Rezultaty skanu uzupełniającego Farbar Recovery Scan Tool (x64) Wersja: 01-11-2019 Uruchomiony przez MICHAL (01-11-2019 18:26:12) Uruchomiony z C:\Users\MICHAL\Desktop Windows 7 Professional Service Pack 1 (X64) (2016-08-03 17:42:15) Tryb startu: Normal ========================================================== ==================== Konta użytkowników: ============================= Administrator (S-1-5-21-370479639-3369542867-3407148108-500 - Administrator - Disabled) Gość (S-1-5-21-370479639-3369542867-3407148108-501 - Limited - Disabled) MICHAL (S-1-5-21-370479639-3369542867-3407148108-1000 - Administrator - Enabled) => C:\Users\MICHAL ==================== Centrum zabezpieczeń ======================== (Załączenie wejścia w fixlist spowoduje jego usunięcie.) AV: Avast Antivirus (Enabled - Up to date) {8EA8924E-BC81-DC44-8BB0-8BAE75D86EBF} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Avast Antivirus (Enabled - Up to date) {35C973AA-9ABB-D3CA-B100-B0DC0E5F2402} ==================== Zainstalowane programy ====================== (W fixlist dozwolone tylko załączanie programów adware z flagą "Hidden" w celu ich uwidocznienia. Programy adware powinny zostać w poprawny sposób odinstalowane.) 7-Zip 16.02 (x64) (HKLM\...\7-Zip) (Version: 16.02 - Igor Pavlov) 7-Zip 16.04 (x64 edition) (HKLM\...\{23170F69-40C1-2702-1604-000001000000}) (Version: 16.04.00.0 - Igor Pavlov) Adobe Flash Player 32 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 32.0.0.270 - Adobe) Aktualizacje NVIDIA 37.0.0.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 37.0.0.0 - NVIDIA Corporation) Hidden ASUS Product Register Program (HKLM-x32\...\{54716EA9-F8B4-41E0-801B-9909164F2024}) (Version: 1.1.001 - ASUSTek Computer Inc.) Audacity 2.1.2 (HKLM-x32\...\Audacity®_is1) (Version: 2.1.2 - Audacity Team) Avast Free Antivirus (HKLM-x32\...\Avast Antivirus) (Version: 19.8.2393 - AVAST Software) CCleaner (HKLM\...\CCleaner) (Version: 5.63 - Piriform) Contra Anniversary Collection (HKLM-x32\...\Contra Anniversary Collection_is1) (Version: - ) ConvertHelper 3.2 (HKLM\...\{27CC6AB1-E72B-4179-AF1A-EAE507EBAF52}}_is1) (Version: - DownloadHelper) DAEMON Tools Lite (HKLM\...\DAEMON Tools Lite) (Version: 10.4.0.0193 - Disc Soft Ltd) Euro Truck Simulator 2 (HKLM-x32\...\Euro Truck Simulator 2_is1) (Version: - ) Farming Simulator 19 (HKLM-x32\...\Farming Simulator 19_is1) (Version: - ) Grand Theft Auto San Andreas wersja 1.01 (HKLM-x32\...\Grand Theft Auto San Andreas_is1) (Version: 1.01 - Rockstar Games) Intel Security True Key (HKLM\...\TrueKey) (Version: 4.5.146.1 - Intel Security) Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 9.5.15.1730 - Intel Corporation) Java 8 Update 191 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180191F0}) (Version: 8.0.1910.12 - Oracle Corporation) K-Lite Codec Pack 15.1.6 Full (HKLM-x32\...\KLiteCodecPack_is1) (Version: 15.1.6 - KLCP) Max Payne (HKLM-x32\...\{E270A0FD-2DC0-4BFA-8EEE-2AB8B963F0F5}) (Version: 1.00.000 - ) Microsoft .NET Framework 4.6.1 (PLK) (HKLM\...\{D93AC424-07D7-3992-B0C8-BDCB79173757}) (Version: 4.6.01055 - Microsoft Corporation) Microsoft .NET Framework 4.6.1 Hotfix Rollup (KB3146716) (HKLM\...\{E026AF51-E2EB-33CF-AC15-09308053FAA7}) (Version: 4.6.01078 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61187 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61186 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.7523 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.7523 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.7523 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.7523 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030 (HKLM\...\{37B8F9C7-03FB-3253-8781-2517C99D7C00}) (Version: 11.0.61030 - Microsoft Corporation) Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030 (HKLM\...\{CF2BEA3C-26EA-32F8-AA9B-331F7E34BA97}) (Version: 11.0.61030 - Microsoft Corporation) Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030 (HKLM-x32\...\{B175520C-86A2-35A7-8619-86DC379688B9}) (Version: 11.0.61030 - Microsoft Corporation) Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030 (HKLM-x32\...\{BD95A8CD-1D9F-35AD-981A-3E7925026EBB}) (Version: 11.0.61030 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.21005 (HKLM\...\{929FBD26-9020-399B-9A7A-751D61F0B942}) (Version: 12.0.21005 - Microsoft Corporation) Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.21005 (HKLM\...\{A749D8E6-B613-3BE3-8F5F-045C84EBA29B}) (Version: 12.0.21005 - Microsoft Corporation) Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.21005 (HKLM-x32\...\{F8CFEB22-A2E7-3971-9EDA-4B11EDEFC185}) (Version: 12.0.21005 - Microsoft Corporation) Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.21005 (HKLM-x32\...\{13A4EE12-23EA-3371-91EE-EFB36DDFFF3E}) (Version: 12.0.21005 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24123 (HKLM-x32\...\{2cbcedbb-f38c-48a3-a3e1-6c6fd821a7f4}) (Version: 14.0.24123.0 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24215 (HKLM-x32\...\{e2803110-78b3-4664-a479-3611a381656a}) (Version: 14.0.24215.1 - Microsoft Corporation) Mozilla Firefox 70.0 (x64 pl) (HKLM\...\Mozilla Firefox 70.0 (x64 pl)) (Version: 70.0 - Mozilla) NVAPI Monitor plugin for NvContainer (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.NvapiMonitor) (Version: 1.15 - NVIDIA Corporation) Hidden NVIDIA GeForce Experience 3.19.0.107 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.19.0.107 - NVIDIA Corporation) NVIDIA Oprogramowanie systemu PhysX 9.19.0218 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.19.0218 - NVIDIA Corporation) NVIDIA Sterownik dźwięku HD 1.3.38.16 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.38.16 - NVIDIA Corporation) NVIDIA Sterownik graficzny 431.60 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 431.60 - NVIDIA Corporation) OpenOffice.org 3.3 (HKLM-x32\...\{EB87675F-5281-4767-A54B-31931794C23D}) (Version: 3.3.9567 - OpenOffice.org) Panel sterowania NVIDIA 431.60 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel) (Version: 431.60 - NVIDIA Corporation) Hidden PS TO PC CONVERTER (HKLM-x32\...\{A483F88A-41E9-45B2-AAC9-A823DD9B4873}) (Version: 2006.5.26 - ) Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.88.617.2014 - Realtek) Roadkil's Unstoppable Copier Version 5.2 (HKLM-x32\...\{A306FD29-7D3A-4287-91AC-9A0180931395}_is1) (Version: - Roadkil.Net) Sąsiedzi z Piekła Rodem 1 i 2 (HKLM-x32\...\{6AAF923E-077E-4543-BA1C-42A75BB03677}) (Version: 1.0 - ) SilentSetup (HKLM-x32\...\{BA073B32-292B-424A-97E1-70C25CD1075F}) (Version: 1.0.0 - Default Company Name) Hidden Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation) VdhCoApp 1.2.1 (HKLM\...\weh-iss-net.downloadhelper.coapp_is1) (Version: - DownloadHelper) VLC media player (HKLM\...\VLC media player) (Version: 3.0.8 - VideoLAN) Wargaming.net Game Center (HKU\S-1-5-21-370479639-3369542867-3407148108-1000\...\Wargaming.net Game Center) (Version: 19.6.0.7019 - Wargaming.net) Winamp (HKLM-x32\...\Winamp) (Version: 5.666 - Nullsoft, Inc) World_of_Warships_EU (HKU\S-1-5-21-370479639-3369542867-3407148108-1000\...\WOWS.EU.PRODUCTION) (Version: - Wargaming.net) XSplit Gamecaster (HKLM-x32\...\{8915913F-E4AF-46C5-B4EF-3535D83BFFDE}) (Version: 2.5.1507.3018 - SplitmediaLabs) ==================== Niestandardowe rejestracje CLSID (filtrowane): ============== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2019-10-03] (AVAST Software s.r.o. -> AVAST Software) ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2019-10-03] (AVAST Software s.r.o. -> AVAST Software) ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2016-10-04] (Igor Pavlov) [Brak podpisu cyfrowego] ContextMenuHandlers1: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2019-10-03] (AVAST Software s.r.o. -> AVAST Software) ContextMenuHandlers3: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2019-10-03] (AVAST Software s.r.o. -> AVAST Software) ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2016-10-04] (Igor Pavlov) [Brak podpisu cyfrowego] ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\Windows\system32\nvshext.dll [2019-07-17] (NVIDIA Corporation -> NVIDIA Corporation) ContextMenuHandlers6: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2016-10-04] (Igor Pavlov) [Brak podpisu cyfrowego] ContextMenuHandlers6: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2019-10-03] (AVAST Software s.r.o. -> AVAST Software) ==================== Codecs (filtrowane) ==================== ==================== Skróty & WMI ======================== (Wybrane wejścia mogą zostać załączone w celu ich zresetowania lub usunięcia.) WMI:subscription\__FilterToConsumerBinding->CommandLineEventConsumer.Name=\"BVTConsumer\"",Filter="__EventFilter.Name=\"BVTFilter\":: WMI:subscription\__EventFilter->BVTFilter::[Query => SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99] WMI:subscription\CommandLineEventConsumer->BVTConsumer::[CommandLineTemplate => cscript KernCap.vbs][WorkingDirectory => C:\\tools\\kernrate] ==================== Załadowane moduły (filtrowane) ============= 2017-12-25 13:19 - 2017-12-16 10:26 - 000053760 _____ () [Brak podpisu cyfrowego] C:\Users\MICHAL\AppData\Roaming\Python\lib\site-packages\psutil\_psutil_windows.cp36-win32.pyd 2017-12-25 13:19 - 2017-12-16 10:26 - 000111616 _____ () [Brak podpisu cyfrowego] C:\Users\MICHAL\AppData\Roaming\Python\lib\site-packages\pypiwin32_system32\pywintypes36.dll 2017-12-25 13:19 - 2017-12-16 10:26 - 000103424 _____ () [Brak podpisu cyfrowego] C:\Users\MICHAL\AppData\Roaming\Python\lib\site-packages\win32\win32api.pyd 2017-12-25 13:19 - 2017-12-16 10:26 - 000173568 _____ () [Brak podpisu cyfrowego] C:\Users\MICHAL\AppData\Roaming\Python\lib\site-packages\win32\win32gui.pyd 2017-12-25 13:19 - 2017-12-16 10:26 - 000041984 _____ () [Brak podpisu cyfrowego] C:\Users\MICHAL\AppData\Roaming\Python\lib\site-packages\win32\win32process.pyd 2017-12-25 13:19 - 2017-12-16 10:26 - 000079360 _____ (Open Source Software community LGPL) [Brak podpisu cyfrowego] C:\Users\MICHAL\AppData\Roaming\Python\pthreadVC2.dll 2016-08-12 19:07 - 2014-07-08 12:07 - 001148928 _____ (Robert Simpson, et al.) [Brak podpisu cyfrowego] C:\Program Files\TrueKey\SQLite.Interop.dll 2017-12-25 13:19 - 2017-12-16 10:26 - 002903040 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [Brak podpisu cyfrowego] C:\Users\MICHAL\AppData\Roaming\Python\libcrypto-1_1-x64.dll 2017-12-25 13:19 - 2017-12-16 10:26 - 000490496 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [Brak podpisu cyfrowego] C:\Users\MICHAL\AppData\Roaming\Python\libssl-1_1-x64.dll ==================== Alternate Data Streams (filtrowane) ======== ==================== Tryb awaryjny (filtrowane) ================== ==================== Powiązania plików (filtrowane) ================= ==================== Internet Explorer - Witryny zaufane i z ograniczeniami ========== ==================== Hosts - zawartość: ========================= (Użycie dyrektywy Hosts: w fixlist spowoduje reset pliku Hosts.) 2009-07-14 03:34 - 2019-03-02 14:48 - 000000830 _____ C:\Windows\system32\drivers\etc\hosts ==================== Inne obszary =========================== (Obecnie brak automatycznej naprawy dla tej sekcji.) HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files (x86)\Common Files\Oracle\Java\javapath;C:\ProgramData\Oracle\Java\javapath;C:\Program Files (x86)\Intel\iCLS Client\;C:\Program Files\Intel\iCLS Client\;C:\Windows\system32;C:\Windows;C:\Windows\System32\Wbem;C:\Windows\System32\WindowsPowerShell\v1.0\;C:\Program Files\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files\Intel\Intel(R) Management Engine Components\IPT;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT;C:\Program Files (x86)\NVIDIA Corporation\PhysX\Common;C:\Program Files\NVIDIA Corporation\NVIDIA NvDLISR HKU\S-1-5-21-370479639-3369542867-3407148108-1000\Control Panel\Desktop\\Wallpaper -> DNS Servers: 10.250.250.12 - 10.250.250.14 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 0) (ConsentPromptBehaviorUser: 3) (EnableLUA: 0) Zapora systemu Windows [funkcja włączona] ==================== MSCONFIG/TASK MANAGER - Wyłączone elementy == (Załączenie wejścia w fixlist spowoduje jego usunięcie.) MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^McAfee Security Scan Plus.lnk => C:\Windows\pss\McAfee Security Scan Plus.lnk.CommonStartup MSCONFIG\startupfolder: C:^Users^MICHAL^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^OpenOffice.org 3.3.lnk => C:\Windows\pss\OpenOffice.org 3.3.lnk.Startup MSCONFIG\startupreg: DAEMON Tools Lite Automount => "C:\Program Files\DAEMON Tools Lite\DTAgent.exe" -autorun MSCONFIG\startupreg: Steam => "C:\Program Files (x86)\Steam\steam.exe" -silent MSCONFIG\startupreg: SunJavaUpdateSched => "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" MSCONFIG\startupreg: Wargaming.net Game Center => "C:\ProgramData\Wargaming.net\GameCenter\wgc.exe" --background '' ==================== Reguły Zapory systemu Windows (filtrowane) ================ (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) FirewallRules: [SPPSVC-In-TCP] => (Allow) %SystemRoot%\system32\sppsvc.exe Brak pliku FirewallRules: [SPPSVC-In-TCP-NoScope] => (Allow) %SystemRoot%\system32\sppsvc.exe Brak pliku FirewallRules: [{C17F27F2-BEBC-480C-898C-684920D9AA4E}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation) FirewallRules: [{C29F0E02-7908-41F9-87B7-DFC52287464E}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation) FirewallRules: [{25599503-00FB-4BE8-9BB9-6D802644B011}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve -> Valve Corporation) FirewallRules: [{9F99C872-DC1F-41F8-9BC1-5C21B695533F}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve -> Valve Corporation) FirewallRules: [{41A71F43-8D20-48CB-9EA0-C95AF04C86C9}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe Brak pliku FirewallRules: [{37694F0F-B2C3-4477-9634-A6BD87EB95B6}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe Brak pliku FirewallRules: [{4BB5D86A-BFD7-49B5-B9A3-B21971663F6F}] => (Allow) C:\Program Files (x86)\Winamp\winamp.exe (Nullsoft Inc. -> Nullsoft, Inc.) FirewallRules: [{2FA4A121-AFDF-4DE1-B143-50C8FEDA8979}] => (Allow) C:\Program Files (x86)\Winamp\winamp.exe (Nullsoft Inc. -> Nullsoft, Inc.) FirewallRules: [{81F438A4-775B-4BF3-A5B1-C51349D4EE40}] => (Allow) C:\Program Files (x86)\CDP Games\Construction Machines 2016\cms2016.exe Brak pliku FirewallRules: [TCP Query User{7850C4FD-73B0-4819-B18E-B8014C54C236}F:\gry\mafia.iii.2016.pl-voksi\mafia iii\launcher.exe] => (Block) F:\gry\mafia.iii.2016.pl-voksi\mafia iii\launcher.exe Brak pliku FirewallRules: [UDP Query User{930DE612-DF05-4546-BEF4-924D797D07FA}F:\gry\mafia.iii.2016.pl-voksi\mafia iii\launcher.exe] => (Block) F:\gry\mafia.iii.2016.pl-voksi\mafia iii\launcher.exe Brak pliku FirewallRules: [TCP Query User{C948CC72-6F47-48F5-A16B-EA30A1AB03F1}C:\users\michal\downloads\euro.fishing.2015.pl-p2p\euro.fishing.2015.pl-p2p\fishinggame\binaries\win64\fishinggame-win64-shipping.exe] => (Block) C:\users\michal\downloads\euro.fishing.2015.pl-p2p\euro.fishing.2015.pl-p2p\fishinggame\binaries\win64\fishinggame-win64-shipping.exe Brak pliku FirewallRules: [UDP Query User{9D3AACFD-4A37-4237-A841-4BB7B0FACB68}C:\users\michal\downloads\euro.fishing.2015.pl-p2p\euro.fishing.2015.pl-p2p\fishinggame\binaries\win64\fishinggame-win64-shipping.exe] => (Block) C:\users\michal\downloads\euro.fishing.2015.pl-p2p\euro.fishing.2015.pl-p2p\fishinggame\binaries\win64\fishinggame-win64-shipping.exe Brak pliku FirewallRules: [TCP Query User{AA2ACDCD-71DD-4529-A10E-D5D426E8A78A}C:\program files (x86)\mozilla firefox\firefox.exe] => (Block) C:\program files (x86)\mozilla firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation) FirewallRules: [UDP Query User{B417E006-6032-4E11-8594-181C0A7CAD37}C:\program files (x86)\mozilla firefox\firefox.exe] => (Block) C:\program files (x86)\mozilla firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation) FirewallRules: [{0C47921B-C1C1-44DE-9E2A-A531865EC2B8}] => (Allow) F:\Gry\The Crew (Russian)\TheCrew.exe Brak pliku FirewallRules: [{D1F7E37F-4BC6-4789-90AC-4B4225AB5C3E}] => (Allow) F:\Gry\The Crew (Russian)\TheCrew.exe Brak pliku FirewallRules: [TCP Query User{D209667E-560C-4011-943C-1BEE567B855D}F:\gry\fifa 18\fifa18.exe] => (Allow) F:\gry\fifa 18\fifa18.exe Brak pliku FirewallRules: [UDP Query User{1ABE9006-1A2D-4FA6-AF14-B386727C41AB}F:\gry\fifa 18\fifa18.exe] => (Allow) F:\gry\fifa 18\fifa18.exe Brak pliku FirewallRules: [{B6C05116-3CF3-4868-95C0-48E353569761}] => (Allow) C:\ProgramData\Wargaming.net\GameCenter\wgc.exe (Wargaming.net Limited -> Wargaming.net) FirewallRules: [{435186F6-0D64-4A7B-BFAA-FBDC1664A1AB}] => (Allow) C:\ProgramData\Wargaming.net\GameCenter\wgc.exe (Wargaming.net Limited -> Wargaming.net) FirewallRules: [{6D20D518-F4AF-45CB-BD88-78B6E0819CAC}] => (Allow) F:\Games\World_of_Warships_Eu\WorldOfWarships.exe (Wargaming.net Limited -> Wargaming.net) FirewallRules: [{8186F0D6-4E15-4267-8BB2-A2DB1E226B43}] => (Allow) F:\Games\World_of_Warships_Eu\WorldOfWarships.exe (Wargaming.net Limited -> Wargaming.net) FirewallRules: [{DA50131C-1E05-4E5B-9BFA-D48651FB0F51}] => (Allow) C:\Program Files\CCleaner\CCUpdate.exe (Piriform Software Ltd -> Piriform Software Ltd) FirewallRules: [{A858C43A-A9CA-46BF-BA38-4E7447C2B077}] => (Allow) C:\Program Files\CCleaner\CCUpdate.exe (Piriform Software Ltd -> Piriform Software Ltd) FirewallRules: [{773A0C7B-5656-4D18-94E0-CB3BDC64EE26}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation) FirewallRules: [{FD61669B-EF7B-44B5-9EBC-1CC88CCA2C10}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation) FirewallRules: [{3F1B59EC-DC0F-418D-BC72-69D1CBA00D6D}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation) FirewallRules: [{7A3AF66C-3D89-49D6-89D0-1379203B4B8D}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation) FirewallRules: [{FB0EC608-9B33-46B8-8B8E-237C05796317}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation) FirewallRules: [{3660F0BE-7E0A-44CC-9B5C-2F5980A7BC8C}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation) ==================== Punkty Przywracania systemu ========================= UWAGA: Przywracanie systemu jest wyłączone (Total:99.94 GB) (Free:1.33 GB) (1%) ==================== Wadliwe urządzenia w Menedżerze urządzeń ============ Name: ZAM Guard Driver Description: ZAM Guard Driver Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1} Manufacturer: Service: ZAM_Guard Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24) Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed. Devices stay in this state if they have been prepared for removal. After you remove the device, this error disappears.Remove the device, and this error should be resolved. Name: ZAM Helper Driver Description: ZAM Helper Driver Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1} Manufacturer: Service: ZAM Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24) Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed. Devices stay in this state if they have been prepared for removal. After you remove the device, this error disappears.Remove the device, and this error should be resolved. ==================== Błędy w Dzienniku zdarzeń: ======================== Dziennik Aplikacja: ================== Error: (11/01/2019 03:32:24 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected. Error: (10/31/2019 05:18:06 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected. Error: (10/31/2019 05:08:07 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected. Error: (10/31/2019 04:19:38 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected. Error: (10/30/2019 04:18:02 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected. Error: (10/29/2019 05:27:05 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected. Error: (10/28/2019 06:47:08 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: eurotrucks2.exe, wersja: 1.33.2.0, sygnatura czasowa: 0x5bff0a66 Nazwa modułu powodującego błąd: eurotrucks2.exe, wersja: 1.33.2.0, sygnatura czasowa: 0x5bff0a66 Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x0000000000630408 Identyfikator procesu powodującego błąd: 0x12d8 Godzina uruchomienia aplikacji powodującej błąd: 0x01d58db77fefeb2e Ścieżka aplikacji powodującej błąd: F:\Gry\Euro Truck Simulator 2\bin\win_x64\eurotrucks2.exe Ścieżka modułu powodującego błąd: F:\Gry\Euro Truck Simulator 2\bin\win_x64\eurotrucks2.exe Identyfikator raportu: f5fb4784-f9aa-11e9-b19a-902b340dd267 Error: (10/28/2019 05:36:57 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected. Dziennik System: ============= Error: (11/01/2019 03:32:50 PM) (Source: Service Control Manager) (EventID: 7026) (User: ) Description: Nie można załadować następujących sterowników startu rozruchowego lub systemowego: cdrom Error: (11/01/2019 03:32:49 PM) (Source: Service Control Manager) (EventID: 7022) (User: ) Description: Usługa Intel(R) Biometric and Context Agent Service zawiesiła się podczas uruchamiania. Error: (11/01/2019 03:31:22 PM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: Upłynął limit czasu (30000 ms) podczas oczekiwania na połączenie się z usługą ASUS Com Service. Error: (10/31/2019 05:18:28 PM) (Source: Service Control Manager) (EventID: 7026) (User: ) Description: Nie można załadować następujących sterowników startu rozruchowego lub systemowego: cdrom Error: (10/31/2019 05:18:28 PM) (Source: Service Control Manager) (EventID: 7022) (User: ) Description: Usługa Intel(R) Biometric and Context Agent Service zawiesiła się podczas uruchamiania. Error: (10/31/2019 05:17:01 PM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: Upłynął limit czasu (30000 ms) podczas oczekiwania na połączenie się z usługą ASUS Com Service. Error: (10/31/2019 05:08:31 PM) (Source: Service Control Manager) (EventID: 7026) (User: ) Description: Nie można załadować następujących sterowników startu rozruchowego lub systemowego: cdrom Error: (10/31/2019 05:08:30 PM) (Source: Service Control Manager) (EventID: 7022) (User: ) Description: Usługa Intel(R) Biometric and Context Agent Service zawiesiła się podczas uruchamiania. Windows Defender: =================================== Date: 2016-08-03 19:37:39.996 Description: Produkt Windows Defender napotkał błąd podczas próby załadowania podpisów i podejmie próbę powrotu do znanego zestawu dobrych podpisów. Podpisy objęte próbą:Bieżące Kod błędu:0x80070003 Opis błędu:System nie może odnaleźć określonej ścieżki. Wersja podpisu:0.0.0.0 Wersja aparatu:0.0.0.0 ==================== Statystyki pamięci =========================== BIOS: American Megatrends Inc. F5 03/23/2012 Płyta główna: Gigabyte Technology Co., Ltd. H61M-S1 Procesor: Intel(R) Core(TM) i5-3470 CPU @ 3.20GHz Procent pamięci w użyciu: 60% Całkowita pamięć fizyczna: 8155.79 MB Dostępna pamięć fizyczna: 3216.49 MB Całkowita pamięć wirtualna: 16309.77 MB Dostępna pamięć wirtualna: 9750.34 MB ==================== Dyski ================================ Drive c: (7NEW) (Fixed) (Total:99.94 GB) (Free:1.33 GB) NTFS Drive d: (7OLD) (Fixed) (Total:100.05 GB) (Free:0.21 GB) NTFS ==>[system z komponentami startowymi (pozyskano odczytując dysk)] Drive e: () (Fixed) (Total:100 GB) (Free:0.46 GB) NTFS Drive f: (E) (Fixed) (Total:315.75 GB) (Free:3.18 GB) NTFS Drive g: (F (Muzyka,Filmy,Zdjęcia)) (Fixed) (Total:315.75 GB) (Free:1.75 GB) NTFS Drive h: (Nowy) (Fixed) (Total:931.51 GB) (Free:1.67 GB) NTFS Drive j: (Nowy) (Fixed) (Total:931.51 GB) (Free:2.36 GB) NTFS ==================== MBR & Tablica partycji ==================== ========================================================== Disk: 0 (MBR Code: Windows 7/8/10) (Size: 931.5 GB) (Disk ID: 0C2C0C2B) Partition 1: (Active) - (Size=100.1 GB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=99.9 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=731.5 GB) - (Type=0F Extended) ========================================================== Disk: 1 (MBR Code: Windows 7/8/10) (Size: 1863 GB) (Disk ID: 419B9827) Partition 1: (Not Active) - (Size=931.5 GB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=931.5 GB) - (Type=07 NTFS) ==================== Koniec Addition.txt =======================