMPUTER (19-02-2018 18:37:48)
Uruchomiony z C:\Users\user\Downloads
Załadowane profile: user (Dostępne profile: user)
Platform: Microsoft Windows 7 Ultimate  Service Pack 1 (X86) Język: Polski (Polska)
Internet Explorer Wersja 11 (Domyślna przeglądarka: Chrome)
Tryb startu: Normal
 
==================== Procesy (filtrowane) =================
 
(Załączenie wejścia w fixlist spowoduje zamknięcie procesu. Powiązany plik nie zostanie przeniesiony.)
 
(AMD) C:\Windows\System32\atiesrxx.exe
(AMD) C:\Windows\System32\atieclxx.exe
(Advanced Micro Devices, Inc.) C:\Program Files\AMD\ATI.ACE\Fuel\Fuel.Service.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe
(Pixart Imaging Inc) C:\Windows\System32\TiltWheelMouse.exe
(Microsoft Corporation) C:\Windows\WindowsMobile\wmdc.exe
(Oracle Corporation) C:\Program Files\Common Files\Java\Java Update\jusched.exe
(Advanced Micro Devices Inc.) C:\Program Files\AMD\ATI.ACE\Core-Static\MOM.exe
(Advanced Micro Devices Inc.) C:\Program Files\AMD\ATI.ACE\Core-Static\CCC.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
() D:\Lol\RADS\projects\league_client\releases\0.0.0.125\deploy\LeagueClient.exe
() D:\Lol\RADS\projects\league_client\releases\0.0.0.125\deploy\LeagueClientUx.exe
() D:\Lol\RADS\projects\league_client\releases\0.0.0.125\deploy\LeagueClientUxRender.exe
() D:\Lol\RADS\projects\league_client\releases\0.0.0.125\deploy\LeagueClientUxRender.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
 
==================== Rejestr (filtrowane) ===========================
 
(Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.)
 
HKLM\...\Run: [GrooveMonitor] => C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [30040 2009-02-26] (Microsoft Corporation)
HKLM\...\Run: [NeroFilterCheck] => C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe [570664 2008-07-14] (Nero AG)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [10996368 2012-06-11] (Realtek Semiconductor)
HKLM\...\Run: [StartCCC] => C:\Program Files\AMD\ATI.ACE\Core-Static\x86\CLIStart.exe [748744 2015-08-04] (Advanced Micro Devices, Inc.)
HKLM\...\Run: [MouseDriver] => C:\Windows\system32\TiltWheelMouse.exe [241152 2012-12-19] (Pixart Imaging Inc)
HKLM\...\Run: [Windows Mobile Device Center] => C:\Windows\WindowsMobile\wmdc.exe [648072 2007-05-31] (Microsoft Corporation)
HKLM\...\Run: [SunJavaUpdateSched] => C:\Program Files\Common Files\Java\Java Update\jusched.exe [587288 2017-12-19] (Oracle Corporation)
HKU\S-1-5-21-1675737123-1519436412-2290605674-1000\...\Run: [SteamServerBrowser] => C:\Program Files\SteamServerBrowser\SteamServerBrowser.exe [228352 2017-02-26] ()
HKU\S-1-5-21-1675737123-1519436412-2290605674-1000\...\MountPoints2: {3a185e62-c649-11dc-bc0f-00241d6c8478} - I:\AutoRun.exe
HKU\S-1-5-18\...\RunOnce: [SPReview] => "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"hxxp://go.microsoft.com/fwlink/?LinkID=122915" /build:7601
Startup: C:\Users\Konrad\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\GDCB-DECRYPT.txt [2018-02-19] ()
 
==================== Internet (filtrowane) ====================
 
(Załączenie wejścia w fixlist, w przypadku gdy jest to obiekt rejestru, spowoduje usunięcie go z rejestru lub przywrócenie jego domyślnej postaci.)
 
Tcpip\Parameters: [DhcpNameServer] 31.11.202.254 37.8.214.2
Tcpip\..\Interfaces\{06E2680A-DFBC-40F0-A907-DBD0F876F5F3}: [DhcpNameServer] 31.11.202.254 37.8.214.2
Tcpip\..\Interfaces\{58955574-D64F-4252-88AA-5D67EADFCE19}: [DhcpNameServer] 192.168.8.1 192.168.8.1
Tcpip\..\Interfaces\{6B84E185-B837-4498-A3C0-15635C81CE3C}: [DhcpNameServer] 192.168.2.2 192.168.2.2
Tcpip\..\Interfaces\{904C07CB-6DE3-438D-9379-78EA04936962}: [DhcpNameServer] 192.168.8.1 192.168.8.1
Tcpip\..\Interfaces\{A6FB6DB1-2588-47B3-AF88-215F4AB92E67}: [DhcpNameServer] 31.11.202.254 37.8.214.2
Tcpip\..\Interfaces\{B19D12D8-D48A-4CCE-A9C3-1E66B61A341D}: [DhcpNameServer] 31.11.202.254 37.8.214.2
Tcpip\..\Interfaces\{EA508446-8E34-46D1-85EF-4E82236BC63F}: [DhcpNameServer] 192.168.8.1 192.168.8.1
 
Internet Explorer:
==================
BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26] (Microsoft Corporation)
BHO: Java™ Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_161\bin\ssv.dll [2018-02-15] (Oracle Corporation)
BHO: Java™ Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_161\bin\jp2ssv.dll [2018-02-15] (Oracle Corporation)
Toolbar: HKU\S-1-5-21-1675737123-1519436412-2290605674-1000 -> Brak nazwy - {2318C2B1-4965-11D4-9B18-009027A5CD4F} -  Brak pliku
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_03-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0003-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_03-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_03-windows-i586.cab
Handler: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll [2009-02-26] (Microsoft Corporation)
 
FireFox:
========
FF Plugin: @java.com/DTPlugin,version=11.161.2 -> C:\Program Files\Java\jre1.8.0_161\bin\dtplugin\npDeployJava1.dll [2018-02-15] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.161.2 -> C:\Program Files\Java\jre1.8.0_161\bin\plugin2\npjp2.dll [2018-02-15] (Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.50428.0\npctrl.dll [2016-04-27] ( Microsoft Corporation)
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.33.7\npGoogleUpdate3.dll [2017-11-15] (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.33.7\npGoogleUpdate3.dll [2017-11-15] (Google Inc.)
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2017-04-05] (Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-1675737123-1519436412-2290605674-1000: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\user\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2016-10-26] (Unity Technologies ApS)
 
Chrome: 
=======
CHR Profile: C:\Users\user\AppData\Local\Google\Chrome\User Data\Default [2018-02-19]
CHR Extension: (Prezentacje) - C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2017-10-14]
CHR Extension: (Dokumenty) - C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2017-10-14]
CHR Extension: (Dysk Google) - C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2017-05-31]
CHR Extension: (YouTube) - C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2017-05-31]
CHR Extension: (Adobe Acrobat) - C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2017-05-31]
CHR Extension: (Arkusze) - C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-10-14]
CHR Extension: (Dokumenty Google offline) - C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2017-05-31]
CHR Extension: (Płatności w sklepie Chrome Web Store) - C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2017-08-22]
CHR Extension: (Gmail) - C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2017-05-31]
CHR Extension: (Chrome Media Router) - C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2018-02-06]
CHR HKU\S-1-5-21-1675737123-1519436412-2290605674-1000\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] - hxxps://clients2.google.com/service/update2/crx
 
==================== Usługi (filtrowane) ====================
 
(Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)
 
R2 AMD FUEL Service; C:\Program Files\AMD\ATI.ACE\Fuel\Fuel.Service.exe [276992 2015-08-04] (Advanced Micro Devices, Inc.) [Brak podpisu cyfrowego]
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [680960 2013-05-27] (Microsoft Corporation)
 
===================== Sterowniki (filtrowane) ======================
 
(Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)
 
S3 ABndis; C:\Windows\System32\DRIVERS\abndis.sys [34384 2010-06-08] (ArcaBit)
R3 ABndisMP; C:\Windows\System32\DRIVERS\abndis.sys [34384 2010-06-08] (ArcaBit)
R2 AODDriver4.3; C:\Program Files\AMD\ATI.ACE\Fuel\i386\AODDriver2.sys [50400 2014-02-11] (Advanced Micro Devices)
R3 athur; C:\Windows\System32\DRIVERS\athur.sys [1500160 2010-01-05] (Atheros Communications, Inc.)
R1 HWiNFO32; C:\Windows\system32\drivers\HWiNFO32.SYS [23840 2008-01-01] (REALiX™)
S3 RTHDMIAzAudService; C:\Windows\System32\drivers\RtHDMIV.sys [204432 2012-06-05] (Realtek Semiconductor Corp.)
R3 RTSUER; C:\Windows\System32\Drivers\RtsUer.sys [302808 2008-01-01] (Realsil Semiconductor Corporation)
R2 SSPORT; C:\Windows\system32\Drivers\SSPORT.sys [5120 2007-11-10] (Samsung Electronics) [Brak podpisu cyfrowego]
S3 t_mouse.sys; C:\Windows\System32\DRIVERS\t_mouse.sys [5120 2012-12-19] ()
U3 aswbdisk; Brak ImagePath
S2 DgiVecp; \??\C:\Windows\system32\Drivers\DgiVecp.sys [X]
S3 EsgScanner; system32\DRIVERS\EsgScanner.sys [X]
S3 ew_usbenumfilter; system32\DRIVERS\ew_usbenumfilter.sys [X]
S3 huawei_cdcacm; system32\DRIVERS\ew_jucdcacm.sys [X]
S3 huawei_enumerator; system32\DRIVERS\ew_jubusenum.sys [X]
S3 huawei_ext_ctrl; system32\DRIVERS\ew_juextctrl.sys [X]
S3 huawei_wwanecm; system32\DRIVERS\ew_juwwanecm.sys [X]
U4 inspect; system32\DRIVERS\inspect.sys [X]
U0 Partizan; system32\drivers\Partizan.sys [X]
S3 Synth3dVsc; System32\drivers\synth3dvsc.sys [X]
S3 tsusbhub; system32\drivers\tsusbhub.sys [X]
S3 VGPU; System32\drivers\rdvgkmd.sys [X]
 
==================== NetSvcs (filtrowane) ===================
 
(Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)
 
 
==================== Jeden miesiąc - utworzone pliki i foldery ========
 
(Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.)
 
2018-02-19 18:37 - 2018-02-19 18:43 - 000011840 _____ C:\Users\user\Downloads\FRST.txt
2018-02-19 18:35 - 2018-02-19 18:35 - 001763840 _____ (Farbar) C:\Users\user\Downloads\FRST.exe
2018-02-19 18:14 - 2018-02-19 18:37 - 000000000 ____D C:\FRST
2018-02-19 15:14 - 2018-02-19 15:14 - 000000000 _____ C:\autoexec.bat
2018-02-19 15:05 - 2018-02-19 15:05 - 000000000 ____D C:\ProgramData\SystemAcCrux
2018-02-19 15:05 - 2018-02-19 15:05 - 000000000 ____D C:\Program Files\EaseUS
2018-02-19 15:00 - 2018-02-19 15:10 - 000004342 _____ C:\RakhniDecryptor.1.21.15.5_19.02.2018_15.00.23_log.txt
2018-02-19 14:59 - 2018-02-19 15:02 - 000000000 ____D C:\Users\user\AppData\Roaming\GetRightToGo
2018-02-19 14:59 - 2018-02-19 14:59 - 000000000 ____D C:\Users\user\AppData\Local\AvgSetupLog
2018-02-19 14:40 - 2018-02-19 17:54 - 000000262 _____ C:\Windows\system32\PARTIZAN.TXT
2018-02-19 14:30 - 2018-02-19 14:30 - 000000000 ____D C:\@RestoreQuarantine
2018-02-19 14:22 - 2018-02-19 14:36 - 000000000 ____D C:\ProgramData\RegRun
2018-02-19 14:20 - 2018-02-19 14:20 - 000000000 ____D C:\Program Files\Common Files\AVG
2018-02-19 14:19 - 2018-02-19 17:59 - 000000000 ____D C:\Program Files\UnHackMe
2018-02-19 14:19 - 2018-02-19 14:53 - 000000000 ____D C:\Users\user\Documents\RegRun2
2018-02-19 14:19 - 2018-02-19 14:19 - 000000002 RSHOT C:\Windows\winstart.bat
2018-02-19 14:19 - 2018-02-12 18:30 - 000000836 _____ C:\Windows\system32\Drivers\etc\hosts.old
2018-02-19 14:05 - 2018-02-19 14:05 - 000000532 _____ C:\Users\Public\Desktop\Google Chrome.lnk.GDCB — skrót.lnk
2018-02-19 13:27 - 2018-02-19 13:39 - 000000000 ____D C:\AdwCleaner
2018-02-19 12:15 - 2018-02-19 12:15 - 000287908 _____ C:\Windows\ntbtlog.txt
2018-02-19 12:00 - 2018-02-19 13:43 - 000001088 ___SH C:\Users\user\ntuser.ini
2018-02-19 10:18 - 2018-02-19 10:18 - 000002646 _____ C:\Users\user\Documents\GDCB-DECRYPT.txt
2018-02-19 10:18 - 2018-02-19 10:18 - 000002646 _____ C:\Users\user\AppData\Local\GDCB-DECRYPT.txt
2018-02-19 10:17 - 2018-02-19 10:17 - 000002646 _____ C:\Users\user\GDCB-DECRYPT.txt
2018-02-19 10:17 - 2018-02-19 10:17 - 000002646 _____ C:\Users\user\AppData\Roaming\GDCB-DECRYPT.txt
2018-02-19 10:17 - 2018-02-19 10:17 - 000002646 _____ C:\Users\user\AppData\GDCB-DECRYPT.txt
2018-02-19 10:17 - 2018-02-19 10:17 - 000002646 _____ C:\Users\Public\GDCB-DECRYPT.txt
2018-02-19 10:17 - 2018-02-19 10:17 - 000002646 _____ C:\Users\Public\Downloads\GDCB-DECRYPT.txt
2018-02-19 10:17 - 2018-02-19 10:17 - 000002646 _____ C:\Users\Public\Documents\GDCB-DECRYPT.txt
2018-02-19 10:17 - 2018-02-19 10:17 - 000002646 _____ C:\Users\Public\Desktop\GDCB-DECRYPT.txt
2018-02-19 10:17 - 2018-02-19 10:17 - 000002646 _____ C:\Users\Konrad\Downloads\GDCB-DECRYPT.txt
2018-02-19 10:17 - 2018-02-19 10:17 - 000002646 _____ C:\Users\Konrad\Documents\GDCB-DECRYPT.txt
2018-02-19 10:17 - 2018-02-19 10:17 - 000002646 _____ C:\Users\Konrad\Desktop\GDCB-DECRYPT.txt
2018-02-19 10:17 - 2018-02-19 10:17 - 000002646 _____ C:\Users\Konrad\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\GDCB-DECRYPT.txt
2018-02-19 10:17 - 2018-02-19 10:17 - 000002646 _____ C:\Users\Konrad\AppData\Roaming\Microsoft\Windows\Start Menu\GDCB-DECRYPT.txt
2018-02-19 10:16 - 2018-02-19 10:16 - 000002646 _____ C:\Users\Konrad\GDCB-DECRYPT.txt
2018-02-19 10:16 - 2018-02-19 10:16 - 000002646 _____ C:\Users\Konrad\AppData\Roaming\GDCB-DECRYPT.txt
2018-02-19 10:16 - 2018-02-19 10:16 - 000002646 _____ C:\Users\Konrad\AppData\LocalLow\GDCB-DECRYPT.txt
2018-02-19 10:16 - 2018-02-19 10:16 - 000002646 _____ C:\Users\Konrad\AppData\Local\GDCB-DECRYPT.txt
2018-02-19 10:16 - 2018-02-19 10:16 - 000002646 _____ C:\Users\Konrad\AppData\GDCB-DECRYPT.txt
2018-02-19 10:16 - 2018-02-19 10:16 - 000002646 _____ C:\Users\Default\GDCB-DECRYPT.txt
2018-02-19 10:16 - 2018-02-19 10:16 - 000002646 _____ C:\Users\Default\Downloads\GDCB-DECRYPT.txt
2018-02-19 10:16 - 2018-02-19 10:16 - 000002646 _____ C:\Users\Default\Documents\GDCB-DECRYPT.txt
2018-02-19 10:16 - 2018-02-19 10:16 - 000002646 _____ C:\Users\Default\Desktop\GDCB-DECRYPT.txt
2018-02-19 10:16 - 2018-02-19 10:16 - 000002646 _____ C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\GDCB-DECRYPT.txt
2018-02-19 10:16 - 2018-02-19 10:16 - 000002646 _____ C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\GDCB-DECRYPT.txt
2018-02-19 10:16 - 2018-02-19 10:16 - 000002646 _____ C:\Users\Default\AppData\Roaming\GDCB-DECRYPT.txt
2018-02-19 10:16 - 2018-02-19 10:16 - 000002646 _____ C:\Users\Default\AppData\Local\GDCB-DECRYPT.txt
2018-02-19 10:16 - 2018-02-19 10:16 - 000002646 _____ C:\Users\Default\AppData\GDCB-DECRYPT.txt
2018-02-19 10:16 - 2018-02-19 10:16 - 000002646 _____ C:\Users\Default User\Downloads\GDCB-DECRYPT.txt
2018-02-19 10:16 - 2018-02-19 10:16 - 000002646 _____ C:\Users\Default User\Documents\GDCB-DECRYPT.txt
2018-02-19 10:16 - 2018-02-19 10:16 - 000002646 _____ C:\Users\Default User\Desktop\GDCB-DECRYPT.txt
2018-02-19 10:16 - 2018-02-19 10:16 - 000002646 _____ C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\GDCB-DECRYPT.txt
2018-02-19 10:16 - 2018-02-19 10:16 - 000002646 _____ C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\GDCB-DECRYPT.txt
2018-02-19 10:16 - 2018-02-19 10:16 - 000002646 _____ C:\Users\Default User\AppData\Roaming\GDCB-DECRYPT.txt
2018-02-19 10:16 - 2018-02-19 10:16 - 000002646 _____ C:\Users\Default User\AppData\Local\GDCB-DECRYPT.txt
2018-02-19 10:16 - 2018-02-19 10:16 - 000002646 _____ C:\Users\Default User\AppData\GDCB-DECRYPT.txt
2018-02-19 09:42 - 2018-02-19 09:42 - 000002646 _____ C:\Users\GDCB-DECRYPT.txt
2018-02-19 09:34 - 2018-02-19 09:34 - 000002646 _____ C:\GDCB-DECRYPT.txt
2018-02-18 22:35 - 2018-02-19 10:17 - 000001072 _____ C:\Users\Public\Desktop\League of Legends.lnk.GDCB
2018-02-18 22:35 - 2018-02-18 22:35 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\League of Legends
2018-02-18 22:32 - 2018-02-18 22:32 - 075667272 _____ (Riot Games, Inc) C:\Users\user\Downloads\League of Legends installer EUNE.exe
2018-02-15 10:49 - 2018-01-01 03:02 - 001310528 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2018-02-15 10:49 - 2018-01-01 03:00 - 012880384 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2018-02-15 10:49 - 2018-01-01 03:00 - 001499648 _____ (Microsoft Corporation) C:\Windows\system32\ExplorerFrame.dll
2018-02-15 10:49 - 2018-01-01 03:00 - 001417728 _____ (Microsoft Corporation) C:\Windows\system32\ole32.dll
2018-02-15 10:49 - 2018-01-01 03:00 - 001390080 _____ (Microsoft Corporation) C:\Windows\system32\msxml6.dll
2018-02-15 10:49 - 2018-01-01 03:00 - 001155584 _____ (Microsoft Corporation) C:\Windows\system32\sysmain.dll
2018-02-15 10:49 - 2018-01-01 03:00 - 001062912 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2018-02-15 10:49 - 2018-01-01 03:00 - 001004032 _____ (Microsoft Corporation) C:\Windows\system32\PeerDistSvc.dll
2018-02-15 10:49 - 2018-01-01 03:00 - 000872448 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll
2018-02-15 10:49 - 2018-01-01 03:00 - 000741888 _____ (Microsoft Corporation) C:\Windows\system32\inetcomm.dll
2018-02-15 10:49 - 2018-01-01 03:00 - 000655360 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
2018-02-15 10:49 - 2018-01-01 03:00 - 000564736 _____ (Microsoft Corporation) C:\Windows\system32\MPSSVC.dll
2018-02-15 10:49 - 2018-01-01 03:00 - 000554496 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2018-02-15 10:49 - 2018-01-01 03:00 - 000463360 _____ (Microsoft Corporation) C:\Windows\system32\FirewallAPI.dll
2018-02-15 10:49 - 2018-01-01 03:00 - 000400896 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll
2018-02-15 10:49 - 2018-01-01 03:00 - 000377344 _____ (Microsoft Corporation) C:\Windows\system32\rpcss.dll
2018-02-15 10:49 - 2018-01-01 03:00 - 000328192 _____ (Microsoft Corporation) C:\Windows\system32\p2psvc.dll
2018-02-15 10:49 - 2018-01-01 03:00 - 000294400 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
2018-02-15 10:49 - 2018-01-01 03:00 - 000269824 _____ (Microsoft Corporation) C:\Windows\system32\pnrpsvc.dll
2018-02-15 10:49 - 2018-01-01 03:00 - 000261120 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2018-02-15 10:49 - 2018-01-01 03:00 - 000254464 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2018-02-15 10:49 - 2018-01-01 03:00 - 000223232 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2018-02-15 10:49 - 2018-01-01 03:00 - 000217600 _____ (Microsoft Corporation) C:\Windows\system32\P2P.dll
2018-02-15 10:49 - 2018-01-01 03:00 - 000172032 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2018-02-15 10:49 - 2018-01-01 03:00 - 000171008 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll
2018-02-15 10:49 - 2018-01-01 03:00 - 000146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
2018-02-15 10:49 - 2018-01-01 03:00 - 000141312 _____ (Microsoft Corporation) C:\Windows\system32\rpchttp.dll
2018-02-15 10:49 - 2018-01-01 03:00 - 000139776 _____ (Microsoft Corporation) C:\Windows\system32\PeerDist.dll
2018-02-15 10:49 - 2018-01-01 03:00 - 000099840 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2018-02-15 10:49 - 2018-01-01 03:00 - 000095744 _____ (Microsoft Corporation) C:\Windows\system32\PeerDistWSDDiscoProv.dll
2018-02-15 10:49 - 2018-01-01 03:00 - 000089088 _____ (Microsoft Corporation) C:\Windows\system32\icfupgd.dll
2018-02-15 10:49 - 2018-01-01 03:00 - 000084480 _____ (Microsoft Corporation) C:\Windows\system32\INETRES.dll
2018-02-15 10:49 - 2018-01-01 03:00 - 000065536 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2018-02-15 10:49 - 2018-01-01 03:00 - 000060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll
2018-02-15 10:49 - 2018-01-01 03:00 - 000053760 _____ (Microsoft Corporation) C:\Windows\system32\vmicres.dll
2018-02-15 10:49 - 2018-01-01 03:00 - 000050176 _____ (Microsoft Corporation) C:\Windows\system32\setbcdlocale.dll
2018-02-15 10:49 - 2018-01-01 03:00 - 000043008 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll
2018-02-15 10:49 - 2018-01-01 03:00 - 000038912 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll
2018-02-15 10:49 - 2018-01-01 03:00 - 000033280 _____ (Microsoft Corporation) C:\Windows\system32\traffic.dll
2018-02-15 10:49 - 2018-01-01 03:00 - 000026112 _____ (Microsoft Corporation) C:\Windows\system32\oleres.dll
2018-02-15 10:49 - 2018-01-01 03:00 - 000022016 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
2018-02-15 10:49 - 2018-01-01 03:00 - 000017408 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2018-02-15 10:49 - 2018-01-01 03:00 - 000010752 _____ (Microsoft Corporation) C:\Windows\system32\wshnetbs.dll
2018-02-15 10:49 - 2018-01-01 03:00 - 000002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml6r.dll
2018-02-15 10:49 - 2018-01-01 02:59 - 001806848 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll
2018-02-15 10:49 - 2018-01-01 02:59 - 000690688 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
2018-02-15 10:49 - 2018-01-01 02:59 - 000644096 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll
2018-02-15 10:49 - 2018-01-01 02:59 - 000082432 _____ (Microsoft Corporation) C:\Windows\system32\bcrypt.dll
2018-02-15 10:49 - 2018-01-01 02:59 - 000050688 _____ (Microsoft Corporation) C:\Windows\system32\appidapi.dll
2018-02-15 10:49 - 2018-01-01 02:59 - 000047104 _____ (Microsoft Corporation) C:\Windows\system32\appinfo.dll
2018-02-15 10:49 - 2018-01-01 02:59 - 000006656 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll
2018-02-15 10:49 - 2018-01-01 02:59 - 000005120 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2018-02-15 10:49 - 2018-01-01 02:59 - 000004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2018-02-15 10:49 - 2018-01-01 02:59 - 000004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2018-02-15 10:49 - 2018-01-01 02:59 - 000004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2018-02-15 10:49 - 2018-01-01 02:59 - 000004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2018-02-15 10:49 - 2018-01-01 02:59 - 000004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2018-02-15 10:49 - 2018-01-01 02:59 - 000004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2018-02-15 10:49 - 2018-01-01 02:59 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2018-02-15 10:49 - 2018-01-01 02:59 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2018-02-15 10:49 - 2018-01-01 02:59 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2018-02-15 10:49 - 2018-01-01 02:59 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2018-02-15 10:49 - 2018-01-01 02:59 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2018-02-15 10:49 - 2018-01-01 02:59 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2018-02-15 10:49 - 2018-01-01 02:59 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2018-02-15 10:49 - 2018-01-01 02:59 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2018-02-15 10:49 - 2018-01-01 02:59 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2018-02-15 10:49 - 2018-01-01 02:59 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2018-02-15 10:49 - 2018-01-01 02:59 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2018-02-15 10:49 - 2018-01-01 02:59 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2018-02-15 10:49 - 2018-01-01 02:59 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2018-02-15 10:49 - 2018-01-01 02:59 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2018-02-15 10:49 - 2018-01-01 02:59 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2018-02-15 10:49 - 2018-01-01 02:59 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2018-02-15 10:49 - 2018-01-01 02:59 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2018-02-15 10:49 - 2018-01-01 02:54 - 004013800 _____ (Microsoft Corporation) C:\Windows\system32\ntkrnlpa.exe
2018-02-15 10:49 - 2018-01-01 02:54 - 003959016 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2018-02-15 10:49 - 2018-01-01 02:54 - 001214184 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys
2018-02-15 10:49 - 2018-01-01 02:54 - 000712936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndis.sys
2018-02-15 10:49 - 2018-01-01 02:54 - 000201960 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fltMgr.sys
2018-02-15 10:49 - 2018-01-01 02:54 - 000198888 _____ (Microsoft Corporation) C:\Windows\system32\halmacpi.dll
2018-02-15 10:49 - 2018-01-01 02:54 - 000198888 _____ (Microsoft Corporation) C:\Windows\system32\hal.dll
2018-02-15 10:49 - 2018-01-01 02:54 - 000173288 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdyboost.sys
2018-02-15 10:49 - 2018-01-01 02:54 - 000139496 _____ (Microsoft Corporation) C:\Windows\system32\halacpi.dll
2018-02-15 10:49 - 2018-01-01 02:54 - 000137960 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2018-02-15 10:49 - 2018-01-01 02:54 - 000105192 _____ (Microsoft Corporation) C:\Windows\system32\consent.exe
2018-02-15 10:49 - 2018-01-01 02:54 - 000067304 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2018-02-15 10:49 - 2018-01-01 02:50 - 000317952 _____ (Microsoft Corporation) C:\Windows\system32\spoolsv.exe
2018-02-15 10:49 - 2018-01-01 02:44 - 000043520 _____ (Microsoft Corporation) C:\Windows\system32\PeerDistHttpTrans.dll
2018-02-15 10:49 - 2018-01-01 02:43 - 000104448 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pacer.sys
2018-02-15 10:49 - 2018-01-01 02:43 - 000060416 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mpsdrv.sys
2018-02-15 10:49 - 2018-01-01 02:43 - 000036352 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netbios.sys
2018-02-15 10:49 - 2018-01-01 02:43 - 000018944 _____ (Microsoft Corporation) C:\Windows\system32\wfapigp.dll
2018-02-15 10:49 - 2018-01-01 02:43 - 000013824 _____ (Microsoft Corporation) C:\Windows\system32\wshqos.dll
2018-02-15 10:49 - 2018-01-01 02:41 - 000007168 _____ (Microsoft Corporation) C:\Windows\system32\comcat.dll
2018-02-15 10:49 - 2018-01-01 02:40 - 000097792 _____ (Microsoft Corporation) C:\Windows\system32\appidpolicyconverter.exe
2018-02-15 10:49 - 2018-01-01 02:40 - 000050688 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\appid.sys
2018-02-15 10:49 - 2018-01-01 02:40 - 000029696 _____ (Microsoft Corporation) C:\Windows\system32\appidsvc.dll
2018-02-15 10:49 - 2018-01-01 02:40 - 000016896 _____ (Microsoft Corporation) C:\Windows\system32\appidcertstorecheck.exe
2018-02-15 10:49 - 2018-01-01 02:39 - 000050176 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe
2018-02-15 10:49 - 2018-01-01 02:38 - 000271360 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe
2018-02-15 10:49 - 2018-01-01 02:38 - 000215552 _____ (Microsoft Corporation) C:\Windows\system32\vmicsvc.exe
2018-02-15 10:49 - 2018-01-01 02:38 - 000113664 _____ (Microsoft Corporation) C:\Windows\system32\IcCoinstall.dll
2018-02-15 10:49 - 2018-01-01 02:38 - 000047616 _____ (Microsoft Corporation) C:\Windows\system32\vmictimeprovider.dll
2018-02-15 10:49 - 2018-01-01 02:37 - 000262656 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe
2018-02-15 10:49 - 2018-01-01 02:36 - 000314368 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv2.sys
2018-02-15 10:49 - 2018-01-01 02:36 - 000313344 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv.sys
2018-02-15 10:49 - 2018-01-01 02:36 - 000226304 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys
2018-02-15 10:49 - 2018-01-01 02:35 - 000514048 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\http.sys
2018-02-15 10:49 - 2018-01-01 02:35 - 000124416 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys
2018-02-15 10:49 - 2018-01-01 02:35 - 000115712 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srvnet.sys
2018-02-15 10:49 - 2018-01-01 02:35 - 000098304 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys
2018-02-15 10:49 - 2018-01-01 02:35 - 000081408 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dfsc.sys
2018-02-15 10:49 - 2018-01-01 02:35 - 000069632 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe
2018-02-15 10:49 - 2018-01-01 02:35 - 000036352 _____ (Microsoft Corporation) C:\Windows\system32\cryptbase.dll
2018-02-15 10:49 - 2018-01-01 02:35 - 000022016 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
2018-02-15 10:49 - 2018-01-01 02:35 - 000015872 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
2018-02-15 10:49 - 2018-01-01 02:35 - 000006144 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2018-02-15 10:49 - 2018-01-01 02:35 - 000004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2018-02-15 10:49 - 2018-01-01 02:35 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2018-02-15 10:49 - 2018-01-01 02:35 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2018-02-15 10:49 - 2017-12-30 07:42 - 000347328 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2018-02-15 10:49 - 2017-12-29 19:39 - 020274688 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2018-02-15 10:49 - 2017-12-29 19:24 - 002724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2018-02-15 10:49 - 2017-12-29 19:24 - 000004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2018-02-15 10:49 - 2017-12-29 19:13 - 000499712 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2018-02-15 10:49 - 2017-12-29 19:13 - 000062464 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2018-02-15 10:49 - 2017-12-29 19:12 - 000341504 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2018-02-15 10:49 - 2017-12-29 19:12 - 000047616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2018-02-15 10:49 - 2017-12-29 19:11 - 000064000 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2018-02-15 10:49 - 2017-12-29 19:09 - 002294272 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2018-02-15 10:49 - 2017-12-29 19:06 - 000047104 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2018-02-15 10:49 - 2017-12-29 19:06 - 000030720 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2018-02-15 10:49 - 2017-12-29 19:04 - 000476160 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2018-02-15 10:49 - 2017-12-29 19:03 - 000662528 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2018-02-15 10:49 - 2017-12-29 19:03 - 000620032 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2018-02-15 10:49 - 2017-12-29 19:03 - 000115712 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2018-02-15 10:49 - 2017-12-29 19:03 - 000104960 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2018-02-15 10:49 - 2017-12-29 18:57 - 000668160 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2018-02-15 10:49 - 2017-12-29 18:55 - 000416256 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2018-02-15 10:49 - 2017-12-29 18:51 - 000060416 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2018-02-15 10:49 - 2017-12-29 18:50 - 000091136 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll
2018-02-15 10:49 - 2017-12-29 18:50 - 000073216 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx
2018-02-15 10:49 - 2017-12-29 18:47 - 000168960 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2018-02-15 10:49 - 2017-12-29 18:47 - 000076288 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2018-02-15 10:49 - 2017-12-29 18:46 - 000279040 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2018-02-15 10:49 - 2017-12-29 18:45 - 004508160 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2018-02-15 10:49 - 2017-12-29 18:44 - 000130048 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll
2018-02-15 10:49 - 2017-12-29 18:39 - 000230400 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2018-02-15 10:49 - 2017-12-29 18:38 - 013680128 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2018-02-15 10:49 - 2017-12-29 18:38 - 000694272 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2018-02-15 10:49 - 2017-12-29 18:37 - 002058752 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2018-02-15 10:49 - 2017-12-29 18:37 - 000690688 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2018-02-15 10:49 - 2017-12-29 18:36 - 001155072 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2018-02-15 10:49 - 2017-12-29 18:19 - 002767872 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2018-02-15 10:49 - 2017-12-29 18:15 - 001313792 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2018-02-15 10:49 - 2017-12-29 18:13 - 000710144 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2018-02-15 10:49 - 2017-12-21 07:27 - 000535656 _____ (Microsoft Corporation) C:\Windows\system32\winload.exe
2018-02-15 10:49 - 2017-12-13 17:15 - 000309480 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll
2018-02-15 10:49 - 2017-12-13 17:11 - 000071168 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll
2018-02-15 10:49 - 2017-12-13 17:11 - 000026112 _____ (Microsoft Corporation) C:\Windows\system32\lpk.dll
2018-02-15 10:49 - 2017-12-13 17:11 - 000010240 _____ (Microsoft Corporation) C:\Windows\system32\dciman32.dll
2018-02-15 10:49 - 2017-12-13 16:50 - 000034304 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll
2018-02-15 10:49 - 2017-12-05 18:08 - 000481792 _____ (Microsoft Corporation) C:\Windows\system32\mscms.dll
2018-02-15 10:49 - 2017-12-05 18:08 - 000215040 _____ (Microsoft Corporation) C:\Windows\system32\icm32.dll
2018-02-15 10:49 - 2017-12-05 16:50 - 002402816 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2018-02-15 10:49 - 2017-12-05 16:49 - 000032768 _____ (Microsoft Corporation) C:\Windows\system32\WcsPlugInService.dll
2018-02-14 16:29 - 2018-02-19 10:18 - 000081424 _____ C:\Users\user\Downloads\FA stacj. 1 st. (sem. 4).xls.GDCB
2018-02-14 10:19 - 2018-02-14 10:19 - 000000000 ____D C:\Program Files\Malwarebytes
2018-02-14 09:43 - 2018-01-22 00:42 - 000117480 _____ (Microsoft Corporation) C:\Windows\system32\CompatTelRunner.exe
2018-02-14 09:43 - 2018-01-22 00:20 - 000533504 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2018-02-14 09:43 - 2018-01-19 15:05 - 001893888 _____ (Microsoft Corporation) C:\Windows\system32\aitstatic.exe
2018-02-14 09:43 - 2018-01-19 15:05 - 001314304 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll
2018-02-14 09:43 - 2018-01-19 15:05 - 000594944 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll
2018-02-14 09:43 - 2018-01-19 15:05 - 000508416 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll
2018-02-14 09:43 - 2018-01-19 15:05 - 000337920 _____ (Microsoft Corporation) C:\Windows\system32\centel.dll
2018-02-14 09:43 - 2018-01-19 15:05 - 000311808 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll
2018-02-14 09:43 - 2018-01-19 15:05 - 000212992 _____ (Microsoft Corporation) C:\Windows\system32\acmigration.dll
2018-02-14 09:43 - 2018-01-19 15:05 - 000190464 _____ (Microsoft Corporation) C:\Windows\system32\aepic.dll
2018-02-12 18:26 - 2018-02-12 18:26 - 000000000 ____D C:\Users\user\AppData\Local\RadeonInstaller
 
==================== Jeden miesiąc - zmodyfikowane pliki i foldery ========
 
(Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.)
 
2018-02-19 18:09 - 2009-07-14 05:34 - 000010208 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2018-02-19 18:09 - 2009-07-14 05:34 - 000010208 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2018-02-19 18:01 - 2016-09-09 16:50 - 000065536 _____ C:\Windows\system32\Ikeext.etl
2018-02-19 18:01 - 2009-07-14 05:53 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2018-02-19 18:01 - 2008-01-19 18:32 - 000000000 ____D C:\Users\user\AppData\Local\Avg
2018-02-19 18:01 - 2008-01-19 18:31 - 000000000 ____D C:\ProgramData\AVG
2018-02-19 15:28 - 2017-01-08 14:45 - 000000000 ____D C:\Users\user\.gimp-2.8
2018-02-19 14:51 - 2009-07-14 05:53 - 000032608 _____ C:\Windows\Tasks\SCHEDLGU.TXT
2018-02-19 14:19 - 2010-06-08 14:28 - 000000000 ____D C:\Users\user\AppData\Roaming\WinRAR
2018-02-19 14:19 - 2009-07-14 03:04 - 000002577 _____ C:\Windows\system32\config.nt
2018-02-19 14:19 - 2009-07-14 03:04 - 000001688 _____ C:\Windows\system32\autoexec.nt
2018-02-19 14:09 - 2017-12-11 12:33 - 000000000 ____D C:\Program Files\Common Files\Nero
2018-02-19 14:07 - 2010-06-08 09:16 - 000000000 ____D C:\ProgramData\Nero
2018-02-19 13:37 - 2010-06-08 08:38 - 001679586 _____ C:\Windows\system32\PerfStringBackup.INI
2018-02-19 13:37 - 2009-07-14 09:07 - 000743878 _____ C:\Windows\system32\perfh015.dat
2018-02-19 13:37 - 2009-07-14 09:07 - 000157336 _____ C:\Windows\system32\perfc015.dat
2018-02-19 13:37 - 2009-07-14 03:37 - 000000000 ____D C:\Windows\inf
2018-02-19 12:05 - 2017-04-26 20:07 - 000000000 ____D C:\Users\user\AppData\Local\CrashDumps
2018-02-19 10:18 - 2018-01-03 15:43 - 000000000 ____D C:\Users\user\Documents\League of Legends
2018-02-19 10:18 - 2017-12-05 09:11 - 002726224 _____ C:\Users\user\Desktop\Wrocław.pptx.GDCB
2018-02-19 10:18 - 2017-11-19 12:59 - 003205280 _____ C:\Users\user\Downloads\Gosia Fiołna.htm.GDCB
2018-02-19 10:18 - 2017-11-18 19:14 - 000057856 _____ C:\Users\user\Downloads\13119132_1037113033008943_7044225328475007345_n.jpg.GDCB
2018-02-19 10:18 - 2017-10-18 17:10 - 000080224 _____ C:\Users\user\Downloads\two_kindoms_481.zip.GDCB
2018-02-19 10:18 - 2017-10-04 16:13 - 000071392 _____ C:\Users\user\Downloads\kingdom_of_harmondale_1077318125 (1).zip.GDCB
2018-02-19 10:18 - 2017-10-04 16:10 - 000071392 _____ C:\Users\user\Downloads\kingdom_of_harmondale_1077318125.zip.GDCB
2018-02-19 10:18 - 2017-10-04 16:07 - 000050272 _____ C:\Users\user\Downloads\the_inferno_ring_1.1_1030540747.zip.GDCB
2018-02-19 10:18 - 2017-10-04 14:48 - 000076816 _____ C:\Users\user\Downloads\FA stacj. 1 st. (sem. 3) (2).xls.GDCB
2018-02-19 10:18 - 2017-10-03 14:27 - 000077328 _____ C:\Users\user\Downloads\FA stacj. 1 st. (sem. 3) (1).xls.GDCB
2018-02-19 10:18 - 2017-10-02 09:10 - 000068112 _____ C:\Users\user\Downloads\FA stacj. 1 st. (sem. 3).xls.GDCB
2018-02-19 10:18 - 2017-09-29 19:03 - 000041008 _____ C:\Users\user\Downloads\zapomniana-kraina-zycia.h3m.GDCB
2018-02-19 10:18 - 2017-09-29 19:00 - 000080688 _____ C:\Users\user\Downloads\ostatni-sojusz.h3m.GDCB
2018-02-19 10:18 - 2017-09-24 16:54 - 000120784 _____ C:\Users\user\Downloads\twierdza-gorta.h3m.GDCB
2018-02-19 10:18 - 2017-09-21 19:33 - 000099216 _____ C:\Users\user\Downloads\smierc-i-zniszczenie-sojusz.h3m.GDCB
2018-02-19 10:18 - 2017-09-19 17:31 - 000108880 _____ C:\Users\user\Downloads\bezmierny-antagonizm.h3m.GDCB
2018-02-19 10:18 - 2017-09-19 17:28 - 000059824 _____ C:\Users\user\Downloads\acces-da-bambo.h3m.GDCB
2018-02-19 10:18 - 2017-09-19 17:25 - 000164864 _____ C:\Users\user\Downloads\piraci-i-kupcy.h3m.GDCB
2018-02-19 10:18 - 2017-09-13 19:50 - 000077680 _____ C:\Users\user\Downloads\lyramion.h3m.GDCB
2018-02-19 10:18 - 2017-09-13 17:18 - 000101712 _____ C:\Users\user\Downloads\Lasy Insigni2 (1).h3m.GDCB
2018-02-19 10:18 - 2017-09-13 17:17 - 000109184 _____ C:\Users\user\Downloads\b&h.h3m.GDCB
2018-02-19 10:18 - 2017-09-13 17:16 - 000078144 _____ C:\Users\user\Downloads\Kolonista.h3m.GDCB
2018-02-19 10:18 - 2017-09-13 17:14 - 000112896 _____ C:\Users\user\Downloads\Fragmentacja (1).h3m.GDCB
2018-02-19 10:18 - 2017-09-12 21:15 - 000204816 _____ C:\Users\user\Downloads\11Dobro i zło.h3m.GDCB
2018-02-19 10:18 - 2017-09-12 21:13 - 000067888 _____ C:\Users\user\Downloads\wyzwanie-dla-bohatera (1).h3m.GDCB
2018-02-19 10:18 - 2017-09-10 19:26 - 000185520 _____ C:\Users\user\Downloads\ambitne-plany.h3m.GDCB
2018-02-19 10:18 - 2017-09-10 19:13 - 000365456 _____ C:\Users\user\Downloads\robinson-crusoe-2-0-hota.h3m.GDCB
2018-02-19 10:18 - 2017-09-09 22:37 - 000095296 _____ C:\Users\user\Downloads\black-white.h3m.GDCB
2018-02-19 10:18 - 2017-09-09 20:30 - 000100064 _____ C:\Users\user\Downloads\lemuria (1).h3m.GDCB
2018-02-19 10:18 - 2017-09-09 19:41 - 000272544 _____ C:\Users\user\Downloads\the-devil-is-in-the-detail (1).h3m.GDCB
2018-02-19 10:18 - 2017-09-09 19:32 - 000192304 _____ C:\Users\user\Downloads\vengeance-is-mine-v-ii.h3m.GDCB
2018-02-19 10:18 - 2017-09-09 19:28 - 000144240 _____ C:\Users\user\Downloads\that-famous-ol-spiced (1).h3m.GDCB
2018-02-19 10:18 - 2017-09-09 19:22 - 000067888 _____ C:\Users\user\Downloads\wyzwanie-dla-bohatera.h3m.GDCB
2018-02-19 10:18 - 2017-09-04 17:20 - 000165664 _____ C:\Users\user\Downloads\odrodzone-imperium.h3m.GDCB
2018-02-19 10:18 - 2017-09-04 17:11 - 000230336 _____ C:\Users\user\Downloads\seven-dark-souls.h3m.GDCB
2018-02-19 10:18 - 2017-08-31 15:44 - 000101712 _____ C:\Users\user\Downloads\Lasy Insigni2.h3m.GDCB
2018-02-19 10:18 - 2017-08-30 16:46 - 000112896 _____ C:\Users\user\Downloads\Fragmentacja.h3m.GDCB
2018-02-19 10:18 - 2017-08-30 16:43 - 000132032 _____ C:\Users\user\Downloads\[hota]forgotten.h3m.GDCB
2018-02-19 10:18 - 2017-08-29 14:47 - 001765776 _____ C:\Users\user\Downloads\highvoltage.dcr.GDCB
2018-02-19 10:18 - 2017-08-28 16:00 - 000095696 _____ C:\Users\user\Downloads\Cienie Pojętnych.h3m.GDCB
2018-02-19 10:18 - 2017-08-28 15:59 - 000094608 _____ C:\Users\user\Downloads\4ppl FFA v.2.h3m.GDCB
2018-02-19 10:18 - 2017-08-24 19:27 - 000106864 _____ C:\Users\user\Downloads\the_great_escape_1524.zip.GDCB
2018-02-19 10:18 - 2017-08-24 19:27 - 000106864 _____ C:\Users\user\Downloads\the_great_escape_1524 (1).zip.GDCB
2018-02-19 10:18 - 2017-08-24 16:41 - 000416624 _____ C:\Users\user\Downloads\abyssal_revenge_1362.zip.GDCB
2018-02-19 10:18 - 2017-08-24 16:08 - 000136944 _____ C:\Users\user\Downloads\westeros_and_west_essos_1526.zip.GDCB
2018-02-19 10:18 - 2017-08-24 16:04 - 000141280 _____ C:\Users\user\Downloads\2-friends (2).h3m.GDCB
2018-02-19 10:18 - 2017-08-24 16:04 - 000141280 _____ C:\Users\user\Downloads\2-friends (1).h3m.GDCB
2018-02-19 10:18 - 2017-08-24 16:03 - 000076176 _____ C:\Users\user\Downloads\warlords.h3m.GDCB
2018-02-19 10:18 - 2017-08-22 17:40 - 000108128 _____ C:\Users\user\Downloads\sciana-nienawisci.h3m.GDCB
2018-02-19 10:18 - 2017-08-22 17:06 - 000141280 _____ C:\Users\user\Downloads\2-friends.h3m.GDCB
2018-02-19 10:18 - 2017-08-22 16:52 - 000144240 _____ C:\Users\user\Downloads\that-famous-ol-spiced.h3m.GDCB
2018-02-19 10:18 - 2017-08-22 16:49 - 000132032 _____ C:\Users\user\Downloads\forgotten.h3m.GDCB
2018-02-19 10:18 - 2017-08-22 16:49 - 000132032 _____ C:\Users\user\Downloads\forgotten (1).h3m.GDCB
2018-02-19 10:18 - 2017-07-07 09:26 - 003907776 _____ C:\Users\user\Downloads\O.S.T.R. - Lubię być sam - prod. Killing Skills.mp3.GDCB
2018-02-19 10:18 - 2017-07-07 09:08 - 004208704 _____ C:\Users\user\Downloads\Taco Hemingway - Krwawa jesień (prod. Rumak).mp3.GDCB
2018-02-19 10:18 - 2017-07-07 09:08 - 003851760 _____ C:\Users\user\Downloads\Taco Hemingway - KOŁA (prod. Rumak).mp3.GDCB
2018-02-19 10:18 - 2017-07-07 09:08 - 003749360 _____ C:\Users\user\Downloads\Taco Hemingway - Mgła I (Siwe włosy) (prod. Rumak).mp3.GDCB
2018-02-19 10:18 - 2017-07-07 09:08 - 003570480 _____ C:\Users\user\Downloads\Taco Hemingway - Mgła II (Mówisz, masz) (prod. Rumak).mp3.GDCB
2018-02-19 10:18 - 2017-07-07 09:08 - 003497760 _____ C:\Users\user\Downloads\Hades - Tylko Ty.mp3.GDCB
2018-02-19 10:18 - 2017-07-07 09:07 - 004426048 _____ C:\Users\user\Downloads\Taco Hemingway - Awizo (prod. Rumak).mp3.GDCB
2018-02-19 10:18 - 2017-07-07 09:07 - 004116752 _____ C:\Users\user\Downloads\Taco Hemingway - Świecące prostokąty (prod. Rumak).mp3.GDCB
2018-02-19 10:18 - 2017-07-07 09:07 - 003559200 _____ C:\Users\user\Downloads\Taco Hemingway - +4822 (prod. Borucci).mp3.GDCB
2018-02-19 10:18 - 2017-07-07 09:07 - 003524080 _____ C:\Users\user\Downloads\Taco Hemingway - Grubo-chude psy (prod. Rumak).mp3.GDCB
2018-02-19 10:18 - 2017-07-07 09:07 - 003076448 _____ C:\Users\user\Downloads\Taco Hemingway - 515 (prod. Borucci).mp3.GDCB
2018-02-19 10:18 - 2017-07-07 09:06 - 005414096 _____ C:\Users\user\Downloads\Taco Hemingway - A mówiłem ci (prod. Rumak).mp3.GDCB
2018-02-19 10:18 - 2017-07-07 09:06 - 004497088 _____ C:\Users\user\Downloads\Taco Hemingway - Białkoholicy (prod. Rumak).mp3.GDCB
2018-02-19 10:18 - 2017-07-07 09:06 - 003224416 _____ C:\Users\user\Downloads\Taco Hemingway - SZCZERZE (prod. Borucci).mp3.GDCB
2018-02-19 10:18 - 2017-07-07 09:05 - 005770192 _____ C:\Users\user\Downloads\Taco Hemingway - Marmur (prod. Rumak).mp3.GDCB
2018-02-19 10:18 - 2017-07-07 09:05 - 004038592 _____ C:\Users\user\Downloads\Taco Hemingway - Deszcz na betonie (prod. Rumak).mp3.GDCB
2018-02-19 10:18 - 2017-07-07 09:04 - 003698800 _____ C:\Users\user\Downloads\Taco Hemingway - Żyrandol (prod. Rumak).mp3.GDCB
2018-02-19 10:18 - 2017-07-07 09:03 - 004980256 _____ C:\Users\user\Downloads\Abstract - Neverland (ft. Ruth B) (Prod. Blulake).mp3.GDCB
2018-02-19 10:18 - 2017-07-07 09:03 - 003099856 _____ C:\Users\user\Downloads\No Sleep - Born To Lose (ft. Gia Koka).mp3.GDCB
2018-02-19 10:18 - 2017-07-07 09:02 - 003845920 _____ C:\Users\user\Downloads\G-Eazy & Bebe Rexha - Me, Myself & I (No Sleep Remix).mp3.GDCB
2018-02-19 10:18 - 2017-07-07 09:01 - 002911776 _____ C:\Users\user\Downloads\Hailee Steinfeld, Grey - Starving (ft. Zedd).mp3.GDCB
2018-02-19 10:18 - 2017-07-07 09:00 - 011172160 _____ C:\Users\user\Downloads\16 All I Know (feat. Future).m4a.GDCB
2018-02-19 10:18 - 2017-07-07 09:00 - 010138224 _____ C:\Users\user\Downloads\18 I Feel It Coming (feat. Daft Punk.m4a.GDCB
2018-02-19 10:18 - 2017-07-07 09:00 - 009893216 _____ C:\Users\user\Downloads\06 Secrets.m4a.GDCB
2018-02-19 10:18 - 2017-07-07 09:00 - 008938480 _____ C:\Users\user\Downloads\17 Die For You.m4a.GDCB
2018-02-19 10:18 - 2017-07-07 09:00 - 008832672 _____ C:\Users\user\Downloads\12 A Lonely Night.m4a.GDCB
2018-02-19 10:18 - 2017-07-07 09:00 - 008801760 _____ C:\Users\user\Downloads\02 Party Monster.m4a.GDCB
2018-02-19 10:18 - 2017-07-07 09:00 - 008402096 _____ C:\Users\user\Downloads\10 Six Feet Under.m4a.GDCB
2018-02-19 10:18 - 2017-07-07 09:00 - 008281840 _____ C:\Users\user\Downloads\05 Rockin_.m4a.GDCB
2018-02-19 10:18 - 2017-07-07 09:00 - 008150064 _____ C:\Users\user\Downloads\09 Sidewalks (feat. Kendrick Lamar).m4a.GDCB
2018-02-19 10:18 - 2017-07-07 09:00 - 008075600 _____ C:\Users\user\Downloads\01 Starboy (feat. Daft Punk).m4a.GDCB
2018-02-19 10:18 - 2017-07-07 09:00 - 007995040 _____ C:\Users\user\Downloads\11 Love To Lay.m4a.GDCB
2018-02-19 10:18 - 2017-07-07 09:00 - 007853584 _____ C:\Users\user\Downloads\04 Reminder.m4a.GDCB
2018-02-19 10:18 - 2017-07-07 09:00 - 007846336 _____ C:\Users\user\Downloads\14 Ordinary Life.m4a.GDCB
2018-02-19 10:18 - 2017-07-07 09:00 - 007832352 _____ C:\Users\user\Downloads\03 False Alarm.m4a.GDCB
2018-02-19 10:18 - 2017-07-07 09:00 - 007424592 _____ C:\Users\user\Downloads\07 True Colors.m4a.GDCB
2018-02-19 10:18 - 2017-07-07 09:00 - 007191072 _____ C:\Users\user\Downloads\13 Attention.m4a.GDCB
2018-02-19 10:18 - 2017-07-07 09:00 - 007002352 _____ C:\Users\user\Downloads\15 Nothing Without You.m4a.GDCB
2018-02-19 10:18 - 2017-07-07 09:00 - 004230048 _____ C:\Users\user\Downloads\08 Stargirl Interlude (feat. Lana De.m4a.GDCB
2018-02-19 10:18 - 2017-07-07 09:00 - 003524928 _____ C:\Users\user\Downloads\Illenium - I'll Be Your Reason.mp3.GDCB
2018-02-19 10:18 - 2017-07-07 08:59 - 002926816 _____ C:\Users\user\Downloads\The Tech Thieves - Wanna.mp3.GDCB
2018-02-19 10:18 - 2017-07-07 08:58 - 003464320 _____ C:\Users\user\Downloads\Jasmine Thompson - Someone's Somebody.mp3.GDCB
2018-02-19 10:18 - 2017-07-07 08:57 - 003288352 _____ C:\Users\user\Downloads\Whethan - Savage (feat. Flux Pavilion & MAX).mp3.GDCB
2018-02-19 10:18 - 2017-07-07 08:57 - 003209776 _____ C:\Users\user\Downloads\DVBBS & CMC$ - Parallel Lines (feat. Happy Sometimes).mp3.GDCB
2018-02-19 10:18 - 2017-07-07 08:56 - 003413744 _____ C:\Users\user\Downloads\blackbear - Chateau.mp3.GDCB
2018-02-19 10:18 - 2017-07-06 10:00 - 003380304 _____ C:\Users\user\Downloads\Blackbear - i miss the old u.mp3.GDCB
2018-02-19 10:18 - 2017-07-06 09:59 - 003925744 _____ C:\Users\user\Downloads\Skrux - Our Fragment (ft. Missio).mp3.GDCB
2018-02-19 10:18 - 2017-07-06 09:59 - 003775696 _____ C:\Users\user\Downloads\TroyBoi - On My Own (Feat. NEFERA).mp3.GDCB
2018-02-19 10:18 - 2017-07-06 09:59 - 003162560 _____ C:\Users\user\Downloads\Lauv - I Like Me Better.mp3.GDCB
2018-02-19 10:18 - 2017-07-06 09:58 - 003593472 _____ C:\Users\user\Downloads\Kasbo - Lay It On Me (feat. Keiynan Lonsdale).mp3.GDCB
2018-02-19 10:18 - 2017-07-06 09:58 - 003512480 _____ C:\Users\user\Downloads\XYLØ - L.A. Love Song.mp3.GDCB
2018-02-19 10:18 - 2017-07-06 09:58 - 003156704 _____ C:\Users\user\Downloads\Stephen - Fly Down.mp3.GDCB
2018-02-19 10:18 - 2017-07-04 16:53 - 000169280 _____ C:\Users\user\Downloads\nation_war_1135.zip.GDCB
2018-02-19 10:18 - 2017-07-04 16:42 - 000203040 _____ C:\Users\user\Downloads\alara_1506.zip.GDCB
2018-02-19 10:18 - 2017-07-03 15:28 - 003761904 _____ C:\Users\user\Downloads\Paluch DYM prod. Julas (OFFICIAL VIDEO).mp3.GDCB
2018-02-19 10:18 - 2017-07-03 15:28 - 003746448 _____ C:\Users\user\Downloads\Paluch Gdybyś kiedyś prod. Maiky Beatz ( OFFICIAL VIDEO ).mp3.GDCB
2018-02-19 10:18 - 2017-07-03 15:28 - 003487312 _____ C:\Users\user\Downloads\Paluch Daj mi powód prod. Oster ( OFFICIAL VIDEO ).mp3.GDCB
2018-02-19 10:18 - 2017-07-03 15:27 - 004331168 _____ C:\Users\user\Downloads\Stephen - Crossfire.mp3.GDCB
2018-02-19 10:18 - 2017-07-03 15:27 - 004164400 _____ C:\Users\user\Downloads\LissA - Some Of Me (feat. Philip Nolan).mp3.GDCB
2018-02-19 10:18 - 2017-07-03 15:27 - 003395776 _____ C:\Users\user\Downloads\Blackbear - Do Re mi.mp3.GDCB
2018-02-19 10:18 - 2017-06-29 16:58 - 000108704 _____ C:\Users\user\Downloads\[HotA]  Insidiosa Dea by DODO.h3m.GDCB
2018-02-19 10:18 - 2017-06-23 22:11 - 004446528 _____ C:\Users\user\Downloads\Taco Hemingway  - Gdybyś Nie Istniała (SzUsty Blend).mp3.GDCB
2018-02-19 10:18 - 2017-06-23 22:11 - 003343952 _____ C:\Users\user\Downloads\Drake - Crew Love (feat. The Weekend) HQ.mp3.GDCB
2018-02-19 10:18 - 2017-06-23 22:10 - 003978832 _____ C:\Users\user\Downloads\KęKę - Na drodze prod. Matek.mp3.GDCB
2018-02-19 10:18 - 2017-06-23 22:10 - 003621888 _____ C:\Users\user\Downloads\KęKę - Troski prod. DonDe scratch Dj VaZee.mp3.GDCB
2018-02-19 10:18 - 2017-06-23 22:10 - 003465568 _____ C:\Users\user\Downloads\Paluch W moim życiu  prod. Julas ( OFFICIAL VIDEO ).mp3.GDCB
2018-02-19 10:18 - 2017-06-23 22:09 - 004010592 _____ C:\Users\user\Downloads\Paluch SZAMAN prod. PSR ( OFFICIAL VIDEO ).mp3.GDCB
2018-02-19 10:18 - 2017-06-23 22:09 - 003643616 _____ C:\Users\user\Downloads\KęKę - Nie mogło się udać prod. Uraz.mp3.GDCB
2018-02-19 10:18 - 2017-06-23 22:09 - 003550000 _____ C:\Users\user\Downloads\Taco Hemingway - WIATR (prod. Borucci).mp3.GDCB
2018-02-19 10:18 - 2017-06-23 22:09 - 003170912 _____ C:\Users\user\Downloads\Paluch  OKO (Ostatni Krzyk Osiedla) prod. YoungVeteran$.mp3.GDCB
2018-02-19 10:18 - 2017-06-23 22:08 - 005315872 _____ C:\Users\user\Downloads\Trzy Korony - Sobota, Bonson, Bilon, Ania Karwan, Kieru, Wini (prod. Matheo).mp3.GDCB
2018-02-19 10:18 - 2017-06-23 22:08 - 005108576 _____ C:\Users\user\Downloads\Jano Polska Wersja - Sam Świata Nie Zmienię feat. Hinol PW, Rest DIxon37.mp3.GDCB
2018-02-19 10:18 - 2017-06-23 22:08 - 004006000 _____ C:\Users\user\Downloads\Paluch-Kaczor-Kali - Lecimy od lat (All The Way Up Official Remix).mp3.GDCB
2018-02-19 10:18 - 2017-06-23 22:08 - 003440080 _____ C:\Users\user\Downloads\Sitek - Chcemy Być Wyżej.mp3.GDCB
2018-02-19 10:18 - 2017-06-23 22:08 - 003180944 _____ C:\Users\user\Downloads\KęKę - Miraż prod. PLN.Beatz.mp3.GDCB
2018-02-19 10:18 - 2017-06-23 19:24 - 000272544 _____ C:\Users\user\Downloads\the-devil-is-in-the-detail.h3m.GDCB
2018-02-19 10:18 - 2017-06-23 19:24 - 000100064 _____ C:\Users\user\Downloads\lemuria.h3m.GDCB
2018-02-19 10:18 - 2017-06-23 18:37 - 000102944 _____ C:\Users\user\Downloads\turns_1343.zip.GDCB
2018-02-19 10:18 - 2017-06-23 18:33 - 000162000 _____ C:\Users\user\Downloads\hornger_games_the_walking_dead_1399.zip.GDCB
2018-02-19 10:18 - 2017-06-23 18:32 - 000403616 _____ C:\Users\user\Downloads\crapcore_1414.zip.GDCB
2018-02-19 10:18 - 2017-06-16 17:38 - 000000000 ____D C:\Users\user\Desktop\Nowy folder
2018-02-19 10:18 - 2017-04-28 13:44 - 000002752 _____ C:\Users\user\Desktop\pt79[t79]y80].lnk.GDCB
2018-02-19 10:18 - 2017-04-26 17:59 - 000000000 ___HD C:\VTRoot
2018-02-19 10:18 - 2017-04-18 20:15 - 000000000 ___SD C:\Users\user\Documents\Moje źródła danych
2018-02-19 10:18 - 2017-01-14 16:30 - 000014432 _____ C:\Users\user\Documents\zdania.docx.GDCB
2018-02-19 10:18 - 2016-12-27 21:29 - 000056848 _____ C:\Users\user\Downloads\CV Konrad Żyla (1).doc.GDCB
2018-02-19 10:18 - 2016-12-27 15:57 - 000000000 ____D C:\Users\user\Desktop\Starboy
2018-02-19 10:18 - 2016-11-18 19:18 - 000030448 _____ C:\Users\user\Downloads\15135685_1802402183373879_1720474755_n.jpg.GDCB
2018-02-19 10:18 - 2016-11-13 11:27 - 000173472 _____ C:\Users\user\Downloads\15052003_1245758308831269_1122577501_o.jpg.GDCB
2018-02-19 10:18 - 2016-11-13 11:27 - 000156544 _____ C:\Users\user\Downloads\15064905_1245758188831281_791564752_o.jpg.GDCB
2018-02-19 10:18 - 2016-11-13 11:27 - 000140192 _____ C:\Users\user\Downloads\15052107_1245758365497930_979613332_o.jpg.GDCB
2018-02-19 10:18 - 2016-11-13 11:27 - 000139312 _____ C:\Users\user\Downloads\15033984_1245758532164580_889001693_o.jpg.GDCB
2018-02-19 10:18 - 2016-11-13 11:27 - 000091744 _____ C:\Users\user\Downloads\15045441_1245758255497941_1163578839_o.jpg.GDCB
2018-02-19 10:18 - 2016-11-13 11:27 - 000088880 _____ C:\Users\user\Downloads\15044767_1245758012164632_208085620_o.jpg.GDCB
2018-02-19 10:18 - 2016-11-13 11:27 - 000050960 _____ C:\Users\user\Downloads\15051960_1245758452164588_649194907_o.jpg.GDCB
2018-02-19 10:18 - 2016-11-13 11:26 - 000159584 _____ C:\Users\user\Downloads\15034403_1245757825497984_396250096_o.jpg.GDCB
2018-02-19 10:18 - 2016-11-05 17:12 - 000009632 ___SH C:\Users\user\Downloads\AlbumArt_{F6F4A0FB-57AB-437A-978E-E34E1060EA30}_Large.jpg.GDCB
2018-02-19 10:18 - 2016-11-05 17:12 - 000002912 ___SH C:\Users\user\Downloads\AlbumArt_{F6F4A0FB-57AB-437A-978E-E34E1060EA30}_Small.jpg.GDCB
2018-02-19 10:18 - 2016-11-04 10:24 - 005110960 _____ C:\Users\user\Downloads\The Weeknd - The Morning.mp3.GDCB
2018-02-19 10:18 - 2016-11-04 10:24 - 004146016 _____ C:\Users\user\Downloads\The Weeknd - Twenty Eight [HQ] (Lyrics on Screen).mp3.GDCB
2018-02-19 10:18 - 2016-11-04 10:23 - 004015184 _____ C:\Users\user\Downloads\Taco Hemingway - Następna stacja (prod. Rumak).mp3.GDCB
2018-02-19 10:18 - 2016-11-04 10:22 - 004982352 _____ C:\Users\user\Downloads\3) Wszystko jedno (Trójkąt warszawski).mp3.GDCB
2018-02-19 10:18 - 2016-11-04 10:21 - 005800592 _____ C:\Users\user\Downloads\The Weeknd - The Knowing.mp3.GDCB
2018-02-19 10:18 - 2016-11-04 10:21 - 003375872 _____ C:\Users\user\Downloads\The Weeknd - What You Need.mp3.GDCB
2018-02-19 10:18 - 2016-10-07 20:07 - 000009632 ___SH C:\Users\user\Downloads\Folder.jpg.GDCB
2018-02-19 10:18 - 2016-10-07 20:07 - 000006976 ___SH C:\Users\user\Downloads\AlbumArt_{9DA1F284-FC6A-43A0-93C1-805EB91848A6}_Large.jpg.GDCB
2018-02-19 10:18 - 2016-10-07 20:07 - 000006144 ___SH C:\Users\user\Downloads\AlbumArt_{542BD360-1B40-4F70-B7C8-D66A9A50C107}_Large.jpg.GDCB
2018-02-19 10:18 - 2016-10-07 20:07 - 000002912 ___SH C:\Users\user\Downloads\AlbumArtSmall.jpg.GDCB
2018-02-19 10:18 - 2016-10-07 20:07 - 000002432 ___SH C:\Users\user\Downloads\AlbumArt_{542BD360-1B40-4F70-B7C8-D66A9A50C107}_Small.jpg.GDCB
2018-02-19 10:18 - 2016-10-07 20:07 - 000002416 ___SH C:\Users\user\Downloads\AlbumArt_{9DA1F284-FC6A-43A0-93C1-805EB91848A6}_Small.jpg.GDCB
2018-02-19 10:18 - 2016-10-07 18:21 - 004297024 _____ C:\Users\user\Downloads\The Weeknd - Love In The Sky.mp3.GDCB
2018-02-19 10:18 - 2016-10-07 18:21 - 004094208 _____ C:\Users\user\Downloads\The Weeknd - Devil May Cry.mp3.GDCB
2018-02-19 10:18 - 2016-10-07 18:20 - 005890736 _____ C:\Users\user\Downloads\The Weeknd - Loft Music.mp3.GDCB
2018-02-19 10:18 - 2016-10-07 18:20 - 004651344 _____ C:\Users\user\Downloads\The Weeknd - Enemy [LYRICS].mp3.GDCB
2018-02-19 10:18 - 2016-10-07 18:20 - 004100464 _____ C:\Users\user\Downloads\The Weeknd - Montreal.mp3.GDCB
2018-02-19 10:18 - 2016-10-07 18:19 - 005878864 _____ C:\Users\user\Downloads\The Weeknd - Next.mp3.GDCB
2018-02-19 10:18 - 2016-10-07 18:19 - 005766464 _____ C:\Users\user\Downloads\The Weeknd - Valerie (Vladish Edit).mp3.GDCB
2018-02-19 10:18 - 2016-10-07 18:19 - 005080448 _____ C:\Users\user\Downloads\The Weeknd - Same Old Song.mp3.GDCB
2018-02-19 10:18 - 2016-10-07 18:19 - 004378832 _____ C:\Users\user\Downloads\The Weeknd - Starboy ft. Daft Punk.mp3.GDCB
2018-02-19 10:18 - 2016-10-07 18:19 - 003937056 _____ C:\Users\user\Downloads\The Weeknd - Gone (Sango Remix).mp3.GDCB
2018-02-19 10:18 - 2014-07-30 03:10 - 000000704 ____H C:\Users\user\Downloads\~$edronka.docx.GDCB
2018-02-19 10:18 - 2014-05-17 18:57 - 000000704 ____H C:\Users\user\Desktop\~$wy Dokument programu Microsoft Office Word.docx.GDCB
2018-02-19 10:18 - 2012-02-18 12:29 - 000000704 ____H C:\Users\user\Desktop\~$Nowy Prezentacja programu Microsoft Office PowerPoint.pptx.GDCB
2018-02-19 10:18 - 2010-06-07 14:46 - 000000560 ___SH C:\Users\user\ntuser.ini.GDCB
2018-02-19 10:18 - 2008-01-14 18:05 - 000000704 ____H C:\Users\user\Desktop\~$TESCO.docx.GDCB
2018-02-19 10:18 - 2008-01-01 01:44 - 000000704 ____H C:\Users\user\Documents\~$Zeszyt1.xlsx.GDCB
2018-02-19 10:17 - 2017-12-11 12:35 - 000000000 ____D C:\Users\user\AppData\Roaming\Nero
2018-02-19 10:17 - 2017-12-11 12:33 - 000003184 _____ C:\Users\Public\Desktop\Nero StartSmart Essentials.lnk.GDCB
2018-02-19 10:17 - 2017-05-31 11:20 - 000002624 _____ C:\Users\Public\Desktop\Google Chrome.lnk.GDCB
2018-02-19 10:17 - 2017-05-30 21:41 - 000000000 ____D C:\Users\user\.thumbnails
2018-02-19 10:17 - 2017-04-26 21:08 - 000000000 ____D C:\Users\Konrad\AppData\Roaming\Comodo
2018-02-19 10:17 - 2017-04-26 20:09 - 000000000 ____D C:\Users\user\AppData\Roaming\Opera Software
2018-02-19 10:17 - 2017-04-22 16:37 - 000000000 ____D C:\Users\user\AppData\Roaming\Sun
2018-02-19 10:17 - 2017-04-20 17:21 - 000001376 _____ C:\Users\Konrad\Desktop\New Features of Heroes III In the Wake of Gods.lnk.GDCB
2018-02-19 10:17 - 2017-04-20 17:21 - 000001328 _____ C:\Users\Konrad\Desktop\Heroes III In the Wake of Gods.lnk.GDCB
2018-02-19 10:17 - 2017-02-28 22:29 - 000070160 _____ C:\Users\user\Desktop\Cvvvvvvv.doc.GDCB
2018-02-19 10:17 - 2017-02-20 16:30 - 000000000 ____D C:\Users\user\AppData\Roaming\.minecraft
2018-02-19 10:17 - 2017-02-14 13:39 - 000000000 ____D C:\Users\user\Desktop\Buda
2018-02-19 10:17 - 2017-01-25 18:09 - 000000000 ____D C:\Users\user\Desktop\Literature
2018-02-19 10:17 - 2016-12-27 21:31 - 000068624 _____ C:\Users\user\Desktop\CV Konrad Żyla (1).doc.GDCB
2018-02-19 10:17 - 2016-12-13 12:08 - 000000000 ____D C:\Users\Konrad\AppData\Roaming\Raptr
2018-02-19 10:17 - 2016-12-13 12:08 - 000000000 ____D C:\Users\Konrad\AppData\Roaming\PlaysTV
2018-02-19 10:17 - 2016-12-09 15:24 - 000000000 ____D C:\Users\user\AppData\Roaming\PlaysTV
2018-02-19 10:17 - 2016-12-09 15:23 - 000000000 ____D C:\Users\user\AppData\Roaming\library_dir
2018-02-19 10:17 - 2016-12-07 18:04 - 000000000 ____D C:\Users\Konrad\Documents\League of Legends
2018-02-19 10:17 - 2016-12-07 17:58 - 000034032 _____ C:\Users\Konrad\Desktop\Logs-2016-12-07T17-58-06.gz.GDCB
2018-02-19 10:17 - 2016-12-07 17:57 - 000000000 ____D C:\Users\Konrad\Desktop\Nowy folder
2018-02-19 10:17 - 2016-12-07 17:57 - 000000000 ____D C:\Users\Konrad\AppData\Roaming\WinRAR
2018-02-19 10:17 - 2016-12-07 17:46 - 000000000 ____D C:\Users\Konrad\AppData\Roaming\Riot Games
2018-02-19 10:17 - 2016-12-07 17:35 - 000001920 _____ C:\Users\Konrad\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk.GDCB
2018-02-19 10:17 - 2016-12-07 17:35 - 000000560 ___SH C:\Users\Konrad\ntuser.ini.GDCB
2018-02-19 10:17 - 2016-12-07 17:35 - 000000000 ____D C:\Users\Konrad\AppData\Roaming\TuneUp Software
2018-02-19 10:17 - 2016-12-07 17:35 - 000000000 ____D C:\Users\Konrad\AppData\Roaming\Media Center Programs
2018-02-19 10:17 - 2016-12-07 17:35 - 000000000 ____D C:\Users\Konrad
2018-02-19 10:17 - 2016-12-03 11:01 - 000001520 _____ C:\Users\Public\Desktop\CPUID CPU-Z.lnk.GDCB
2018-02-19 10:17 - 2016-12-03 11:00 - 000000000 ____D C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2018-02-19 10:17 - 2016-09-04 11:12 - 000000000 ____D C:\Users\user\AppData\Roaming\AMD
2018-02-19 10:17 - 2016-09-04 10:57 - 000000000 ____D C:\Users\user\AppData\Roaming\java
2018-02-19 10:17 - 2016-08-25 18:34 - 000000000 ____D C:\Users\user\AppData\Roaming\Unity
2018-02-19 10:17 - 2016-08-18 13:14 - 000002512 _____ C:\Users\Public\Desktop\Acrobat Reader DC.lnk.GDCB
2018-02-19 10:17 - 2016-08-18 13:08 - 000000000 ____D C:\Users\user\AppData\Roaming\Riot Games
2018-02-19 10:17 - 2015-03-20 14:32 - 000000000 ____D C:\Users\user\AppData\Roaming\Google
2018-02-19 10:17 - 2014-10-03 21:23 - 000003232 _____ C:\Users\user\Desktop\Microsoft Office Word 2007.lnk.GDCB
2018-02-19 10:17 - 2014-08-26 09:24 - 000000000 ____D C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games
2018-02-19 10:17 - 2014-02-15 14:31 - 000000000 ____D C:\Users\user\AppData\Roaming\BESTplayer
2018-02-19 10:17 - 2014-02-01 10:06 - 000000000 ____D C:\Users\user\AppData\Roaming\City Interactive 3 Days Zoo Mystery
2018-02-19 10:17 - 2010-06-08 14:52 - 000000000 ____D C:\Users\user\AppData\Roaming\Ahead
2018-02-19 10:17 - 2010-06-08 14:22 - 000000000 ____D C:\Users\user\AppData\Roaming\Macromedia
2018-02-19 10:17 - 2010-06-08 14:22 - 000000000 ____D C:\Users\user\AppData\Roaming\Adobe
2018-02-19 10:17 - 2010-06-08 14:01 - 000000000 ____D C:\Users\user\AppData\Roaming\Opera
2018-02-19 10:17 - 2010-06-07 14:46 - 000000000 ____D C:\Users\user\AppData\Roaming\Media Center Programs
2018-02-19 10:17 - 2009-07-14 09:28 - 000000000 ___RD C:\Users\Public\Recorded TV
2018-02-19 10:17 - 2009-07-14 03:37 - 000000000 __RHD C:\Users\Public\Libraries
2018-02-19 10:17 - 2008-01-19 18:24 - 000000000 ____D C:\Users\user\AppData\Roaming\Mozilla
2018-02-19 10:17 - 2008-01-08 22:05 - 000000000 ____D C:\Users\user\AppData\Roaming\DivX
2018-02-19 10:17 - 2008-01-01 00:46 - 000000000 ____D C:\Users\user\AppData\Roaming\IObit
2018-02-19 10:17 - 2008-01-01 00:22 - 000000000 ____D C:\Users\user\AppData\Roaming\ATI
2018-02-19 10:17 - 2008-01-01 00:08 - 000000000 ____D C:\Users\user\AppData\Roaming\Ace
2018-02-19 10:17 - 2007-12-31 23:16 - 000000000 ___HD C:\Users\user\AppData\Roaming\CA9E0F3E
2018-02-19 10:16 - 2017-04-26 21:37 - 000000000 ____D C:\Users\Konrad\AppData\Local\CrashDumps
2018-02-19 10:16 - 2017-01-10 13:24 - 000000000 ____D C:\Users\Default\AppData\Local\AVG
2018-02-19 10:16 - 2017-01-10 13:24 - 000000000 ____D C:\Users\Default User\AppData\Local\AVG
2018-02-19 10:16 - 2016-12-13 12:08 - 000000000 ____D C:\Users\Konrad\AppData\Local\AMD
2018-02-19 10:16 - 2016-12-07 17:35 - 000000000 ____D C:\Users\Konrad\AppData\Roaming\ATI
2018-02-19 10:16 - 2016-12-07 17:35 - 000000000 ____D C:\Users\Konrad\AppData\Roaming\Adobe
2018-02-19 10:16 - 2016-12-07 17:35 - 000000000 ____D C:\Users\Konrad\AppData\Local\VirtualStore
2018-02-19 10:16 - 2016-12-07 17:35 - 000000000 ____D C:\Users\Konrad\AppData\Local\Microsoft Help
2018-02-19 10:16 - 2016-12-07 17:35 - 000000000 ____D C:\Users\Konrad\AppData\Local\Google
2018-02-19 10:16 - 2016-12-07 17:35 - 000000000 ____D C:\Users\Konrad\AppData\Local\CEF
2018-02-19 10:16 - 2016-12-07 17:35 - 000000000 ____D C:\Users\Konrad\AppData\Local\Avg
2018-02-19 10:16 - 2016-12-07 17:35 - 000000000 ____D C:\Users\Konrad\AppData\Local\ATI
2018-02-19 10:16 - 2016-11-29 11:34 - 000000000 ____D C:\Temp
2018-02-19 10:16 - 2015-03-18 22:57 - 000000000 ____D C:\Users\Default\AppData\Local\Microsoft Help
2018-02-19 10:16 - 2015-03-18 22:57 - 000000000 ____D C:\Users\Default User\AppData\Local\Microsoft Help
2018-02-19 10:16 - 2009-07-14 09:28 - 000000000 ____D C:\Users\Default\AppData\Roaming\Media Center Programs
2018-02-19 10:16 - 2009-07-14 09:28 - 000000000 ____D C:\Users\Default User\AppData\Roaming\Media Center Programs
2018-02-19 10:16 - 2007-12-31 23:09 - 000000000 ____D C:\Users\Default\AppData\Roaming\TuneUp Software
2018-02-19 10:16 - 2007-12-31 23:09 - 000000000 ____D C:\Users\Default User\AppData\Roaming\TuneUp Software
2018-02-19 09:55 - 2018-01-03 15:12 - 000000000 ____D C:\Riot Games
2018-02-19 09:54 - 2010-06-08 08:58 - 000000000 __RHD C:\MSOCache
2018-02-19 09:54 - 2009-07-14 03:37 - 000000000 ____D C:\PerfLogs
2018-02-19 09:53 - 2017-04-28 13:24 - 000000000 ____D C:\Heroes
2018-02-19 09:42 - 2017-09-25 21:39 - 000000000 ____D C:\Gry
2018-02-19 09:42 - 2017-06-06 07:10 - 000000000 __SHD C:\found.002
2018-02-19 09:42 - 2017-05-30 12:24 - 000000000 ____D C:\d3590fef345a22937fd54631
2018-02-19 09:42 - 2017-05-25 13:51 - 000000000 __SHD C:\found.001
2018-02-19 09:42 - 2010-06-08 14:34 - 000018160 _____ C:\AutoMapaSetupLog.txt.GDCB
2018-02-19 09:42 - 2009-07-14 03:04 - 000000560 _____ C:\autoexec.bat.GDCB
2018-02-19 09:42 - 2008-01-01 00:40 - 000000000 __SHD C:\found.000
2018-02-19 09:42 - 2008-01-01 00:27 - 000000000 ____D C:\d217784deb659d086eeb39
2018-02-19 09:39 - 2017-05-31 10:59 - 000000000 ____D C:\a0d89c0fd9063e133d
2018-02-19 09:39 - 2017-04-26 17:24 - 000000000 ____D C:\AMD
2018-02-19 09:39 - 2016-12-06 19:31 - 000000000 __SHD C:\AI_RecycleBin
2018-02-18 10:05 - 2010-06-08 14:02 - 000000000 ____D C:\Windows\system32\Macromed
2018-02-17 11:19 - 2009-07-14 03:37 - 000000000 ____D C:\Windows\rescache
2018-02-17 02:33 - 2009-07-14 05:33 - 000416600 _____ C:\Windows\system32\FNTCACHE.DAT
2018-02-15 10:40 - 2017-04-22 16:36 - 000000000 ____D C:\ProgramData\Oracle
2018-02-15 10:39 - 2017-04-27 14:29 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2018-02-15 10:39 - 2017-04-27 14:28 - 000000000 ____D C:\Program Files\Java
2018-02-15 10:38 - 2010-06-08 14:06 - 000000000 ____D C:\Program Files\Common Files\Java
2018-02-15 10:37 - 2017-04-27 14:29 - 000095808 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge.dll
2018-02-14 23:56 - 2015-03-19 19:11 - 000000000 ____D C:\Windows\system32\appraiser
2018-02-14 23:54 - 2015-03-20 08:47 - 000000000 ____D C:\Windows\system32\MRT
2018-02-14 23:50 - 2017-10-15 02:01 - 127229528 ____C (Microsoft Corporation) C:\Windows\system32\MRT-KB890830.exe
2018-02-14 23:50 - 2015-03-21 03:07 - 127229528 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
2018-02-14 09:37 - 2017-05-31 11:20 - 000002136 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2018-02-13 14:04 - 2013-12-27 16:55 - 000000000 ____D C:\Users\user\AppData\Local\Adobe
2018-02-13 14:03 - 2017-04-25 21:55 - 000803328 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerApp.exe
2018-02-13 14:03 - 2017-04-25 21:55 - 000144896 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerCPLApp.cpl
2018-02-12 18:31 - 2017-11-03 12:08 - 000000000 ____D C:\Users\user\AppData\Local\Facebook
2018-02-12 18:31 - 2008-01-01 00:11 - 000000000 ____D C:\ProgramData\Package Cache
 
==================== Pliki w katalogu głównym wybranych folderów =======
 
2018-02-19 10:17 - 2018-02-19 10:17 - 000002646 _____ () C:\Users\user\AppData\Roaming\GDCB-DECRYPT.txt
2018-02-19 13:43 - 2018-02-19 13:43 - 000002646 _____ () C:\Users\user\AppData\Roaming\Microsoft\GDCB-DECRYPT.txt
2018-02-19 14:23 - 2018-02-19 09:30 - 000267776 ____N () C:\Users\user\AppData\Roaming\Microsoft\trzA5C4.tmp
2012-02-18 13:24 - 2012-02-18 13:25 - 000007168 _____ () C:\Users\user\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2018-02-19 10:18 - 2018-02-19 10:18 - 000002646 _____ () C:\Users\user\AppData\Local\GDCB-DECRYPT.txt
2017-05-30 21:41 - 2017-05-30 21:41 - 000001447 _____ () C:\Users\user\AppData\Local\recently-used.xbel
2016-09-09 11:21 - 2017-04-23 14:13 - 000007588 _____ () C:\Users\user\AppData\Local\Resmon.ResmonCfg
 
Niektóre pliki w TEMP:
====================
2017-10-21 00:25 - 2017-10-21 00:25 - 001856576 _____ (Oracle Corporation) C:\Users\user\AppData\Local\Temp\jre-8u151-windows-au.exe
2018-02-15 10:35 - 2018-02-15 10:35 - 001864256 _____ (Oracle Corporation) C:\Users\user\AppData\Local\Temp\jre-8u161-windows-au.exe
2017-11-29 19:24 - 2017-11-29 19:24 - 000963232 _____ (Microsoft Corporation) C:\Users\user\AppData\Local\Temp\msvcr120.dll
2018-02-12 18:33 - 2018-02-12 18:33 - 000221632 _____ () C:\Users\user\AppData\Local\Temp\raptr_stub.exe
2017-12-18 11:49 - 2017-12-18 11:49 - 014456872 _____ (Microsoft Corporation) C:\Users\user\AppData\Local\Temp\vcredist_x86.exe
 
==================== Bamital & volsnap ======================
 
(Brak automatycznej naprawy dla plików które nie przeszły weryfikacji.)
 
C:\Windows\explorer.exe => Plik podpisany cyfrowo
C:\Windows\system32\winlogon.exe => Plik podpisany cyfrowo
C:\Windows\system32\wininit.exe => Plik podpisany cyfrowo
C:\Windows\system32\svchost.exe => Plik podpisany cyfrowo
C:\Windows\system32\services.exe => Plik podpisany cyfrowo
C:\Windows\system32\User32.dll => Plik podpisany cyfrowo
C:\Windows\system32\userinit.exe => Plik podpisany cyfrowo
C:\Windows\system32\rpcss.dll => Plik podpisany cyfrowo
C:\Windows\system32\dnsapi.dll => Plik podpisany cyfrowo
C:\Windows\system32\Drivers\volsnap.sys => Plik podpisany cyfrowo
 
LastRegBack: 2018-02-17 11:10
 
==================== Koniec  FRST.txt ============================

Rezultaty skanu uzupełniającego Farbar Recovery Scan Tool (x86) Wersja: 17.02.2018
Uruchomiony przez user (19-02-2018 18:44:14)
Uruchomiony z C:\Users\user\Downloads
Microsoft Windows 7 Ultimate  Service Pack 1 (X86) (2010-06-07 13:46:46)
Tryb startu: Normal
==========================================================
 
 
==================== Konta użytkowników: =============================
 
Administrator (S-1-5-21-1675737123-1519436412-2290605674-500 - Administrator - Disabled)
Gość (S-1-5-21-1675737123-1519436412-2290605674-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-1675737123-1519436412-2290605674-1002 - Limited - Enabled)
user (S-1-5-21-1675737123-1519436412-2290605674-1000 - Administrator - Enabled) => C:\Users\user
 
==================== Centrum zabezpieczeń ========================
 
(Załączenie wejścia w fixlist spowoduje jego usunięcie.)
 
 
==================== Zainstalowane programy ======================
 
(W fixlist dozwolone tylko załączanie programów adware z flagą "Hidden" w celu ich uwidocznienia. Programy adware powinny zostać w poprawny sposób odinstalowane.)
 
Adobe Acrobat Reader DC - Polish (HKLM\...\{AC76BA86-7AD7-1045-7B44-AC0F074E4100}) (Version: 17.009.20044 - Adobe Systems Incorporated)
Adobe Flash Player 25 ActiveX (HKLM\...\Adobe Flash Player ActiveX) (Version: 25.0.0.148 - Adobe Systems Incorporated)
Adobe Flash Player 28 PPAPI (HKLM\...\Adobe Flash Player PPAPI) (Version: 28.0.0.161 - Adobe Systems Incorporated)
Aktualizacja produktu Microsoft Office Excel 2007 Help (KB963678) (HKLM\...\{90120000-0016-0415-0000-0000000FF1CE}_ENTERPRISE_{04E205D6-88B1-4652-B162-42DF2C3B1228}) (Version:  - Microsoft)
Aktualizacja produktu Microsoft Office Powerpoint 2007 Help (KB963669) (HKLM\...\{90120000-0018-0415-0000-0000000FF1CE}_ENTERPRISE_{442ECBCF-94A7-48CC-8CD9-D31FFFD5FA86}) (Version:  - Microsoft)
Aktualizacja produktu Microsoft Office Word 2007 Help (KB963665) (HKLM\...\{90120000-001B-0415-0000-0000000FF1CE}_ENTERPRISE_{128A36ED-21BE-4547-9FFE-5B85AEC735DD}) (Version:  - Microsoft)
AMD Catalyst Install Manager (HKLM\...\{17A7AA54-B23B-22B7-CDD5-C51122056415}) (Version: 8.0.916.0 - Advanced Micro Devices, Inc.)
AVG PC TuneUp (HKLM\...\{D87926DA-D66D-4B80-BB89-019E95477B73}) (Version: 16.74.1 - AVG Technologies) Hidden
Centrum obsługi urządzeń z systemem Windows Mobile (HKLM\...\{904CCF62-818D-4675-BC76-D37EB399F917}) (Version: 6.1.6965.0 - Microsoft Corporation)
CPUID CPU-Z 1.72 (HKLM\...\CPUID CPU-Z_is1) (Version:  - )
CyberLink DVD Suite (HKLM\...\{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}) (Version: 5.0.3019 - CyberLink Corp.)
GIMP 2.8.18 (HKLM\...\GIMP-2_is1) (Version: 2.8.18 - The GIMP Team)
Google Chrome (HKLM\...\Google Chrome) (Version: 64.0.3282.167 - Google Inc.)
Google Update Helper (HKLM\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.33.7 - Google Inc.) Hidden
Google Update Helper (HKLM\...\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}) (Version: 1.3.24.7 - Google Inc.) Hidden
Heroes of Might and Magic 3 Complete (HKLM\...\Heroes of Might and Magic 3 Complete_is1) (Version:  - GOG.com)
Heroes of Might and Magic® III: Horn of the Abyss (HKLM\...\HotA_is1) (Version: 1.4.2 - HotA Crew)
Java 8 Update 161 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F32180161F0}) (Version: 8.0.1610.12 - Oracle Corporation)
Java™ 6 Update 3 (HKLM\...\{3248F0A8-6813-11D6-A77B-00B0D0160030}) (Version: 1.6.0.30 - Sun Microsystems, Inc.)
League of Legends (HKLM\...\League of Legends 1.0) (Version: 1.0 - Riot Games, Inc)
Microsoft .NET Framework 4.6 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.6.00081 - Microsoft Corporation)
Microsoft .NET Framework 4.6 (Polski) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1045) (Version: 4.6.00081 - Microsoft Corporation)
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version:  - Microsoft)
Microsoft Office Enterprise 2007 (HKLM\...\ENTERPRISE) (Version: 12.0.6612.1000 - Microsoft Corporation)
Microsoft Office File Validation Add-In (HKLM\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50428.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24215 (HKLM\...\{e2803110-78b3-4664-a479-3611a381656a}) (Version: 14.0.24215.1 - Microsoft Corporation)
Mozilla Firefox 48.0.2 (x86 pl) (HKLM\...\Mozilla Firefox 48.0.2 (x86 pl)) (Version: 48.0.2 - Mozilla)
MSXML 4.0 SP2 (KB954430) (HKLM\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (HKLM\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
Nero 7 Essentials (HKLM\...\{66B6D13A-9CC1-417D-B6F2-58AA539D1045}) (Version: 7.03.1303 - Nero AG)
NVIDIA Drivers (HKLM\...\NVIDIA Drivers) (Version: 1.10.62.40 - NVIDIA Corporation)
PowerProducer (HKLM\...\{B7A0CE06-068E-11D6-97FD-0050BACBF861}) (Version: 063604(3.7)_Vista_LG - CyberLink Corp.)
Realtek Card Reader (HKLM\...\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}) (Version: 10.0.10586.31222 - Realtek Semiconduct Corp.)
Realtek HDMI Audio Driver for ATI (HKLM\...\{5449FB4F-1802-4D5B-A6D8-087DB1142147}) (Version: 6.0.1.6650 - Realtek Semiconductor Corp.)
Realtek High Definition Audio Driver (HKLM\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6662 - Realtek Semiconductor Corp.)
TP-LINK Wireless Client Utility (HKLM\...\{7A2A107B-9695-423F-9462-8F17C178BD35}) (Version: 7.0 - TP-LINK)
Unity Web Player (HKU\S-1-5-21-1675737123-1519436412-2290605674-1000\...\UnityWebPlayer) (Version: 5.3.7f1 - Unity Technologies ApS)
Update for 2007 Microsoft Office System (KB967642) (HKLM\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version:  - Microsoft)
Visual Studio 2012 x86 Redistributables (HKLM\...\{98EFF19A-30AB-4E4B-B943-F06B1C63EBF8}) (Version: 14.0.0.1 - AVG Technologies CZ, s.r.o.)
WinRAR 4.20 (32-bitowy) (HKLM\...\WinRAR archiver) (Version: 4.20.0 - win.rar GmbH)
 
==================== Niestandardowe rejestracje CLSID (filtrowane): ==========================
 
(Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)
 
CustomCLSID: HKU\S-1-5-21-1675737123-1519436412-2290605674-1000_Classes\CLSID\{00B7E0AB-817A-44AD-A04B-D1148D524136}\InprocServer32 -> C:\Windows\system32\msxml4.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1675737123-1519436412-2290605674-1000_Classes\CLSID\{444785F1-DE89-4295-863A-D46C3A781394}\InprocServer32 -> C:\Users\user\AppData\LocalLow\Unity\WebPlayer\loader\UnityWebPluginAX.ocx (Unity Technologies ApS)
CustomCLSID: HKU\S-1-5-21-1675737123-1519436412-2290605674-1000_Classes\CLSID\{7C6E29BC-8B8B-4C3D-859E-AF6CD158BE0F}\InprocServer32 -> C:\Windows\system32\msxml4.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1675737123-1519436412-2290605674-1000_Classes\CLSID\{88D969C0-F192-11D4-A65F-0040963251E5}\InprocServer32 -> C:\Windows\system32\msxml4.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1675737123-1519436412-2290605674-1000_Classes\CLSID\{88D969C1-F192-11D4-A65F-0040963251E5}\InprocServer32 -> C:\Windows\system32\msxml4.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1675737123-1519436412-2290605674-1000_Classes\CLSID\{88D969C2-F192-11D4-A65F-0040963251E5}\InprocServer32 -> C:\Windows\system32\msxml4.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1675737123-1519436412-2290605674-1000_Classes\CLSID\{88D969C3-F192-11D4-A65F-0040963251E5}\InprocServer32 -> C:\Windows\system32\msxml4.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1675737123-1519436412-2290605674-1000_Classes\CLSID\{88D969C4-F192-11D4-A65F-0040963251E5}\InprocServer32 -> C:\Windows\system32\msxml4.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1675737123-1519436412-2290605674-1000_Classes\CLSID\{88D969C5-F192-11D4-A65F-0040963251E5}\InprocServer32 -> C:\Windows\system32\msxml4.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1675737123-1519436412-2290605674-1000_Classes\CLSID\{88D969C6-F192-11D4-A65F-0040963251E5}\InprocServer32 -> C:\Windows\system32\msxml4.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1675737123-1519436412-2290605674-1000_Classes\CLSID\{88D969C8-F192-11D4-A65F-0040963251E5}\InprocServer32 -> C:\Windows\system32\msxml4.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1675737123-1519436412-2290605674-1000_Classes\CLSID\{88D969C9-F192-11D4-A65F-0040963251E5}\InprocServer32 -> C:\Windows\system32\msxml4.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1675737123-1519436412-2290605674-1000_Classes\CLSID\{88D969CA-F192-11D4-A65F-0040963251E5}\InprocServer32 -> C:\Windows\system32\msxml4.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1675737123-1519436412-2290605674-1000_Classes\CLSID\{88D969D6-F192-11D4-A65F-0040963251E5}\InprocServer32 -> C:\Windows\system32\msxml4.dll (Microsoft Corporation)
ContextMenuHandlers1: [Cover Designer] -> {73FCA462-9BD5-4065-A73F-A8E5F6904EF7} =>  -> Brak pliku
ContextMenuHandlers1: [WinRAR] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2012-06-09] (Alexander Roshal)
ContextMenuHandlers5: [ACE] -> {5E2121EE-0300-11D4-8D3B-444553540000} => C:\Program Files\AMD\ATI.ACE\Core-Static\atiacmxx.dll [2015-08-04] (Advanced Micro Devices, Inc.)
ContextMenuHandlers6: [WinRAR] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2012-06-09] (Alexander Roshal)
 
==================== Zaplanowane zadania (filtrowane) =============
 
(Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)
 
Task: {04E6E581-8587-4A86-BA3B-B34F240C002D} - \Driver Booster SkipUAC (user) -> Brak pliku <==== UWAGA
Task: {08C0991E-49A3-427A-9133-1A71CC1886D6} - System32\Tasks\{5DEDA5DB-77C2-45D9-A270-5F1E2DE261BA} => C:\Windows\system32\pcalua.exe -a C:\Users\user\Desktop\wog\WoG_Install\Install.exe -d C:\Users\user\Desktop\wog\WoG_Install
Task: {0D95E603-0F30-4B3D-83D4-5DCF7593BE88} - System32\Tasks\{FF606670-CA1E-4999-890C-5316074212DF} => C:\Windows\system32\pcalua.exe -a "C:\Heroes of Might and Magic III Complete\WorldTree\Disk1\_ISDel.exe" -d "C:\Heroes of Might and Magic III Complete\WorldTree\Disk1"
Task: {10933599-4CD0-49D0-ADA8-66C653BCF628} - System32\Tasks\{5A243952-A513-46E9-B33C-5CD93AA358A9} => C:\Windows\system32\pcalua.exe -a "C:\Program Files\THQ\Disney_Pixar\UP\GameSetup.exe" -d "C:\Program Files\THQ\Disney_Pixar\UP"
Task: {35195FEF-290E-48B1-9A24-FB8134CB98B0} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2018-02-13] (Adobe Systems Incorporated)
Task: {4B3A4CAE-1F56-475C-BDD2-458336FE3D0A} - System32\Tasks\{E67F16DE-ED06-4585-9626-D70720781CE5} => C:\Windows\system32\pcalua.exe -a "C:\Program Files\Enigma Software Productions\Pro Soccer Cup\Lanzador.exe" -d "C:\Program Files\Enigma Software Productions\Pro Soccer Cup"
Task: {4D74765E-92C2-425D-BC9C-0E862E3E5F00} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2018-01-17] (Adobe Systems Incorporated)
Task: {50945832-A0B7-4EAE-9803-B1EB41DCD911} - \Java™ Platform SE 6 U3 -> Brak pliku <==== UWAGA
Task: {63BB3708-70D0-4C7C-90E6-5AA010583E02} - System32\Tasks\{86E4DE1C-7062-4DB9-A4F8-501EE9FB230F} => C:\Windows\system32\pcalua.exe -a "C:\Program Files\THQ\Disney_Pixar\UP\GameSetup.exe" -d "C:\Program Files\THQ\Disney_Pixar\UP"
Task: {6B60B5DF-D2AC-4B09-96A2-3BF16731AF33} - System32\Tasks\Adobe Flash Player PPAPI Notifier => C:\Windows\system32\Macromed\Flash\FlashUtil32_28_0_0_161_pepper.exe [2018-02-13] (Adobe Systems Incorporated)
Task: {7DE7B54D-D64E-4F26-820C-DAF2BEE499B3} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files\Google\Update\GoogleUpdate.exe [2017-05-31] (Google Inc.)
Task: {8EFC49D6-6142-4BB2-B722-E72DBE85A9C3} - System32\Tasks\{8531A248-EB54-49A5-B2E4-2D5EBCD54326} => C:\Windows\system32\pcalua.exe -a E:\eauninstall.exe -d E:\
Task: {97FD8BB8-DB83-4C82-A5A3-34D4BC690870} - System32\Tasks\{BCDB761F-D16D-4642-B388-C4195A2CE126} => C:\Windows\system32\pcalua.exe -a "C:\Heroes of Might and Magic III Complete\wog358f.part01.exe" -d "C:\Heroes of Might and Magic III Complete"
Task: {98EDC8A6-23F2-4564-972D-F36C3D092A5E} - System32\Tasks\{86A350E7-B136-4713-B501-1DCD0B9075A9} => C:\Windows\system32\pcalua.exe -a "C:\Program Files\THQ\Disney_Pixar\UP\GameSetup.exe" -d "C:\Program Files\THQ\Disney_Pixar\UP"
Task: {9DF1B3FC-91DA-498F-B05E-10A4C6CDE617} - \Avast Emergency Update -> Brak pliku <==== UWAGA
Task: {A9C46FCA-FE68-45CB-9474-A682517CF65E} - \AVAST Software\Avast settings backup -> Brak pliku <==== UWAGA
Task: {ADDD7F1D-E0BA-4873-8995-9EBF0870EB84} - System32\Tasks\{4C1E7519-876F-4B92-88C2-15F7E0B58E8B} => C:\Windows\system32\pcalua.exe -a "C:\Heroes of Might and Magic III Complete\WoG_Install\Install.exe" -d "C:\Heroes of Might and Magic III Complete\WoG_Install"
Task: {CE12F6CA-FE92-4A4F-9813-B978C92112AD} - \SafeZone scheduled Autoupdate 1492894005 -> Brak pliku <==== UWAGA
Task: {D264FEEC-57FF-44D4-BB76-87B65BC2AE8D} - System32\Tasks\{86A21686-C3A4-48FC-A063-0729094110E6} => C:\Windows\system32\pcalua.exe -a "C:\Program Files\Common Files\Microsoft Shared\OFFICE12\Office Setup Controller\setup.exe" -c /uninstall ENTERPRISE /dll OSETUP.DLL
Task: {D4C18906-8A5E-4B90-9794-46F536494ED8} - System32\Tasks\Adobe Reader and Acrobat Manager => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2018-01-17] (Adobe Systems Incorporated)
Task: {ED9DE4B5-16D4-4B96-8196-F23DB4720029} - System32\Tasks\{D05DD3D7-B08A-4462-BD18-68D56D559F2C} => C:\Windows\system32\pcalua.exe -a "E:\Support\Harry Potter and the Order of the Phoenix_code.exe" -d E:\Support
Task: {F51C1D7F-C4FB-41C7-B338-B1B5D5E85003} - System32\Tasks\{22F662F1-BFAF-4F18-8827-315A71295F4B} => C:\Windows\system32\pcalua.exe -a C:\Users\user\Desktop\wog\wog358f.part01.exe -d C:\Users\user\Desktop\wog
Task: {FE238FB9-AB92-4E64-AD5E-724C5C1D5FFA} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files\Google\Update\GoogleUpdate.exe [2017-05-31] (Google Inc.)
 
(Załączenie wejścia w fixlist spowoduje przesunięcie pliku zadania (.job). Plik uruchamiany docelowo przez zadanie nie zostanie przeniesiony.)
 
 
==================== Skróty & WMI ========================
 
(Wybrane wejścia mogą zostać załączone w celu ich zresetowania lub usunięcia.)
 
 
Shortcut: C:\Users\Public\Desktop\Google Chrome.lnk.GDCB — skrót.lnk -> C:\Users\Public\Desktop\Google Chrome.lnk.GDCB ()
 
==================== Załadowane moduły (filtrowane) ==============
 
2016-11-29 11:35 - 2007-11-28 06:55 - 000022723 _____ () C:\Windows\System32\ssp1ml3.dll
2015-08-04 00:23 - 2015-08-04 00:23 - 000114688 _____ () C:\Program Files\AMD\ATI.ACE\Fuel\Fuel.Container.Wlan.dll
2015-08-04 00:23 - 2015-08-04 00:23 - 000095744 _____ () C:\Program Files\AMD\ATI.ACE\Fuel\Fuel.Proxy.Native.dll
2018-02-14 09:36 - 2018-02-13 05:12 - 003730264 _____ () C:\Program Files\Google\Chrome\Application\64.0.3282.167\libglesv2.dll
2018-02-14 09:36 - 2018-02-13 05:12 - 000085848 _____ () C:\Program Files\Google\Chrome\Application\64.0.3282.167\libegl.dll
2018-02-18 22:36 - 2018-02-18 22:36 - 003458688 _____ () D:\Lol\RADS\projects\league_client\releases\0.0.0.125\deploy\LeagueClient.exe
2018-02-18 22:50 - 2018-02-18 22:50 - 000108672 _____ () D:\Lol\RADS\projects\league_client\releases\0.0.0.125\deploy\zlib.dll
2018-02-18 22:50 - 2018-02-18 22:50 - 000128640 _____ () D:\Lol\RADS\projects\league_client\releases\0.0.0.125\deploy\yaml.dll
2018-02-18 22:49 - 2018-02-18 22:49 - 001352832 _____ () D:\Lol\RADS\projects\league_client\releases\0.0.0.125\deploy\Plugins\rcp-be-patcher\rcp-be-patcher.dll
2018-02-18 22:49 - 2018-02-18 22:49 - 000624256 _____ () D:\Lol\RADS\projects\league_client\releases\0.0.0.125\deploy\Plugins\rcp-be-rso-auth\rcp-be-rso-auth.dll
2018-02-18 22:49 - 2018-02-18 22:49 - 000996480 _____ () D:\Lol\RADS\projects\league_client\releases\0.0.0.125\deploy\Plugins\rcp-be-lol-login\rcp-be-lol-login.dll
2018-02-18 22:49 - 2018-02-18 22:49 - 000522368 _____ () D:\Lol\RADS\projects\league_client\releases\0.0.0.125\deploy\Plugins\rcp-be-lol-platform-config\rcp-be-lol-platform-config.dll
2018-02-18 22:49 - 2018-02-18 22:49 - 000520832 _____ () D:\Lol\RADS\projects\league_client\releases\0.0.0.125\deploy\Plugins\rcp-be-riot-messaging-service\rcp-be-riot-messaging-service.dll
2018-02-18 22:49 - 2018-02-18 22:49 - 000668800 _____ () D:\Lol\RADS\projects\league_client\releases\0.0.0.125\deploy\Plugins\rcp-be-lol-summoner\rcp-be-lol-summoner.dll
2018-02-18 22:49 - 2018-02-18 22:49 - 000571008 _____ () D:\Lol\RADS\projects\league_client\releases\0.0.0.125\deploy\Plugins\rcp-be-lol-ranked-stats\rcp-be-lol-ranked-stats.dll
2018-02-18 22:49 - 2018-02-18 22:49 - 000451200 _____ () D:\Lol\RADS\projects\league_client\releases\0.0.0.125\deploy\Plugins\rcp-be-lol-maps\rcp-be-lol-maps.dll
2018-02-18 22:49 - 2018-02-18 22:49 - 000615040 _____ () D:\Lol\RADS\projects\league_client\releases\0.0.0.125\deploy\Plugins\rcp-be-lol-game-queues\rcp-be-lol-game-queues.dll
2018-02-18 22:49 - 2018-02-18 22:49 - 000539264 _____ () D:\Lol\RADS\projects\league_client\releases\0.0.0.125\deploy\Plugins\rcp-be-lol-player-preferences\rcp-be-lol-player-preferences.dll
2018-02-18 22:49 - 2018-02-18 22:49 - 000581248 _____ () D:\Lol\RADS\projects\league_client\releases\0.0.0.125\deploy\Plugins\rcp-be-lol-game-settings\rcp-be-lol-game-settings.dll
2018-02-18 22:49 - 2018-02-18 22:49 - 000582272 _____ () D:\Lol\RADS\projects\league_client\releases\0.0.0.125\deploy\Plugins\rcp-be-lol-settings\rcp-be-lol-settings.dll
2018-02-18 22:49 - 2018-02-18 22:49 - 000760448 _____ () D:\Lol\RADS\projects\league_client\releases\0.0.0.125\deploy\Plugins\rcp-be-lol-gameflow\rcp-be-lol-gameflow.dll
2018-02-18 22:49 - 2018-02-18 22:49 - 000479360 _____ () D:\Lol\RADS\projects\league_client\releases\0.0.0.125\deploy\Plugins\rcp-be-lol-pre-end-of-game\rcp-be-lol-pre-end-of-game.dll
2018-02-18 22:49 - 2018-02-18 22:49 - 000766592 _____ () D:\Lol\RADS\projects\league_client\releases\0.0.0.125\deploy\Plugins\rcp-be-sanitizer\rcp-be-sanitizer.dll
2018-02-18 22:49 - 2018-02-18 22:49 - 000444544 _____ () D:\Lol\RADS\projects\league_client\releases\0.0.0.125\deploy\Plugins\rcp-be-lol-riot-messaging-service\rcp-be-lol-riot-messaging-service.dll
2018-02-18 22:36 - 2018-02-18 22:36 - 000497792 _____ () D:\Lol\RADS\projects\league_client\releases\0.0.0.125\deploy\Plugins\rcp-be-lol-acs\rcp-be-lol-acs.dll
2018-02-18 22:49 - 2018-02-18 22:49 - 000544896 _____ () D:\Lol\RADS\projects\league_client\releases\0.0.0.125\deploy\Plugins\rcp-be-player-notifications\rcp-be-player-notifications.dll
2018-02-18 22:49 - 2018-02-18 22:49 - 000496768 _____ () D:\Lol\RADS\projects\league_client\releases\0.0.0.125\deploy\Plugins\rcp-be-lol-loyalty\rcp-be-lol-loyalty.dll
2018-02-18 22:36 - 2018-02-18 22:36 - 000799872 _____ () D:\Lol\RADS\projects\league_client\releases\0.0.0.125\deploy\Plugins\rcp-be-lol-collections\rcp-be-lol-collections.dll
2018-02-18 22:36 - 2018-02-18 22:36 - 000644224 _____ () D:\Lol\RADS\projects\league_client\releases\0.0.0.125\deploy\Plugins\rcp-be-lol-champions\rcp-be-lol-champions.dll
2018-02-18 22:49 - 2018-02-18 22:49 - 000446592 _____ () D:\Lol\RADS\projects\league_client\releases\0.0.0.125\deploy\Plugins\rcp-be-lol-kr-shutdown-law\rcp-be-lol-kr-shutdown-law.dll
2018-02-18 22:49 - 2018-02-18 22:49 - 000670336 _____ () D:\Lol\RADS\projects\league_client\releases\0.0.0.125\deploy\Plugins\rcp-be-lol-store\rcp-be-lol-store.dll
2018-02-18 22:49 - 2018-02-18 22:49 - 000501888 _____ () D:\Lol\RADS\projects\league_client\releases\0.0.0.125\deploy\Plugins\rcp-be-lol-inventory\rcp-be-lol-inventory.dll
2018-02-18 22:49 - 2018-02-18 22:49 - 000546944 _____ () D:\Lol\RADS\projects\league_client\releases\0.0.0.125\deploy\Plugins\rcp-be-lol-loadouts\rcp-be-lol-loadouts.dll
2018-02-18 22:49 - 2018-02-18 22:49 - 000857728 _____ () D:\Lol\RADS\projects\league_client\releases\0.0.0.125\deploy\Plugins\rcp-be-lol-lobby-team-builder\rcp-be-lol-lobby-team-builder.dll
2018-02-18 22:49 - 2018-02-18 22:49 - 000567424 _____ () D:\Lol\RADS\projects\league_client\releases\0.0.0.125\deploy\Plugins\rcp-be-lol-queue-eligibility\rcp-be-lol-queue-eligibility.dll
2018-02-18 22:49 - 2018-02-18 22:49 - 000643200 _____ () D:\Lol\RADS\projects\league_client\releases\0.0.0.125\deploy\Plugins\rcp-be-lol-matchmaking\rcp-be-lol-matchmaking.dll
2018-02-18 22:49 - 2018-02-18 22:49 - 000518272 _____ () D:\Lol\RADS\projects\league_client\releases\0.0.0.125\deploy\Plugins\rcp-be-lol-spectator\rcp-be-lol-spectator.dll
2018-02-18 22:36 - 2018-02-18 22:36 - 001575552 _____ () D:\Lol\RADS\projects\league_client\releases\0.0.0.125\deploy\Plugins\rcp-be-lol-chat\rcp-be-lol-chat.dll
2018-02-18 22:49 - 2018-02-18 22:49 - 001521280 _____ () D:\Lol\RADS\projects\league_client\releases\0.0.0.125\deploy\Plugins\rcp-be-lol-lobby\rcp-be-lol-lobby.dll
2018-02-18 22:36 - 2018-02-18 22:36 - 000746112 _____ () D:\Lol\RADS\projects\league_client\releases\0.0.0.125\deploy\Plugins\rcp-be-lol-champ-select-legacy\rcp-be-lol-champ-select-legacy.dll
2018-02-18 22:36 - 2018-02-18 22:36 - 000605824 _____ () D:\Lol\RADS\projects\league_client\releases\0.0.0.125\deploy\Plugins\rcp-be-lol-champ-select\rcp-be-lol-champ-select.dll
2018-02-18 22:49 - 2018-02-18 22:49 - 000493696 _____ () D:\Lol\RADS\projects\league_client\releases\0.0.0.125\deploy\Plugins\rcp-be-lol-heartbeat\rcp-be-lol-heartbeat.dll
2018-02-18 22:49 - 2018-02-18 22:49 - 000518272 _____ () D:\Lol\RADS\projects\league_client\releases\0.0.0.125\deploy\Plugins\rcp-be-lol-shutdown\rcp-be-lol-shutdown.dll
2018-02-18 22:49 - 2018-02-18 22:49 - 000919168 _____ () D:\Lol\RADS\projects\league_client\releases\0.0.0.125\deploy\Plugins\rcp-be-lol-loot\rcp-be-lol-loot.dll
2018-02-18 22:49 - 2018-02-18 22:49 - 000472704 _____ () D:\Lol\RADS\projects\league_client\releases\0.0.0.125\deploy\Plugins\rcp-be-lol-kickout\rcp-be-lol-kickout.dll
2018-02-18 22:49 - 2018-02-18 22:49 - 000436352 _____ () D:\Lol\RADS\projects\league_client\releases\0.0.0.125\deploy\Plugins\rcp-be-lol-license-agreement\rcp-be-lol-license-agreement.dll
2018-02-18 22:49 - 2018-02-18 22:49 - 000479360 _____ () D:\Lol\RADS\projects\league_client\releases\0.0.0.125\deploy\Plugins\rcp-be-lol-kr-playtime-reminder\rcp-be-lol-kr-playtime-reminder.dll
2018-02-18 22:36 - 2018-02-18 22:36 - 000492160 _____ () D:\Lol\RADS\projects\league_client\releases\0.0.0.125\deploy\Plugins\rcp-be-lol-game-client-chat\rcp-be-lol-game-client-chat.dll
2018-02-18 22:36 - 2018-02-18 22:36 - 000663168 _____ () D:\Lol\RADS\projects\league_client\releases\0.0.0.125\deploy\Plugins\rcp-be-lol-end-of-game\rcp-be-lol-end-of-game.dll
2018-02-18 22:36 - 2018-02-18 22:36 - 000522368 _____ () D:\Lol\RADS\projects\league_client\releases\0.0.0.125\deploy\Plugins\rcp-be-lol-active-boosts\rcp-be-lol-active-boosts.dll
2018-02-18 22:49 - 2018-02-18 22:49 - 000435328 _____ () D:\Lol\RADS\projects\league_client\releases\0.0.0.125\deploy\Plugins\rcp-be-lol-parties\rcp-be-lol-parties.dll
2018-02-18 22:49 - 2018-02-18 22:49 - 000806016 _____ () D:\Lol\RADS\projects\league_client\releases\0.0.0.125\deploy\Plugins\rcp-be-lol-leagues\rcp-be-lol-leagues.dll
2018-02-18 22:49 - 2018-02-18 22:49 - 000594560 _____ () D:\Lol\RADS\projects\league_client\releases\0.0.0.125\deploy\Plugins\rcp-be-lol-pft\rcp-be-lol-pft.dll
2018-02-18 22:49 - 2018-02-18 22:49 - 000615040 _____ () D:\Lol\RADS\projects\league_client\releases\0.0.0.125\deploy\Plugins\rcp-be-lol-player-behavior\rcp-be-lol-player-behavior.dll
2018-02-18 22:49 - 2018-02-18 22:49 - 000584320 _____ () D:\Lol\RADS\projects\league_client\releases\0.0.0.125\deploy\Plugins\rcp-be-lol-suggested-players\rcp-be-lol-suggested-players.dll
2018-02-18 22:49 - 2018-02-18 22:49 - 000530560 _____ () D:\Lol\RADS\projects\league_client\releases\0.0.0.125\deploy\Plugins\rcp-be-lol-service-status\rcp-be-lol-service-status.dll
2018-02-18 22:49 - 2018-02-18 22:49 - 000558720 _____ () D:\Lol\RADS\projects\league_client\releases\0.0.0.125\deploy\Plugins\rcp-be-lol-leaver-buster\rcp-be-lol-leaver-buster.dll
2018-02-18 22:49 - 2018-02-18 22:49 - 000642176 _____ () D:\Lol\RADS\projects\league_client\releases\0.0.0.125\deploy\Plugins\rcp-be-lol-match-history\rcp-be-lol-match-history.dll
2018-02-18 22:49 - 2018-02-18 22:49 - 000715392 _____ () D:\Lol\RADS\projects\league_client\releases\0.0.0.125\deploy\Plugins\rcp-be-recofriender\rcp-be-recofriender.dll
2018-02-18 22:36 - 2018-02-18 22:36 - 000785536 _____ () D:\Lol\RADS\projects\league_client\releases\0.0.0.125\deploy\Plugins\rcp-be-lol-clubs\rcp-be-lol-clubs.dll
2018-02-18 22:36 - 2018-02-18 22:36 - 000530560 _____ () D:\Lol\RADS\projects\league_client\releases\0.0.0.125\deploy\Plugins\rcp-be-lol-clubs-public\rcp-be-lol-clubs-public.dll
2018-02-18 22:36 - 2018-02-18 22:36 - 000574080 _____ () D:\Lol\RADS\projects\league_client\releases\0.0.0.125\deploy\Plugins\rcp-be-lol-esport-stream-notifications\rcp-be-lol-esport-stream-notifications.dll
2018-02-18 22:49 - 2018-02-18 22:49 - 000705664 _____ () D:\Lol\RADS\projects\league_client\releases\0.0.0.125\deploy\Plugins\rcp-be-lol-replays\rcp-be-lol-replays.dll
2018-02-18 22:49 - 2018-02-18 22:49 - 000504960 _____ () D:\Lol\RADS\projects\league_client\releases\0.0.0.125\deploy\Plugins\rcp-be-lol-player-level-up\rcp-be-lol-player-level-up.dll
2018-02-18 22:49 - 2018-02-18 22:49 - 000487040 _____ () D:\Lol\RADS\projects\league_client\releases\0.0.0.125\deploy\Plugins\rcp-be-lol-tencent-qt\rcp-be-lol-tencent-qt.dll
2018-02-18 22:36 - 2018-02-18 22:36 - 000545920 _____ () D:\Lol\RADS\projects\league_client\releases\0.0.0.125\deploy\Plugins\rcp-be-lol-beta-opt-in\rcp-be-lol-beta-opt-in.dll
2018-02-18 22:49 - 2018-02-18 22:49 - 000546432 _____ () D:\Lol\RADS\projects\league_client\releases\0.0.0.125\deploy\Plugins\rcp-be-lol-player-messaging\rcp-be-lol-player-messaging.dll
2018-02-18 22:49 - 2018-02-18 22:49 - 000484992 _____ () D:\Lol\RADS\projects\league_client\releases\0.0.0.125\deploy\Plugins\rcp-be-lol-purchase-widget\rcp-be-lol-purchase-widget.dll
2018-02-18 22:49 - 2018-02-18 22:49 - 000538752 _____ () D:\Lol\RADS\projects\league_client\releases\0.0.0.125\deploy\Plugins\rcp-be-lol-personalized-offers\rcp-be-lol-personalized-offers.dll
2018-02-18 22:49 - 2018-02-18 22:49 - 000469632 _____ () D:\Lol\RADS\projects\league_client\releases\0.0.0.125\deploy\Plugins\rcp-be-lol-user-experience\rcp-be-lol-user-experience.dll
2018-02-18 22:49 - 2018-02-18 22:49 - 000542848 _____ () D:\Lol\RADS\projects\league_client\releases\0.0.0.125\deploy\Plugins\rcp-be-lol-simple-dialog-messages\rcp-be-lol-simple-dialog-messages.dll
2018-02-18 22:49 - 2018-02-18 22:49 - 000610944 _____ () D:\Lol\RADS\projects\league_client\releases\0.0.0.125\deploy\Plugins\rcp-be-lol-highlights\rcp-be-lol-highlights.dll
2018-02-18 22:49 - 2018-02-18 22:49 - 000622720 _____ () D:\Lol\RADS\projects\league_client\releases\0.0.0.125\deploy\Plugins\rcp-be-lol-honor-v2\rcp-be-lol-honor-v2.dll
2018-02-18 22:49 - 2018-02-18 22:49 - 000465024 _____ () D:\Lol\RADS\projects\league_client\releases\0.0.0.125\deploy\Plugins\rcp-be-network-testing\rcp-be-network-testing.dll
2018-02-18 22:36 - 2018-02-18 22:36 - 000539264 _____ () D:\Lol\RADS\projects\league_client\releases\0.0.0.125\deploy\Plugins\rcp-be-entitlements\rcp-be-entitlements.dll
2018-02-18 22:49 - 2018-02-18 22:49 - 000630912 _____ () D:\Lol\RADS\projects\league_client\releases\0.0.0.125\deploy\Plugins\rcp-be-lol-missions\rcp-be-lol-missions.dll
2018-02-18 22:49 - 2018-02-18 22:49 - 000584832 _____ () D:\Lol\RADS\projects\league_client\releases\0.0.0.125\deploy\Plugins\rcp-be-lol-item-sets\rcp-be-lol-item-sets.dll
2018-02-18 22:36 - 2018-02-18 22:36 - 000500352 _____ () D:\Lol\RADS\projects\league_client\releases\0.0.0.125\deploy\Plugins\rcp-be-lol-email-verification\rcp-be-lol-email-verification.dll
2018-02-18 22:49 - 2018-02-18 22:49 - 000466560 _____ () D:\Lol\RADS\projects\league_client\releases\0.0.0.125\deploy\Plugins\rcp-be-lol-las-toxicity\rcp-be-lol-las-toxicity.dll
2018-02-18 22:49 - 2018-02-18 22:49 - 000512128 _____ () D:\Lol\RADS\projects\league_client\releases\0.0.0.125\deploy\Plugins\rcp-be-lol-geoinfo\rcp-be-lol-geoinfo.dll
2018-02-18 22:36 - 2018-02-18 22:36 - 001162880 _____ () D:\Lol\RADS\projects\league_client\releases\0.0.0.125\deploy\Plugins\rcp-be-lol-clash\rcp-be-lol-clash.dll
2018-02-18 22:36 - 2018-02-18 22:36 - 000528000 _____ () D:\Lol\RADS\projects\league_client\releases\0.0.0.125\deploy\Plugins\rcp-be-lol-banners\rcp-be-lol-banners.dll
2018-02-18 22:36 - 2018-02-18 22:36 - 000532096 _____ () D:\Lol\RADS\projects\league_client\releases\0.0.0.125\deploy\Plugins\rcp-be-lol-featured-modes\rcp-be-lol-featured-modes.dll
2018-02-18 22:49 - 2018-02-18 22:49 - 000451712 _____ () D:\Lol\RADS\projects\league_client\releases\0.0.0.125\deploy\Plugins\rcp-be-payments\rcp-be-payments.dll
2018-02-18 22:49 - 2018-02-18 22:49 - 000699520 _____ () D:\Lol\RADS\projects\league_client\releases\0.0.0.125\deploy\Plugins\rcp-be-lol-perks\rcp-be-lol-perks.dll
2018-02-18 22:36 - 2018-02-18 22:36 - 000530560 _____ () D:\Lol\RADS\projects\league_client\releases\0.0.0.125\deploy\Plugins\rcp-be-lol-account-verification\rcp-be-lol-account-verification.dll
2018-02-18 22:36 - 2018-02-18 22:36 - 001718912 _____ () D:\Lol\RADS\projects\league_client\releases\0.0.0.125\deploy\LeagueClientUx.exe
2018-02-18 22:36 - 2018-02-18 22:36 - 055775872 _____ () D:\Lol\RADS\projects\league_client\releases\0.0.0.125\deploy\libcef.dll
2018-02-18 22:36 - 2018-02-18 22:36 - 000892032 _____ () D:\Lol\RADS\projects\league_client\releases\0.0.0.125\deploy\LeagueClientUxRender.exe
2018-02-18 22:36 - 2018-02-18 22:36 - 001801344 _____ () D:\Lol\RADS\projects\league_client\releases\0.0.0.125\deploy\libglesv2.dll
2018-02-18 22:36 - 2018-02-18 22:36 - 000022144 _____ () D:\Lol\RADS\projects\league_client\releases\0.0.0.125\deploy\libegl.dll
 
==================== Alternate Data Streams (filtrowane) =========
 
(Załączenie wejścia w fixlist spowoduje usunięcie strumienia ADS.)
 
 
==================== Tryb awaryjny (filtrowane) ===================
 
(Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Wartość "AlternateShell" zostanie przywrócona.)
 
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service"
 
==================== Powiązania plików (filtrowane) ===============
 
(Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci.)
 
 
==================== Internet Explorer - Witryny zaufane i z ograniczeniami ===============
 
(Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru.)
 
 
==================== Hosts - zawartość: ===============================
 
(Użycie dyrektywy Hosts: w fixlist spowoduje reset pliku Hosts.)
 
2009-07-14 03:04 - 2018-02-19 17:59 - 000000836 ____N C:\Windows\system32\Drivers\etc\hosts
 
 
==================== Inne obszary ============================
 
(Obecnie brak automatycznej naprawy dla tej sekcji.)
 
HKU\S-1-5-21-1675737123-1519436412-2290605674-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\user\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg
DNS Servers: 31.11.202.254 - 37.8.214.2
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 0) (ConsentPromptBehaviorUser: 3) (EnableLUA: 0)
Zapora systemu Windows [funkcja włączona]
 
==================== MSCONFIG/TASK MANAGER - Wyłączone elementy ==
 
 
==================== Reguły Zapory systemu Windows (filtrowane) ===============
 
(Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)
 
FirewallRules: [{09FEE1F9-C0DC-40B0-BC96-7B7B7C814D3D}] => (Allow) LPort=50000
FirewallRules: [{95C4560C-F32E-4213-8483-77597288181D}] => (Allow) LPort=50001
FirewallRules: [{E5FE7944-BD76-4A3D-AA73-68B9B30753A3}] => (Allow) LPort=5910
FirewallRules: [{11139996-B44E-44DB-A4BF-8F2D8747A8F7}] => (Allow) LPort=50001
FirewallRules: [{1F7EB027-515B-45D6-A2DC-762DD3B3A110}] => (Allow) LPort=50000
FirewallRules: [{72823326-70C2-4710-92A6-2F306F9FFF41}] => (Allow) C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
FirewallRules: [{CC997CB1-6540-4975-A4E7-5EDA715962DB}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe
FirewallRules: [TCP Query User{A6EB1860-44B4-4414-9C58-07038C880785}C:\program files\gog.com\heroes of might and magic 3 complete\h3hota.exe] => (Allow) C:\program files\gog.com\heroes of might and magic 3 complete\h3hota.exe
FirewallRules: [UDP Query User{BDD8DD21-C673-49BC-B631-FBA206D89A2E}C:\program files\gog.com\heroes of might and magic 3 complete\h3hota.exe] => (Allow) C:\program files\gog.com\heroes of might and magic 3 complete\h3hota.exe
FirewallRules: [{43BB5400-35E5-4860-83C3-AA992655AD06}] => (Allow) %systemroot%\WindowsMobile\wmdHost.exe
FirewallRules: [{0E46DD39-F63E-4919-9ADA-8FFEC4246A5F}] => (Allow) %systemroot%\WindowsMobile\wmdHost.exe
FirewallRules: [{1A8DEAC2-6E71-4291-BF36-8C7AE59B3102}] => (Allow) LPort=26675
FirewallRules: [TCP Query User{2AF09642-D54A-4465-8B80-B06089BCC265}C:\windows\system32\dplaysvr.exe] => (Block) C:\windows\system32\dplaysvr.exe
FirewallRules: [UDP Query User{1285A8E9-9B3F-4AC1-A894-EC19C9E65F66}C:\windows\system32\dplaysvr.exe] => (Block) C:\windows\system32\dplaysvr.exe
FirewallRules: [{D09CA10D-D850-4470-A7DE-4561853602FB}] => (Allow) C:\Users\user\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{4144C657-149C-4890-B127-C488193416B5}] => (Allow) C:\Users\user\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [TCP Query User{3BC4A997-9B36-4104-B1BD-16B480A7E39D}C:\gry\counter-strike 1.6 v43\hl.exe] => (Block) C:\gry\counter-strike 1.6 v43\hl.exe
FirewallRules: [UDP Query User{B638FE86-67DC-4017-9033-223FD04AA6C3}C:\gry\counter-strike 1.6 v43\hl.exe] => (Block) C:\gry\counter-strike 1.6 v43\hl.exe
FirewallRules: [{E4A3855E-B673-4DFD-A6FA-D93B11EEF94A}] => (Allow) D:\WindowsImageBackup\Nowy folder\Steam.exe
FirewallRules: [{69643FEB-D598-46ED-9E8C-68E63616F663}] => (Allow) D:\WindowsImageBackup\Nowy folder\Steam.exe
FirewallRules: [{BA6FC8C6-3183-4709-BB9B-8AB9BD019122}] => (Allow) D:\WindowsImageBackup\Nowy folder\bin\cef\cef.win7\steamwebhelper.exe
FirewallRules: [{40D8CF00-7540-4852-8DBC-88C8FA477CF3}] => (Allow) D:\WindowsImageBackup\Nowy folder\bin\cef\cef.win7\steamwebhelper.exe
FirewallRules: [{FCE0A3CC-EABF-40D5-81B0-2CF5CA9B990A}] => (Allow) D:\WindowsImageBackup\Nowy folder\steamapps\common\Half-Life\hl.exe
FirewallRules: [{0D33E73C-55FD-45C5-B15D-DF05955DD6A2}] => (Allow) D:\WindowsImageBackup\Nowy folder\steamapps\common\Half-Life\hl.exe
FirewallRules: [{E133A1DB-011F-4785-90EE-19DF40B9191A}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe
 
==================== Punkty Przywracania systemu =========================
 
19-02-2018 14:06:17 Removed Nero 9 Essentials 4.4.9.0
19-02-2018 14:30:31 UnHackMe Malware Removal
19-02-2018 14:38:17 UnHackMe Malware Removal
 
==================== Wadliwe urządzenia w Menedżerze urządzeń =============
 
 
==================== Błędy w Dzienniku zdarzeń: =========================
 
Dziennik Aplikacja:
==================
Error: (02/19/2018 02:21:41 PM) (Source: SideBySide) (EventID: 33) (User: )
Description: Nie można wygenerować kontekstu aktywacji dla "C:\Program Files\AVG\Antivirus\setup\iplugins\IStats.dll".
Nie można odnaleźć zestawu zależnego Avast.VC110.CRT,processorArchitecture="x86",publicKeyToken="2036b14a11e83e4a",type="win32",version="11.0.60610.1".
Użyj narzędzia sxstrace.exe, aby uzyskać szczegółową diagnozę.
 
Error: (02/19/2018 02:21:36 PM) (Source: SideBySide) (EventID: 33) (User: )
Description: Nie można wygenerować kontekstu aktywacji dla "C:\Program Files\AVG\Antivirus\setup\iplugins\IStats.dll".
Nie można odnaleźć zestawu zależnego Avast.VC110.CRT,processorArchitecture="x86",publicKeyToken="2036b14a11e83e4a",type="win32",version="11.0.60610.1".
Użyj narzędzia sxstrace.exe, aby uzyskać szczegółową diagnozę.
 
Error: (02/19/2018 02:06:17 PM) (Source: VSS) (EventID: 8194) (User: )
Description: Błąd Usługi kopiowania woluminów w tle: nieoczekiwany błąd podczas badania interfejsu IVssWriterCallback. hr = 0x80070005, Odmowa dostępu.
.
To jest często spowodowane przez niepoprawne ustawienia zabezpieczeń w procesie zapisującym lub żądającym.
 
 
Operacja:
   Zbieranie danych modułu zapisującego
 
Kontekst:
   Identyfikator klasy modułu zapisującego: {e8132975-6f93-4464-a53e-1050253ae220}
   Nazwa modułu zapisującego: System Writer
   Identyfikator wystąpienia modułu zapisującego: {4fcf03bb-9032-4558-86c4-e66f34ae4dbe}
 
Error: (02/19/2018 12:23:45 PM) (Source: System Restore) (EventID: 8206) (User: )
Description: Wybrany punkt przywracania został uszkodzony lub usunięty podczas przywracania (Kopia zapasowa systemu Windows).
 
Error: (02/19/2018 12:05:23 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nazwa aplikacji powodującej błąd: rstrui.exe, wersja: 6.1.7601.24000, sygnatura czasowa: 0x5a4990ee
Nazwa modułu powodującego błąd: rstrui.exe, wersja: 6.1.7601.24000, sygnatura czasowa: 0x5a4990ee
Kod wyjątku: 0xc0000005
Przesunięcie błędu: 0x00015591
Identyfikator procesu powodującego błąd: 0x1f4
Godzina uruchomienia aplikacji powodującej błąd: 0x01d3a97113d0f400
Ścieżka aplikacji powodującej błąd: C:\Windows\system32\rstrui.exe
Ścieżka modułu powodującego błąd: C:\Windows\system32\rstrui.exe
Identyfikator raportu: c7a924c0-1564-11e8-836c-00241d6c8478
 
Error: (02/19/2018 12:01:55 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nazwa aplikacji powodującej błąd: rstrui.exe, wersja: 6.1.7601.24000, sygnatura czasowa: 0x5a4990ee
Nazwa modułu powodującego błąd: rstrui.exe, wersja: 6.1.7601.24000, sygnatura czasowa: 0x5a4990ee
Kod wyjątku: 0xc0000005
Przesunięcie błędu: 0x00015591
Identyfikator procesu powodującego błąd: 0x878
Godzina uruchomienia aplikacji powodującej błąd: 0x01d3a970f83d71a0
Ścieżka aplikacji powodującej błąd: C:\Windows\system32\rstrui.exe
Ścieżka modułu powodującego błąd: C:\Windows\system32\rstrui.exe
Identyfikator raportu: 4bd63ae0-1564-11e8-836c-00241d6c8478
 
Error: (02/17/2018 09:53:58 AM) (Source: MsiInstaller) (EventID: 1024) (User: user-Komputer)
Description: Produkt: Adobe Acrobat Reader DC - Polish - nie można zainstalować aktualizacji '{AC76BA86-7AD7-0000-2550-AC120B4E4400}'. Kod błędu 1646. Instalator Windows może tworzyć dzienniki, aby ułatwić rozwiązywanie problemów z instalowaniem pakietów oprogramowania. Użyj następującego łącza, aby uzyskać instrukcje dotyczące włączania obsługi rejestrowania: http://go.microsoft.com/fwlink/?LinkId=23127
 
Error: (02/17/2018 09:53:58 AM) (Source: MsiInstaller) (EventID: 1021) (User: user-Komputer)
Description: Produkt: Adobe Acrobat Reader DC - Polish - nie można usunąć aktualizacji 'Adobe Acrobat Reader DC
 (17.009.20044)'. Kod błędu 1646. Instalator Windows może utworzyć dzienniki, aby ułatwić rozwiązywanie problemów z instalowaniem pakietów oprogramowania. Użyj następującego łącza, aby uzyskać instrukcje dotyczące włączania obsługi rejestrowania: http://go.microsoft.com/fwlink/?LinkId=23127
 
 
Dziennik System:
=============
Error: (02/19/2018 06:01:40 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Nie można uruchomić usługi DgiVecp z powodu następującego błędu: 
Nie można odnaleźć określonego pliku.
 
Error: (02/19/2018 06:01:39 PM) (Source: Microsoft-Windows-WLAN-AutoConfig) (EventID: 10000) (User: ZARZĄDZANIE NT)
Description: Uruchomienie modułu rozszerzalności sieci WLAN nie powiodło się.
 
Ścieżka modułu: C:\Windows\system32\athExt.dll
Kod błędu: 126
 
Error: (02/19/2018 05:54:49 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Nie można uruchomić usługi DgiVecp z powodu następującego błędu: 
Nie można odnaleźć określonego pliku.
 
Error: (02/19/2018 05:54:07 PM) (Source: Microsoft-Windows-WLAN-AutoConfig) (EventID: 10000) (User: ZARZĄDZANIE NT)
Description: Uruchomienie modułu rozszerzalności sieci WLAN nie powiodło się.
 
Ścieżka modułu: C:\Windows\system32\athExt.dll
Kod błędu: 126
 
Error: (02/19/2018 05:54:06 PM) (Source: EventLog) (EventID: 6008) (User: )
Description: Poprzednie zamknięcie systemu przy 17:47:58 na ‎2018-‎02-‎19 było nieoczekiwane.
 
Error: (02/19/2018 02:52:04 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Nie można uruchomić usługi DgiVecp z powodu następującego błędu: 
Nie można odnaleźć określonego pliku.
 
Error: (02/19/2018 02:51:56 PM) (Source: Microsoft-Windows-WLAN-AutoConfig) (EventID: 10000) (User: ZARZĄDZANIE NT)
Description: Uruchomienie modułu rozszerzalności sieci WLAN nie powiodło się.
 
Ścieżka modułu: C:\Windows\system32\athExt.dll
Kod błędu: 126
 
Error: (02/19/2018 02:48:38 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Nie można uruchomić usługi DgiVecp z powodu następującego błędu: 
Nie można odnaleźć określonego pliku.
 
 
Windows Defender:
===================================
Date: 2010-06-09 09:19:34.835
Description: 
Skanowanie produktu Windows Defender zostało zatrzymane przed ukończeniem.
Identyfikator skanowania:{CD32E5CF-5991-40F5-A98B-EBC653E1C096}
Typ skanowania:Oprogramowanie antyszpiegowskie
Parametry skanowania:Szybkie skanowanie
Użytkownik:ZARZĄDZANIE NT\USŁUGA SIECIOWA
 
CodeIntegrity:
===================================
 
Date: 2017-05-29 21:16:12.108
Description: 
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\atikmdag.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
 
Date: 2017-05-29 21:16:10.922
Description: 
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\atikmdag.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
 
Date: 2017-05-29 21:07:19.368
Description: 
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\atikmdag.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
 
Date: 2017-05-29 21:07:18.260
Description: 
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\atikmdag.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
 
Date: 2017-05-29 21:07:15.983
Description: 
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\ESET\ESET Security\Modules\em000k_32\1010\em000k_32.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
 
Date: 2017-05-29 21:07:15.967
Description: 
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\ESET\ESET Security\Modules\em000k_32\1010\em000k_32.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
 
Date: 2017-05-26 08:59:42.848
Description: 
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\atikmdag.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
 
Date: 2017-05-26 08:59:42.022
Description: 
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\atikmdag.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
 
==================== Statystyki pamięci =========================== 
 
Procesor: AMD Athlon™ II X2 245 Processor
Procent pamięci w użyciu: 61%
Całkowita pamięć fizyczna: 3326.55 MB
Dostępna pamięć fizyczna: 1296.09 MB
Całkowita pamięć wirtualna: 6653.11 MB
Dostępna pamięć wirtualna: 4587.38 MB
 
==================== Dyski ================================
 
Drive c: () (Fixed) (Total:270.35 GB) (Free:217.18 GB) NTFS
Drive d: () (Fixed) (Total:195.31 GB) (Free:184.41 GB) NTFS
 
\\?\Volume{1b1f9d64-7238-11df-99b3-806e6f6e6963}\ (Zastrzeżone przez system) (Fixed) (Total:0.1 GB) (Free:0.06 GB) NTFS
 
==================== MBR & Tablica partycji ==================
 
========================================================
Disk: 0 (MBR Code: Windows 7/8/10) (Size: 465.8 GB) (Disk ID: 9CEB5FB3)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=270.3 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=195.3 GB) - (Type=07 NTFS)
 
==================== Koniec  Addition.txt ============================

 

 



BC AdBot (Login to Remove)

 


#2 hamluis

hamluis

    Moderator


  • Moderator
  • 56,381 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Killeen, TX
  • Local time:09:09 PM

Posted 19 February 2018 - 01:24 PM

Dupe.

 

See original topic at https://www.bleepingcomputer.com/forums/t/671188/gdcb/#entry4447998 .

 

This topic is now closed to avoid confusion.

 

Louis






0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users