Rezultaty skanu uzupełniającego Farbar Recovery Scan Tool (x64) Wersja: 15-06-2017 Uruchomiony przez Leszek (15-06-2017 13:06:36) Uruchomiony z C:\Users\Leszek\Nimi Places\Różne\scan Windows 10 Home Wersja 1607 (X64) (2017-01-06 12:49:21) Tryb startu: Normal ========================================================== ==================== Konta użytkowników: ============================= Administrator (S-1-5-21-2790352501-2114224720-3074741599-500 - Administrator - Disabled) Gość (S-1-5-21-2790352501-2114224720-3074741599-501 - Limited - Enabled) => C:\Users\Gość HomeGroupUser$ (S-1-5-21-2790352501-2114224720-3074741599-1004 - Limited - Enabled) Konto domyślne (S-1-5-21-2790352501-2114224720-3074741599-503 - Limited - Disabled) Leszek (S-1-5-21-2790352501-2114224720-3074741599-1000 - Administrator - Enabled) => C:\Users\Leszek Leszek-Praca (S-1-5-21-2790352501-2114224720-3074741599-1012 - Administrator - Enabled) => C:\Users\Leszek-Praca ==================== Centrum zabezpieczeń ======================== (Załączenie wejścia w fixlist spowoduje jego usunięcie.) AV: Avast Antivirus (Disabled - Up to date) {8EA8924E-BC81-DC44-8BB0-8BAE75D86EBF} AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AV: AVG AntiVirus Free Edition (Disabled - Out of date) {4D41356F-32AD-7C42-C820-63775EE4F413} AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: AVG AntiVirus Free Edition (Disabled - Out of date) {F620D48B-1497-73CC-F290-58052563BEAE} AS: Avast Antivirus (Disabled - Up to date) {35C973AA-9ABB-D3CA-B100-B0DC0E5F2402} ==================== Zainstalowane programy ====================== (W fixlist dozwolone tylko załączanie programów adware z flagą "Hidden" w celu ich uwidocznienia. Programy adware powinny zostać w poprawny sposób odinstalowane.) Adobe Flash Player 10 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: 10.0.42.34 - Adobe Systems Incorporated) Adobe Flash Player 25 PPAPI (HKLM-x32\...\Adobe Flash Player PPAPI) (Version: 25.0.0.148 - Adobe Systems Incorporated) Adobe Flash Player 9 ActiveX (HKLM-x32\...\ShockwaveFlash) (Version: 9 - Adobe Systems) Adobe Reader XI - Polish (HKLM-x32\...\{AC76BA86-7AD7-1045-7B44-AB0000000001}) (Version: 11.0.00 - Adobe Systems Incorporated) Adobe Shockwave Player 11.6 (HKLM-x32\...\Adobe Shockwave Player) (Version: 11.6.8.638 - Adobe Systems, Inc.) Advanced IP Scanner (HKLM-x32\...\{7774E6AB-D658-40A2-B9FA-7136FA917BAE}) (Version: 2.2.224 - Famatech) Any Video Converter 5.9.5 (HKLM-x32\...\Any Video Converter_is1) (Version: - Any-Video-Converter.com) Application Insights Tools for Visual Studio 2015 (HKLM-x32\...\{903D0F33-D3CF-48D6-967D-84004089428A}) (Version: 4.0.51203.1 - Microsoft Corporation) Aria Maestosa 1.4.11 (HKLM-x32\...\Aria Maestosa_is1) (Version: - ) Asystent uaktualnienia do systemu Windows 10 (HKLM-x32\...\{D5C69738-B486-402E-85AC-2456D98A64E4}) (Version: 1.4.9200.17364 - Microsoft Corporation) AutoCAD 2015 - English (Version: 20.0.51.0 - Autodesk) Hidden AutoCAD 2015 — Polski (Polish) (Version: 20.0.51.0 - Autodesk) Hidden AutoCAD 2015 Language Pack - English (Version: 20.0.51.0 - Autodesk) Hidden AutoCAD 2015 Language Pack – Polski (Polish) (Version: 20.0.51.0 - Autodesk) Hidden Autodesk 360 (HKLM\...\{556966D9-F7F6-421B-9707-D07901604DDF}) (Version: 5.2.3.1000 - Autodesk) Autodesk App Manager (HKLM-x32\...\{C8125548-F2D5-4059-823F-1F3C5BBD9F19}) (Version: 1.2.0 - Autodesk) Autodesk Application Manager (HKLM-x32\...\Autodesk Application Manager) (Version: 5.0.142.14 - Autodesk) Autodesk AutoCAD 2015 - English (HKLM\...\AutoCAD 2015 - English) (Version: 20.0.51.0 - Autodesk) Autodesk AutoCAD 2015 Language Pack – Polski (Polish) (HKLM\...\AutoCAD 2015 Language Pack – Polski (Polish)) (Version: 20.0.51.0 - Autodesk) Autodesk AutoCAD Performance Feedback Tool Version 1.2.2 (HKLM-x32\...\{85735431-6CD3-4B16-BEC8-95332034E53B}) (Version: 1.2.2.0 - Autodesk) Autodesk BIM 360 Glue AutoCAD 2015 Add-in 64 bit (HKLM\...\{9D589081-AFC2-4932-9071-AC585AC1EA83}) (Version: 3.32.3004 - Autodesk) Autodesk Content Service (HKLM-x32\...\Autodesk Content Service) (Version: 3.2.0.0 - Autodesk) Autodesk Content Service (x32 Version: 3.2.0.0 - Autodesk) Hidden Autodesk Content Service Language Pack (x32 Version: 3.2.0.0 - Autodesk) Hidden Autodesk Featured Apps (HKLM-x32\...\{EDDEE94B-214D-4B07-9727-A3E46F3E379A}) (Version: 1.2.0 - Autodesk) Autodesk Material Library 2015 (HKLM-x32\...\{427F733F-4D6C-45BC-9324-EB743104C321}) (Version: 5.2.9.100 - Autodesk) Autodesk Material Library Base Resolution Image Library 2015 (HKLM-x32\...\{ABE2F70B-8D94-44E9-AA04-F0DB35063D62}) (Version: 5.2.9.100 - Autodesk) Autodesk ReCap (HKLM\...\Autodesk ReCap) (Version: 1.3.1.39 - Autodesk) Autodesk ReCap (Version: 1.3.1.39 - Autodesk) Hidden Avast Free Antivirus (HKLM-x32\...\Avast Antivirus) (Version: 17.4.2294 - AVAST Software) AVG (Version: 16.71.7598 - AVG Technologies) Hidden AVG 2016 (Version: 16.0.4591 - AVG Technologies) Hidden Avidemux 2.6 - 64 bits (HKLM-x32\...\Avidemux 2.6 - 64 bits (64-bit)) (Version: 2.6.12.160304 - ) AviSynth 2.6 (HKLM-x32\...\AviSynth) (Version: 2.6.0.6 - GPL Public release.) Azure AD Authentication Connected Service (x32 Version: 14.0.23107 - Microsoft Corporation) Hidden AzureTools.Notifications (x32 Version: 2.7.30611.1601 - Microsoft Corporation) Hidden Behaviors SDK (Windows) for Visual Studio 2013 (x32 Version: 12.0.51210.80 - Microsoft Corporation) Hidden Blend for Visual Studio SDK for .NET 4.5 (x32 Version: 3.0.40218.0 - Microsoft Corporation) Hidden Bricks of Camelot (HKLM-x32\...\Bricks of Camelot_is1) (Version: - ) ByteScout BarCode Generator 4.57.0.930 (FREEWARE) (HKLM-x32\...\ByteScout BarCode Generator_is1) (Version: - Bytescout Software) CCleaner (HKLM\...\CCleaner) (Version: 5.26 - Piriform) Chrome Remote Desktop Host (HKLM-x32\...\{BAF2702F-FB88-48E4-A305-588DB8FDD834}) (Version: 59.0.3071.47 - Google Inc.) Cisco EAP-FAST Module (HKLM-x32\...\{64BF0187-F3D2-498B-99EA-163AF9AE6EC9}) (Version: 2.2.14 - Cisco Systems, Inc.) Cisco LEAP Module (HKLM-x32\...\{51C7AD07-C3F6-4635-8E8A-231306D810FE}) (Version: 1.0.19 - Cisco Systems, Inc.) Cisco PEAP Module (HKLM-x32\...\{ED5776D5-59B4-46B7-AF81-5F2D94D7C640}) (Version: 1.1.6 - Cisco Systems, Inc.) ClickOnce Bootstrapper Package for Microsoft .NET Framework (x32 Version: 4.6.01590 - Microsoft Corporation) Hidden CodeBlocks (HKU\S-1-5-21-2790352501-2114224720-3074741599-1000\...\CodeBlocks) (Version: 16.01 - The Code::Blocks Team) Codec Pack - All In 1 6.0.3.0 (HKLM-x32\...\Cool's_Codec_pack_4.12) (Version: - ) CodedUITestUAP (x32 Version: 14.0.24720 - Microsoft Corporation) Hidden Compaq Setup Manager (HKLM-x32\...\{AE856388-AFAD-4753-81DF-D96B19D0A17C}) (Version: 1.2.14901.3869 - Hewlett-Packard Company) CyberLink YouCam (HKLM-x32\...\InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D}) (Version: 3.5.4.5822 - CyberLink Corp.) D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden DAEMON Tools Lite (HKLM-x32\...\DAEMON Tools Lite) (Version: 4.45.4.0316 - DT Soft Ltd) Detektor Winampa (HKU\S-1-5-21-2790352501-2114224720-3074741599-1000\...\Winamp Detect) (Version: 1.0.0.1 - Nullsoft, Inc) Dev-C++ (HKLM-x32\...\Dev-C++) (Version: 5.11 - Bloodshed Software) DiagnosticsHub_CollectionService (Version: 15.0.26004 - Microsoft Corporation) Hidden doPDF (Version: 8.7.943 - Softland) Hidden doPDF 8 (HKLM-x32\...\{d6358cec-8eb1-4dac-842d-37f920ee7b83}) (Version: 8.7.943 - Softland) Dotfuscator and Analytics Community Edition 5.19.0 (x32 Version: 5.19.0.2930 - PreEmptive Solutions) Hidden DraftSight 2016 SP2 x64 (HKLM\...\{459B4886-8CB0-4E9B-87D9-D35CC80B1BCB}) (Version: 16.2.0060 - Dassault Systemes) Entity Framework 6.1.3 Tools for Visual Studio 15 (x32 Version: 6.1.51118.0 - Microsoft Corporation) Hidden ESU for Microsoft Windows 7 SP1 (HKLM-x32\...\{E96CAA2A-0244-4A2A-8403-0C3C9534778B}) (Version: 2.1.1 - Hewlett-Packard) EVEREST Home Edition v2.20 (HKLM-x32\...\EVEREST Home Edition_is1) (Version: 2.20 - Lavalys Inc) EyeFrame Converter 1.8.1 (HKLM-x32\...\{DAEA793F-1378-45D1-A4AD-8ED944AA1F76}_is1) (Version: - Tin2tin) Facebook Video Calling 3.1.0.521 (HKLM-x32\...\{2091F234-EB58-4B80-8C96-8EB78C808CF7}) (Version: 3.1.521 - Skype Limited) ffdshow x64 v1.3.4531 [2014-06-28] (HKLM\...\ffdshow64_is1) (Version: 1.3.4531.0 - ) FFmpeg (Windows) for Audacity wersja 2.2.2 (HKLM-x32\...\{9C7E31E3-017F-434C-AC40-24431A354A1E}_is1) (Version: 2.2.2 - ) FMW 1 (Version: 1.143.3 - AVG Technologies) Hidden FMW 1 (Version: 1.82.3 - AVG Technologies) Hidden Formant ActiveX programu Windows Live Mesh odpowiedzialny za obsługę połączeń zdalnych (HKLM-x32\...\{B04A0E2F-1E4C-4E61-B18E-3B2BD6779CA7}) (Version: 15.4.5722.2 - Microsoft Corporation) Free Download Manager 3.9.7 (HKLM-x32\...\Free Download Manager_is1) (Version: - FreeDownloadManager.ORG) FreeRIP MP3 Converter 5.5.0.2 (HKLM-x32\...\{501451DE-5808-4599-B544-8BD0915B6B24}_is1) (Version: 5.5.0.2 - GreenTree Applications SRL) Galeria fotografii usługi Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Game Booster 3 (HKLM-x32\...\Game Booster_is1) (Version: 3.1 - IObit) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 58.0.3029.110 - Google Inc.) Google Drive (HKLM-x32\...\{A1238426-ECDF-4639-BE2F-8D12A97AE23C}) (Version: 2.34.5075.1619 - Google, Inc.) Google Earth (HKLM-x32\...\{F6430171-B86B-4639-839E-374913E7911D}) (Version: 7.1.8.3036 - Google) Google Update Helper (x32 Version: 1.3.33.5 - Google Inc.) Hidden Graph 4.4.2 (HKLM-x32\...\Graph_is1) (Version: - Ivan Johansen) Handset WinDriver 1.02.03.00 (HKLM-x32\...\Handset WinDriver) (Version: 1.02.03.00 - Huawei technologies Co., Ltd.) Hewlett-Packard ACLM.NET v1.2.2.3 (x32 Version: 1.00.0000 - Hewlett-Packard Company) Hidden Hopmon PL (HKLM-x32\...\Hopmon PL) (Version: - ) HP Connection Manager (HKLM-x32\...\{5E63C0AB-19B0-47D4-842E-6B324EB0614B}) (Version: 4.1.23.1 - Hewlett-Packard Company) HP Documentation (HKLM-x32\...\{39FCC6B7-FFF5-4075-A5E8-B5CEBD54C331}) (Version: 1.1.0.0 - Hewlett-Packard) HP Launch Box (HKLM\...\{BF1E75D0-E7AF-4BEA-9FBC-567F0C54BDF9}) (Version: 1.0.12 - Hewlett-Packard Company) HP On Screen Display (HKLM-x32\...\{ED1BD69A-07E3-418C-91F1-D856582581BF}) (Version: 1.3.5 - Hewlett-Packard Company) HP Power Manager (HKLM-x32\...\{E44578C7-4667-4124-8BC2-1161BCA54978}) (Version: 1.4.4 - Hewlett-Packard Company) HP Quick Launch (HKLM-x32\...\{285F722C-0E45-47DE-B38E-5B3B10FA4A7C}) (Version: 2.5.2 - Hewlett-Packard Company) HP QuickWeb (HKLM-x32\...\{41298BF3-DF6B-449C-BFB7-83663ECB5108}) (Version: 3.1.1.10184 - Hewlett-Packard Company) HP Security Assistant (HKLM\...\{562608FE-2051-4488-BF22-8CE4C03046AC}) (Version: 1.0.12 - Hewlett-Packard) HP Setup (HKLM-x32\...\{F5E7D9AF-60F6-4A30-87E3-4EA94D322CE1}) (Version: 9.0.15076.3891 - Hewlett-Packard Company) HP Software Framework (HKLM-x32\...\{04352528-0DBF-400F-980C-9BF40E66EE19}) (Version: 4.6.8.1 - Hewlett-Packard Company) HP Support Assistant (HKLM-x32\...\{E959FD01-BD01-4CC4-9BB8-4EBE8309BF37}) (Version: 8.2.8.25 - HP) HP Support Solutions Framework (HKLM-x32\...\{2AD02988-163A-45E2-AC71-530B080D1A73}) (Version: 12.4.18.7 - HP) HP System Event Utility (HKLM-x32\...\{29E20347-C62F-4657-938E-876A182B67F1}) (Version: 1.4.13 - HP Inc.) icecap_collection_neutral (x32 Version: 15.0.26004 - Microsoft Corporation) Hidden icecap_collection_x64 (Version: 15.0.26004 - Microsoft Corporation) Hidden icecap_collectionresources (x32 Version: 15.0.26004 - Microsoft Corporation) Hidden icecap_collectionresourcesx64 (x32 Version: 15.0.26004 - Microsoft Corporation) Hidden IIS 10.0 Express (HKLM\...\{7A28A2B0-458B-4A58-84AC-C90D2D4B79FB}) (Version: 10.0.1735 - Microsoft Corporation) IIS Express Application Compatibility Database for x64 (HKLM\...\{08274920-8908-45c2-9258-8ad67ff77b09}.sdb) (Version: - ) IIS Express Application Compatibility Database for x86 (HKLM\...\{ad846bae-d44b-4722-abad-f7420e08bcd9}.sdb) (Version: - ) Inkscape 0.91 (HKLM\...\{81922150-317E-4BB0-A31D-FF1C14F707C5}) (Version: 0.91 - inkscape.org) inSSIDer 2.0 (HKLM\...\{57019733-78E6-43DE-8E6D-55349F0FDE6F}) (Version: 2.0.7 - MetaGeek) Intel Android Device USB driver (HKLM\...\Intel Android Device USB driver) (Version: 1.10.0 - Intel) Intel Driver Update Utility (HKLM-x32\...\{ca4bc3a8-b99c-4416-90d8-351a8ceab458}) (Version: 2.2.0.2 - Intel) Intel(R) Control Center (HKLM-x32\...\{F8A9085D-4C7A-41a9-8A77-C8998A96C421}) (Version: 1.2.1.1007 - Intel Corporation) Intel(R) Driver Update Utility 2.2 (x32 Version: 2.2.0.1 - Intel) Hidden Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 7.0.0.1144 - Intel Corporation) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 9.17.10.4229 - Intel Corporation) Intellisense Lang Pack Mobile Extension SDK 10.0.14393.0 (x32 Version: 10.1.14393.33 - Microsoft Corporation) Hidden IntelliTraceProfilerProxy (x32 Version: 15.0.24.0 - Microsoft Corporation) Hidden ipla 2.9 (HKLM-x32\...\ipla) (Version: 2.9 - Cyfrowy Polsat S.A.) IrfanView (remove only) (HKLM-x32\...\IrfanView) (Version: 4.40 - Irfan Skiljan) Jagged Alliance 2.5 Unfinished Business (HKLM-x32\...\Jagged Alliance 2: Unfinished Business) (Version: - ) Java 7 Update 13 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83217013FF}) (Version: 7.0.130 - Oracle) Java SE Development Kit 7 Update 55 (HKLM-x32\...\{32A3A4F4-B792-11D6-A78A-00B0D0170550}) (Version: 1.7.0.550 - Oracle) Java SE Development Kit 8 Update 92 (HKLM-x32\...\{32A3A4F4-B792-11D6-A78A-00B0D0180920}) (Version: 8.0.920.14 - Oracle Corporation) Java(TM) 6 Update 22 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83216022FF}) (Version: 6.0.220 - Oracle) Jungle Book (HKLM-x32\...\Jungle Book_is1) (Version: - GameFabrique) Junk Mail filter update (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Kits Configuration Installer (x32 Version: 10.1.14393.33 - Microsoft) Hidden LenovoUsbDriver 1.0.14 (HKLM-x32\...\LenovoUsbDriver) (Version: 1.0.14 - Lenovo) Lightroom Alamy Plug-in (HKLM-x32\...\{9711156D-330B-4D1C-8CA3-33818D7D7784}) (Version: 1.0.4877 - Jim Keir) Lightworks (HKLM-x32\...\{E94DD4E4-7746-472c-AA7B-1242FED0CFC8}) (Version: 14.0.0.0 - EditShare) Marine Puzzle (HKLM-x32\...\Marine Puzzle_is1) (Version: 1.0 - Media Contact LLC) Mathcad 15 F000 (HKLM-x32\...\{DC8F6C78-7231-44A2-B66E-6C4FCB3A3364}) (Version: 15.0.0.0 - PTC) Mathcad PDSi viewable support (HKLM-x32\...\Mathcad PDSi viewable support) (Version: 9.0.0 - Adobe Systems) Mathcad PDSi viewable support (x32 Version: 9.0.0 - Adobe Systems) Hidden MediaInfo 0.7.95 (HKLM\...\MediaInfo) (Version: 0.7.95 - MediaArea.net) Mesh Runtime (x32 Version: 15.4.5722.2 - Microsoft Corporation) Hidden Microsoft .NET Core 1.0.1 - SDK Preview 4 (x64) (HKLM-x32\...\{4b5484b5-ef1f-4f6b-9532-d03071bfb38b}) (Version: 1.0.0.4233 - Microsoft Corporation) Microsoft .NET Framework 4.5 Multi-Targeting Pack (HKLM-x32\...\{56E962F0-4FB0-3C67-88DB-9EAA6EEFC493}) (Version: 4.5.50710 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 Multi-Targeting Pack (ENU) (HKLM-x32\...\{D3517C62-68A5-37CF-92F7-93C029A89681}) (Version: 4.5.50932 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 Multi-Targeting Pack (HKLM-x32\...\{6A0C6700-EA93-372C-8871-DCCF13D160A4}) (Version: 4.5.50932 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 SDK (HKLM-x32\...\{19A5926D-66E1-46FC-854D-163AA10A52D3}) (Version: 4.5.51641 - Microsoft Corporation) Microsoft .NET Framework 4.5.2 Multi-Targeting Pack (ENU) (HKLM-x32\...\{290FC320-2F5A-329E-8840-C4193BD7A9EE}) (Version: 4.5.51209 - Microsoft Corporation) Microsoft .NET Framework 4.5.2 Multi-Targeting Pack (HKLM-x32\...\{19E8AE59-4D4A-3534-B567-6CC08FA4102E}) (Version: 4.5.51651 - Microsoft Corporation) Microsoft .NET Framework 4.6 SDK (HKLM-x32\...\{B5915D37-0637-4A26-A3AA-C5DC9F856370}) (Version: 4.6.00081 - Microsoft Corporation) Microsoft .NET Framework 4.6 Targeting Pack (ENU) (HKLM-x32\...\{034547E9-D8FA-49E7-8B9C-4C9861FB9146}) (Version: 4.6.00127 - Microsoft Corporation) Microsoft .NET Framework 4.6 Targeting Pack (HKLM-x32\...\{2CC6A4A7-AAC2-46C9-9DBB-3727B5954F65}) (Version: 4.6.00081 - Microsoft Corporation) Microsoft .NET Framework 4.6.1 SDK (HKLM-x32\...\{2F0ECC80-B9E4-4485-8083-CD32F22ABD92}) (Version: 4.6.01055 - Microsoft Corporation) Microsoft .NET Framework 4.6.1 SDK (Polski) (HKLM-x32\...\{A9D7F21C-C602-46C5-A080-4E44E440F249}) (Version: 4.6.01055 - Microsoft Corporation) Microsoft .NET Framework 4.6.1 Targeting Pack (ENU) (HKLM-x32\...\{8EEB28EE-5141-411C-9CF0-9952264FE4AF}) (Version: 4.6.01055 - Microsoft Corporation) Microsoft .NET Framework 4.6.1 Targeting Pack (HKLM-x32\...\{8BC3EEC9-090F-4C53-A8DA-1BEC913040F9}) (Version: 4.6.01055 - Microsoft Corporation) Microsoft .NET Framework 4.6.1 z dodatkiem Targeting Pack (Polski) (HKLM-x32\...\{EDC3FD45-C9CE-483F-8013-D18C69EF3F85}) (Version: 4.6.01055 - Microsoft Corporation) Microsoft .NET Framework 4.6.2 SDK (HKLM-x32\...\{39BEF607-44E6-472B-90C1-BD62AA2B7A3F}) (Version: 4.6.01586 - Microsoft Corporation) Microsoft .NET Framework 4.6.2 Targeting Pack (HKLM-x32\...\{C07B4BC7-A37D-46A8-B2A3-620CC569D149}) (Version: 4.6.01586 - Microsoft Corporation) Microsoft Help Viewer 2.2 (HKLM-x32\...\Microsoft Help Viewer 2.2) (Version: 2.2.24720 - Microsoft Corporation) Microsoft Keyboard Layout Creator 1.4 (HKLM-x32\...\{99E66BC9-E4B6-485F-ABFC-31EFCE36DFDF}) (Version: 1.4.6000 - Microsoft Corp.) Microsoft Silverlight (HKLM-x32\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.20513.0 - Microsoft Corporation) Microsoft SQL Server 2014 Management Objects (HKLM-x32\...\{2774595F-BC2A-4B12-A25B-0C37A37049B0}) (Version: 12.0.2000.8 - Microsoft Corporation) Microsoft SQL Server 2014 Management Objects (x64) (HKLM\...\{1F9EB3B6-AED7-4AA7-B8F1-8E314B74B2A5}) (Version: 12.0.2000.8 - Microsoft Corporation) Microsoft SQL Server 2014 Transact-SQL ScriptDom (HKLM\...\{020CDFE0-C127-4047-B571-37C82396B662}) (Version: 12.0.2000.8 - Microsoft Corporation) Microsoft SQL Server 2014 T-SQL Language Service (HKLM-x32\...\{47D08E7A-92A1-489B-B0BF-415516497BCE}) (Version: 12.0.2000.8 - Microsoft Corporation) Microsoft SQL Server Compact 4.0 SP1 x64 ENU (HKLM\...\{78909610-D229-459C-A936-25D92283D3FD}) (Version: 4.0.8876.1 - Microsoft Corporation) Microsoft System CLR Types for SQL Server 2014 (HKLM\...\{FC3BB979-AA54-4B60-BBA3-2C4DA6E08D80}) (Version: 12.0.2402.29 - Microsoft Corporation) Microsoft System CLR Types for SQL Server 2014 (HKLM-x32\...\{091CE6AA-2753-4F6E-AD1C-0E875744EB54}) (Version: 12.0.2402.29 - Microsoft Corporation) Microsoft System CLR Types for SQL Server 2016 (HKLM\...\{96EB5054-C775-4BEF-B7B9-AA96A295EDCD}) (Version: 13.0.1601.5 - Microsoft Corporation) Microsoft System CLR Types for SQL Server 2016 (HKLM-x32\...\{84C23ECA-FE4D-494F-9247-3EBAD57E7F0C}) (Version: 13.0.1601.5 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 (HKLM-x32\...\{95716cce-fc71-413f-8ad5-56c2892d4b3a}) (Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2017 RC Redistributable (x64) - 14.10.24728 (HKLM-x32\...\{197f8e1a-7e93-4cb4-a4f9-19dc2c2c4ee2}) (Version: 14.10.24728.0 - Microsoft Corporation) Microsoft Visual C++ 2017 RC Redistributable (x86) - 14.10.24728 (HKLM-x32\...\{38602f72-a7f8-456b-84e5-6e200dc99917}) (Version: 14.10.24728.0 - Microsoft Corporation) Microsoft Visual Studio 2017 (HKLM-x32\...\{6F320B93-EE3C-4826-85E0-ADF79F8D4C61}) (Version: 1.2.21220.1 - Microsoft Corporation) Microsoft Visual Studio Community 2015 with Updates (HKLM-x32\...\{dfcbf7c4-6232-423c-b43c-38d118e2378f}) (Version: 14.0.24720.41 - Microsoft Corporation) Microsoft Web Deploy 3.6 (HKLM\...\{ED4CC1E5-043E-4157-8452-B5E533FE2BA1}) (Version: 3.1238.1955 - Microsoft Corporation) Miranda NG (HKLM-x32\...\Miranda NG_is1) (Version: 0.95.4 - Miranda NG Team) Mozilla Thunderbird 52.1.1 (x86 pl) (HKLM-x32\...\Mozilla Thunderbird 52.1.1 (x86 pl)) (Version: 52.1.1 - Mozilla) Mp3tag v2.55a (HKLM-x32\...\Mp3tag) (Version: v2.55a - Florian Heidenreich) MSBuild/NuGet Integration 14.0 (x86) (x32 Version: 14.0.24720 - Microsoft Corporation) Hidden MSXML 4.0 SP2 Parser and SDK (HKLM-x32\...\{716E0306-8318-4364-8B8F-0CC4E9376BAC}) (Version: 4.20.9818.0 - Microsoft Corporation) MSXML 4.0 SP3 Parser (HKLM-x32\...\{196467F1-C11F-4F76-858B-5812ADC83B94}) (Version: 4.30.2100.0 - Microsoft Corporation) MSXML 4.0 SP3 Parser (KB2758694) (HKLM-x32\...\{1D95BA90-F4F8-47EC-A882-441C99D30C1E}) (Version: 4.30.2117.0 - Microsoft Corporation) Multi-Device Hybrid Apps using C# - Templates - ENU (x32 Version: 14.0.23107 - Microsoft Corporation) Hidden MyHeritage Family Tree Builder (HKLM-x32\...\Family Tree Builder) (Version: 8.0.0.8319 - MyHeritage.com) Notepad++ (32-bit x86) (HKLM-x32\...\Notepad++) (Version: 7.2.2 - Notepad++ Team) novaPDF 8 Printer Driver (HKLM\...\{6C88C54A-0C9C-4B57-8CF5-C6A0184B554E}) (Version: 8.7.943 - Softland) OpenOffice 4.1.1 (HKLM-x32\...\{B5373BA3-BAD7-4EAC-A9D2-B66B41B82C57}) (Version: 4.11.9775 - Apache Software Foundation) opensource (x32 Version: 1.0.14960.3876 - Your Company Name) Hidden Oprogramowanie mikroukładu Intel® (x32 Version: 10.0.27 - Intel(R) Corporation) Hidden Pakiet sterowników systemu Windows - Invisibility Ltd (WinUSB) AndroidUsbDeviceClass (08/27/2012 7.0.0000.00005) (HKLM\...\8A4E2C1CC86657295291BAC6A1C2C1718C9BE52C) (Version: 08/27/2012 7.0.0000.00005 - Invisibility Ltd) Pakiet zbiorczy funkcji IntelliSense platformy Microsoft .NET Framework Cumulative Intellisense Pack dla programu Visual Studio (Polski) (x32 Version: 4.6.01590 - Microsoft Corporation) Hidden Pekka Kana 2 (HKU\S-1-5-21-2790352501-2114224720-3074741599-1000\...\Pekka Kana 2) (Version: - ) PlayReady PC Runtime x86 (HKLM-x32\...\{CCA5EAAD-92F4-4B7A-B5EE-14294C66AB61}) (Version: 1.3.0 - Microsoft Corporation) Poczta usługi Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Podstawowe programy Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Pogo Sticker (HKLM-x32\...\Pogo Sticker) (Version: - ) PolarClock3 Screen Saver (HKLM-x32\...\PolarClock3) (Version: - ) Polski Leszek (HKLM\...\{D65C48E2-85B3-49B8-9F92-B26AFFF8B85F}) (Version: 1.0.3.40 - -) PreEmptive Analytics Visual Studio Components (x32 Version: 1.2.5134.1 - PreEmptive Solutions) Hidden Prerequisites for SSDT (HKLM-x32\...\{21373064-AD95-48DB-A32E-0D9E08EF7355}) (Version: 12.0.2000.8 - Microsoft Corporation) Project and Item Templates for Visual Studio Express 2015 for Windows 10 - ENU (x32 Version: 14.0.24720 - Microsoft Corporation) Hidden Project and Item Templates for Visual Studio Professionald 2015 - ENU (x32 Version: 14.0.24720 - Microsoft Corporation) Hidden 'PTC Places' Namespace Shell Extension (HKLM-x32\...\{C65ABF2A-1B82-4F34-8C74-E4FE373F3BE4}) (Version: 1.1.11 - PTC) Q-Lat3 (HKU\S-1-5-21-2790352501-2114224720-3074741599-1000\...\Q-Lat3) (Version: - ) Rally Championship Extreme (HKLM-x32\...\Rally Championship Extreme) (Version: - ) Realtek Card Reader (HKLM-x32\...\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}) (Version: 10.0.14393.28161 - Realtek Semiconduct Corp.) Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.42.304.2011 - Realtek) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.8098 - Realtek Semiconductor Corp.) Realtek PCIE Card Reader (HKLM-x32\...\{C1594429-8296-4652-BF54-9DBE4932A44C}) (Version: 6.1.7600.77 - Realtek Semiconductor Corp.) REALTEK Wireless LAN Driver (HKLM-x32\...\{9D3D8C60-A55F-4123-B2B9-173F09590E16}) (Version: 1.00.11.0706 - REALTEK Semiconductor Corp.) Roadkil's Unstoppable Copier Version 5.2 (HKLM-x32\...\{A306FD29-7D3A-4287-91AC-9A0180931395}_is1) (Version: - Roadkil.Net) RollerCoaster Tycoon 2 (HKLM-x32\...\{72DF62BD-FF36-424E-AA5F-D89BAFF2C249}) (Version: - ) Roslyn Language Services - x86 (x32 Version: 14.0.23107 - Microsoft Corporation) Hidden Roslyn Language Services - x86 (x32 Version: 14.0.24720 - Microsoft Corporation) Hidden SAMSUNG USB Driver for Mobile Phones (HKLM\...\{D0795B21-0CDA-4a92-AB9E-6E92D8111E44}) (Version: 1.5.24.0 - SAMSUNG Electronics Co., Ltd.) Search and Rescue 4 (HKLM-x32\...\InstallShield_{BF8921C7-59DD-486C-8D8A-B433DC4A5323}) (Version: 1.00.0000 - InterActive Vision) Search and Rescue 4 (HKLM-x32\...\Search and Rescue 4) (Version: - ) Search and Rescue 4 (x32 Version: 1.00.0000 - InterActive Vision) Hidden Shark Attack (HKLM-x32\...\SharkAttack_is1) (Version: 1.0 - Media Contact LLC) Simon Tatham's Portable Puzzle Collection (HKLM-x32\...\{E79BCF65-F9FD-4934-9F05-4DB087F23E4C}) (Version: 0.0.11163.0 - Simon Tatham) Skanowanie sieciowe (HKLM-x32\...\{9C5725B7-2219-410C-A364-90767F71F00C}) (Version: - ) SketchUp Import (HKLM-x32\...\{C403E867-FCF1-432B-BCC1-8FFD40A10A6E}) (Version: 1.2.0 - Autodesk) Skype™ 7.37 (HKLM-x32\...\{3B7E914A-93D5-4A29-92BB-AF8C3F66C431}) (Version: 7.37.103 - Skype Technologies S.A.) SmartCard Reader Driver Installation (HKLM-x32\...\InstallShield_{C6D91586-9F98-4CFD-9BC3-FC0800911005}) (Version: 1.2.4.16 - SmartCard Reader) SmartCard Reader Driver Installation (x32 Version: 1.2.4.16 - SmartCard Reader) Hidden SpeedFan (remove only) (HKLM-x32\...\SpeedFan) (Version: - ) Spider-Man 2 (HKLM-x32\...\InstallShield_{2F7655DD-793E-40C6-B348-DE67C109F6FF}) (Version: 1.0 - Activision) Spider-Man 2 (x32 Version: 1.0 - Activision) Hidden Stunt GP (HKLM-x32\...\{FB132F09-DCF1-46EA-AE92-F8B42AB7BAD4}) (Version: - ) swMSM (x32 Version: 12.0.0.1 - Adobe Systems, Inc) Hidden Synaptics TouchPad Driver (HKLM\...\SynTPDeinstKey) (Version: 19.3.31.9 - Synaptics Incorporated) Taxi Racer London 2 (HKLM-x32\...\Taxi Racer London 2) (Version: .0 - Team6 game studios) Team Explorer for Microsoft Visual Studio 2015 (x32 Version: 14.0.24712 - Microsoft Corporation) Hidden TeamViewer 7 (HKLM-x32\...\TeamViewer 7) (Version: 7.0.12799 - TeamViewer) Test Tools for Microsoft Visual Studio 2015 (x32 Version: 14.0.23107 - Microsoft Corporation) Hidden Tony Hawks Pro Skater 4 (HKLM-x32\...\{E0F07676-2C60-4465-A727-20DE3BFCABAC}) (Version: 1.00.0000 - Aspyr Media) Tropico (HKLM-x32\...\{818FB39B-1A57-4F1B-A54D-391C33D6C586}) (Version: - ) TypeScript Power Tool (x32 Version: 1.5.4.0 - Microsoft Corporation) Hidden TypeScript Power Tool (x32 Version: 1.6.3.0 - Microsoft Corporation) Hidden TypeScript Power Tool (x32 Version: 1.7.4.0 - Microsoft Corporation) Hidden TypeScript Tools for Microsoft Visual Studio 2015 (x32 Version: 1.7.4.0 - Microsoft Corporation) Hidden TypeScript Tools for Microsoft Visual Studio 2015 1.5.4.0 (HKLM-x32\...\{4cde0c8c-47b3-448f-babf-fe5d392432a6}) (Version: 1.5.23128.0 - Microsoft Corporation) TypeScript Tools for Microsoft Visual Studio 2015 1.7.4.0 (HKLM-x32\...\{33e2204a-4ec6-4458-895a-47e2a404d990}) (Version: 1.7.24720.0 - Microsoft Corporation) UC Browser (HKLM-x32\...\UCBrowser) (Version: 6.1.2909.1022 - UCWeb Inc.) UCanNest V10.6 (HKLM-x32\...\UCanNest V10.6) (Version: - ) Ullashong (HKLM-x32\...\{DE603322-5940-4011-8909-70EA113C8BF5}) (Version: - ) Universal CRT Extension SDK (x32 Version: 10.0.10150 - Microsoft Corporation) Hidden Universal CRT Extension SDK (x32 Version: 10.0.26624 - Microsoft Corporation) Hidden Universal CRT Extension SDK (x32 Version: 10.1.14393.33 - Microsoft Corporation) Hidden Universal CRT Headers Libraries and Sources (x32 Version: 10.0.10150 - Microsoft Corporation) Hidden Universal CRT Headers Libraries and Sources (x32 Version: 10.0.26624 - Microsoft Corporation) Hidden Universal CRT Headers Libraries and Sources (x32 Version: 10.1.14393.33 - Microsoft Corporation) Hidden Universal CRT Redistributable (x32 Version: 10.1.14393.33 - Microsoft Corporation) Hidden Universal CRT Tools x64 (Version: 10.1.14393.33 - Microsoft Corporation) Hidden Universal CRT Tools x86 (x32 Version: 10.1.14393.33 - Microsoft Corporation) Hidden Universal General MIDI DLS Extension SDK (x32 Version: 10.1.14393.33 - Microsoft Corporation) Hidden Unlocker 1.9.1-x64 (HKLM\...\Unlocker) (Version: 1.9.1 - Cedrick Collomb) Update for (KB2504637) (HKLM-x32\...\{CFEF48A8-BFB8-3EAC-8BA5-DE4F8AA267CE}.KB2504637) (Version: 1 - Microsoft Corporation) Update Installer for WildTangent Games App (x32 Version: - WildTangent) Hidden Update_msi (HKLM-x32\...\{59B5A9CD-253D-4C41-A073-B387D4C9672D}) (Version: 1.0.0 - Default Company Name) Urban Chaos (HKLM-x32\...\Urban Chaos) (Version: - ) USB Debugging Driver (HKLM\...\{B61F9010-3474-11E4-8C21-0800200C9A66}) (Version: 1.0.4 - Invisibility Ltd) USB Game Controller (HKLM-x32\...\{D3DF3D05-DE2A-476A-A384-08FCD58D9FE7}) (Version: 2007.01.01 - ) USB Network Joystick (HKLM-x32\...\{2A558A06-A44E-400D-95AD-D9FAA89AFD36}) (Version: 2007.03.12 - ) vcpp_crt.redist.clickonce (x32 Version: 14.10.24728 - Microsoft Corporation) Hidden Visual C++ for Mobile Development (Android support) (HKLM-x32\...\{b94f21f2-787e-4df5-9c33-44e904e6133f}) (Version: 14.0.24706.0 - Microsoft Corporation) Visual Studio 2012 x64 Redistributables (HKLM\...\{8C775E70-A791-4DA8-BCC3-6AB7136F4484}) (Version: 14.0.0.1 - AVG Technologies) Visual Studio 2012 x86 Redistributables (HKLM-x32\...\{98EFF19A-30AB-4E4B-B943-F06B1C63EBF8}) (Version: 14.0.0.1 - AVG Technologies CZ, s.r.o.) Visual Studio 2015 Update 1 (KB3022398) (HKLM-x32\...\{fcaa9dba-9438-48b6-ad91-4e9b4cc7084a}) (Version: 14.0.24720 - Microsoft Corporation) VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.4 - VideoLAN) VS JIT Debugger (Version: 16.0.58.0 - Microsoft Corporation) Hidden VS Script Debugging Common (Version: 16.0.58.0 - Microsoft Corporation) Hidden VS Update core components (x32 Version: 14.0.24720 - Microsoft Corporation) Hidden vs_clickoncebootstrappermsi (x32 Version: 15.0.26004 - Microsoft Corporation) Hidden vs_clickoncebootstrappermsires (x32 Version: 15.0.26004 - Microsoft Corporation) Hidden vs_clickoncesigntoolmsi (x32 Version: 15.0.26004 - Microsoft Corporation) Hidden vs_communitymsi (x32 Version: 15.0.26004 - Microsoft Corporation) Hidden vs_communitymsires (x32 Version: 15.0.26004 - Microsoft Corporation) Hidden vs_devenvmsi (x32 Version: 15.0.26004 - Microsoft Corporation) Hidden vs_filehandler_amd64 (x32 Version: 15.0.26004 - Microsoft Corporation) Hidden vs_filehandler_x86 (x32 Version: 15.0.26004 - Microsoft Corporation) Hidden vs_Graphics_Singletonx64 (Version: 15.0.26004 - Microsoft Corporation) Hidden vs_Graphics_Singletonx86 (x32 Version: 15.0.26004 - Microsoft Corporation) Hidden vs_minshellinteropmsi (x32 Version: 15.0.26004 - Microsoft Corporation) Hidden vs_minshellmsi (x32 Version: 15.0.26004 - Microsoft Corporation) Hidden vs_minshellmsires (x32 Version: 15.0.26004 - Microsoft Corporation) Hidden vs_SQLClickOnceBootstrappermsi (x32 Version: 15.0.26004 - Microsoft Corporation) Hidden vs_tipsmsi (x32 Version: 15.0.26004 - Microsoft Corporation) Hidden WCF Data Services 5.6.4 Runtime (x32 Version: 5.6.62175.4 - Microsoft Corporation) Hidden WCF Data Services Tools for Microsoft Visual Studio 2015 (x32 Version: 5.6.62175.4 - Microsoft Corporation) Hidden Winamp (HKLM-x32\...\Winamp) (Version: 5.621 - Nullsoft, Inc) WinAppDeploy (x32 Version: 10.1.14393.33 - Microsoft Corporation) Hidden Windchill ProductPoint Client Manager (HKLM-x32\...\{129024FF-A6C9-4696-91BC-570C6C05193A}) (Version: 1.1.187 - PTC) Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 15.4.3538.0513 - Microsoft Corporation) Windows Live Mesh ActiveX Control for Remote Connections (HKLM-x32\...\{2902F983-B4C1-44BA-B85D-5C6D52E2C441}) (Version: 15.4.5722.2 - Microsoft Corporation) Windows SDK AddOn (HKLM-x32\...\{45D392D2-5956-4646-9CA6-83CBF67507B6}) (Version: 10.1.0.0 - Microsoft Corporation) Windows Software Development Kit - Windows 10.0.14393.33 (HKLM-x32\...\{f23f94c5-8bba-4202-85ad-c83d4402cdc1}) (Version: 10.1.14393.33 - Microsoft Corporation) WinRAR 4.01 (64-bit) (HKLM\...\WinRAR archiver) (Version: 4.01.0 - win.rar GmbH) WinRAR 5.30 (32-bit) (HKLM-x32\...\WinRAR archiver) (Version: 5.30.0 - win.rar GmbH) WinRT Intellisense Desktop - en-us (x32 Version: 10.1.14393.33 - Microsoft Corporation) Hidden WinRT Intellisense Desktop - Other Languages (x32 Version: 10.1.14393.33 - Microsoft Corporation) Hidden WinRT Intellisense IoT - en-us (x32 Version: 10.1.14393.33 - Microsoft Corporation) Hidden WinRT Intellisense IoT - Other Languages (x32 Version: 10.1.14393.33 - Microsoft Corporation) Hidden WinRT Intellisense PPI - en-us (x32 Version: 10.1.14393.33 - Microsoft Corporation) Hidden WinRT Intellisense PPI - Other Languages (x32 Version: 10.1.14393.33 - Microsoft Corporation) Hidden WinRT Intellisense UAP - en-us (x32 Version: 10.1.14393.33 - Microsoft Corporation) Hidden WinRT Intellisense UAP - Other Languages (x32 Version: 10.1.14393.33 - Microsoft Corporation) Hidden Woody Woodpecker (HKLM-x32\...\Woody Woodpecker) (Version: - ) Worms 4 Mayhem (HKLM-x32\...\{45E7C481-3EF4-4FCB-AF0B-19F70D618F0C}) (Version: 1.00.0000 - Codemasters) Worms World Party (HKLM-x32\...\{9A200E68-D5F4-4E70-910F-2871753A0E2B}) (Version: - ) Xara 3D Maker 7 (HKLM-x32\...\MAGIX_MSI_Xara3D7) (Version: 7.0.0.415 - Xara Group Ltd) Xara 3D Maker 7 (x32 Version: 7.0.0.415 - Xara Group Ltd) Hidden ==================== Niestandardowe rejestracje CLSID (filtrowane): ========================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) CustomCLSID: HKU\S-1-5-21-2790352501-2114224720-3074741599-1000_Classes\CLSID\{0B628DE4-07AD-4284-81CA-5B439F67C5E6}\localserver32 -> C:\Program Files\Autodesk\AutoCAD 2015\acad.exe (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-2790352501-2114224720-3074741599-1000_Classes\CLSID\{149DD748-EA85-45A6-93C5-AC50D0260C98}\localserver32 -> C:\Program Files\Autodesk\AutoCAD 2015\acad.exe (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-2790352501-2114224720-3074741599-1000_Classes\CLSID\{869C14C8-1830-491F-B575-5F9AB40D2B42}\InprocServer32 -> C:\Program Files\MediaInfo\MediaInfo_InfoTip.dll (MediaArea.net) CustomCLSID: HKU\S-1-5-21-2790352501-2114224720-3074741599-1000_Classes\CLSID\{E2C40589-DE61-11ce-BAE0-0020AF6D7005}\InprocServer32 -> C:\Program Files\Autodesk\AutoCAD 2015\pl-PL\acadficn.dll (Autodesk, Inc.) ==================== Zaplanowane zadania (filtrowane) ============= (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) Task: {013858F5-C751-431D-8DDF-E96755FA3C61} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\Program Files\Windows Defender\\MpCmdRun.exe [2017-04-28] (Microsoft Corporation) Task: {09323E24-E373-467D-819D-7C2BD1D9CEDA} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2016-12-21] (Piriform Ltd) Task: {0F3CDA9B-935D-4D27-B7F9-4391CD4B607D} - System32\Tasks\Microsoft\VisualStudio\VSIX Auto Update 15.0.26020.0 => C:\Program Files (x86)\Microsoft Visual Studio\2017\Community\Common7\IDE\VSIXAutoUpdate.exe [2017-01-26] (Microsoft Corporation) Task: {12571715-DC7E-47E9-A009-9A94AAD4FBBB} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Report => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSFReport.exe Task: {1306FAB3-4FC4-4FA4-99A2-0A0766C4481B} - System32\Tasks\UCBrowserUpdaterCore => C:\Program Files (x86)\UCBrowser\Application\update_task.exe [2017-06-13] (UCWeb Inc) <==== UWAGA Task: {13492A57-98D6-457A-9FEB-AE7A1CD7D94F} - \Hewlett-Packard\HP Support Assistant\PC Health Analysis -> Brak pliku <==== UWAGA Task: {139D129A-9293-4DF4-9198-0262D3241E69} - \{0410D232-66F0-425C-99A5-C30B15D7623A} -> Brak pliku <==== UWAGA Task: {1C54CF82-8B5A-4E2F-AF44-AF225C359E1C} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\Program Files\Windows Defender\\MpCmdRun.exe [2017-04-28] (Microsoft Corporation) Task: {2480DC02-BAA4-431A-BBBC-AF503E9E63F3} - \Microsoft\Windows\Media Center\PeriodicScanRetry -> Brak pliku <==== UWAGA Task: {2AE3644A-C8FF-4B0A-9B8B-45AE6156907F} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\Program Files\Windows Defender\\MpCmdRun.exe [2017-04-28] (Microsoft Corporation) Task: {33E62F41-F533-417F-BC1F-135D68E782D7} - System32\Tasks\{76D20D46-CEDF-41E4-9D59-A9C2B8DC5E51} => pcalua.exe -a F:\Install\Setup.exe -d F:\Install Task: {34063781-5AC7-43FA-B19C-CF220E7AC653} - \Microsoft\Windows\Media Center\ObjectStoreRecoveryTask -> Brak pliku <==== UWAGA Task: {45EA675A-A4BC-4D8C-AE3F-023736199A6B} - \Microsoft\Windows\Media Center\mcupdate -> Brak pliku <==== UWAGA Task: {48E129BE-5570-4D3E-AD09-C41C108B3FF8} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\Program Files\Windows Defender\\MpCmdRun.exe [2017-04-28] (Microsoft Corporation) Task: {4A01D57F-FAEE-4E37-8C75-836F441AB084} - \Hewlett-Packard\HP Active Health\HP Active Health Scan (HPSA) -> Brak pliku <==== UWAGA Task: {4BCBD62D-53EE-4681-B29B-1A0E905968FC} - \User_Feed_Synchronization-{6328AAF2-03B5-4D96-9033-CF93981856A6} -> Brak pliku <==== UWAGA Task: {50D7E2F1-22C4-491B-AFAF-970FEAE8D07F} - System32\Tasks\AVAST Software\Avast settings backup => C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe [2017-05-05] (AVAST Software) Task: {51C1C116-B475-4F31-8134-3039472DF6EB} - \FacebookUpdateTaskUserS-1-5-21-2790352501-2114224720-3074741599-1005UA -> Brak pliku <==== UWAGA Task: {59B487B6-18F0-40D0-952D-8B828A5A1889} - \Microsoft\Windows\Media Center\UpdateRecordPath -> Brak pliku <==== UWAGA Task: {5C857B97-79B4-48DE-B70E-0E8AEEC31063} - \Microsoft\Windows\Media Center\ehDRMInit -> Brak pliku <==== UWAGA Task: {60244870-4EDA-451F-ACC6-D9E830A7B62C} - \Microsoft\Windows\Media Center\OCURDiscovery -> Brak pliku <==== UWAGA Task: {6B607BCE-057F-49EA-BC45-989EA0644303} - \Microsoft\Windows\Media Center\PvrRecoveryTask -> Brak pliku <==== UWAGA Task: {6E73398B-AD71-4224-93B0-FC1DC5FEFBFF} - System32\Tasks\Microsoft\Windows\Media Center\StartRecording => C:\WINDOWS\ehome\ehrec.exe Task: {6EE99634-4F02-49BF-8D11-0493C29C5E78} - \FacebookUpdateTaskUserS-1-5-21-2790352501-2114224720-3074741599-1005Core -> Brak pliku <==== UWAGA Task: {70D9CB2B-C918-4B92-84E3-515FC021BF4A} - \Hewlett-Packard\HP Support Assistant\HP Active Health Launcher -> Brak pliku <==== UWAGA Task: {7206C5D7-F822-4AEF-94CE-5FC346926A1A} - System32\Tasks\Kiqitionloward Module => C:\Program Files (x86)\Shepashkuderward\xfigt.exe Task: {73EF8D16-C380-497C-A6C7-B683C7C5EDE3} - \User_Feed_Synchronization-{3DDA69DF-7520-4E8A-BCA4-F3FFB8EFB933} -> Brak pliku <==== UWAGA Task: {75E25009-538A-4D20-81E9-1F471556AADD} - \Microsoft\Windows\Media Center\PBDADiscoveryW1 -> Brak pliku <==== UWAGA Task: {798B3396-2BC5-4B6C-AC35-ABA94B0DAAFB} - \Microsoft\Windows\Media Center\MediaCenterRecoveryTask -> Brak pliku <==== UWAGA Task: {7A24B4C8-65FC-462B-9136-F21838045210} - \Microsoft\Windows\Media Center\PBDADiscoveryW2 -> Brak pliku <==== UWAGA Task: {7B95E66A-A4CE-4E1F-A49F-F0797FE07E3D} - \Microsoft\Windows\Media Center\RecordingRestart -> Brak pliku <==== UWAGA Task: {858CD776-D6E2-4A11-A737-DFD14D339DF0} - System32\Tasks\{88AFF062-52A0-4E83-A957-DA5D21F29E69} => pcalua.exe -a F:\setup.exe -d F:\ Task: {88618EA9-F586-4732-A54B-B9E06F9A0CAF} - \Microsoft\Windows\Media Center\PvrScheduleTask -> Brak pliku <==== UWAGA Task: {8EC7AED2-AF58-4420-828E-5C9BC621CB9C} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2017-04-23] (Adobe Systems Incorporated) Task: {8F589E38-72F8-49E5-BB5B-A8F2A2C58503} - \Microsoft\Windows\Media Center\InstallPlayReady -> Brak pliku <==== UWAGA Task: {93FB8DDE-9BC0-4822-A247-604928BDA32B} - System32\Tasks\{CF2707B9-F8D6-463A-9259-4C5C2FB0E710} => pcalua.exe -a "C:\Users\Leszek\AppData\Local\Temp\Rar$EX64.944\Worms World Party(www.fullypcgames.net)\Worms World Party\RegSetup.exe" -d "C:\Users\Leszek\AppData\Local\Temp\Rar$EX64.944\Worms World Party(www.fullypcgames.net)\Worms World Party" <==== UWAGA Task: {96BF17A5-63D3-4208-9D1F-9EF24C9EAFC3} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-07-23] (Google Inc.) Task: {97C77BC9-4C88-4346-8CBB-AEBBBC7A3E20} - System32\Tasks\andyounnewsnetrotorsm => Chrome.exe andyounnews.net/rotorsm <==== UWAGA Task: {9B2D4242-A6C1-4EA3-ADC9-C77985DD578B} - System32\Tasks\{6ABABF9B-1C56-4B7A-9222-E6DB3EC19BEB} => pcalua.exe -a C:\Users\Leszek\Downloads\Q-Lat3_Installer.exe -d C:\Users\Leszek\Downloads Task: {9DE5C656-82DF-4EBB-A340-4301A33BC9DC} - System32\Tasks\{CA5F9C6B-95ED-40EA-A6CB-E91E00163429} => pcalua.exe -a "C:\Worms World Party\RegSetup.exe" -d "C:\Worms World Party" Task: {A1EED323-7AA1-4D0F-9D7A-6444ED97D0D5} - System32\Tasks\{B2FD2EAC-12FA-4B1A-BE08-A7F04EC43724} => pcalua.exe -a G:\Lanceur.exe -d G:\ Task: {A3E4F2BD-6B95-4F6C-9332-78B746C04F16} - \Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater -> Brak pliku <==== UWAGA Task: {A65AA94A-3C21-4EFE-89EC-6B2E00299682} - System32\Tasks\{E15BD927-A788-4EDB-B3CD-D3532821BA43} => pcalua.exe -a F:\hpsw\Setup.exe -d F:\hpsw Task: {A7A30303-A730-4EF8-A1E4-D2987BDCD29B} - \Microsoft\Windows\Media Center\ActivateWindowsSearch -> Brak pliku <==== UWAGA Task: {AA7B2377-3C66-4388-A21B-38E52AD473A2} - \Microsoft\Windows\Media Center\OCURActivate -> Brak pliku <==== UWAGA Task: {AAE6C0E7-052E-4168-8DF3-7AA31DFA66EB} - System32\Tasks\UCBrowserUpdater => C:\Program Files (x86)\UCBrowser\Application\update_task.exe [2017-06-13] (UCWeb Inc) <==== UWAGA Task: {AC45D644-239A-4418-B59A-1EF2BA33DA33} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-07-23] (Google Inc.) Task: {B68C47F9-C03E-439E-BDF1-4E014F8A86C0} - \OfficeSoftwareProtectionPlatform\SvcRestartTask -> Brak pliku <==== UWAGA Task: {B7FA033B-0D5D-4056-86E7-E1A688F264A2} - System32\Tasks\CreateExplorerShellUnelevatedTask => C:\WINDOWS\explorer.exe /NOUACCHECK Task: {B92089E7-4F1D-49F7-AC08-C9CF8DD40304} - \Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start -> Brak pliku <==== UWAGA Task: {BA53237D-DDF3-4E85-8621-82BA13F987B8} - \SidebarExecute -> Brak pliku <==== UWAGA Task: {BC270B2F-4565-4F0C-8EBF-B73592031BF0} - System32\Tasks\UCBrowserSecureUpdater => C:\Program Files (x86)\UCBrowser\Security\uclauncher.exe [2017-03-08] (UC Web Inc.) <==== UWAGA Task: {C356F774-C4A9-42FF-A081-EB132CC222C9} - System32\Tasks\Avast Emergency Update => C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [2017-05-05] (AVAST Software) Task: {C479C8E3-60AD-4B80-8274-3CDF1268D476} - \User_Feed_Synchronization-{0FBC16EA-6AEF-42D0-A5A7-1CEDF4059E67} -> Brak pliku <==== UWAGA Task: {CBB7FFF4-6F7E-4D33-A233-A1D05846FF04} - \Microsoft\Windows\Media Center\ConfigureInternetTimeService -> Brak pliku <==== UWAGA Task: {CC7D4034-131B-4FE3-A490-963E2EFD70D6} - System32\Tasks\AVG EUpdate Task => avgsetupx.exe Task: {CFE57511-F86D-4405-A096-7C4EA620F7DD} - \Microsoft\Windows\Media Center\PBDADiscovery -> Brak pliku <==== UWAGA Task: {D1F24FCF-0AEF-4EA0-8470-562831954626} - \Microsoft\Windows\Media Center\RegisterSearch -> Brak pliku <==== UWAGA Task: {D4264EDE-15DA-4B56-9083-8D236DD59840} - \MirageAgent -> Brak pliku <==== UWAGA Task: {E0398B7A-562E-4512-A986-078AF5DAC09B} - \Games\UpdateCheck_S-1-5-21-2790352501-2114224720-3074741599-1000 -> Brak pliku <==== UWAGA Task: {E0DD37BC-8DA6-45C9-988A-215F3EA28D86} - \User_Feed_Synchronization-{F9587C28-9F58-4EAF-AB76-BFAE95DE7844} -> Brak pliku <==== UWAGA Task: {E1D9EC03-29B4-4413-8233-594FF7E7C6A6} - \Microsoft\Windows\Media Center\DispatchRecoveryTasks -> Brak pliku <==== UWAGA Task: {EA10FA1E-95FE-4CFF-A75A-81AC09F0BFFD} - System32\Tasks\{DAF7772A-8761-4BC1-9A87-5F2999804AA2} => pcalua.exe -a F:\isinstallpending.exe -d F:\ Task: {EAF1C3BE-6B3F-4E38-B139-6723C55AA0F6} - System32\Tasks\Adobe Flash Player PPAPI Notifier => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_25_0_0_148_pepper.exe [2017-04-23] (Adobe Systems Incorporated) Task: {EE90350D-6AC6-4FA4-B405-C090C6A3B4F7} - \Microsoft\Windows\Media Center\ReindexSearchRoot -> Brak pliku <==== UWAGA Task: {F9221CB6-311B-4EC0-96E7-AFD7DEE78975} - System32\Tasks\{EC5F7A78-59E0-4DCB-A5A5-19D12AB8615F} => pcalua.exe -a F:\setup.exe -d F:\ Task: {FD4BA46B-C35E-4CFB-9ECB-381A2901730F} - \Microsoft\Windows\Media Center\SqlLiteRecoveryTask -> Brak pliku <==== UWAGA Task: {FE93467D-0001-4629-A12B-A25B9E8230D2} - System32\Tasks\Microsoft\Windows\PLA\WPPTracingSession => Rundll32.exe C:\Windows\system32\pla.dll,PlaHost "WPPTracingSession" "$(Arg0)" Task: {FFD98D84-9F28-4631-933F-9622BF890110} - System32\Tasks\doPDF Update => C:\Program Files\Softland\novaPDF 8\Driver\UpdateApplication.exe [2016-09-26] () (Załączenie wejścia w fixlist spowoduje przesunięcie pliku zadania (.job). Plik uruchamiany docelowo przez zadanie nie zostanie przeniesiony.) Task: C:\WINDOWS\Tasks\UCBrowserUpdater.job => C:\Program Files (x86)\UCBrowser\Application\update_task.exe <==== UWAGA Task: C:\WINDOWS\Tasks\UCBrowserUpdaterCore.job => C:\Program Files (x86)\UCBrowser\Application\update_task.exe <==== UWAGA ==================== Skróty & WMI ======================== (Wybrane wejścia mogą zostać załączone w celu ich zresetowania lub usunięcia.) Shortcut: C:\Users\Leszek\Favorites\NCH Software Download Site.lnk -> hxxp://www.nch.com.au/index.htm Shortcut: C:\Users\Leszek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplikacje Chromium\Pulpit zdalny Chrome.lnk -> C:\chrome\chrome.exe (The Chromium Authors) Shortcut: C:\Users\Leszek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplikacje Chrome\Pulpit zdalny Chrome.lnk -> C:\Users\Leszek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplikacje Chrome () ShortcutWithArgument: C:\Users\Leszek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Chrome Remote Desktop.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --profile-directory=Default --app-id=gbchcmhmhahfdphkhkmpfmihenigjmpp ==================== Załadowane moduły (filtrowane) ============== 2011-08-05 08:56 - 2011-08-05 08:56 - 00034304 _____ () C:\WINDOWS\System32\sxr3xlm.dll 2016-11-22 15:06 - 2008-10-27 23:56 - 00022016 _____ () C:\WINDOWS\System32\sxs2ml6.dll 2016-07-16 13:42 - 2016-07-16 13:42 - 00231424 _____ () C:\WINDOWS\SYSTEM32\ism32k.dll 2017-05-11 19:44 - 2017-04-28 02:49 - 02681200 _____ () C:\WINDOWS\System32\CoreUIComponents.dll 2010-07-15 06:44 - 2010-07-15 06:44 - 00020032 _____ () C:\Program Files\Unlocker\UnlockerCOM.dll 2016-11-27 19:55 - 2016-11-27 19:55 - 00230064 _____ () C:\Program Files (x86)\Notepad++\NppShell_06.dll 2017-01-06 19:33 - 2016-09-07 06:56 - 00134656 _____ () C:\Windows\ShellExperiences\Windows.UI.Shell.SharedUtilities.dll 2017-03-14 23:23 - 2017-03-04 08:31 - 00474112 _____ () C:\Windows\ShellExperiences\QuickActions.dll 2017-03-14 23:20 - 2017-03-04 08:12 - 09760768 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll 2017-03-14 23:20 - 2017-03-04 08:05 - 01401856 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll 2017-03-14 23:20 - 2017-03-04 08:05 - 00757248 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CSGSuggestLib.dll 2017-05-11 19:44 - 2017-04-28 01:36 - 02424320 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll 2017-05-11 19:44 - 2017-04-28 01:37 - 04853760 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll 2015-06-01 22:00 - 2017-03-09 02:16 - 00112264 _____ () C:\Windows\System32\IccLibDll_x64.dll 2016-12-21 19:49 - 2016-12-21 19:49 - 00065536 _____ () C:\Program Files\CCleaner\lang\lang-1045.dll 2014-05-01 21:05 - 2014-05-01 21:05 - 00232328 _____ () C:\Program Files\Autodesk\Autodesk Sync\qjson_Ad_0.dll 2014-05-01 21:05 - 2014-05-01 21:05 - 00048520 _____ () C:\Program Files\Autodesk\Autodesk Sync\QtSolutions_MFCMigrationFramework_Ad_2.dll 2014-05-01 21:05 - 2014-05-01 21:05 - 00059784 _____ () C:\Program Files\Autodesk\Autodesk Sync\qoauth_Ad_1.dll 2014-05-01 21:05 - 2014-05-01 21:05 - 00922504 _____ () C:\Program Files\Autodesk\Autodesk Sync\qca_Ad_2.dll 2017-06-08 17:21 - 2017-06-08 17:22 - 00074752 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.17.420.0_x64__kzf8qxf38zg5c\SkypeHost.exe 2017-06-08 17:21 - 2017-06-08 17:22 - 00201728 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.17.420.0_x64__kzf8qxf38zg5c\SkypeBackgroundTasks.dll 2017-06-08 17:21 - 2017-06-08 17:22 - 43318784 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.17.420.0_x64__kzf8qxf38zg5c\SkyWrap.dll 2017-06-08 17:21 - 2017-06-08 17:22 - 02427904 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.17.420.0_x64__kzf8qxf38zg5c\skypert.dll 2007-05-03 16:10 - 2007-05-03 16:10 - 00130560 _____ () C:\Program Files (x86)\EmvSmartCardReader\BePCSC.exe 2006-12-18 21:02 - 2006-12-18 21:02 - 00234496 _____ () C:\Program Files (x86)\EmvSmartCardReader\SmartMON.exe 2017-06-02 17:20 - 2017-06-02 17:27 - 00769536 _____ () C:\Program Files\WindowsApps\Facebook.InstagramBeta_10.915.27847.0_x86__8xx8rvfyw5nnt\WinUAPEntry.exe 2017-02-14 22:47 - 2017-06-13 23:51 - 00625552 _____ () C:\Program Files (x86)\UCBrowser\Application\UCService.exe 2017-06-15 12:32 - 2017-06-14 00:02 - 02119056 _____ () C:\Program Files (x86)\UCBrowser\Application\6.1.2909.1022\UCAgent.exe 2017-05-16 17:40 - 2017-05-09 11:13 - 03767640 _____ () C:\Program Files (x86)\Google\Chrome\Application\58.0.3029.110\libglesv2.dll 2017-05-16 17:40 - 2017-05-09 11:13 - 00100696 _____ () C:\Program Files (x86)\Google\Chrome\Application\58.0.3029.110\libegl.dll 2017-05-05 17:40 - 2017-05-05 17:40 - 00170216 _____ () C:\Program Files\AVAST Software\Avast\JsonRpcServer.dll 2017-05-05 17:41 - 2017-05-05 17:41 - 00997896 _____ () C:\Program Files\AVAST Software\Avast\AvChrome.dll 2017-05-05 17:41 - 2017-05-05 17:41 - 67717632 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll 2017-05-05 17:40 - 2017-05-05 17:40 - 00176992 _____ () C:\Program Files\AVAST Software\Avast\event_routing_rpc.dll 2017-05-05 17:40 - 2017-05-05 17:40 - 00223224 _____ () C:\Program Files\AVAST Software\Avast\tasks_core.dll 2017-05-05 17:39 - 2017-05-05 17:39 - 00291824 _____ () C:\Program Files\AVAST Software\Avast\gaming_mode_ui.dll 2017-05-05 17:40 - 2017-05-05 17:40 - 00684656 _____ () C:\Program Files\AVAST Software\Avast\ffl2.dll 2017-01-08 20:56 - 2017-01-08 20:56 - 00008704 _____ () C:\Users\Leszek\AppData\Roaming\Thunderbird\Profiles\aig1tfb3.default\extensions\mintrayr@tn123.ath.cx\lib\tray_x86-msvc.dll 2017-06-15 12:09 - 2017-06-15 12:09 - 00098816 ____R () C:\Users\Leszek\AppData\Local\Temp\_MEI43122\win32api.pyd 2017-06-15 12:09 - 2017-06-15 12:09 - 00110080 ____R () C:\Users\Leszek\AppData\Local\Temp\_MEI43122\pywintypes27.dll 2017-06-15 12:09 - 2017-06-15 12:09 - 00364544 ____R () C:\Users\Leszek\AppData\Local\Temp\_MEI43122\pythoncom27.dll 2017-06-15 12:09 - 2017-06-15 12:09 - 00320512 ____R () C:\Users\Leszek\AppData\Local\Temp\_MEI43122\win32com.shell.shell.pyd 2017-06-15 12:09 - 2017-06-15 12:09 - 00914432 ____R () C:\Users\Leszek\AppData\Local\Temp\_MEI43122\_hashlib.pyd 2017-06-15 12:09 - 2017-06-15 12:09 - 01176576 ____R () C:\Users\Leszek\AppData\Local\Temp\_MEI43122\wx._core_.pyd 2017-06-15 12:09 - 2017-06-15 12:09 - 00806400 ____R () C:\Users\Leszek\AppData\Local\Temp\_MEI43122\wx._gdi_.pyd 2017-06-15 12:09 - 2017-06-15 12:09 - 00816128 ____R () C:\Users\Leszek\AppData\Local\Temp\_MEI43122\wx._windows_.pyd 2017-06-15 12:09 - 2017-06-15 12:09 - 01067008 ____R () C:\Users\Leszek\AppData\Local\Temp\_MEI43122\wx._controls_.pyd 2017-06-15 12:09 - 2017-06-15 12:09 - 00733184 ____R () C:\Users\Leszek\AppData\Local\Temp\_MEI43122\wx._misc_.pyd 2017-06-15 12:09 - 2017-06-15 12:09 - 00682496 ____R () C:\Users\Leszek\AppData\Local\Temp\_MEI43122\pysqlite2._sqlite.pyd 2017-06-15 12:09 - 2017-06-15 12:09 - 00088064 ____R () C:\Users\Leszek\AppData\Local\Temp\_MEI43122\_ctypes.pyd 2017-06-15 12:09 - 2017-06-15 12:09 - 00686080 ____R () C:\Users\Leszek\AppData\Local\Temp\_MEI43122\unicodedata.pyd 2017-06-15 12:09 - 2017-06-15 12:09 - 00119808 ____R () C:\Users\Leszek\AppData\Local\Temp\_MEI43122\win32file.pyd 2017-06-15 12:09 - 2017-06-15 12:09 - 00108544 ____R () C:\Users\Leszek\AppData\Local\Temp\_MEI43122\win32security.pyd 2017-06-15 12:09 - 2017-06-15 12:09 - 00007168 ____R () C:\Users\Leszek\AppData\Local\Temp\_MEI43122\hashobjs_ext.pyd 2017-06-15 12:09 - 2017-06-15 12:09 - 00017920 ____R () C:\Users\Leszek\AppData\Local\Temp\_MEI43122\thumbnails_ext.pyd 2017-06-15 12:09 - 2017-06-15 12:09 - 00088064 ____R () C:\Users\Leszek\AppData\Local\Temp\_MEI43122\usb_ext.pyd 2017-06-15 12:09 - 2017-06-15 12:09 - 00012800 ____R () C:\Users\Leszek\AppData\Local\Temp\_MEI43122\common.time34.pyd 2017-06-15 12:09 - 2017-06-15 12:09 - 00018432 ____R () C:\Users\Leszek\AppData\Local\Temp\_MEI43122\win32event.pyd 2017-06-15 12:09 - 2017-06-15 12:09 - 00167936 ____R () C:\Users\Leszek\AppData\Local\Temp\_MEI43122\win32gui.pyd 2017-06-15 12:09 - 2017-06-15 12:09 - 00046080 ____R () C:\Users\Leszek\AppData\Local\Temp\_MEI43122\_socket.pyd 2017-06-15 12:09 - 2017-06-15 12:09 - 01303552 ____R () C:\Users\Leszek\AppData\Local\Temp\_MEI43122\_ssl.pyd 2017-06-15 12:09 - 2017-06-15 12:09 - 00128512 ____R () C:\Users\Leszek\AppData\Local\Temp\_MEI43122\_elementtree.pyd 2017-06-15 12:09 - 2017-06-15 12:09 - 00127488 ____R () C:\Users\Leszek\AppData\Local\Temp\_MEI43122\pyexpat.pyd 2017-06-15 12:09 - 2017-06-15 12:09 - 00038912 ____R () C:\Users\Leszek\AppData\Local\Temp\_MEI43122\win32inet.pyd 2017-06-15 12:09 - 2017-06-15 12:09 - 00036864 ____R () C:\Users\Leszek\AppData\Local\Temp\_MEI43122\_psutil_windows.pyd 2017-06-15 12:09 - 2017-06-15 12:09 - 00524248 ____R () C:\Users\Leszek\AppData\Local\Temp\_MEI43122\windows._lib_cacheinvalidation.pyd 2017-06-15 12:09 - 2017-06-15 12:09 - 00011264 ____R () C:\Users\Leszek\AppData\Local\Temp\_MEI43122\win32crypt.pyd 2017-06-15 12:09 - 2017-06-15 12:09 - 00123392 ____R () C:\Users\Leszek\AppData\Local\Temp\_MEI43122\wx._wizard.pyd 2017-06-15 12:09 - 2017-06-15 12:09 - 00077312 ____R () C:\Users\Leszek\AppData\Local\Temp\_MEI43122\wx._html2.pyd 2017-06-15 12:09 - 2017-06-15 12:09 - 00027648 ____R () C:\Users\Leszek\AppData\Local\Temp\_MEI43122\_multiprocessing.pyd 2017-06-15 12:09 - 2017-06-15 12:09 - 00020480 ____R () C:\Users\Leszek\AppData\Local\Temp\_MEI43122\_yappi.pyd 2017-06-15 12:09 - 2017-06-15 12:09 - 00035840 ____R () C:\Users\Leszek\AppData\Local\Temp\_MEI43122\win32process.pyd 2017-06-15 12:09 - 2017-06-15 12:09 - 00078848 ____R () C:\Users\Leszek\AppData\Local\Temp\_MEI43122\wx._animate.pyd 2017-06-15 12:09 - 2017-06-15 12:09 - 00024064 ____R () C:\Users\Leszek\AppData\Local\Temp\_MEI43122\win32pipe.pyd 2017-06-15 12:09 - 2017-06-15 12:09 - 00010240 ____R () C:\Users\Leszek\AppData\Local\Temp\_MEI43122\select.pyd 2017-06-15 12:09 - 2017-06-15 12:09 - 00025600 ____R () C:\Users\Leszek\AppData\Local\Temp\_MEI43122\win32pdh.pyd 2017-06-15 12:09 - 2017-06-15 12:09 - 00017408 ____R () C:\Users\Leszek\AppData\Local\Temp\_MEI43122\win32profile.pyd 2017-06-15 12:09 - 2017-06-15 12:09 - 00022528 ____R () C:\Users\Leszek\AppData\Local\Temp\_MEI43122\win32ts.pyd 2017-06-02 17:20 - 2017-06-02 17:27 - 00156672 _____ () C:\Program Files\WindowsApps\Facebook.InstagramBeta_10.915.27847.0_x86__8xx8rvfyw5nnt\WP8MSVCCommon.dll 2017-06-02 17:20 - 2017-06-02 17:27 - 00367104 _____ () C:\Program Files\WindowsApps\Facebook.InstagramBeta_10.915.27847.0_x86__8xx8rvfyw5nnt\WP8MSVCBridge.dll 2017-06-02 17:20 - 2017-06-02 17:27 - 00079872 _____ () C:\Program Files\WindowsApps\Facebook.InstagramBeta_10.915.27847.0_x86__8xx8rvfyw5nnt\WinPhoneBridge_osmeta.dll 2017-06-02 17:20 - 2017-06-02 17:27 - 00856576 _____ () C:\Program Files\WindowsApps\Facebook.InstagramBeta_10.915.27847.0_x86__8xx8rvfyw5nnt\System_osmeta.dll 2017-06-02 17:20 - 2017-06-02 17:27 - 00105984 _____ () C:\Program Files\WindowsApps\Facebook.InstagramBeta_10.915.27847.0_x86__8xx8rvfyw5nnt\pthreadVC_osmeta.dll 2017-06-02 17:20 - 2017-06-02 17:27 - 00680960 _____ () C:\Program Files\WindowsApps\Facebook.InstagramBeta_10.915.27847.0_x86__8xx8rvfyw5nnt\CrossPortability_osmeta.dll 2017-06-02 17:20 - 2017-06-02 17:27 - 00208384 _____ () C:\Program Files\WindowsApps\Facebook.InstagramBeta_10.915.27847.0_x86__8xx8rvfyw5nnt\system_malloc_osmeta.dll 2017-06-02 17:20 - 2017-06-02 17:27 - 57061693 _____ () C:\Program Files\WindowsApps\Facebook.InstagramBeta_10.915.27847.0_x86__8xx8rvfyw5nnt\osmeta.dll 2017-06-02 17:20 - 2017-06-02 17:27 - 00081422 _____ () C:\Program Files\WindowsApps\Facebook.InstagramBeta_10.915.27847.0_x86__8xx8rvfyw5nnt\unwind_osmeta.dll 2017-06-02 17:20 - 2017-06-02 17:27 - 00769024 _____ () C:\Program Files\WindowsApps\Facebook.InstagramBeta_10.915.27847.0_x86__8xx8rvfyw5nnt\ffmpeg_osmeta.dll 2017-06-02 17:20 - 2017-06-02 17:27 - 00145920 _____ () C:\Program Files\WindowsApps\Facebook.InstagramBeta_10.915.27847.0_x86__8xx8rvfyw5nnt\exif_osmeta.dll 2017-06-02 17:20 - 2017-06-02 17:27 - 00918528 _____ () C:\Program Files\WindowsApps\Facebook.InstagramBeta_10.915.27847.0_x86__8xx8rvfyw5nnt\c++_osmeta.dll 2017-06-02 17:20 - 2017-06-02 17:27 - 00162304 _____ () C:\Program Files\WindowsApps\Facebook.InstagramBeta_10.915.27847.0_x86__8xx8rvfyw5nnt\z_osmeta.dll 2017-06-02 17:20 - 2017-06-02 17:27 - 01787392 _____ () C:\Program Files\WindowsApps\Facebook.InstagramBeta_10.915.27847.0_x86__8xx8rvfyw5nnt\WRTBridge_osmeta.dll 2017-06-02 17:20 - 2017-06-02 17:27 - 00151552 _____ () C:\Program Files\WindowsApps\Facebook.InstagramBeta_10.915.27847.0_x86__8xx8rvfyw5nnt\WinMediaFoundation_osmeta.dll 2017-06-02 17:20 - 2017-06-02 17:27 - 00429056 _____ () C:\Program Files\WindowsApps\Facebook.InstagramBeta_10.915.27847.0_x86__8xx8rvfyw5nnt\SystemResources_osmeta.dll 2017-06-02 17:20 - 2017-06-02 17:27 - 00119296 _____ () C:\Program Files\WindowsApps\Facebook.InstagramBeta_10.915.27847.0_x86__8xx8rvfyw5nnt\EGL_osmeta.dll 2017-06-02 17:20 - 2017-06-02 17:27 - 00947712 _____ () C:\Program Files\WindowsApps\Facebook.InstagramBeta_10.915.27847.0_x86__8xx8rvfyw5nnt\GLESv2_osmeta.dll 2017-06-02 17:20 - 2017-06-02 17:27 - 51362611 _____ () C:\Program Files\WindowsApps\Facebook.InstagramBeta_10.915.27847.0_x86__8xx8rvfyw5nnt\App.dll 2017-06-02 17:20 - 2017-06-02 17:27 - 06681907 _____ () C:\Program Files\WindowsApps\Facebook.InstagramBeta_10.915.27847.0_x86__8xx8rvfyw5nnt\JavaScriptCore_osmeta.dll 2011-07-11 23:48 - 2015-09-28 15:40 - 00410624 _____ () C:\Program Files (x86)\Winamp\nsutil.dll 2011-07-11 23:48 - 2015-09-28 15:40 - 00078848 _____ () C:\Program Files (x86)\Winamp\nde.dll 2011-07-11 23:48 - 2015-09-28 15:40 - 00047616 _____ () C:\Program Files (x86)\Winamp\zlib.dll 2017-06-15 12:26 - 2017-06-15 12:26 - 00011264 _____ () C:\Users\Leszek\AppData\Local\Temp\WLZ50F2.tmp\auth.lng 2017-06-15 12:26 - 2017-06-15 12:26 - 00066560 _____ () C:\Users\Leszek\AppData\Local\Temp\WLZ50F2.tmp\burnlib.lng 2017-06-15 12:26 - 2017-06-15 12:26 - 00012800 _____ () C:\Users\Leszek\AppData\Local\Temp\WLZ50F2.tmp\dsp_sps.lng 2017-06-15 12:26 - 2017-06-15 12:26 - 00006656 _____ () C:\Users\Leszek\AppData\Local\Temp\WLZ50F2.tmp\enc_fhgaac.lng 2017-06-15 12:26 - 2017-06-15 12:26 - 00004096 _____ () C:\Users\Leszek\AppData\Local\Temp\WLZ50F2.tmp\enc_flac.lng 2017-06-15 12:26 - 2017-06-15 12:26 - 00005632 _____ () C:\Users\Leszek\AppData\Local\Temp\WLZ50F2.tmp\enc_lame.lng 2017-06-15 12:26 - 2017-06-15 12:26 - 00004096 _____ () C:\Users\Leszek\AppData\Local\Temp\WLZ50F2.tmp\enc_wav.lng 2017-06-15 12:26 - 2017-06-15 12:26 - 00006144 _____ () C:\Users\Leszek\AppData\Local\Temp\WLZ50F2.tmp\enc_wma.lng 2017-06-15 12:26 - 2017-06-15 12:26 - 00007168 _____ () C:\Users\Leszek\AppData\Local\Temp\WLZ50F2.tmp\gen_crasher.lng 2017-06-15 12:26 - 2017-06-15 12:26 - 00022016 _____ () C:\Users\Leszek\AppData\Local\Temp\WLZ50F2.tmp\gen_ff.lng 2017-06-15 12:26 - 2017-06-15 12:26 - 00011264 _____ () C:\Users\Leszek\AppData\Local\Temp\WLZ50F2.tmp\gen_hotkeys.lng 2017-06-15 12:26 - 2017-06-15 12:26 - 00040448 _____ () C:\Users\Leszek\AppData\Local\Temp\WLZ50F2.tmp\gen_jumpex.lng 2017-06-15 12:26 - 2017-06-15 12:26 - 00021504 _____ () C:\Users\Leszek\AppData\Local\Temp\WLZ50F2.tmp\gen_ml.lng 2017-06-15 12:26 - 2017-06-15 12:26 - 00007168 _____ () C:\Users\Leszek\AppData\Local\Temp\WLZ50F2.tmp\gen_orgler.lng 2017-06-15 12:26 - 2017-06-15 12:26 - 00007680 _____ () C:\Users\Leszek\AppData\Local\Temp\WLZ50F2.tmp\gen_tray.lng 2017-06-15 12:26 - 2017-06-15 12:26 - 00005120 _____ () C:\Users\Leszek\AppData\Local\Temp\WLZ50F2.tmp\in_avi.lng 2017-06-15 12:26 - 2017-06-15 12:26 - 00013312 _____ () C:\Users\Leszek\AppData\Local\Temp\WLZ50F2.tmp\in_cdda.lng 2017-06-15 12:26 - 2017-06-15 12:26 - 00007168 _____ () C:\Users\Leszek\AppData\Local\Temp\WLZ50F2.tmp\in_dshow.lng 2017-06-15 12:26 - 2017-06-15 12:26 - 00006144 _____ () C:\Users\Leszek\AppData\Local\Temp\WLZ50F2.tmp\in_flac.lng 2017-06-15 12:26 - 2017-06-15 12:26 - 00003584 _____ () C:\Users\Leszek\AppData\Local\Temp\WLZ50F2.tmp\in_flv.lng 2017-06-15 12:26 - 2017-06-15 12:26 - 00003584 _____ () C:\Users\Leszek\AppData\Local\Temp\WLZ50F2.tmp\in_linein.lng 2017-06-15 12:26 - 2017-06-15 12:26 - 00020992 _____ () C:\Users\Leszek\AppData\Local\Temp\WLZ50F2.tmp\in_midi.lng 2017-06-15 12:26 - 2017-06-15 12:26 - 00004608 _____ () C:\Users\Leszek\AppData\Local\Temp\WLZ50F2.tmp\in_mkv.lng 2017-06-15 12:26 - 2017-06-15 12:26 - 00018432 _____ () C:\Users\Leszek\AppData\Local\Temp\WLZ50F2.tmp\in_mod.lng 2017-06-15 12:26 - 2017-06-15 12:26 - 00022528 _____ () C:\Users\Leszek\AppData\Local\Temp\WLZ50F2.tmp\in_mp3.lng 2017-06-15 12:26 - 2017-06-15 12:26 - 00004608 _____ () C:\Users\Leszek\AppData\Local\Temp\WLZ50F2.tmp\in_mp4.lng 2017-06-15 12:26 - 2017-06-15 12:26 - 00011264 _____ () C:\Users\Leszek\AppData\Local\Temp\WLZ50F2.tmp\in_nsv.lng 2017-06-15 12:26 - 2017-06-15 12:26 - 00003584 _____ () C:\Users\Leszek\AppData\Local\Temp\WLZ50F2.tmp\in_swf.lng 2017-06-15 12:26 - 2017-06-15 12:26 - 00011264 _____ () C:\Users\Leszek\AppData\Local\Temp\WLZ50F2.tmp\in_vorbis.lng 2017-06-15 12:26 - 2017-06-15 12:26 - 00005632 _____ () C:\Users\Leszek\AppData\Local\Temp\WLZ50F2.tmp\in_wave.lng 2017-06-15 12:26 - 2017-06-15 12:26 - 00014848 _____ () C:\Users\Leszek\AppData\Local\Temp\WLZ50F2.tmp\in_wm.lng 2017-06-15 12:26 - 2017-06-15 12:26 - 00003584 _____ () C:\Users\Leszek\AppData\Local\Temp\WLZ50F2.tmp\ml_addons.lng 2017-06-15 12:26 - 2017-06-15 12:26 - 00007168 _____ () C:\Users\Leszek\AppData\Local\Temp\WLZ50F2.tmp\ml_autotag.lng 2017-06-15 12:26 - 2017-06-15 12:26 - 00005120 _____ () C:\Users\Leszek\AppData\Local\Temp\WLZ50F2.tmp\ml_bookmarks.lng 2017-06-15 12:26 - 2017-06-15 12:26 - 00008192 _____ () C:\Users\Leszek\AppData\Local\Temp\WLZ50F2.tmp\ml_devices.lng 2017-06-15 12:26 - 2017-06-15 12:26 - 00047616 _____ () C:\Users\Leszek\AppData\Local\Temp\WLZ50F2.tmp\ml_disc.lng 2017-06-15 12:26 - 2017-06-15 12:26 - 00009216 _____ () C:\Users\Leszek\AppData\Local\Temp\WLZ50F2.tmp\ml_downloads.lng 2017-06-15 12:26 - 2017-06-15 12:26 - 00008704 _____ () C:\Users\Leszek\AppData\Local\Temp\WLZ50F2.tmp\ml_history.lng 2017-06-15 12:26 - 2017-06-15 12:26 - 00005120 _____ () C:\Users\Leszek\AppData\Local\Temp\WLZ50F2.tmp\ml_impex.lng 2017-06-15 12:26 - 2017-06-15 12:26 - 00054272 _____ () C:\Users\Leszek\AppData\Local\Temp\WLZ50F2.tmp\ml_local.lng 2017-06-15 12:26 - 2017-06-15 12:26 - 00003584 _____ () C:\Users\Leszek\AppData\Local\Temp\WLZ50F2.tmp\ml_nowplaying.lng 2017-06-15 12:26 - 2017-06-15 12:26 - 00014336 _____ () C:\Users\Leszek\AppData\Local\Temp\WLZ50F2.tmp\ml_online.lng 2017-06-15 12:26 - 2017-06-15 12:26 - 00004096 _____ () C:\Users\Leszek\AppData\Local\Temp\WLZ50F2.tmp\ml_orb.lng 2017-06-15 12:26 - 2017-06-15 12:26 - 00013312 _____ () C:\Users\Leszek\AppData\Local\Temp\WLZ50F2.tmp\ml_playlists.lng 2017-06-15 12:26 - 2017-06-15 12:26 - 00012800 _____ () C:\Users\Leszek\AppData\Local\Temp\WLZ50F2.tmp\ml_plg.lng 2017-06-15 12:26 - 2017-06-15 12:26 - 00046592 _____ () C:\Users\Leszek\AppData\Local\Temp\WLZ50F2.tmp\ml_pmp.lng 2017-06-15 12:26 - 2017-06-15 12:26 - 00005632 _____ () C:\Users\Leszek\AppData\Local\Temp\WLZ50F2.tmp\ml_rg.lng 2017-06-15 12:26 - 2017-06-15 12:26 - 00008192 _____ () C:\Users\Leszek\AppData\Local\Temp\WLZ50F2.tmp\ml_transcode.lng 2017-06-15 12:26 - 2017-06-15 12:26 - 00014336 _____ () C:\Users\Leszek\AppData\Local\Temp\WLZ50F2.tmp\ml_wire.lng 2017-06-15 12:26 - 2017-06-15 12:26 - 00036864 _____ () C:\Users\Leszek\AppData\Local\Temp\WLZ50F2.tmp\ombrowser.lng 2017-06-15 12:26 - 2017-06-15 12:26 - 00006144 _____ () C:\Users\Leszek\AppData\Local\Temp\WLZ50F2.tmp\out_disk.lng 2017-06-15 12:26 - 2017-06-15 12:26 - 00016896 _____ () C:\Users\Leszek\AppData\Local\Temp\WLZ50F2.tmp\out_ds.lng 2017-06-15 12:26 - 2017-06-15 12:26 - 00007168 _____ () C:\Users\Leszek\AppData\Local\Temp\WLZ50F2.tmp\out_wave.lng 2017-06-15 12:26 - 2017-06-15 12:26 - 00003072 _____ () C:\Users\Leszek\AppData\Local\Temp\WLZ50F2.tmp\playlist.lng 2017-06-15 12:26 - 2017-06-15 12:26 - 00004608 _____ () C:\Users\Leszek\AppData\Local\Temp\WLZ50F2.tmp\pmp_activesync.lng 2017-06-15 12:26 - 2017-06-15 12:26 - 00010752 _____ () C:\Users\Leszek\AppData\Local\Temp\WLZ50F2.tmp\pmp_android.lng 2017-06-15 12:26 - 2017-06-15 12:26 - 00006656 _____ () C:\Users\Leszek\AppData\Local\Temp\WLZ50F2.tmp\pmp_ipod.lng 2017-06-15 12:26 - 2017-06-15 12:26 - 00003584 _____ () C:\Users\Leszek\AppData\Local\Temp\WLZ50F2.tmp\pmp_njb.lng 2017-06-15 12:26 - 2017-06-15 12:26 - 00004096 _____ () C:\Users\Leszek\AppData\Local\Temp\WLZ50F2.tmp\pmp_p4s.lng 2017-06-15 12:26 - 2017-06-15 12:26 - 00010752 _____ () C:\Users\Leszek\AppData\Local\Temp\WLZ50F2.tmp\pmp_usb.lng 2017-06-15 12:26 - 2017-06-15 12:26 - 00041984 _____ () C:\Users\Leszek\AppData\Local\Temp\WLZ50F2.tmp\pmp_wifi.lng 2017-06-15 12:26 - 2017-06-15 12:26 - 00006144 _____ () C:\Users\Leszek\AppData\Local\Temp\WLZ50F2.tmp\tagz.lng 2017-06-15 12:26 - 2017-06-15 12:26 - 00087552 _____ () C:\Users\Leszek\AppData\Local\Temp\WLZ50F2.tmp\vis_avs.lng 2017-06-15 12:26 - 2017-06-15 12:26 - 00161792 _____ () C:\Users\Leszek\AppData\Local\Temp\WLZ50F2.tmp\vis_milk2.lng 2017-06-15 12:26 - 2017-06-15 12:26 - 00007680 _____ () C:\Users\Leszek\AppData\Local\Temp\WLZ50F2.tmp\vis_nsfs.lng 2017-06-15 12:26 - 2017-06-15 12:26 - 00323584 _____ () C:\Users\Leszek\AppData\Local\Temp\WLZ50F2.tmp\winamp.lng 2017-06-15 12:26 - 2017-06-15 12:26 - 00003584 _____ () C:\Users\Leszek\AppData\Local\Temp\WLZ50F2.tmp\winampa.lng 2011-07-11 23:48 - 2015-09-28 15:40 - 00023040 _____ () C:\Program Files (x86)\Winamp\System\albumart.w5s 2011-07-11 23:48 - 2015-09-28 15:40 - 00174080 _____ () C:\Program Files (x86)\Winamp\System\auth.w5s 2011-07-11 23:48 - 2015-09-28 15:40 - 00019456 _____ () C:\Program Files (x86)\Winamp\System\bmp.w5s 2011-07-11 23:48 - 2015-09-28 15:40 - 00044544 _____ () C:\Program Files (x86)\Winamp\System\devices.w5s 2011-07-11 23:48 - 2015-09-28 15:40 - 00016896 _____ () C:\Program Files (x86)\Winamp\System\dlmgr.w5s 2011-07-11 23:48 - 2015-09-28 15:40 - 00014336 _____ () C:\Program Files (x86)\Winamp\System\filereader.w5s 2011-07-11 23:48 - 2015-09-28 15:40 - 00019456 _____ () C:\Program Files (x86)\Winamp\System\gif.w5s 2011-07-11 23:48 - 2015-09-28 15:40 - 00016384 _____ () C:\Program Files (x86)\Winamp\System\gracenote.w5s 2011-07-11 23:48 - 2015-09-28 15:40 - 00623616 _____ () C:\Program Files (x86)\Winamp\System\jnetlib.w5s 2011-07-11 23:48 - 2015-09-28 15:40 - 00154624 _____ () C:\Program Files (x86)\Winamp\System\jpeg.w5s 2011-07-11 23:48 - 2015-09-28 15:40 - 00084480 _____ () C:\Program Files (x86)\Winamp\System\playlist.w5s 2011-07-11 23:48 - 2015-09-28 15:40 - 00103936 _____ () C:\Program Files (x86)\Winamp\System\png.w5s 2011-07-11 23:48 - 2015-09-28 15:40 - 00013824 _____ () C:\Program Files (x86)\Winamp\System\primo.w5s 2011-07-11 23:48 - 2015-09-28 15:40 - 00021504 _____ () C:\Program Files (x86)\Winamp\System\tagz.w5s 2011-07-11 23:48 - 2015-09-28 15:40 - 00035328 _____ () C:\Program Files (x86)\Winamp\System\timer.w5s 2011-07-11 23:48 - 2015-09-28 15:40 - 00090112 _____ () C:\Program Files (x86)\Winamp\System\xml.w5s 2011-07-11 23:48 - 2015-09-28 15:40 - 00068608 _____ () C:\Program Files (x86)\Winamp\Plugins\in_avi.dll 2011-07-11 23:48 - 2015-09-28 15:40 - 00102400 _____ () C:\Program Files (x86)\Winamp\Plugins\in_cdda.dll 2011-07-11 23:48 - 2015-09-28 15:40 - 00072192 _____ () C:\Program Files (x86)\Winamp\Plugins\in_dshow.dll 2011-07-11 23:48 - 2015-09-28 15:40 - 00060928 _____ () C:\Program Files (x86)\Winamp\Plugins\in_flac.dll 2011-07-11 23:48 - 2015-09-28 15:40 - 00043008 _____ () C:\Program Files (x86)\Winamp\Plugins\in_flv.dll 2011-07-11 23:48 - 2015-09-28 15:40 - 00007168 _____ () C:\Program Files (x86)\Winamp\Plugins\in_linein.dll 2011-07-11 23:48 - 2015-09-28 15:40 - 00109568 _____ () C:\Program Files (x86)\Winamp\Plugins\in_midi.dll 2011-07-11 23:48 - 2015-09-28 15:40 - 00049152 _____ () C:\Program Files (x86)\Winamp\Plugins\in_mkv.dll 2011-07-11 23:48 - 2015-09-28 15:40 - 00165376 _____ () C:\Program Files (x86)\Winamp\Plugins\in_mod.dll 2011-07-11 23:48 - 2015-09-28 15:40 - 00285696 _____ () C:\Program Files (x86)\Winamp\Plugins\in_mp3.dll 2011-07-11 23:48 - 2015-09-28 15:40 - 00050688 _____ () C:\Program Files (x86)\Winamp\Plugins\in_mp4.dll 2011-07-11 23:48 - 2015-09-28 15:40 - 00074752 _____ () C:\Program Files (x86)\Winamp\Plugins\in_nsv.dll 2011-07-11 23:48 - 2015-09-28 15:40 - 00023552 _____ () C:\Program Files (x86)\Winamp\Plugins\in_swf.dll 2011-07-11 23:48 - 2015-09-28 15:40 - 00252416 _____ () C:\Program Files (x86)\Winamp\Plugins\in_vorbis.dll 2011-07-11 23:48 - 2015-09-28 15:40 - 00016896 _____ () C:\Program Files (x86)\Winamp\Plugins\in_wave.dll 2011-07-11 23:48 - 2015-09-28 15:40 - 00253440 _____ () C:\Program Files (x86)\Winamp\libsndfile.dll 2011-07-11 23:48 - 2015-09-28 15:40 - 00313344 _____ () C:\Program Files (x86)\Winamp\Plugins\in_wm.dll 2011-07-11 23:48 - 2015-09-28 15:40 - 00022528 _____ () C:\Program Files (x86)\Winamp\Plugins\out_disk.dll 2011-07-11 23:48 - 2015-09-28 15:40 - 00052224 _____ () C:\Program Files (x86)\Winamp\Plugins\out_ds.dll 2011-07-11 23:48 - 2015-09-28 15:40 - 00018432 _____ () C:\Program Files (x86)\Winamp\Plugins\out_wave.dll 2011-07-11 23:48 - 2015-09-28 15:40 - 01737728 _____ () C:\Program Files (x86)\Winamp\Plugins\gen_ff.dll 2011-07-11 23:48 - 2015-09-28 15:40 - 00083968 _____ () C:\Program Files (x86)\Winamp\tataki.dll 2011-07-11 23:48 - 2015-09-28 15:40 - 00340992 _____ () C:\Program Files (x86)\Winamp\Plugins\freeform\wacs\freetype\freetype.wac 2011-07-11 23:48 - 2015-09-28 15:40 - 00027648 _____ () C:\Program Files (x86)\Winamp\Plugins\gen_hotkeys.dll 2010-11-10 19:29 - 2015-09-28 15:40 - 00183808 _____ () C:\Program Files (x86)\Winamp\Plugins\gen_jumpex.dll 2011-07-11 23:48 - 2015-09-28 15:40 - 00312832 _____ () C:\Program Files (x86)\Winamp\Plugins\gen_ml.dll 2011-07-11 23:48 - 2015-09-28 15:40 - 00293376 _____ () C:\Program Files (x86)\Winamp\Plugins\ml_local.dll 2011-07-11 23:48 - 2015-09-28 15:40 - 00082944 _____ () C:\Program Files (x86)\Winamp\Plugins\ml_playlists.dll 2011-07-11 23:48 - 2015-09-28 15:40 - 00124928 _____ () C:\Program Files (x86)\Winamp\Plugins\ml_online.dll 2011-07-11 23:48 - 2015-09-28 15:40 - 00249856 _____ () C:\Program Files (x86)\Winamp\Plugins\ml_devices.dll 2011-07-11 23:48 - 2015-09-28 15:40 - 00200192 _____ () C:\Program Files (x86)\Winamp\Plugins\ml_disc.dll 2011-07-11 23:48 - 2015-09-28 15:40 - 00240640 _____ () C:\Program Files (x86)\Winamp\Plugins\ml_pmp.dll 2011-07-11 23:48 - 2015-09-28 15:40 - 00060928 _____ () C:\Program Files (x86)\Winamp\Plugins\pmp_android.dll 2011-07-11 23:48 - 2015-09-28 15:40 - 00170496 _____ () C:\Program Files (x86)\Winamp\Plugins\pmp_ipod.dll 2011-07-11 23:48 - 2015-09-28 15:40 - 00020480 _____ () C:\Program Files (x86)\Winamp\Plugins\pmp_njb.dll 2011-07-11 23:48 - 2015-09-28 15:40 - 00118272 _____ () C:\Program Files (x86)\Winamp\Plugins\pmp_p4s.dll 2011-07-11 23:48 - 2015-09-28 15:40 - 00053760 _____ () C:\Program Files (x86)\Winamp\Plugins\pmp_usb.dll 2011-07-11 23:48 - 2015-09-28 15:40 - 00113152 _____ () C:\Program Files (x86)\Winamp\Plugins\pmp_wifi.dll 2011-07-11 23:48 - 2015-09-28 15:40 - 00027648 _____ () C:\Program Files (x86)\Winamp\Plugins\ml_bookmarks.dll 2011-07-11 23:48 - 2015-09-28 15:40 - 00052224 _____ () C:\Program Files (x86)\Winamp\Plugins\ml_history.dll 2011-07-11 23:48 - 2015-09-28 15:40 - 00028672 _____ () C:\Program Files (x86)\Winamp\Plugins\ml_autotag.dll 2011-07-11 23:48 - 2015-09-28 15:40 - 00057344 _____ () C:\Program Files (x86)\Winamp\Plugins\ml_impex.dll 2011-07-11 23:48 - 2015-09-28 15:40 - 00083456 _____ () C:\Program Files (x86)\Winamp\Plugins\ml_plg.dll 2011-07-11 23:48 - 2015-09-28 15:40 - 00033792 _____ () C:\Program Files (x86)\Winamp\Plugins\ml_rg.dll 2011-07-11 23:48 - 2015-09-28 15:40 - 00031744 _____ () C:\Program Files (x86)\Winamp\Plugins\ml_transcode.dll 2011-07-11 23:48 - 2015-09-28 15:40 - 00057344 _____ () C:\Program Files (x86)\Winamp\Plugins\gen_orgler.dll 2011-07-11 23:48 - 2015-09-28 15:40 - 00025600 _____ () C:\Program Files (x86)\Winamp\Plugins\gen_tray.dll 2011-07-11 23:48 - 2015-09-28 15:40 - 01090048 _____ () C:\Program Files (x86)\Winamp\System\aacdec.w5s ==================== Alternate Data Streams (filtrowane) ========= (Załączenie wejścia w fixlist spowoduje usunięcie strumienia ADS.) AlternateDataStreams: C:\WINDOWS\system32\drivers:ucdrv-x64.sys [25444] AlternateDataStreams: C:\WINDOWS\system32\drivers:x64 [1498914] AlternateDataStreams: C:\WINDOWS\system32\drivers:x86 [1223458] ==================== Tryb awaryjny (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Wartość "AlternateShell" zostanie przywrócona.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service" ==================== Powiązania plików (filtrowane) =============== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci.) HKU\S-1-5-21-2790352501-2114224720-3074741599-1000\Software\Classes\.scr: AutoCADScriptFile => C:\WINDOWS\system32\notepad.exe "%1" ==================== Internet Explorer - Witryny zaufane i z ograniczeniami =============== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru.) ==================== Hosts - zawartość: =============================== (Użycie dyrektywy Hosts: w fixlist spowoduje reset pliku Hosts.) 2009-07-14 04:34 - 2016-12-17 22:09 - 00000035 _____ C:\WINDOWS\system32\Drivers\etc\hosts ==================== Inne obszary ============================ (Obecnie brak automatycznej naprawy dla tej sekcji.) HKU\S-1-5-21-2790352501-2114224720-3074741599-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\Leszek\AppData\Roaming\IrfanView\IrfanView_Wallpaper.bmp DNS Servers: 192.168.1.254 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Zapora systemu Windows [funkcja włączona] ==================== MSCONFIG/TASK MANAGER - Wyłączone elementy == MSCONFIG\startupreg: Easybits Recovery => C:\Program Files (x86)\EasyBits For Kids\ezRecover.exe MSCONFIG\startupreg: Free Download Manager => "C:\Program Files (x86)\Free Download Manager\fdm.exe" -autorun MSCONFIG\startupreg: HP Quick Launch => C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe MSCONFIG\startupreg: HPConnectionManager => C:\Program Files (x86)\Hewlett-Packard\HP Connection Manager\HPCMDelayStart.exe MSCONFIG\startupreg: HPOSD => C:\Program Files (x86)\Hewlett-Packard\HP On Screen Display\HPOSD.exe MSCONFIG\startupreg: HPQuickWebProxy => "C:\Program Files (x86)\Hewlett-Packard\HP QuickWeb\hpqwutils.exe" MSCONFIG\startupreg: netchat => C:\Netchat\netchat.exe MSCONFIG\startupreg: RTHDVCPL => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe -s MSCONFIG\startupreg: SetDefault => C:\Program Files\Hewlett-Packard\HP LaunchBox\SetDefault.exe MSCONFIG\startupreg: Sidebar => C:\Program Files\Windows Sidebar\sidebar.exe /autoRun MSCONFIG\startupreg: SunJavaUpdateSched => "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" MSCONFIG\startupreg: WinampAgent => "C:\Program Files (x86)\Winamp\winampa.exe" HKLM\...\StartupApproved\Run: => "netchat" HKLM\...\StartupApproved\Run: => "SmartMon" HKLM\...\StartupApproved\Run: => "BePCSC" HKLM\...\StartupApproved\Run32: => "ADSKAppManager" HKLM\...\StartupApproved\Run32: => "USB Gamepad" HKLM\...\StartupApproved\Run32: => "WindowsDefender" HKU\S-1-5-21-2790352501-2114224720-3074741599-1000\...\StartupApproved\Run: => "AceStream" HKU\S-1-5-21-2790352501-2114224720-3074741599-1000\...\StartupApproved\Run: => "comrepl" ==================== Reguły Zapory systemu Windows (filtrowane) =============== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) FirewallRules: [TCP Query User{C0F77665-33B3-49B1-A8B9-3A117E12AF52}C:\program files (x86)\scol\usmwin.exe] => (Allow) C:\program files (x86)\scol\usmwin.exe FirewallRules: [UDP Query User{27464288-0DDA-431B-B6C3-95E7E7BB37FB}C:\program files (x86)\scol\usmwin.exe] => (Allow) C:\program files (x86)\scol\usmwin.exe FirewallRules: [TCP Query User{184A95FE-5968-4854-BA7C-7D91572853DD}C:\program files (x86)\google\chrome\application\chrome.exe] => (Allow) C:\program files (x86)\google\chrome\application\chrome.exe FirewallRules: [UDP Query User{64BC6438-2B99-4E1B-BDE6-CDE6F4F39AEF}C:\program files (x86)\google\chrome\application\chrome.exe] => (Allow) C:\program files (x86)\google\chrome\application\chrome.exe FirewallRules: [TCP Query User{A917819B-0D16-4379-BF8E-F05608F6B16A}C:\program files (x86)\winamp\winamp.exe] => (Allow) C:\program files (x86)\winamp\winamp.exe FirewallRules: [UDP Query User{35C33F3A-D161-4FA7-8092-C7B6BD773D37}C:\program files (x86)\winamp\winamp.exe] => (Allow) C:\program files (x86)\winamp\winamp.exe FirewallRules: [TCP Query User{E8FD11B0-3EFB-4997-90EB-A338BE369828}C:\program files (x86)\scol\usmwin.exe] => (Block) C:\program files (x86)\scol\usmwin.exe FirewallRules: [UDP Query User{0728A8A6-6F8D-493E-ACA3-DC53F5FC00E0}C:\program files (x86)\scol\usmwin.exe] => (Block) C:\program files (x86)\scol\usmwin.exe FirewallRules: [TCP Query User{12BE37E7-A909-4EA6-94D3-CDD939BE29F8}C:\program files (x86)\xerox\networkscan\nscsysui_xerox.exe] => (Block) C:\program files (x86)\xerox\networkscan\nscsysui_xerox.exe FirewallRules: [UDP Query User{95A3781B-23C0-4251-9D3F-5C2AF06C0E2D}C:\program files (x86)\xerox\networkscan\nscsysui_xerox.exe] => (Block) C:\program files (x86)\xerox\networkscan\nscsysui_xerox.exe FirewallRules: [TCP Query User{5F091C5C-35A7-41AC-960D-FFD1557A3F97}C:\program files (x86)\google\chrome\application\chrome.exe] => (Block) C:\program files (x86)\google\chrome\application\chrome.exe FirewallRules: [UDP Query User{CAE55320-715F-48A7-BE94-4C2F2E6CFFD0}C:\program files (x86)\google\chrome\application\chrome.exe] => (Block) C:\program files (x86)\google\chrome\application\chrome.exe FirewallRules: [TCP Query User{1D1FB7D4-7CA4-4AC2-894A-D9907726F4A2}C:\users\leszek\appdata\local\ucbrowser\user data_i18n\thunder\1.0.0.0\download\minithunderplatform.exe] => (Block) C:\users\leszek\appdata\local\ucbrowser\user data_i18n\thunder\1.0.0.0\download\minithunderplatform.exe FirewallRules: [UDP Query User{526B951B-693A-4832-9F40-C583E8A8A213}C:\users\leszek\appdata\local\ucbrowser\user data_i18n\thunder\1.0.0.0\download\minithunderplatform.exe] => (Block) C:\users\leszek\appdata\local\ucbrowser\user data_i18n\thunder\1.0.0.0\download\minithunderplatform.exe FirewallRules: [{A44562D0-B672-4B5D-9447-AEE940B85CAF}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe FirewallRules: [TCP Query User{FB4D01B7-9778-4FE6-A77C-33C80A999154}C:\program files (x86)\free download manager\fdm.exe] => (Allow) C:\program files (x86)\free download manager\fdm.exe FirewallRules: [UDP Query User{DED9DEE8-E620-409D-9DB5-68F721CBFC3C}C:\program files (x86)\free download manager\fdm.exe] => (Allow) C:\program files (x86)\free download manager\fdm.exe FirewallRules: [{19816E3B-AC9F-41E3-9AAC-472AA2A24F36}] => (Allow) C:\Program Files\Lightworks\Lightworks.exe FirewallRules: [{042C3D19-8E39-4AA8-9D89-D316250D1006}] => (Allow) C:\Program Files\Lightworks\Lightworks.exe FirewallRules: [{6E68DB62-E22B-4A45-9953-948800FDCE87}] => (Allow) C:\Program Files\Lightworks\ntcardvt.exe FirewallRules: [{9375A841-AEC2-4707-A931-CC41A13146BC}] => (Allow) C:\Program Files\Lightworks\ntcardvt.exe FirewallRules: [{0F575DBD-43BE-41D4-9EB3-1776022405EB}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe FirewallRules: [{E38C8036-9ADD-4F51-8F64-038733DA1F58}] => (Allow) C:\Program Files (x86)\Google\Chrome Remote Desktop\59.0.3071.47\remoting_host.exe ==================== Punkty Przywracania systemu ========================= 04-06-2017 18:51:47 Windows Update 06-06-2017 17:25:30 Usunięto: Szafir Host 1.0.4 09-06-2017 19:41:27 Removed VNC Server 6.0.2 12-06-2017 22:29:21 Windows Update ==================== Wadliwe urządzenia w Menedżerze urządzeń ============= ==================== Błędy w Dzienniku zdarzeń: ========================= Dziennik Aplikacja: ================== Error: (06/15/2017 12:44:51 PM) (Source: SideBySide) (EventID: 33) (User: ) Description: Nie można wygenerować kontekstu aktywacji dla "C:\Program Files (x86)\Microsoft Visual Studio 14.0\VC\redist\1033\vcredist_arm.exe". Nie można odnaleźć zestawu zależnego Microsoft.Windows.Common-Controls,language="*",processorArchitecture="arm",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0". Użyj narzędzia sxstrace.exe, aby uzyskać szczegółową diagnozę. Error: (06/15/2017 12:36:24 PM) (Source: SideBySide) (EventID: 33) (User: ) Description: Nie można wygenerować kontekstu aktywacji dla "C:\Program Files (x86)\Windows Kits\10\bin\arm64\oleview.exe". Nie można odnaleźć zestawu zależnego Microsoft.Windows.Common-Controls,language="*",processorArchitecture="arm64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0". Użyj narzędzia sxstrace.exe, aby uzyskać szczegółową diagnozę. Error: (06/15/2017 12:36:23 PM) (Source: SideBySide) (EventID: 33) (User: ) Description: Nie można wygenerować kontekstu aktywacji dla "C:\Program Files (x86)\Windows Kits\10\bin\arm64\filetypeverifier.exe". Nie można odnaleźć zestawu zależnego Microsoft.Windows.Common-Controls,language="*",processorArchitecture="arm64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0". Użyj narzędzia sxstrace.exe, aby uzyskać szczegółową diagnozę. Error: (06/15/2017 12:35:06 PM) (Source: SideBySide) (EventID: 33) (User: ) Description: Nie można wygenerować kontekstu aktywacji dla "C:\Program Files (x86)\Windows Kits\10\bin\arm\signtool.exe.Manifest". Nie można odnaleźć zestawu zależnego Microsoft.Windows.Build.Appx.AppxSip.dll,version="0.0.0.0". Użyj narzędzia sxstrace.exe, aby uzyskać szczegółową diagnozę. Error: (06/15/2017 12:35:04 PM) (Source: SideBySide) (EventID: 33) (User: ) Description: Nie można wygenerować kontekstu aktywacji dla "C:\Program Files (x86)\Windows Kits\10\bin\arm64\signtool.exe.Manifest". Nie można odnaleźć zestawu zależnego Microsoft.Windows.Build.Appx.AppxSip.dll,version="0.0.0.0". Użyj narzędzia sxstrace.exe, aby uzyskać szczegółową diagnozę. Error: (06/14/2017 09:31:07 PM) (Source: ESENT) (EventID: 454) (User: ) Description: DllHost (12220) WebCacheLocal: Odzyskiwanie/przywracanie bazy danych nie powiodło się z powodu nieoczekiwanego błędu: -501. Error: (06/14/2017 09:31:07 PM) (Source: ESENT) (EventID: 465) (User: ) Description: DllHost (12220) WebCacheLocal: Podczas odzyskiwania programowego wykryto uszkodzenie w pliku dziennika C:\Users\Leszek\AppData\Local\Microsoft\Windows\WebCache\V01.log. Rekord z nieprawidłową sumą kontrolną znajduje się na pozycji END. Dane niezgodne ze wzorem wypełnienia pliku dziennika pojawiły się najpierw w sektorze isec 11 reason 4. Plik dziennika został uszkodzony i nie nadaje się do użytku. Error: (06/14/2017 09:31:07 PM) (Source: ESENT) (EventID: 477) (User: ) Description: DllHost (12220) WebCacheLocal: Weryfikacja odczytu zakresu dziennika z pliku „C:\Users\Leszek\AppData\Local\Microsoft\Windows\WebCache\V01.log” na pozycji względnej 45056 (0x000000000000b000) w ilości 4096 (0x00001000) bajtów nie powiodła się z powodu niezgodności sumy kontrolnej zakresu. Oczekiwano sumy kontrolnej 6837345064599534912 (0x5ee3211c4639bd40), podczas gdy faktyczna suma kontrolna to 6837345064599534912 (0x5ee3211c4639bd40). Operacja odczytu zostanie zakończona z błędem -501 (0xfffffe0b). Jeśli ten stan będzie się utrzymywał, przywróć plik dziennika z wcześniejszej kopii zapasowej. Error: (06/14/2017 09:31:07 PM) (Source: ESENT) (EventID: 465) (User: ) Description: DllHost (12220) WebCacheLocal: Podczas odzyskiwania programowego wykryto uszkodzenie w pliku dziennika C:\Users\Leszek\AppData\Local\Microsoft\Windows\WebCache\V01.log. Rekord z nieprawidłową sumą kontrolną znajduje się na pozycji END. Dane niezgodne ze wzorem wypełnienia pliku dziennika pojawiły się najpierw w sektorze isec 11 reason 4. Plik dziennika został uszkodzony i nie nadaje się do użytku. Error: (06/14/2017 09:31:07 PM) (Source: ESENT) (EventID: 477) (User: ) Description: DllHost (12220) WebCacheLocal: Weryfikacja odczytu zakresu dziennika z pliku „C:\Users\Leszek\AppData\Local\Microsoft\Windows\WebCache\V01.log” na pozycji względnej 45056 (0x000000000000b000) w ilości 4096 (0x00001000) bajtów nie powiodła się z powodu niezgodności sumy kontrolnej zakresu. Oczekiwano sumy kontrolnej 6837345064599534912 (0x5ee3211c4639bd40), podczas gdy faktyczna suma kontrolna to 6837345064599534912 (0x5ee3211c4639bd40). Operacja odczytu zostanie zakończona z błędem -501 (0xfffffe0b). Jeśli ten stan będzie się utrzymywał, przywróć plik dziennika z wcześniejszej kopii zapasowej. Dziennik System: ============= Error: (06/15/2017 12:12:44 PM) (Source: DCOM) (EventID: 10016) (User: ZARZĄDZANIE NT) Description: Zgodnie z ustawieniami uprawnienia domyślne ustawienia komputera nie jest udzielane uprawnienie Lokalny Aktywacja do aplikacji serwera COM z identyfikatorem klasy CLSID {C2F03A33-21F5-47FA-B4BB-156362A2F239} i identyfikatorem aplikacji APPID {316CDED5-E4AE-4B15-9113-7055D84DCC97} użytkownikowi ZARZĄDZANIE NT\USŁUGA LOKALNA o identyfikatorze zabezpieczeń SID (S-1-5-19) z adresu LocalHost (użycie LRPC) działającemu w kontenerze aplikacji o identyfikatorze SID Niedostępny (Niedostępny). To uprawnienie zabezpieczeń można modyfikować przy użyciu narzędzia administracyjnego Usługi składowe. Error: (06/15/2017 12:12:44 PM) (Source: DCOM) (EventID: 10016) (User: ZARZĄDZANIE NT) Description: Zgodnie z ustawieniami uprawnienia właściwe dla aplikacji nie jest udzielane uprawnienie Lokalny Aktywacja do aplikacji serwera COM z identyfikatorem klasy CLSID {6B3B8D23-FA8D-40B9-8DBD-B950333E2C52} i identyfikatorem aplikacji APPID {4839DDB7-58C2-48F5-8283-E1D1807D0D7D} użytkownikowi ZARZĄDZANIE NT\USŁUGA LOKALNA o identyfikatorze zabezpieczeń SID (S-1-5-19) z adresu LocalHost (użycie LRPC) działającemu w kontenerze aplikacji o identyfikatorze SID Niedostępny (Niedostępny). To uprawnienie zabezpieczeń można modyfikować przy użyciu narzędzia administracyjnego Usługi składowe. Error: (06/15/2017 12:12:44 PM) (Source: DCOM) (EventID: 10016) (User: ZARZĄDZANIE NT) Description: Zgodnie z ustawieniami uprawnienia domyślne ustawienia komputera nie jest udzielane uprawnienie Lokalny Aktywacja do aplikacji serwera COM z identyfikatorem klasy CLSID {C2F03A33-21F5-47FA-B4BB-156362A2F239} i identyfikatorem aplikacji APPID {316CDED5-E4AE-4B15-9113-7055D84DCC97} użytkownikowi ZARZĄDZANIE NT\USŁUGA LOKALNA o identyfikatorze zabezpieczeń SID (S-1-5-19) z adresu LocalHost (użycie LRPC) działającemu w kontenerze aplikacji o identyfikatorze SID Niedostępny (Niedostępny). To uprawnienie zabezpieczeń można modyfikować przy użyciu narzędzia administracyjnego Usługi składowe. Error: (06/15/2017 12:12:44 PM) (Source: DCOM) (EventID: 10016) (User: ZARZĄDZANIE NT) Description: Zgodnie z ustawieniami uprawnienia właściwe dla aplikacji nie jest udzielane uprawnienie Lokalny Aktywacja do aplikacji serwera COM z identyfikatorem klasy CLSID {6B3B8D23-FA8D-40B9-8DBD-B950333E2C52} i identyfikatorem aplikacji APPID {4839DDB7-58C2-48F5-8283-E1D1807D0D7D} użytkownikowi ZARZĄDZANIE NT\USŁUGA LOKALNA o identyfikatorze zabezpieczeń SID (S-1-5-19) z adresu LocalHost (użycie LRPC) działającemu w kontenerze aplikacji o identyfikatorze SID Niedostępny (Niedostępny). To uprawnienie zabezpieczeń można modyfikować przy użyciu narzędzia administracyjnego Usługi składowe. Error: (06/15/2017 12:08:01 PM) (Source: DCOM) (EventID: 10016) (User: ZARZĄDZANIE NT) Description: Zgodnie z ustawieniami uprawnienia właściwe dla aplikacji nie jest udzielane uprawnienie Lokalny Aktywacja do aplikacji serwera COM z identyfikatorem klasy CLSID {8D8F4F83-3594-4F07-8369-FC3C3CAE4919} i identyfikatorem aplikacji APPID {F72671A9-012C-4725-9D2F-2A4D32D65169} użytkownikowi ZARZĄDZANIE NT\SYSTEM o identyfikatorze zabezpieczeń SID (S-1-5-18) z adresu LocalHost (użycie LRPC) działającemu w kontenerze aplikacji o identyfikatorze SID Niedostępny (Niedostępny). To uprawnienie zabezpieczeń można modyfikować przy użyciu narzędzia administracyjnego Usługi składowe. Error: (06/14/2017 05:29:12 PM) (Source: DCOM) (EventID: 10016) (User: ZARZĄDZANIE NT) Description: Zgodnie z ustawieniami uprawnienia domyślne ustawienia komputera nie jest udzielane uprawnienie Lokalny Aktywacja do aplikacji serwera COM z identyfikatorem klasy CLSID {C2F03A33-21F5-47FA-B4BB-156362A2F239} i identyfikatorem aplikacji APPID {316CDED5-E4AE-4B15-9113-7055D84DCC97} użytkownikowi ZARZĄDZANIE NT\USŁUGA LOKALNA o identyfikatorze zabezpieczeń SID (S-1-5-19) z adresu LocalHost (użycie LRPC) działającemu w kontenerze aplikacji o identyfikatorze SID Niedostępny (Niedostępny). To uprawnienie zabezpieczeń można modyfikować przy użyciu narzędzia administracyjnego Usługi składowe. Error: (06/14/2017 05:29:12 PM) (Source: DCOM) (EventID: 10016) (User: ZARZĄDZANIE NT) Description: Zgodnie z ustawieniami uprawnienia właściwe dla aplikacji nie jest udzielane uprawnienie Lokalny Aktywacja do aplikacji serwera COM z identyfikatorem klasy CLSID {6B3B8D23-FA8D-40B9-8DBD-B950333E2C52} i identyfikatorem aplikacji APPID {4839DDB7-58C2-48F5-8283-E1D1807D0D7D} użytkownikowi ZARZĄDZANIE NT\USŁUGA LOKALNA o identyfikatorze zabezpieczeń SID (S-1-5-19) z adresu LocalHost (użycie LRPC) działającemu w kontenerze aplikacji o identyfikatorze SID Niedostępny (Niedostępny). To uprawnienie zabezpieczeń można modyfikować przy użyciu narzędzia administracyjnego Usługi składowe. Error: (06/14/2017 05:29:12 PM) (Source: DCOM) (EventID: 10016) (User: ZARZĄDZANIE NT) Description: Zgodnie z ustawieniami uprawnienia domyślne ustawienia komputera nie jest udzielane uprawnienie Lokalny Aktywacja do aplikacji serwera COM z identyfikatorem klasy CLSID {C2F03A33-21F5-47FA-B4BB-156362A2F239} i identyfikatorem aplikacji APPID {316CDED5-E4AE-4B15-9113-7055D84DCC97} użytkownikowi ZARZĄDZANIE NT\USŁUGA LOKALNA o identyfikatorze zabezpieczeń SID (S-1-5-19) z adresu LocalHost (użycie LRPC) działającemu w kontenerze aplikacji o identyfikatorze SID Niedostępny (Niedostępny). To uprawnienie zabezpieczeń można modyfikować przy użyciu narzędzia administracyjnego Usługi składowe. Error: (06/14/2017 05:29:12 PM) (Source: DCOM) (EventID: 10016) (User: ZARZĄDZANIE NT) Description: Zgodnie z ustawieniami uprawnienia właściwe dla aplikacji nie jest udzielane uprawnienie Lokalny Aktywacja do aplikacji serwera COM z identyfikatorem klasy CLSID {6B3B8D23-FA8D-40B9-8DBD-B950333E2C52} i identyfikatorem aplikacji APPID {4839DDB7-58C2-48F5-8283-E1D1807D0D7D} użytkownikowi ZARZĄDZANIE NT\USŁUGA LOKALNA o identyfikatorze zabezpieczeń SID (S-1-5-19) z adresu LocalHost (użycie LRPC) działającemu w kontenerze aplikacji o identyfikatorze SID Niedostępny (Niedostępny). To uprawnienie zabezpieczeń można modyfikować przy użyciu narzędzia administracyjnego Usługi składowe. Error: (06/14/2017 05:24:45 PM) (Source: DCOM) (EventID: 10016) (User: ZARZĄDZANIE NT) Description: Zgodnie z ustawieniami uprawnienia właściwe dla aplikacji nie jest udzielane uprawnienie Lokalny Aktywacja do aplikacji serwera COM z identyfikatorem klasy CLSID {8D8F4F83-3594-4F07-8369-FC3C3CAE4919} i identyfikatorem aplikacji APPID {F72671A9-012C-4725-9D2F-2A4D32D65169} użytkownikowi ZARZĄDZANIE NT\SYSTEM o identyfikatorze zabezpieczeń SID (S-1-5-18) z adresu LocalHost (użycie LRPC) działającemu w kontenerze aplikacji o identyfikatorze SID Niedostępny (Niedostępny). To uprawnienie zabezpieczeń można modyfikować przy użyciu narzędzia administracyjnego Usługi składowe. CodeIntegrity: =================================== Date: 2017-05-28 23:19:14.575 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\System32\wininit.exe) attempted to load \Device\HarddiskVolume2\Windows\System32\PolskiLP.dll that did not meet the Windows signing level requirements. Date: 2017-05-14 01:22:37.845 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\System32\wininit.exe) attempted to load \Device\HarddiskVolume2\Windows\System32\PolskiLP.dll that did not meet the Windows signing level requirements. Date: 2017-05-13 18:02:26.121 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\winhttp.dll because the set of per-page image hashes could not be found on the system. Date: 2017-05-13 18:02:26.045 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\winhttp.dll because the set of per-page image hashes could not be found on the system. Date: 2017-05-13 18:00:01.776 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\System32\wininit.exe) attempted to load \Device\HarddiskVolume2\Windows\System32\PolskiLP.dll that did not meet the Windows signing level requirements. Date: 2017-04-12 16:53:04.340 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\winhttp.dll because the set of per-page image hashes could not be found on the system. Date: 2017-04-12 16:53:04.193 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\winhttp.dll because the set of per-page image hashes could not be found on the system. Date: 2017-04-09 11:58:13.048 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\System32\wininit.exe) attempted to load \Device\HarddiskVolume2\Windows\System32\PolskiLP.dll that did not meet the Windows signing level requirements. Date: 2017-04-08 16:48:09.737 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\System32\wininit.exe) attempted to load \Device\HarddiskVolume2\Windows\System32\PolskiLP.dll that did not meet the Windows signing level requirements. Date: 2017-04-08 13:10:41.590 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files (x86)\AVG\Av\avgidsagenta.exe) attempted to load \Device\HarddiskVolume2\Windows\WinSxS\amd64_avg.vc140.crt_f92d94485545da78_14.0.24210.0_none_69fa0197d9b096ae\vcruntime140.dll that did not meet the Custom 3 / Antimalware signing level requirements. ==================== Statystyki pamięci =========================== Procesor: Intel(R) Celeron(R) CPU B815 @ 1.60GHz Procent pamięci w użyciu: 47% Całkowita pamięć fizyczna: 10091.86 MB Dostępna pamięć fizyczna: 5273.56 MB Całkowita pamięć wirtualna: 11291.86 MB Dostępna pamięć wirtualna: 5890.23 MB ==================== Dyski ================================ Drive c: () (Fixed) (Total:273.69 GB) (Free:43.97 GB) NTFS ==>[system z komponentami startowymi (pozyskano odczytując dysk)] Drive d: (Recovery) (Fixed) (Total:20.24 GB) (Free:2.16 GB) NTFS ==>[system z komponentami startowymi (pozyskano odczytując dysk)] Drive e: (HP_TOOLS) (Fixed) (Total:3.96 GB) (Free:3.95 GB) FAT32 Drive g: (WOODY_US) (CDROM) (Total:0.62 GB) (Free:0 GB) CDFS ==================== MBR & Tablica partycji ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 298.1 GB) (Disk ID: 454C8B42) Partition 1: (Active) - (Size=199 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=273.7 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=20.2 GB) - (Type=07 NTFS) Partition 4: (Not Active) - (Size=4 GB) - (Type=0C) ==================== Koniec Addition.txt ============================