Rezultaty skanu uzupełniającego Farbar Recovery Scan Tool (x64) Wersja: 25.04.2018 Uruchomiony przez Pawel (02-05-2018 20:05:49) Uruchomiony z D:\tymczPobrane Windows 7 Professional Service Pack 1 (X64) (2017-08-06 17:02:46) Tryb startu: Normal ========================================================== ==================== Konta użytkowników: ============================= Administrator (S-1-5-21-1567912308-2690112094-1903780900-500 - Administrator - Disabled) Gość (S-1-5-21-1567912308-2690112094-1903780900-501 - Limited - Disabled) Pawel (S-1-5-21-1567912308-2690112094-1903780900-1000 - Administrator - Enabled) => C:\Users\Pawel ==================== Centrum zabezpieczeń ======================== (Załączenie wejścia w fixlist spowoduje jego usunięcie.) AV: Bitdefender Ochrona antywirusowa (Enabled - Up to date) {3FB17364-4FCC-0FA7-6BBF-973897395371} AS: Bitdefender Moduł antyszpiegowski (Enabled - Up to date) {84D09280-69F6-0029-510F-AC4AECBE19CC} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} FW: Bitdefender Zapora Sieciowa (Enabled) {078AF241-05A3-0EFF-40E0-3E0D69EA140A} ==================== Zainstalowane programy ====================== (W fixlist dozwolone tylko załączanie programów adware z flagą "Hidden" w celu ich uwidocznienia. Programy adware powinny zostać w poprawny sposób odinstalowane.) 7-Zip 16.04 (x64) (HKLM\...\7-Zip) (Version: 16.04 - Igor Pavlov) Adobe Acrobat Reader DC - Polish (HKLM-x32\...\{AC76BA86-7AD7-1045-7B44-AC0F074E4100}) (Version: 18.011.20038 - Adobe Systems Incorporated) Adobe Creative Cloud (HKLM-x32\...\Adobe Creative Cloud) (Version: 4.1.1.202 - Adobe Systems Incorporated) Adobe Flash Player 27 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 27.0.0.183 - Adobe Systems Incorporated) Adobe Flash Player 29 PPAPI (HKLM-x32\...\Adobe Flash Player PPAPI) (Version: 29.0.0.140 - Adobe Systems Incorporated) Adobe Photoshop CC 2015 (HKLM-x32\...\{793C2BF7-A4FE-4608-91C9-9282C5801C21}) (Version: 16.0 - Adobe Systems Incorporated) ALLPlayer Pilot (HKLM-x32\...\{146BDBDD-ACD9-4B04-A286-C27471841E8E}_is1) (Version: 2.0 - ALLPlayer Group, Ltd.) ALLPlayer V7.X (HKLM-x32\...\ALLPlayer_is1) (Version: - ALLPlayer Group, Ltd.) Bitdefender Agent (HKLM\...\Bitdefender Agent) (Version: 22.0.10.78 - Bitdefender) Bitdefender Device Management (HKLM\...\Bitdefender Device Management) (Version: 22.0.18.224 - Bitdefender) Bitdefender Total Security (HKLM\...\Bitdefender) (Version: 22.0.19.242 - Bitdefender) Bitdefender VPN (HKLM\...\Bitdefender VPN) (Version: 22.0.7.517 - Bitdefender) BitTorrent (HKU\S-1-5-21-1567912308-2690112094-1903780900-1000\...\BitTorrent) (Version: 7.10.0.43917 - BitTorrent Inc.) Brackets (HKLM-x32\...\{73C9B88C-61DF-4DC1-9F38-8FBB2AF45816}) (Version: 1.12.1 - brackets.io) CCleaner (HKLM\...\CCleaner) (Version: 5.35 - Piriform) CodeBlocks (HKU\S-1-5-21-1567912308-2690112094-1903780900-1000\...\CodeBlocks) (Version: 17.12 - The Code::Blocks Team) Core Temp 1.11 (HKLM\...\{086D343F-8E78-4AFC-81AC-D6D414AFD8AC}_is1) (Version: 1.11 - ALCPU) CPUID CPU-Z 1.80.1 (HKLM\...\CPUID CPU-Z_is1) (Version: 1.80.1 - ) <==== UWAGA CPUID HWMonitor 1.32 (HKLM\...\CPUID HWMonitor_is1) (Version: 1.32 - ) CrystalDiskInfo 7.1.1 (HKLM-x32\...\CrystalDiskInfo_is1) (Version: 7.1.1 - Crystal Dew World) CrystalDiskMark 5.2.2 (HKLM\...\CrystalDiskMark5_is1) (Version: 5.2.2 - Crystal Dew World) DAEMON Tools Lite (HKLM\...\DAEMON Tools Lite) (Version: 10.8.0.0410 - Disc Soft Ltd) Discord (HKU\S-1-5-21-1567912308-2690112094-1903780900-1000\...\Discord) (Version: 0.0.300 - Discord Inc.) Free ZIP Password Recovery (HKLM-x32\...\{0FF0F5C8-76CA-4520-9FD2-C989E12AA4BE}) (Version: 3.70.69 - KRyLack Software) Geekbench 4 (HKLM-x32\...\Geekbench 4) (Version: - Primate Labs Inc.) GIMP 2.8.22 (HKLM\...\GIMP-2_is1) (Version: 2.8.22 - The GIMP Team) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 66.0.3359.139 - Google Inc.) Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.33.7 - Google Inc.) Hidden Gyazo 3.3.5 (HKLM-x32\...\{6DB8C365-E719-4BA5-9594-10DFC244D3FD}_is1) (Version: - Nota Inc.) HD Tune 2.55 (HKLM-x32\...\HD Tune_is1) (Version: - EFD Software) HitmanPro 3.8 (HKLM\...\HitmanPro38) (Version: 3.8.0.292 - SurfRight B.V.) Java 8 Update 151 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F64180151F0}) (Version: 8.0.1510.12 - Oracle Corporation) Malwarebytes (wersja 3.3.1.2183) (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 3.3.1.2183 - Malwarebytes) Microsoft .NET Framework 4.5.2 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.51209 - Microsoft Corporation) Microsoft .NET Framework 4.5.2 (Polski) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1045) (Version: 4.5.51209 - Microsoft Corporation) Microsoft Access 2010 (HKLM-x32\...\Office14.Access) (Version: 14.0.4763.1000 - Microsoft Corporation) Microsoft Excel 2010 (HKLM-x32\...\Office14.EXCEL) (Version: 14.0.4763.1000 - Microsoft Corporation) Microsoft Office Language Pack 2010 - Polish/Polski (HKLM-x32\...\Office14.OMUI.pl-pl) (Version: 14.0.4763.1000 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24215 (HKLM-x32\...\{d992c12e-cab2-426f-bde3-fb8c53950b0d}) (Version: 14.0.24215.1 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.23918 (HKLM-x32\...\{2e085fd2-a3e4-4b39-8e10-6b8d35f55244}) (Version: 14.0.23918.0 - Microsoft Corporation) Mozilla Firefox 59.0.2 (x64 en-US) (HKLM\...\Mozilla Firefox 59.0.2 (x64 en-US)) (Version: 59.0.2 - Mozilla) Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 58.0.2 - Mozilla) MPC-HC 1.7.13 (64-bit) (HKLM\...\{2ACBF1FA-F5C3-4B19-A774-B22A31F231B9}_is1) (Version: 1.7.13 - MPC-HC Team) MSI Afterburner 4.3.0 (HKLM-x32\...\Afterburner) (Version: 4.3.0 - MSI Co., LTD) Napisy24 (HKLM-x32\...\{D1985DBC-F09E-4317-91B8-932AD0FD4A27}_is1) (Version: 1.9.2 - Napisy24.pl) NetBeans IDE 8.2 (HKLM\...\nbi-nb-base-8.2.0.0.201609300101) (Version: 8.2 - NetBeans.org) Network Notepad 4.6.9 (HKLM-x32\...\Netnotep_is1) (Version: - Jason Green) Notepad++ (64-bit x64) (HKLM\...\Notepad++) (Version: 7.5.1 - Notepad++ Team) NVIDIA Oprogramowanie systemu PhysX 9.13.1220 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.13.1220 - NVIDIA Corporation) NVIDIA Sterownik 3D Vision 342.01 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 342.01 - NVIDIA Corporation) NVIDIA Sterownik graficzny 342.01 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 342.01 - NVIDIA Corporation) NVIDIA Sterownik kontrolera 3D Vision 340.50 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 340.50 - NVIDIA Corporation) OBS Studio (HKLM-x32\...\OBS Studio) (Version: 20.1.3 - OBS Project) OpenOffice 4.1.4 (HKLM-x32\...\{BA41785F-1DB1-4CEA-830A-149E940786B8}) (Version: 4.14.9788 - Apache Software Foundation) Opera Stable 52.0.2871.64 (HKU\S-1-5-21-1567912308-2690112094-1903780900-1000\...\Opera 52.0.2871.64) (Version: 52.0.2871.64 - Opera Software) Panel sterowania NVIDIA 342.01 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel) (Version: 342.01 - NVIDIA Corporation) Hidden PerformanceTest v9.0 (HKLM\...\PerformanceTest 9_is1) (Version: 9.0.1017.0 - Passmark Software) Picasa 3 (HKLM-x32\...\Picasa 3) (Version: 3.9.141.259 - Google, Inc.) Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.31.1025.2010 - Realtek) Renesas Electronics USB 3.0 Host Controller Driver (HKLM-x32\...\{5442DAB8-7177-49E1-8B22-09A049EA5996}) (Version: 2.0.4.0 - Renesas Electronics Corporation) Hidden Renesas Electronics USB 3.0 Host Controller Driver (HKLM-x32\...\InstallShield_{5442DAB8-7177-49E1-8B22-09A049EA5996}) (Version: 2.0.4.0 - Renesas Electronics Corporation) SpeedSim (HKLM-x32\...\SpeedSim) (Version: 0.9.8.1b - ) TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.1.6 - TeamSpeak Systems GmbH) VDownloader 4.5.2902 (HKLM\...\{A7E19604-93AF-4611-8C9F-CE509C2B286E}_is1) (Version: - Vitzo Limited) WinHTTrack Website Copier 3.49-2 (HKLM-x32\...\WinHTTrack Website Copier_is1) (Version: 3.49.2 - HTTrack) WinPcap 4.1.3 (HKLM-x32\...\WinPcapInst) (Version: 4.1.0.2980 - Riverbed Technology, Inc.) XAMPP (HKLM-x32\...\xampp) (Version: 7.1.8-0 - Bitnami) ==================== Niestandardowe rejestracje CLSID (filtrowane): ========================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) CustomCLSID: HKU\S-1-5-21-1567912308-2690112094-1903780900-1000_Classes\CLSID\{1F011758-AB68-E5D0-9A91-FDE665953E08}\InprocServer32 -> Brak ścieżki do pliku CustomCLSID: HKU\S-1-5-21-1567912308-2690112094-1903780900-1000_Classes\CLSID\{1F338211-B6BA-D225-C9AC-267C4CC7DF7B}\InprocServer32 -> Brak ścieżki do pliku CustomCLSID: HKU\S-1-5-21-1567912308-2690112094-1903780900-1000_Classes\CLSID\{1F4E6727-87BD-B957-B8D7-605E4F6D84D2}\InprocServer32 -> Brak ścieżki do pliku CustomCLSID: HKU\S-1-5-21-1567912308-2690112094-1903780900-1000_Classes\CLSID\{1FFC5A32-FE8D-8FE8-56D9-D091130E75CC}\InprocServer32 -> Brak ścieżki do pliku CustomCLSID: HKU\S-1-5-21-1567912308-2690112094-1903780900-1000_Classes\CLSID\{2E011758-AB68-E5D0-9A91-FDE665953E08}\InprocServer32 -> Brak ścieżki do pliku CustomCLSID: HKU\S-1-5-21-1567912308-2690112094-1903780900-1000_Classes\CLSID\{2E338211-B6BA-D225-C9AC-267C4CC7DF7B}\InprocServer32 -> Brak ścieżki do pliku CustomCLSID: HKU\S-1-5-21-1567912308-2690112094-1903780900-1000_Classes\CLSID\{2E4E6727-87BD-B957-B8D7-605E4F6D84D2}\InprocServer32 -> Brak ścieżki do pliku CustomCLSID: HKU\S-1-5-21-1567912308-2690112094-1903780900-1000_Classes\CLSID\{2EFC5A32-FE8D-8FE8-56D9-D091130E75CC}\InprocServer32 -> Brak ścieżki do pliku CustomCLSID: HKU\S-1-5-21-1567912308-2690112094-1903780900-1000_Classes\CLSID\{e8c77137-e224-5791-b6e9-ff0305797a13}\InprocServer32 -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll (Adobe Systems) ShellIconOverlayIdentifiers: [ AccExtIco1] -> {AB9CF9F8-8A96-4F9D-BF21-CE85714C3A47} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll [2017-05-26] () ShellIconOverlayIdentifiers: [ AccExtIco2] -> {853B7E05-C47D-4985-909A-D0DC5C6D7303} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll [2017-05-26] () ShellIconOverlayIdentifiers: [ AccExtIco3] -> {42D38F2E-98E9-4382-B546-E24E4D6D04BB} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll [2017-05-26] () ShellIconOverlayIdentifiers: [ AccExtIco3Ex] -> {1F4E6727-87BD-B957-B8D7-605E4F6D84D2} => C:\Users\Administrator\AppData\Roaming\Microsoft\WordCount.dll [2017-09-18] () ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2016-10-04] (Igor Pavlov) ContextMenuHandlers1: [AccExt] -> {2A118EB5-5797-4F5E-8B3D-F4ECBA3C98E4} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll [2017-05-26] () ContextMenuHandlers1: [ANotepad++64] -> {B298D29A-A6ED-11DE-BA8C-A68E55D89593} => C:\Program Files\Notepad++\NppShell_06.dll [2017-08-29] () ContextMenuHandlers2: [DaemonShellExtDriveLite] -> {C06369D6-E77D-4626-9656-1256312BD576} => C:\Program Files\DAEMON Tools Lite\DTShl64.dll [2018-04-03] (Disc Soft Ltd) ContextMenuHandlers3: [DaemonShellExtImageLite] -> {1D1B5D7B-0FC9-452E-902C-12BACD4FBC20} => C:\Program Files\DAEMON Tools Lite\DTShl64.dll [2018-04-03] (Disc Soft Ltd) ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2017-11-01] (Malwarebytes) ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2016-10-04] (Igor Pavlov) ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\Windows\system32\nvshext.dll [2016-11-14] (NVIDIA Corporation) ContextMenuHandlers6: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2016-10-04] (Igor Pavlov) ContextMenuHandlers6: [AccExt] -> {2A118EB5-5797-4F5E-8B3D-F4ECBA3C98E4} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll [2017-05-26] () ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2017-11-01] (Malwarebytes) ==================== Zaplanowane zadania (filtrowane) ============= (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) Task: {024D6335-4C7F-43F5-9A18-54DB0FE2B48C} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2018-02-09] (Adobe Systems Incorporated) Task: {100F7A0A-EA2D-45BB-8D25-44E12981C87C} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2018-04-29] (Google Inc.) Task: {15F99FB3-85A8-422F-B9DB-4E555344C4EF} - System32\Tasks\Opera scheduled Autoupdate 1502109669 => C:\Users\Pawel\AppData\Local\Programs\Opera\launcher.exe [2018-04-10] (Opera Software) Task: {3C62944C-7B7C-4132-8327-229B3A151E1B} - System32\Tasks\Core Temp Autostart Pawel => C:\Program Files\Core Temp\Core Temp.exe [2017-11-04] (ALCPU) Task: {4E968B68-FFA2-415B-8433-C0CFA89C9906} - System32\Tasks\GyazoUpdateTaskMachine => C:\Program Files (x86)\Gyazo\GyazoUpdate.exe [2017-12-21] (Nota Inc.) Task: {51B5AEA4-B1CD-47D8-AB42-D86162EF417B} - System32\Tasks\Bitdefender Agent WatchDog_65D6944A0EF74FDAB96E31112AD39864 => C:\Program Files\Bitdefender Agent\WatchDog.exe [2018-01-19] (Bitdefender) Task: {59C91F45-7870-4DB3-896B-F13312F545A4} - System32\Tasks\AdobeAAMUpdater-1.0-Pawel-Windows7-Pawel => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2016-07-01] (Adobe Systems Incorporated) Task: {5C39B2D0-AC19-4673-A293-5FE55F995E32} - System32\Tasks\GyazoUpdateTaskMachineDaily => C:\Program Files (x86)\Gyazo\GyazoUpdate.exe [2017-12-21] (Nota Inc.) Task: {6E813A58-C2A9-4671-8561-C482E5D972D6} - \xAJtibBVd5sR -> Brak pliku <==== UWAGA Task: {7BB337FC-C7D6-47FF-AFA9-24E7F822FE50} - System32\Tasks\Adobe Flash Player PPAPI Notifier => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_29_0_0_140_pepper.exe [2018-04-14] (Adobe Systems Incorporated) Task: {7DCE1723-1407-4F91-B638-9DE874F8E67E} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner64.exe [2017-09-20] (Piriform Ltd) Task: {8CB7FCBE-4D97-434D-BB8D-BD442A08DC25} - System32\Tasks\MSIAfterburner => C:\Program Files (x86)\MSI Afterburner\MSIAfterburner.exe [2016-10-24] () Task: {F72490B1-BD8E-43E8-98D9-1EDF5E77E8BF} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2018-04-29] (Google Inc.) Task: {F866F46B-D352-404C-9C5E-C2C57D0A37BE} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2018-04-14] (Adobe Systems Incorporated) (Załączenie wejścia w fixlist spowoduje przesunięcie pliku zadania (.job). Plik uruchamiany docelowo przez zadanie nie zostanie przeniesiony.) ==================== Skróty & WMI ======================== (Wybrane wejścia mogą zostać załączone w celu ich zresetowania lub usunięcia.) ==================== Załadowane moduły (filtrowane) ============== 2018-04-19 00:54 - 2017-02-07 13:34 - 001008448 _____ () C:\Program Files\Bitdefender\Bitdefender Security\otengines_001_001\ashttpbr.mdl 2018-04-19 00:54 - 2017-02-07 13:34 - 000541952 _____ () C:\Program Files\Bitdefender\Bitdefender Security\otengines_001_001\ashttpdsp.mdl 2018-04-19 00:54 - 2017-02-07 13:34 - 003243920 _____ () C:\Program Files\Bitdefender\Bitdefender Security\otengines_001_001\ashttpph.mdl 2018-04-19 00:54 - 2017-02-07 13:34 - 001544568 _____ () C:\Program Files\Bitdefender\Bitdefender Security\otengines_001_001\ashttprbl.mdl 2017-08-07 01:34 - 2016-11-14 13:15 - 000135224 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll 2016-10-24 12:03 - 2016-10-24 12:03 - 000589512 _____ () C:\Program Files (x86)\MSI Afterburner\MSIAfterburner.exe 2017-05-26 03:18 - 2017-05-26 03:18 - 000492112 _____ () C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll 2017-09-18 12:40 - 2017-09-18 12:40 - 012431360 _____ () C:\Users\Administrator\AppData\Roaming\Microsoft\WordCount.dll 2018-04-29 18:34 - 2018-04-26 05:14 - 004443992 _____ () C:\Program Files (x86)\Google\Chrome\Application\66.0.3359.139\libglesv2.dll 2018-04-29 18:34 - 2018-04-26 05:14 - 000099672 _____ () C:\Program Files (x86)\Google\Chrome\Application\66.0.3359.139\libegl.dll 2018-02-05 22:26 - 2018-02-05 22:26 - 000076456 _____ () C:\Program Files\FileZilla FTP Client\fzshellext_64.dll 2016-10-10 18:46 - 2016-10-10 18:46 - 000071680 _____ () C:\Program Files (x86)\MSI Afterburner\RTMUI.dll 2016-10-10 18:46 - 2016-10-10 18:46 - 000056832 _____ () C:\Program Files (x86)\MSI Afterburner\RTFC.dll 2016-10-10 18:46 - 2016-10-10 18:46 - 000228864 _____ () C:\Program Files (x86)\MSI Afterburner\RTCore.dll 2016-10-10 18:46 - 2016-10-10 18:46 - 000357888 _____ () C:\Program Files (x86)\MSI Afterburner\RTUI.dll 2016-10-10 18:46 - 2016-10-10 18:46 - 000526848 _____ () C:\Program Files (x86)\MSI Afterburner\RTHAL.dll 2018-02-02 14:57 - 2018-02-02 14:57 - 048943560 _____ () C:\Program Files (x86)\Brackets\libcef.dll ==================== Alternate Data Streams (filtrowane) ========= (Załączenie wejścia w fixlist spowoduje usunięcie strumienia ADS.) AlternateDataStreams: C:\Users\Pawel\Documents\Projekt3.exe:BDU [1] ==================== Tryb awaryjny (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Wartość "AlternateShell" zostanie przywrócona.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service" ==================== Powiązania plików (filtrowane) =============== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci.) ==================== Internet Explorer - Witryny zaufane i z ograniczeniami =============== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru.) ==================== Hosts - zawartość: ========================== (Użycie dyrektywy Hosts: w fixlist spowoduje reset pliku Hosts.) 2009-07-14 04:34 - 2018-05-02 19:07 - 000001027 _____ C:\Windows\system32\Drivers\etc\hosts 127.0.0.1 lmlicenses.wip4.adobe.com 127.0.0.1 lm.licenses.adobe.com 127.0.0.1 na1r.services.adobe.com 127.0.0.1 hlrcv.stage.adobe.com 127.0.0.1 practivate.adobe.com 127.0.0.1 activate.adobe.com ==================== Inne obszary ============================ (Obecnie brak automatycznej naprawy dla tej sekcji.) HKU\S-1-5-21-1567912308-2690112094-1903780900-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\Pawel\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg DNS Servers: 8.8.8.8 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Zapora systemu Windows [funkcja włączona] ==================== MSCONFIG/TASK MANAGER - Wyłączone elementy == MSCONFIG\Services: AdobeARMservice => 2 MSCONFIG\Services: AdobeFlashPlayerUpdateSvc => 3 MSCONFIG\Services: AdobeUpdateService => 2 MSCONFIG\Services: AGSService => 2 MSCONFIG\startupfolder: C:^Users^Pawel^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Rainmeter.lnk => C:\Windows\pss\Rainmeter.lnk.Startup MSCONFIG\startupreg: Adobe ARM => "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" MSCONFIG\startupreg: Adobe Creative Cloud => "C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe" --showwindow=false --onOSstartup=true MSCONFIG\startupreg: AdobeAAMUpdater-1.0 => "C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe" MSCONFIG\startupreg: ALLPlayer WiFi Remote => C:\Program Files (x86)\ALLPlayer Remote\ALLPlayerRemoteControl.exe MSCONFIG\startupreg: ALLUpdate => "C:\Program Files (x86)\ALLPlayer\ALLUpdate.exe" "sleep" MSCONFIG\startupreg: BitTorrent => "C:\Users\Pawel\AppData\Roaming\BitTorrent\BitTorrent.exe" /MINIMIZED MSCONFIG\startupreg: CCleaner Monitoring => "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR MSCONFIG\startupreg: Gyazo => C:\Program Files (x86)\Gyazo\GyStation.exe MSCONFIG\startupreg: Napisy24.pl => "C:\Program Files (x86)\Napisy24\Napisy24.exe" AutoStart MSCONFIG\startupreg: Napisy24Update => "C:\Program Files (x86)\Napisy24\Napisy24Update.exe" "sleep" MSCONFIG\startupreg: SunJavaUpdateSched => "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" ==================== Reguły Zapory systemu Windows (filtrowane) =============== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) FirewallRules: [SPPSVC-In-TCP] => (Allow) %SystemRoot%\system32\sppsvc.exe FirewallRules: [SPPSVC-In-TCP-NoScope] => (Allow) %SystemRoot%\system32\sppsvc.exe FirewallRules: [{8CCA621F-A891-49F6-9487-6B465FE28AFC}] => (Allow) C:\Users\Pawel\AppData\Roaming\BitTorrent\BitTorrent.exe FirewallRules: [{8F839FB0-C080-4639-BEAF-F94274829237}] => (Allow) C:\Users\Pawel\AppData\Roaming\BitTorrent\BitTorrent.exe FirewallRules: [TCP Query User{37A8D7E9-D3DA-4629-B719-363D0592668F}C:\20080703_0054\age2_x1\age2_x1.exe] => (Allow) C:\20080703_0054\age2_x1\age2_x1.exe FirewallRules: [UDP Query User{2787AC8C-A565-46B9-BEE1-91F7521F2EA1}C:\20080703_0054\age2_x1\age2_x1.exe] => (Allow) C:\20080703_0054\age2_x1\age2_x1.exe FirewallRules: [TCP Query User{3DFB5149-0C97-4ACC-8FAE-0044FBFB79BF}C:\xampp\apache\bin\httpd.exe] => (Allow) C:\xampp\apache\bin\httpd.exe FirewallRules: [UDP Query User{3292BA5F-535B-4699-AA18-1D7833A61B63}C:\xampp\apache\bin\httpd.exe] => (Allow) C:\xampp\apache\bin\httpd.exe FirewallRules: [TCP Query User{05B920C8-8F98-417B-BF9F-B06866F7C4D8}C:\xampp\mysql\bin\mysqld.exe] => (Allow) C:\xampp\mysql\bin\mysqld.exe FirewallRules: [UDP Query User{4241A393-9620-4F58-815D-C3C69B51BD19}C:\xampp\mysql\bin\mysqld.exe] => (Allow) C:\xampp\mysql\bin\mysqld.exe FirewallRules: [TCP Query User{22BC0EFB-B27D-4827-9FA5-C8AC82149BFF}C:\program files (x86)\allplayer remote\allplayerremotecontrol.exe] => (Allow) C:\program files (x86)\allplayer remote\allplayerremotecontrol.exe FirewallRules: [UDP Query User{ADEECC6E-639F-4ECC-809B-C6177AE47F45}C:\program files (x86)\allplayer remote\allplayerremotecontrol.exe] => (Allow) C:\program files (x86)\allplayer remote\allplayerremotecontrol.exe FirewallRules: [TCP Query User{379B6D78-2F11-4750-9098-F5D567815E24}C:\program files (x86)\brackets\node.exe] => (Allow) C:\program files (x86)\brackets\node.exe FirewallRules: [UDP Query User{A5F70055-7530-474C-8E27-EFAE65E55DA6}C:\program files (x86)\brackets\node.exe] => (Allow) C:\program files (x86)\brackets\node.exe FirewallRules: [TCP Query User{B10BC08E-C95B-4B96-82CF-F1FD19BDE5F3}C:\20080703_0054\age2_x1\age2_x2.exe] => (Block) C:\20080703_0054\age2_x1\age2_x2.exe FirewallRules: [UDP Query User{3044B609-E1E8-412C-8090-D9F52109EAC5}C:\20080703_0054\age2_x1\age2_x2.exe] => (Block) C:\20080703_0054\age2_x1\age2_x2.exe FirewallRules: [{E0A0A32D-4C11-4425-B0C5-8E235EFCDB61}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe FirewallRules: [{F95C8CAF-FC6F-45DC-AB74-F00AF07998E3}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe FirewallRules: [TCP Query User{B22E45EA-DCBE-462F-A9C2-0AF073879E92}C:\xampp\apache\bin\httpd.exe] => (Allow) C:\xampp\apache\bin\httpd.exe FirewallRules: [UDP Query User{4E834C54-A448-4EC3-AF20-FABF9CD1F4EB}C:\xampp\apache\bin\httpd.exe] => (Allow) C:\xampp\apache\bin\httpd.exe FirewallRules: [{21084653-D639-45CF-B006-5AA939976789}] => (Allow) C:\Windows\SysWOW64\dplaysvr.exe FirewallRules: [{3CC2EAEB-0FA2-4D19-8FAD-C76086B7E4BA}] => (Allow) C:\Windows\SysWOW64\dplaysvr.exe FirewallRules: [TCP Query User{D2673D97-9A37-4264-9770-EA6E81BA53F6}C:\20080703_0054\age2_x1\age2_x1.exe] => (Allow) C:\20080703_0054\age2_x1\age2_x1.exe FirewallRules: [UDP Query User{687C5A22-C436-431E-BF32-C48FD5B84E59}C:\20080703_0054\age2_x1\age2_x1.exe] => (Allow) C:\20080703_0054\age2_x1\age2_x1.exe FirewallRules: [TCP Query User{B6507018-93D5-47BF-9DCE-0916FCD1585C}F:\20080703_0054\age2_x1\age2_x1.exe] => (Allow) F:\20080703_0054\age2_x1\age2_x1.exe FirewallRules: [UDP Query User{F3C5E2D8-71F9-433B-82AE-0E46F10D0C1A}F:\20080703_0054\age2_x1\age2_x1.exe] => (Allow) F:\20080703_0054\age2_x1\age2_x1.exe FirewallRules: [TCP Query User{2ED01163-8360-4793-9990-611DCCBD66AC}C:\program files (x86)\brackets\node.exe] => (Allow) C:\program files (x86)\brackets\node.exe FirewallRules: [UDP Query User{B2521221-983F-44AA-B636-2D6C3AFD4558}C:\program files (x86)\brackets\node.exe] => (Allow) C:\program files (x86)\brackets\node.exe FirewallRules: [TCP Query User{43D2ADF3-167C-4743-B60D-9F601B8EEB0A}C:\xampp\mysql\bin\mysqld.exe] => (Allow) C:\xampp\mysql\bin\mysqld.exe FirewallRules: [UDP Query User{0AD8179F-9CAC-4AC1-8A6E-B10CED439405}C:\xampp\mysql\bin\mysqld.exe] => (Allow) C:\xampp\mysql\bin\mysqld.exe FirewallRules: [{AC21CB1A-2119-44DD-9CEC-946B041489BA}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe FirewallRules: [{766B3669-ADEA-46B0-AE71-176928DA613D}] => (Allow) C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe ==================== Punkty Przywracania systemu ========================= 24-04-2018 15:47:54 Zaplanowany punkt kontrolny 30-04-2018 14:42:47 Installed Microsoft Excel 2010 30-04-2018 15:09:39 Installed Microsoft Office Language Pack 2010 - Polish/Polski 30-04-2018 17:31:17 Installed Microsoft Access 2010 ==================== Wadliwe urządzenia w Menedżerze urządzeń ============= Name: Description: Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: Kontroler PCI Simple Communications Description: Kontroler PCI Simple Communications Class Guid: Manufacturer: Service: Problem: : This device is disabled. (Code 22) Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions. ==================== Błędy w Dzienniku zdarzeń: ========================= Dziennik Aplikacja: ================== Error: (05/02/2018 03:34:49 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: svchost.exe, wersja: 6.1.7600.16385, sygnatura czasowa: 0x4a5bc100 Nazwa modułu powodującego błąd: KERNELBASE.dll, wersja: 6.1.7601.23807, sygnatura czasowa: 0x5915f98e Kod wyjątku: 0xe06d7363 Przesunięcie błędu: 0x0000c54f Identyfikator procesu powodującego błąd: 0xc14 Godzina uruchomienia aplikacji powodującej błąd: 0x01d3e21a33246ee5 Ścieżka aplikacji powodującej błąd: C:\Windows\SysWOW64\svchost.exe Ścieżka modułu powodującego błąd: C:\Windows\syswow64\KERNELBASE.dll Identyfikator raportu: 953fe4e9-4e0d-11e8-bc15-f46d048fb5e7 Error: (05/02/2018 10:44:50 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected. Error: (05/02/2018 03:13:42 AM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Program gimp-2.8.exe w wersji 2.8.22.0 zatrzymał interakcję z systemem Windows i został zamknięty. Aby zobaczyć, czy jest dostępnych więcej informacji dotyczących tego problemu, sprawdź historię problemu w panelu sterowania Centrum akcji. Identyfikator procesu: 628 Godzina rozpoczęcia: 01d3e13e3df874c8 Godzina zakończenia: 0 Ścieżka aplikacji: C:\Program Files\GIMP 2\bin\gimp-2.8.exe Identyfikator raportu: 0c94aeab-4da6-11e8-b755-f46d048fb5e7 Error: (05/01/2018 11:06:19 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: svchost.exe, wersja: 6.1.7600.16385, sygnatura czasowa: 0x4a5bc100 Nazwa modułu powodującego błąd: KERNELBASE.dll, wersja: 6.1.7601.23807, sygnatura czasowa: 0x5915f98e Kod wyjątku: 0xe06d7363 Przesunięcie błędu: 0x0000c54f Identyfikator procesu powodującego błąd: 0x3ac Godzina uruchomienia aplikacji powodującej błąd: 0x01d3e12b8d5c47fc Ścieżka aplikacji powodującej błąd: C:\Windows\SysWOW64\svchost.exe Ścieżka modułu powodującego błąd: C:\Windows\syswow64\KERNELBASE.dll Identyfikator raportu: e88784a4-4d1e-11e8-b755-f46d048fb5e7 Error: (05/01/2018 10:05:17 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected. Error: (04/30/2018 05:22:39 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: svchost.exe, wersja: 6.1.7600.16385, sygnatura czasowa: 0x4a5bc100 Nazwa modułu powodującego błąd: KERNELBASE.dll, wersja: 6.1.7601.23807, sygnatura czasowa: 0x5915f98e Kod wyjątku: 0xe06d7363 Przesunięcie błędu: 0x0000c54f Identyfikator procesu powodującego błąd: 0x9d4 Godzina uruchomienia aplikacji powodującej błąd: 0x01d3e096f9623ff1 Ścieżka aplikacji powodującej błąd: C:\Windows\SysWOW64\svchost.exe Ścieżka modułu powodującego błąd: C:\Windows\syswow64\KERNELBASE.dll Identyfikator raportu: 50dc65f2-4c8a-11e8-b2c2-002683139bd6 Error: (04/30/2018 05:13:04 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected. Error: (04/30/2018 02:43:15 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected. Dziennik System: ============= Error: (05/02/2018 10:44:50 AM) (Source: Service Control Manager) (EventID: 7026) (User: ) Description: Nie można załadować następujących sterowników startu rozruchowego lub systemowego: cdrom Error: (05/01/2018 10:05:17 AM) (Source: Service Control Manager) (EventID: 7026) (User: ) Description: Nie można załadować następujących sterowników startu rozruchowego lub systemowego: cdrom Error: (04/30/2018 05:13:04 PM) (Source: Service Control Manager) (EventID: 7026) (User: ) Description: Nie można załadować następujących sterowników startu rozruchowego lub systemowego: cdrom Error: (04/30/2018 10:08:33 AM) (Source: Service Control Manager) (EventID: 7026) (User: ) Description: Nie można załadować następujących sterowników startu rozruchowego lub systemowego: cdrom Error: (04/29/2018 06:39:14 PM) (Source: Service Control Manager) (EventID: 7026) (User: ) Description: Nie można załadować następujących sterowników startu rozruchowego lub systemowego: cdrom Error: (04/29/2018 06:38:34 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Usługa Ochrona oprogramowania niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 120000 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie. Error: (04/29/2018 06:38:34 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Usługa Usługa udostępniania w sieci programu Windows Media Player niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 30000 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie. Error: (04/29/2018 06:38:34 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Usługa Bitdefender Product Agent Service niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. Windows Defender: =================================== Date: 2017-09-18 21:22:46.342 Description: Skanowanie produktu Windows Defender zostało zatrzymane przed ukończeniem. Identyfikator skanowania:{799F4CE9-ABCB-4755-99DB-9D009536D23F} Typ skanowania:Oprogramowanie antyszpiegowskie Parametry skanowania:Szybkie skanowanie Użytkownik:Pawel-Windows7\Pawel ==================== Statystyki pamięci =========================== Procesor: Intel(R) Core(TM) i5-3470 CPU @ 3.20GHz Procent pamięci w użyciu: 28% Całkowita pamięć fizyczna: 8159.14 MB Dostępna pamięć fizyczna: 5815.28 MB Całkowita pamięć wirtualna: 16316.46 MB Dostępna pamięć wirtualna: 12226.37 MB ==================== Dyski ================================ Drive c: () (Fixed) (Total:127.21 GB) (Free:28.99 GB) NTFS ==>[dysk z komponentami startowymi (pozyskano odczytując BCD)] Drive d: () (Fixed) (Total:292.97 GB) (Free:63.88 GB) NTFS ==>[system z komponentami startowymi (pozyskano odczytując dysk)] Drive e: () (Fixed) (Total:638.54 GB) (Free:52.45 GB) NTFS Drive f: (OFFICE14) (CDROM) (Total:0.27 GB) (Free:0 GB) UDF Drive g: (OFFICE14) (CDROM) (Total:0.29 GB) (Free:0 GB) UDF ==================== MBR & Tablica partycji ================== ======================================================== Disk: 0 (Size: 238.5 GB) (Disk ID: BEB6917B) Partition 1: (Active) - (Size=127.2 GB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=111.3 GB) - (Type=05) ======================================================== Disk: 1 (MBR Code: Windows 7/8/10) (Size: 931.5 GB) (Disk ID: 327D16E5) Partition 1: (Not Active) - (Size=638.5 GB) - (Type=07 NTFS) Partition 2: (Active) - (Size=293 GB) - (Type=07 NTFS) ==================== Koniec Addition.txt ============================