Rezultaty skanu uzupełniającego Farbar Recovery Scan Tool (x64) Wersja: 14.03.2018 Uruchomiony przez zwyro (24-03-2018 16:31:03) Uruchomiony z C:\Users\zwyro\Desktop Windows 10 Pro Wersja 1709 16299.309 (X64) (2017-12-21 22:50:27) Tryb startu: Normal ========================================================== ==================== Konta użytkowników: ============================= Administrator (S-1-5-21-305178186-2251966430-3923819851-500 - Administrator - Disabled) Gość (S-1-5-21-305178186-2251966430-3923819851-501 - Limited - Disabled) Konto domyślne (S-1-5-21-305178186-2251966430-3923819851-503 - Limited - Disabled) WDAGUtilityAccount (S-1-5-21-305178186-2251966430-3923819851-504 - Limited - Disabled) zwyro (S-1-5-21-305178186-2251966430-3923819851-1001 - Administrator - Enabled) => C:\Users\zwyro ==================== Centrum zabezpieczeń ======================== (Załączenie wejścia w fixlist spowoduje jego usunięcie.) AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Zainstalowane programy ====================== (W fixlist dozwolone tylko załączanie programów adware z flagą "Hidden" w celu ich uwidocznienia. Programy adware powinny zostać w poprawny sposób odinstalowane.) Adobe Flash Player 29 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 29.0.0.113 - Adobe Systems Incorporated) AMD Software (HKLM\...\AMD Catalyst Install Manager) (Version: 9.0.000.8 - Advanced Micro Devices, Inc.) Assassin's Creed IV Black Flag (HKLM-x32\...\Uplay Install 273) (Version: - Ubisoft) Assassin's Creed Origins (HKLM-x32\...\Uplay Install 3539) (Version: - Ubisoft) Battlefield™ 1 (HKLM-x32\...\{335B50BC-6130-4BAF-9A6A-F1561270587B}) (Version: 1.0.10.265 - Electronic Arts) BitTorrent (HKU\S-1-5-21-305178186-2251966430-3923819851-1001\...\BitTorrent) (Version: 7.10.3.44359 - BitTorrent Inc.) Catalyst Control Center Next Localization BR (HKLM\...\{E7AA1A02-575C-14C6-FBEF-4BE6D46A5B74}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization CHS (HKLM\...\{EB6C44F1-0F78-FE10-BC63-90BA50AB0CE9}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization CHT (HKLM\...\{B26D75B8-FAB7-6F8B-767F-BAF975383D91}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization CS (HKLM\...\{36EDC500-E4C0-371C-9865-08450415C1E9}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization DA (HKLM\...\{4C2FB7FD-89FD-BA5C-585A-3811F326AD34}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization DE (HKLM\...\{D74218A3-C503-57EF-AC9F-2220082E7ADE}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization EL (HKLM\...\{DA433FCF-90A1-19A5-65A7-FDF82DE4826D}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization ES (HKLM\...\{949F125B-A6CC-5A5E-EEE7-4AC50305C1FA}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization FI (HKLM\...\{20D46801-147B-30AD-7C5A-AC4560A79096}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization FR (HKLM\...\{22C39711-2747-D264-319A-1550BEEAAEC6}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization HU (HKLM\...\{1DBACFDB-5E43-7882-36BD-53526D34BD22}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization IT (HKLM\...\{A91FC4BF-C1EC-ADCA-79D1-F4F0671F1D60}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization JA (HKLM\...\{ED75A775-03A7-F214-868D-497748707968}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization KO (HKLM\...\{07BFBD5C-2F63-6828-1B61-B41A44113F3B}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization NL (HKLM\...\{E6038D3E-5D87-8DF7-6D05-BE7532C3E73E}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization NO (HKLM\...\{DFAD9DAC-4768-C8BB-4E0E-5239605A9BEA}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization PL (HKLM\...\{FFBFBD1F-B160-A119-7C43-8584FA2E5665}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization RU (HKLM\...\{4D1D5407-9B69-6422-629C-8518A26004A4}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization SV (HKLM\...\{A8379BAB-59A9-C0A3-8BCC-4852EA403692}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization TH (HKLM\...\{24DF617A-CD23-6E6A-126B-23630D2781CE}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization TR (HKLM\...\{83DDDFD8-AD42-72F9-E4F1-5456FDB304C9}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden DAEMON Tools Lite (HKLM\...\DAEMON Tools Lite) (Version: 10.5.0.0220 - Disc Soft Ltd) Discord (HKU\S-1-5-21-305178186-2251966430-3923819851-1001\...\Discord) (Version: 0.0.300 - Discord Inc.) Grand Theft Auto V (HKLM-x32\...\{E01FA564-2094-4833-8F2F-1FFEC6AFCC46}) (Version: "1.00.0000" - Rockstar Games) Heroes of Might and Magic III (HKLM-x32\...\{8B743AA0-53B2-11D2-808A-00600895FB43}) (Version: 1.0 - ) Heroes of Might and Magic® III: Horn of the Abyss (HKLM-x32\...\HotA_is1) (Version: 1.4.2 - HotA Crew) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.15.4279 - Intel Corporation) Intel® Hardware Accelerated Execution Manager (HKLM\...\{6F73FF93-0B55-4194-AE45-C19DA1F33E97}) (Version: 6.0.3 - Intel Corporation) Java 7 Update 79 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F06417079FF}) (Version: 7.0.790 - Oracle) Java SE Development Kit 7 Update 79 (64-bit) (HKLM\...\{64A3A4F4-B792-11D6-A78A-00B0D0170790}) (Version: 1.7.0.790 - Oracle) K-Lite Mega Codec Pack 12.4.2 (HKLM-x32\...\KLiteCodecPack_is1) (Version: 12.4.2 - KLCP) Lenovo EasyCamera (HKLM-x32\...\{E399A5B3-ED53-4DEA-AF04-8011E1EB1EAC}) (Version: 6.3.9600.11105 - Realtek Semiconductor Corp.) Malwarebytes (wersja 3.4.4.2398) (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 3.4.4.2398 - Malwarebytes) MEGAsync (HKLM-x32\...\MEGAsync) (Version: - Mega Limited) Microsoft Office Professional Plus 2016 - pl-pl (HKLM\...\ProPlusRetail - pl-pl) (Version: 16.0.9029.2253 - Microsoft Corporation) Microsoft OneDrive (HKU\S-1-5-21-305178186-2251966430-3923819851-1001\...\OneDriveSetup.exe) (Version: 18.025.0204.0009 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 Redistributable - x64 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 Redistributable - x86 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (HKLM-x32\...\{a1909659-0a08-4554-8af1-2175904903a1}) (Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24215 (HKLM-x32\...\{d992c12e-cab2-426f-bde3-fb8c53950b0d}) (Version: 14.0.24215.1 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24215 (HKLM-x32\...\{e2803110-78b3-4664-a479-3611a381656a}) (Version: 14.0.24215.1 - Microsoft Corporation) Mozilla Firefox 59.0.1 (x64 en-US) (HKLM\...\Mozilla Firefox 59.0.1 (x64 en-US)) (Version: 59.0.1 - Mozilla) Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 57.0.2 - Mozilla) MSI Afterburner 4.4.2 (HKLM-x32\...\Afterburner) (Version: 4.4.2 - MSI Co., LTD) Need for Speed™ Payback (HKLM-x32\...\{F4CF3D08-565C-40B7-B351-D3033DE2172B}) (Version: 1.0.51.15364 - Electronic Arts) NVIDIA Sterownik dźwięku HD 1.3.34.17 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.34.17 - NVIDIA Corporation) NVIDIA Sterownik graficzny 376.54 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 376.54 - NVIDIA Corporation) Office 16 Click-to-Run Extensibility Component (HKLM-x32\...\{90160000-008C-0000-0000-0000000FF1CE}) (Version: 16.0.9029.2253 - Microsoft Corporation) Hidden Office 16 Click-to-Run Extensibility Component 64-bit Registration (HKLM\...\{90160000-00DD-0000-1000-0000000FF1CE}) (Version: 16.0.9029.2253 - Microsoft Corporation) Hidden Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-008F-0000-1000-0000000FF1CE}) (Version: 16.0.9029.2253 - Microsoft Corporation) Hidden Office 16 Click-to-Run Localization Component (HKLM-x32\...\{90160000-008C-0415-0000-0000000FF1CE}) (Version: 16.0.9029.2253 - Microsoft Corporation) Hidden Origin (HKLM-x32\...\Origin) (Version: 10.5.14.38647 - Electronic Arts, Inc.) Panel sterowania NVIDIA 376.54 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel) (Version: 376.54 - NVIDIA Corporation) Hidden Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7514 - Realtek Semiconductor Corp.) RivaTuner Statistics Server 7.0.2 (HKLM-x32\...\RTSS) (Version: 7.0.2 - Unwinder) Rockstar Games Social Club (HKLM-x32\...\Rockstar Games Social Club) (Version: 1.2.3.8 - Rockstar Games) Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation) Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 19.0.17.58 - Synaptics Incorporated) The Sims 4 Luxury Party Stuff DLC (HKLM-x32\...\VGhlU2ltczQ=_is1) (Version: 1 - ) Tony Hawk's Underground 2 (HKLM-x32\...\Tony Hawk's Underground 2_R.G. Mechanics_is1) (Version: - R.G. Mechanics, markfiter) TruckersMP Launcher 1.0.0.4 (HKLM\...\{A227B892-C548-4490-9C5D-DB341F8194A6}_is1) (Version: 1.0.0.4 - TruckersMP Team) Uplay (HKLM-x32\...\Uplay) (Version: 15.0 - Ubisoft) Vulkan Run Time Libraries 1.0.26.0 (HKLM\...\VulkanRT1.0.26.0) (Version: 1.0.26.0 - LunarG, Inc.) Hidden Vulkan Run Time Libraries 1.0.26.0 (HKLM\...\VulkanRT1.0.26.0-6) (Version: 1.0.26.0 - LunarG, Inc.) Vulkan Run Time Libraries 1.0.37.0 (HKLM\...\VulkanRT1.0.37.0) (Version: 1.0.37.0 - LunarG, Inc.) Hidden Vulkan Run Time Libraries 1.0.54.0 (HKLM\...\VulkanRT1.0.54.0) (Version: 1.0.54.0 - LunarG, Inc.) Hidden Vulkan Run Time Libraries 1.0.54.0 (HKLM\...\VulkanRT1.0.54.0-2) (Version: 1.0.54.0 - LunarG, Inc.) Vulkan Run Time Libraries 1.0.65.0 (HKLM\...\VulkanRT1.0.65.0) (Version: 1.0.65.0 - LunarG, Inc.) Hidden Vulkan Run Time Libraries 1.0.65.0 (HKLM\...\VulkanRT1.0.65.0-2) (Version: 1.0.65.0 - LunarG, Inc.) Hidden WinRAR 5.01 (64-bitowy) (HKLM\...\WinRAR archiver) (Version: 5.01.0 - win.rar GmbH) Worms 2 (HKLM-x32\...\Worms 2) (Version: - ) ==================== Niestandardowe rejestracje CLSID (filtrowane): ========================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) ShellIconOverlayIdentifiers: [ MEGA (Pending)] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} => C:\Users\zwyro\AppData\Local\MEGAsync\ShellExtX64.dll [2017-10-18] () ShellIconOverlayIdentifiers: [ MEGA (Synced)] -> {05B38830-F4E9-4329-978B-1DD28605D202} => C:\Users\zwyro\AppData\Local\MEGAsync\ShellExtX64.dll [2017-10-18] () ShellIconOverlayIdentifiers: [ MEGA (Syncing)] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} => C:\Users\zwyro\AppData\Local\MEGAsync\ShellExtX64.dll [2017-10-18] () ShellIconOverlayIdentifiers-x32: [ MEGA (Pending)] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} => C:\Users\zwyro\AppData\Local\MEGAsync\ShellExtX64.dll [2017-10-18] () ShellIconOverlayIdentifiers-x32: [ MEGA (Synced)] -> {05B38830-F4E9-4329-978B-1DD28605D202} => C:\Users\zwyro\AppData\Local\MEGAsync\ShellExtX64.dll [2017-10-18] () ShellIconOverlayIdentifiers-x32: [ MEGA (Syncing)] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} => C:\Users\zwyro\AppData\Local\MEGAsync\ShellExtX64.dll [2017-10-18] () ContextMenuHandlers1: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} => C:\Users\zwyro\AppData\Local\MEGAsync\ShellExtX64.dll [2017-10-18] () ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2013-12-03] (Alexander Roshal) ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2013-12-03] (Alexander Roshal) ContextMenuHandlers2: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} => C:\Users\zwyro\AppData\Local\MEGAsync\ShellExtX64.dll [2017-10-18] () ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2018-03-03] (Malwarebytes) ContextMenuHandlers3: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} => C:\Users\zwyro\AppData\Local\MEGAsync\ShellExtX64.dll [2017-10-18] () ContextMenuHandlers4: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} => C:\Users\zwyro\AppData\Local\MEGAsync\ShellExtX64.dll [2017-10-18] () ContextMenuHandlers5: [ACE] -> {5E2121EE-0300-11D4-8D3B-444553540000} => C:\Program Files\AMD\CNext\CNext\atiacm64.dll [2018-02-19] (Advanced Micro Devices, Inc.) ContextMenuHandlers5: [igfxDTCM] -> {9B5F5829-A529-4B12-814A-E81BCB8D93FC} => C:\WINDOWS\system32\igfxDTCM.dll [2015-09-04] (Intel Corporation) ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\system32\nvshext.dll [2016-12-29] (NVIDIA Corporation) ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2018-03-03] (Malwarebytes) ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2013-12-03] (Alexander Roshal) ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2013-12-03] (Alexander Roshal) ==================== Zaplanowane zadania (filtrowane) ============= (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) Task: {15C068B3-8BDD-41E3-909A-CC37B244F249} - System32\Tasks\MSIOSDx86_Host => C:\Program Files (x86)\MSI\Gaming APP\OSD\x86\MsiGamingOSD_x86.exe Task: {21844A1A-8925-44EF-882E-A392059E29F8} - System32\Tasks\MEGA\MEGAsync Update Task S-1-5-21-305178186-2251966430-3923819851-1001 => C:\Users\zwyro\AppData\Local\MEGAsync\MEGAupdater.exe [2017-11-24] (Mega Limited) Task: {2FF43611-97AB-48A4-949B-E7D9BB3FA175} - System32\Tasks\Adobe Flash Player NPAPI Notifier => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_29_0_0_113_Plugin.exe [2018-03-14] (Adobe Systems Incorporated) Task: {30C2776E-877C-4B2A-AC43-DA9F08DC0BC8} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\platform\4.12.17007.18022-0\MpCmdRun.exe [2018-03-23] (Microsoft Corporation) Task: {364C2A97-F15E-4442-83C7-DC1C1097A946} - System32\Tasks\MSIAfterburner => C:\Program Files (x86)\MSI Afterburner\MSIAfterburner.exe [2017-12-15] () Task: {3C40CC81-5533-4DB1-808D-44040FE0CA3A} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2018-03-14] (Adobe Systems Incorporated) Task: {59695669-9588-42DB-B1A9-107B2D7BE8B2} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\platform\4.12.17007.18022-0\MpCmdRun.exe [2018-03-23] (Microsoft Corporation) Task: {828C698C-B7BF-4533-81F3-BD609BD28311} - System32\Tasks\MSISW_Host => C:\WINDOWS\SysWoW64\muachost.exe [2015-08-18] (MSI) Task: {892FF42D-7268-43E1-B6B1-7B60638881E5} - System32\Tasks\avast! Windows 10 Start Menu helper => c:\program files\avast software\avast\asww10mon.exe Task: {90913678-92CD-4A03-B9FB-B83A7BD15BBE} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\platform\4.12.17007.18022-0\MpCmdRun.exe [2018-03-23] (Microsoft Corporation) Task: {ACE84C33-36BE-42AE-AD43-89D870D2D4D1} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\platform\4.12.17007.18022-0\MpCmdRun.exe [2018-03-23] (Microsoft Corporation) Task: {C66FE2B3-0B74-4435-87C1-49321751B9AB} - System32\Tasks\StartDVR => C:\Program Files\AMD\CNext\CNext\dvrcmd.exe [2018-02-19] (Advanced Micro Devices, Inc.) Task: {C858398A-2DEE-432C-BFB3-EB50F7EA17D7} - System32\Tasks\StartCN => C:\Program Files\AMD\CNext\CNext\cncmd.exe [2018-02-19] (Advanced Micro Devices, Inc.) Task: {CD1EADC3-C1F1-494D-9DBA-29FB1C81AE00} - System32\Tasks\MSIOSDx64_Host => C:\Program Files (x86)\MSI\Gaming APP\OSD\x64\MsiGamingOSD_x64.exe (Załączenie wejścia w fixlist spowoduje przesunięcie pliku zadania (.job). Plik uruchamiany docelowo przez zadanie nie zostanie przeniesiony.) ==================== Skróty & WMI ======================== (Wybrane wejścia mogą zostać załączone w celu ich zresetowania lub usunięcia.) ==================== Załadowane moduły (filtrowane) ============== 2017-09-29 14:41 - 2017-09-29 14:41 - 000184432 _____ () C:\WINDOWS\SYSTEM32\inputhost.dll 2018-02-03 13:38 - 2016-12-29 14:16 - 000134712 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll 2016-10-20 23:55 - 2017-12-14 18:51 - 000438376 _____ () C:\Program Files (x86)\RivaTuner Statistics Server\RTSSHooks64.dll 2017-12-15 10:04 - 2017-12-15 10:04 - 000725288 _____ () C:\Program Files (x86)\MSI Afterburner\MSIAfterburner.exe 2017-10-18 22:51 - 2017-10-18 22:51 - 000598528 _____ () C:\Users\zwyro\AppData\Local\MEGAsync\ShellExtX64.dll 2018-03-14 07:43 - 2018-02-22 01:26 - 011044864 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll 2018-03-14 07:44 - 2018-02-22 01:21 - 001804288 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll 2017-07-12 13:22 - 2017-07-12 13:22 - 000015360 _____ () C:\Program Files\AMD\CNext\CNext\libEGL.DLL 2017-07-12 13:22 - 2017-07-12 13:22 - 002519040 _____ () C:\Program Files\AMD\CNext\CNext\libGLESv2.dll 2017-12-14 18:51 - 2017-12-14 18:51 - 000252008 _____ () C:\Program Files (x86)\RivaTuner Statistics Server\RTSS.exe 2017-12-14 18:51 - 2017-12-14 18:51 - 000035432 _____ () C:\Program Files (x86)\RivaTuner Statistics Server\EncoderServer.exe 2017-12-14 18:51 - 2017-12-14 18:51 - 000061032 _____ () C:\Program Files (x86)\RivaTuner Statistics Server\RTSSHooksLoader64.exe 2018-03-24 16:25 - 2018-02-05 15:44 - 002299168 _____ () C:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\SelfProtectionSdk.dll 2018-03-24 16:25 - 2018-03-01 11:31 - 002488608 _____ () C:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\MwacLib.dll 2017-12-14 18:56 - 2017-12-14 18:56 - 000357888 _____ () C:\Program Files (x86)\MSI Afterburner\RTUI.dll 2017-12-14 18:56 - 2017-12-14 18:56 - 000071680 _____ () C:\Program Files (x86)\MSI Afterburner\RTMUI.dll 2017-12-14 18:56 - 2017-12-14 18:56 - 000056832 _____ () C:\Program Files (x86)\MSI Afterburner\RTFC.dll 2017-12-14 18:56 - 2017-12-14 18:56 - 000232448 _____ () C:\Program Files (x86)\MSI Afterburner\RTCore.dll 2017-12-14 18:57 - 2017-12-14 18:57 - 000566784 _____ () C:\Program Files (x86)\MSI Afterburner\RTHAL.dll 2016-10-20 23:55 - 2017-12-14 18:51 - 000407144 _____ () C:\Program Files (x86)\RivaTuner Statistics Server\RTSSHooks.dll 2017-12-14 18:46 - 2017-12-14 18:46 - 000353792 _____ () C:\Program Files (x86)\RivaTuner Statistics Server\RTUI.dll 2017-12-14 18:46 - 2017-12-14 18:46 - 000071680 _____ () C:\Program Files (x86)\RivaTuner Statistics Server\RTMUI.dll 2017-12-14 18:46 - 2017-12-14 18:46 - 000055808 _____ () C:\Program Files (x86)\RivaTuner Statistics Server\RTFC.dll ==================== Alternate Data Streams (filtrowane) ========= (Załączenie wejścia w fixlist spowoduje usunięcie strumienia ADS.) ==================== Tryb awaryjny (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Wartość "AlternateShell" zostanie przywrócona.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service" ==================== Powiązania plików (filtrowane) =============== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci.) ==================== Internet Explorer - Witryny zaufane i z ograniczeniami =============== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru.) ==================== Hosts - zawartość: =============================== (Użycie dyrektywy Hosts: w fixlist spowoduje reset pliku Hosts.) 2015-10-30 08:24 - 2018-03-24 16:21 - 000000027 _____ C:\WINDOWS\system32\Drivers\etc\hosts 127.0.0.1 localhost ==================== Inne obszary ============================ (Obecnie brak automatycznej naprawy dla tej sekcji.) HKU\S-1-5-21-305178186-2251966430-3923819851-1001\Control Panel\Desktop\\Wallpaper -> F:\Pobrane\auto_dog_cabriolet_118053_5760x3840.jpg DNS Servers: 192.168.160.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: RequireAdmin) Zapora systemu Windows [funkcja włączona] ==================== MSCONFIG/TASK MANAGER - Wyłączone elementy == HKLM\...\StartupApproved\Run: => "Nowa wartość #1" HKLM\...\StartupApproved\Run32: => "Dropbox" ==================== Reguły Zapory systemu Windows (filtrowane) =============== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) FirewallRules: [{EAD9251F-B58C-4B6E-851A-A3E31EFE0A91}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe FirewallRules: [{AAC2DF18-7ADC-462A-A1C7-6B4D63E8B760}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe FirewallRules: [{0C91C21B-4102-4BD6-B09E-5438FEDD568A}] => (Allow) E:\Gry\Assassin's Creed Origins\ACOrigins.exe FirewallRules: [{1A7DF814-8271-44FC-804E-237892706D57}] => (Allow) E:\Gry\Assassin's Creed Origins\ACOrigins.exe FirewallRules: [{5DFE6F27-7D7A-4B22-9988-FBA6F33F207A}] => (Allow) LPort=26789 FirewallRules: [UDP Query User{70CC9B5B-59AB-4CBC-B835-3155AB178C87}E:\gry\assassin's creed iv black flag\ac4bfsp.exe] => (Allow) E:\gry\assassin's creed iv black flag\ac4bfsp.exe FirewallRules: [TCP Query User{B4781CC2-E635-420B-985C-208CBF8B276A}E:\gry\assassin's creed iv black flag\ac4bfsp.exe] => (Allow) E:\gry\assassin's creed iv black flag\ac4bfsp.exe FirewallRules: [UDP Query User{ABB8F286-34D9-49F5-8592-8CF92F5C1701}E:\gry\worms\frontend.exe] => (Allow) E:\gry\worms\frontend.exe FirewallRules: [TCP Query User{03B977CD-2B53-400B-9E7C-082723BA013E}E:\gry\worms\frontend.exe] => (Allow) E:\gry\worms\frontend.exe FirewallRules: [{B1BF307F-D31A-4E46-BAD2-B49B02C45B64}] => (Allow) E:\Gry\Steam\steamapps\common\Euro Truck Simulator 2\bin\win_x64\eurotrucks2.exe FirewallRules: [{F2FD13D0-E22C-47CB-AF27-A00C4B5D657E}] => (Allow) E:\Gry\Steam\steamapps\common\Euro Truck Simulator 2\bin\win_x64\eurotrucks2.exe FirewallRules: [{8136A06F-A7BE-46AB-A2FB-A497613D0AAD}] => (Allow) E:\Gry\Steam\steamapps\common\Euro Truck Simulator 2\bin\win_x86\eurotrucks2.exe FirewallRules: [{81194EF0-C0F3-401E-8391-DBCB0FB184B1}] => (Allow) E:\Gry\Steam\steamapps\common\Euro Truck Simulator 2\bin\win_x86\eurotrucks2.exe FirewallRules: [{811EB1B2-5D92-4B2A-8328-D873DB3A0F30}] => (Allow) E:\Gry\Steam\steamapps\common\Business Tour\BusinessTour.exe FirewallRules: [{143874DB-0E1B-4A78-B408-942E8352298B}] => (Allow) E:\Gry\Steam\steamapps\common\Business Tour\BusinessTour.exe FirewallRules: [UDP Query User{4704A65C-8513-48D3-9AFF-22548BB14E62}E:\gry\rockstar games\grand theft auto v\gta5.exe] => (Allow) E:\gry\rockstar games\grand theft auto v\gta5.exe FirewallRules: [TCP Query User{77B552EF-521E-4827-A2C6-E88EE861B79C}E:\gry\rockstar games\grand theft auto v\gta5.exe] => (Allow) E:\gry\rockstar games\grand theft auto v\gta5.exe FirewallRules: [{41091969-534E-4599-9F00-CE8D067B0043}] => (Allow) C:\Users\zwyro\AppData\Roaming\BitTorrent\BitTorrent.exe FirewallRules: [{111E5FCA-CC11-446A-AC8F-2B1D4F1619E0}] => (Allow) C:\Users\zwyro\AppData\Roaming\BitTorrent\BitTorrent.exe FirewallRules: [{0B0083A1-CF51-4984-9E8B-B535A148D6F5}] => (Allow) C:\Users\zwyro\AppData\Roaming\BitTorrent\BitTorrent.exe FirewallRules: [{9BBB4A92-C65C-4A96-A37D-1E52BC0A99C1}] => (Allow) C:\Users\zwyro\AppData\Roaming\BitTorrent\BitTorrent.exe FirewallRules: [{6B60F944-DB55-4558-B079-0D48A5477FA3}] => (Allow) C:\Users\zwyro\AppData\Roaming\BitTorrent\BitTorrent.exe FirewallRules: [{F4225F05-913A-4DC2-98C9-E27EE4D36187}] => (Allow) C:\Users\zwyro\AppData\Roaming\BitTorrent\BitTorrent.exe FirewallRules: [{4C89F59C-F45F-48A6-B204-82AF34217A71}] => (Allow) E:\Gry\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe FirewallRules: [{49453FC8-E496-4DA5-B572-118D0BB72940}] => (Allow) E:\Gry\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe FirewallRules: [{271119E1-6AC9-4B87-8824-1C4789D541F4}] => (Allow) E:\Gry\Steam\Steam.exe FirewallRules: [{60DFABC1-49C4-4DD1-B139-2A92A6CBEEF1}] => (Allow) E:\Gry\Steam\Steam.exe FirewallRules: [{921C950B-C249-454B-8F8F-75401B5B8B64}] => (Allow) E:\Program Files (x86)\Origin Games\Battlefield 1\bf1Trial.exe FirewallRules: [{FDEEF985-0301-4491-B2C3-526B49FE4022}] => (Allow) E:\Program Files (x86)\Origin Games\Battlefield 1\bf1Trial.exe FirewallRules: [{B47F0B34-C6E5-4E54-8AB4-392A81FA6E55}] => (Allow) E:\Program Files (x86)\Origin Games\Battlefield 1\bf1.exe FirewallRules: [{DAF640B7-F0C8-49E1-98DA-7C965C19DD9F}] => (Allow) E:\Program Files (x86)\Origin Games\Battlefield 1\bf1.exe FirewallRules: [{8B70B1F4-D0A7-4CDC-B5AA-32753DD1B9AE}] => (Allow) E:\Gry\Steam\bin\cef\cef.win7\steamwebhelper.exe FirewallRules: [{AEA5DA7D-49FF-48B0-A72D-95D0E96269F0}] => (Allow) E:\Gry\Steam\bin\cef\cef.win7\steamwebhelper.exe FirewallRules: [{B8A2FE05-4979-4768-873E-791EC78A8EF9}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\Lync.exe FirewallRules: [{16284402-4AA5-4DA3-84AB-39A0AF253F2B}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\Lync.exe FirewallRules: [{003024E4-C76A-411D-88AD-5E96FA3E64D1}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\UcMapi.exe FirewallRules: [{F325F69C-ABAC-4D44-9D96-8F8B4B618CDA}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\UcMapi.exe FirewallRules: [TCP Query User{29F41FDC-5729-4930-81FB-6FB5604678E3}C:\users\zwyro\rp\server\grandtheftmultiplayer.server.exe] => (Allow) C:\users\zwyro\rp\server\grandtheftmultiplayer.server.exe FirewallRules: [UDP Query User{231CF137-B21E-4973-A943-055E29A7B139}C:\users\zwyro\rp\server\grandtheftmultiplayer.server.exe] => (Allow) C:\users\zwyro\rp\server\grandtheftmultiplayer.server.exe FirewallRules: [{76846432-9902-4FCB-9BB5-2800D6819A65}] => (Allow) C:\Users\zwyro\rp\GrandTheftMultiplayer.Launcher.exe FirewallRules: [{DB6E3F6C-2ACB-4CCE-9D31-360615CDE8D3}] => (Allow) C:\Users\zwyro\rp\GrandTheftMultiplayer.Launcher.exe FirewallRules: [{30334B84-ECEF-4C8B-95F6-058B319B6920}] => (Allow) C:\Users\zwyro\rp\GrandTheftMultiplayer.Launcher.exe FirewallRules: [{D2451644-C64A-428E-BEBB-E3275B0A71E2}] => (Allow) C:\Users\zwyro\rp\GrandTheftMultiplayer.Launcher.exe FirewallRules: [TCP Query User{DAE8159C-5EFB-4A2A-82CC-D05B9BCAF15A}C:\users\zwyro\appdata\local\fivem\fivem.exe] => (Allow) C:\users\zwyro\appdata\local\fivem\fivem.exe FirewallRules: [UDP Query User{5DF3049D-69F0-410F-9896-C15D514B8223}C:\users\zwyro\appdata\local\fivem\fivem.exe] => (Allow) C:\users\zwyro\appdata\local\fivem\fivem.exe FirewallRules: [{057EB204-21C2-42FC-9DFC-D49A11D24C1C}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\outlook.exe FirewallRules: [{8218E866-39BB-4DFF-BB2B-C45B5B9551B3}] => (Allow) E:\Gry\Steam\steamapps\common\Euro Truck Simulator 2\bin\win_x64\eurotrucks2.exe FirewallRules: [{CE48181B-692D-4384-9CA6-9906585C5450}] => (Allow) E:\Gry\Steam\steamapps\common\Euro Truck Simulator 2\bin\win_x64\eurotrucks2.exe FirewallRules: [{1BEFE570-4269-4364-B7D3-F846E2919456}] => (Allow) E:\Gry\Steam\steamapps\common\Euro Truck Simulator 2\bin\win_x86\eurotrucks2.exe FirewallRules: [{0CE5B7D2-CCD3-4A3F-AD0E-F6245B8A2CBF}] => (Allow) E:\Gry\Steam\steamapps\common\Euro Truck Simulator 2\bin\win_x86\eurotrucks2.exe FirewallRules: [TCP Query User{549E0F95-BA9E-4037-AA7D-EB032B325246}C:\users\zwyro\appdata\local\thug pro\thugpro.exe] => (Allow) C:\users\zwyro\appdata\local\thug pro\thugpro.exe FirewallRules: [UDP Query User{441EE786-A663-4A56-A9DB-343B8A19B0A7}C:\users\zwyro\appdata\local\thug pro\thugpro.exe] => (Allow) C:\users\zwyro\appdata\local\thug pro\thugpro.exe FirewallRules: [{C407F31E-8ECA-4A79-98C4-A91496C47E77}] => (Allow) F:\Gry\NFS Payback\NeedForSpeedPaybackTrial.exe FirewallRules: [{F01F9E68-17C5-46A9-9157-1EBEC228C7BC}] => (Allow) F:\Gry\NFS Payback\NeedForSpeedPaybackTrial.exe FirewallRules: [{D26CBD01-0E26-4670-80B1-AC1DBE1CE87F}] => (Allow) F:\Gry\NFS Payback\NeedForSpeedPayback.exe FirewallRules: [{E26EEB48-D2A6-4FAA-886C-A85175F4D52D}] => (Allow) F:\Gry\NFS Payback\NeedForSpeedPayback.exe ==================== Punkty Przywracania systemu ========================= UWAGA: Przywracanie systemu jest wyłączone ==================== Wadliwe urządzenia w Menedżerze urządzeń ============= ==================== Błędy w Dzienniku zdarzeń: ========================= Dziennik Aplikacja: ================== Dziennik System: ============= Error: (03/24/2018 04:24:25 PM) (Source: DCOM) (EventID: 10016) (User: ZARZĄDZANIE NT) Description: Zgodnie z ustawieniami uprawnienia właściwe dla aplikacji nie jest udzielane uprawnienie Lokalny Aktywacja do aplikacji serwera COM z identyfikatorem klasy CLSID {D63B10C5-BB46-4990-A94F-E40B9D520160} i identyfikatorem aplikacji APPID {9CA88EE3-ACB7-47C8-AFC4-AB702511C276} użytkownikowi ZARZĄDZANIE NT\USŁUGA LOKALNA o identyfikatorze zabezpieczeń SID (S-1-5-19) z adresu LocalHost (użycie LRPC) działającemu w kontenerze aplikacji o identyfikatorze SID Niedostępny (Niedostępny). To uprawnienie zabezpieczeń można modyfikować przy użyciu narzędzia administracyjnego Usługi składowe. Error: (03/24/2018 04:23:55 PM) (Source: DCOM) (EventID: 10016) (User: ZARZĄDZANIE NT) Description: Zgodnie z ustawieniami uprawnienia właściwe dla aplikacji nie jest udzielane uprawnienie Lokalny Aktywacja do aplikacji serwera COM z identyfikatorem klasy CLSID {6B3B8D23-FA8D-40B9-8DBD-B950333E2C52} i identyfikatorem aplikacji APPID {4839DDB7-58C2-48F5-8283-E1D1807D0D7D} użytkownikowi ZARZĄDZANIE NT\USŁUGA LOKALNA o identyfikatorze zabezpieczeń SID (S-1-5-19) z adresu LocalHost (użycie LRPC) działającemu w kontenerze aplikacji o identyfikatorze SID Niedostępny (Niedostępny). To uprawnienie zabezpieczeń można modyfikować przy użyciu narzędzia administracyjnego Usługi składowe. Error: (03/24/2018 04:23:55 PM) (Source: DCOM) (EventID: 10016) (User: ZARZĄDZANIE NT) Description: Zgodnie z ustawieniami uprawnienia właściwe dla aplikacji nie jest udzielane uprawnienie Lokalny Aktywacja do aplikacji serwera COM z identyfikatorem klasy CLSID {6B3B8D23-FA8D-40B9-8DBD-B950333E2C52} i identyfikatorem aplikacji APPID {4839DDB7-58C2-48F5-8283-E1D1807D0D7D} użytkownikowi ZARZĄDZANIE NT\USŁUGA LOKALNA o identyfikatorze zabezpieczeń SID (S-1-5-19) z adresu LocalHost (użycie LRPC) działającemu w kontenerze aplikacji o identyfikatorze SID Niedostępny (Niedostępny). To uprawnienie zabezpieczeń można modyfikować przy użyciu narzędzia administracyjnego Usługi składowe. Error: (03/24/2018 04:23:55 PM) (Source: DCOM) (EventID: 10016) (User: ZARZĄDZANIE NT) Description: Zgodnie z ustawieniami uprawnienia właściwe dla aplikacji nie jest udzielane uprawnienie Lokalny Aktywacja do aplikacji serwera COM z identyfikatorem klasy CLSID {6B3B8D23-FA8D-40B9-8DBD-B950333E2C52} i identyfikatorem aplikacji APPID {4839DDB7-58C2-48F5-8283-E1D1807D0D7D} użytkownikowi ZARZĄDZANIE NT\USŁUGA LOKALNA o identyfikatorze zabezpieczeń SID (S-1-5-19) z adresu LocalHost (użycie LRPC) działającemu w kontenerze aplikacji o identyfikatorze SID Niedostępny (Niedostępny). To uprawnienie zabezpieczeń można modyfikować przy użyciu narzędzia administracyjnego Usługi składowe. Error: (03/24/2018 04:23:55 PM) (Source: DCOM) (EventID: 10016) (User: ZARZĄDZANIE NT) Description: Zgodnie z ustawieniami uprawnienia właściwe dla aplikacji nie jest udzielane uprawnienie Lokalny Aktywacja do aplikacji serwera COM z identyfikatorem klasy CLSID {6B3B8D23-FA8D-40B9-8DBD-B950333E2C52} i identyfikatorem aplikacji APPID {4839DDB7-58C2-48F5-8283-E1D1807D0D7D} użytkownikowi ZARZĄDZANIE NT\USŁUGA LOKALNA o identyfikatorze zabezpieczeń SID (S-1-5-19) z adresu LocalHost (użycie LRPC) działającemu w kontenerze aplikacji o identyfikatorze SID Niedostępny (Niedostępny). To uprawnienie zabezpieczeń można modyfikować przy użyciu narzędzia administracyjnego Usługi składowe. Error: (03/24/2018 04:23:52 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Usługa VMware NAT Service niespodziewanie zakończyła pracę. Wystąpiło to razy: 3. Error: (03/24/2018 04:23:51 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Usługa VMware NAT Service niespodziewanie zakończyła pracę. Wystąpiło to razy: 2. W przeciągu 1000 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie. Error: (03/24/2018 04:23:50 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Usługa VMware NAT Service niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 1000 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie. ==================== Statystyki pamięci =========================== Procesor: Intel(R) Core(TM) i7-4700MQ CPU @ 2.40GHz Procent pamięci w użyciu: 18% Całkowita pamięć fizyczna: 12086.36 MB Dostępna pamięć fizyczna: 9840.06 MB Całkowita pamięć wirtualna: 12486.36 MB Dostępna pamięć wirtualna: 10050.72 MB ==================== Dyski ================================ Drive c: () (Fixed) (Total:99.31 GB) (Free:54.83 GB) NTFS ==>[dysk z komponentami startowymi (pozyskano odczytując BCD)] Drive e: () (Fixed) (Total:415.54 GB) (Free:133.67 GB) NTFS Drive f: () (Fixed) (Total:415.54 GB) (Free:334.27 GB) NTFS \\?\Volume{0000f71a-0000-0000-0000-e0e918000000}\ () (Fixed) (Total:0.79 GB) (Free:0.34 GB) NTFS ==================== MBR & Tablica partycji ================== ======================================================== Disk: 0 (MBR Code: Windows 7/8/10) (Size: 931.5 GB) (Disk ID: 0000F71A) Partition 1: (Active) - (Size=99.3 GB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=804 MB) - (Type=27) Partition 3: (Not Active) - (Size=415.5 GB) - (Type=07 NTFS) Partition 4: (Not Active) - (Size=415.5 GB) - (Type=07 NTFS) ==================== Koniec Addition.txt ============================