Rezultaty skanu uzupełniającego Farbar Recovery Scan Tool (x64) Wersja: 26-02-2020 Uruchomiony przez User (27-02-2020 19:01:53) Uruchomiony z C:\Users\User\Desktop Windows 7 Home Premium Service Pack 1 (X64) (2014-10-11 14:07:20) Tryb startu: Normal ========================================================== ==================== Konta użytkowników: ============================= Administrator (S-1-5-21-1940709926-2010511596-994217772-500 - Administrator - Disabled) Gość (S-1-5-21-1940709926-2010511596-994217772-501 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-1940709926-2010511596-994217772-1005 - Limited - Enabled) UpdatusUser (S-1-5-21-1940709926-2010511596-994217772-1001 - Limited - Enabled) => C:\Users\UpdatusUser User (S-1-5-21-1940709926-2010511596-994217772-1003 - Limited - Enabled) => C:\Users\User Weronika (S-1-5-21-1940709926-2010511596-994217772-1002 - Administrator - Enabled) => C:\Users\Weronika ==================== Centrum zabezpieczeń ======================== (Załączenie wejścia w fixlist spowoduje jego usunięcie.) AV: Avast Antivirus (Enabled - Up to date) {8EA8924E-BC81-DC44-8BB0-8BAE75D86EBF} AS: Windows Defender (Disabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Avast Antivirus (Enabled - Up to date) {35C973AA-9ABB-D3CA-B100-B0DC0E5F2402} ==================== Zainstalowane programy ====================== (W fixlist dozwolone tylko załączanie programów adware z flagą "Hidden" w celu ich uwidocznienia. Programy adware powinny zostać w poprawny sposób odinstalowane.) Adobe Acrobat Reader DC - Polish (HKLM-x32\...\{AC76BA86-7AD7-1045-7B44-AC0F074E4100}) (Version: 20.006.20034 - Adobe Systems Incorporated) Adobe Digital Editions 3.0 (HKLM-x32\...\Adobe Digital Editions 3.0) (Version: 3.0.1 - Adobe Systems Incorporated) Adobe Flash Player 16 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 16.0.0.305 - Adobe Systems Incorporated) Advertising Center (HKLM-x32\...\{9F3523F8-DAD7-AE52-6DA7-45CDDDF33726}) (Version: 0.0.0.1 - Nero AG) Hidden Aktualizacje NVIDIA 1.15.2 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 1.15.2 - NVIDIA Corporation) ALLPlayer (wersja 8.6) (HKLM\...\{68972948-F221-4267-9EB6-2EB5D913C4CF}_is1) (Version: 8.6 - ALLPlayer Ltd.) Apowersoft Online Launcher (wersja 1.4.6) (HKLM-x32\...\{20BF67A8-D81A-4489-8225-FABAA0896E2D}_is1) (Version: 1.4.6 - APOWERSOFT LIMITED) ASUS Smart Gesture (HKLM-x32\...\{4D3286A6-F6AB-498A-82A4-E4F040529F3D}) (Version: 2.2.0 - ASUS) ATK Package (HKLM-x32\...\{AB5C933E-5C7D-4D30-B314-9C83A49B94BE}) (Version: 1.0.0030 - ASUS) Avast Free Antivirus (HKLM-x32\...\Avast Antivirus) (Version: 19.8.2393 - AVAST Software) AVG Web TuneUp (HKLM-x32\...\AVG Web TuneUp) (Version: 4.3.6.255 - AVG Technologies) AVS Document Converter 4.2.1 (HKLM-x32\...\AVS Document Converter_is1) (Version: 4.2.1.266 - Online Media Technologies Ltd.) Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.) CCleaner (HKLM\...\CCleaner) (Version: 5.46 - Piriform) Chromium (HKLM-x32\...\{3E07D6C7-6E87-0747-DF07-77C70F87A447}) (Version: - ) Common Desktop Agent (HKLM\...\{031A0E14-0413-4C97-9772-2639B782F46F}) (Version: 1.62.0 - OEM) Hidden DolbyFiles (HKLM-x32\...\{56BE5CC9-95E6-4128-ABEA-968414CA9C80}) (Version: 2.0 - Nero AG) Hidden Facebook Video Calling 3.1.0.521 (HKLM-x32\...\{2091F234-EB58-4B80-8C96-8EB78C808CF7}) (Version: 3.1.521 - Skype Limited) FBReader for Windows (HKLM-x32\...\FBReader for Windows) (Version: - ) File Association Helper (HKLM\...\{C168639F-5810-4EC8-B1E8-0251AA8A771C}) (Version: 1.2.225.65451 - WinZip Computing International, LLC) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 79.0.3945.130 - Google LLC) Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.35.441 - Google LLC) Hidden Google Update Helper (HKLM-x32\...\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}) (Version: 1.3.25.11 - Google Inc.) Hidden ImagXpress (HKLM-x32\...\{A8F2089B-1F79-4BF6-B385-A2C2B0B9A74D}) (Version: 7.0.74.0 - Nero AG) Hidden Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 8.1.0.1252 - Intel Corporation) Intel(R) USB 3.0 eXtensible Host Controller Driver (HKLM-x32\...\{240C3DDD-C5E9-4029-9DF7-95650D040CF2}) (Version: 1.0.4.225 - Intel Corporation) Java 8 Update 45 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218045F0}) (Version: 8.0.450 - Oracle Corporation) McAfee WebAdvisor (HKLM-x32\...\{35ED3F83-4BDC-4c44-8EC6-6A8301C7413A}) (Version: 4.1.1.72 - McAfee, LLC.) Menu Templates - Starter Kit (HKLM-x32\...\{C99C89A3-119A-45E6-B26E-DD5643CAA0C5}) (Version: 9.0.4.0 - Nero AG) Hidden Microsoft .NET Framework 4.7.2 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.7.03062 - Microsoft Corporation) Microsoft .NET Framework 4.7.2 (Polski) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1045) (Version: 4.7.03062 - Microsoft Corporation) Microsoft Office Professional 2016 - en-us (HKLM\...\ProfessionalRetail - en-us) (Version: 16.0.12430.20288 - Microsoft Corporation) Microsoft Office Professional 2016 - pl-pl (HKLM\...\ProfessionalRetail - pl-pl) (Version: 16.0.12430.20288 - Microsoft Corporation) Microsoft Office Professional Plus 2010 (HKLM\...\Office14.PROPLUS) (Version: 14.0.7015.1000 - Microsoft Corporation) Microsoft OneDrive (HKU\S-1-5-21-1940709926-2010511596-994217772-1003\...\OneDriveSetup.exe) (Version: 19.232.1124.0008 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50907.0 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710F4C1C-CC18-4C49-8CBF-51240C89A1A2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.21022 (HKLM\...\{350AA351-21FA-3270-8B7A-835434E766AD}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005 (HKLM-x32\...\{7f51bdb9-ee21-49ee-94d6-90afc321780e}) (Version: 12.0.21005.1 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 (HKLM-x32\...\{ce085a78-074e-4823-8dc1-8a721b94b76d}) (Version: 12.0.21005.1 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24215 (HKLM-x32\...\{e2803110-78b3-4664-a479-3611a381656a}) (Version: 14.0.24215.1 - Microsoft Corporation) Microsoft Visual Studio 2005 Remote Debugger Light (x64) - ENU (HKLM\...\Microsoft Visual Studio 2005 Remote Debugger Light (x64) - ENU) (Version: - Microsoft Corporation) Microsoft Visual Studio 2005 Tools for Applications - ENU (HKLM-x32\...\Microsoft Visual Studio 2005 Tools for Applications - ENU) (Version: - Microsoft Corporation) Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation) Movie Templates - Starter Kit (HKLM-x32\...\{BCD82AB5-670D-4242-90FA-1F97103C16CD}) (Version: 9.0.4.0 - Nero AG) Hidden Mozilla Sunbird (0.9) (HKLM-x32\...\Mozilla Sunbird (0.9)) (Version: 0.9 (pl) - Mozilla) MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation) MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation) Nero 9 (HKLM-x32\...\{363fac3c-ea59-44dd-80b7-b7e3d108dc61}) (Version: - Nero AG) NVIDIA Oprogramowanie systemu PhysX 9.13.0604 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.13.0604 - NVIDIA Corporation) NVIDIA Sterownik graficzny 331.65 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 331.65 - NVIDIA Corporation) Office 16 Click-to-Run Extensibility Component (HKLM\...\{90160000-008C-0000-1000-0000000FF1CE}) (Version: 16.0.12430.20288 - Microsoft Corporation) Hidden Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-007E-0000-1000-0000000FF1CE}) (Version: 16.0.12430.20184 - Microsoft Corporation) Hidden Office 16 Click-to-Run Localization Component (HKLM\...\{90160000-008C-0409-1000-0000000FF1CE}) (Version: 16.0.12430.20288 - Microsoft Corporation) Hidden Office 16 Click-to-Run Localization Component (HKLM\...\{90160000-008C-0415-1000-0000000FF1CE}) (Version: 16.0.12430.20288 - Microsoft Corporation) Hidden Pakiet sterowników systemu Windows - ASUS (ATP) Mouse (05/09/2013 1.0.0.173) (HKLM\...\1016059FBF327ED9E3BAE758BD08CF10D3C6252D) (Version: 05/09/2013 1.0.0.173 - ASUS) Panel sterowania NVIDIA 331.65 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel) (Version: 331.65 - NVIDIA Corporation) Hidden Picasa 3 (HKLM-x32\...\Picasa 3) (Version: 3.9.141.259 - Google, Inc.) Polski pakiet językowy dla narzędzi Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - PLK) (Version: 10.0.50903 - Microsoft Corporation) Przegląd podręcznika użytkownika (HKLM-x32\...\View User Guide) (Version: 3.60.43.0 - ) Qualcomm Atheros Bluetooth Suite (64) (HKLM\...\{A84A4FB1-D703-48DB-89E0-68B6499D2801}) (Version: 8.0.0.224 - Qualcomm Atheros Communications) Ralink Bluetooth Stack64 (HKLM\...\{931210CE-36BC-BB05-9559-D2320932312E}) (Version: 11.0.738.3 - Nazwa firmy) Ralink RT2860 Wireless LAN Card (HKLM-x32\...\{8FC4F1DD-F7FD-4766-804D-3C8FF1D309B0}) (Version: 1.2.0.41 - Ralink) Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.48.823.2011 - Realtek) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6966 - Realtek Semiconductor Corp.) Realtek PCIE Card Reader (HKLM-x32\...\{C1594429-8296-4652-BF54-9DBE4932A44C}) (Version: 6.2.9200.27030 - Realtek Semiconductor Corp.) Samsung Easy Printer Manager (HKLM-x32\...\Samsung Easy Printer Manager) (Version: 1.05.29.00(2014-03-26) - Samsung Electronics Co., Ltd.) Samsung Easy Wireless Setup (HKLM-x32\...\Easy Wireless Setup) (Version: 3.60.49.0 - Samsung Electronics Co., Ltd.) Samsung M2020 Series (HKLM-x32\...\Samsung M2020 Series) (Version: 1.12 (2014-04-16) - Samsung Electronics Co., Ltd.) Samsung Printer Diagnostics (HKLM-x32\...\Samsung Printer Diagnostics) (Version: 1.0.0.15 - Samsung Electronics Co., Ltd.) Samsung Printer Live Update (HKLM-x32\...\Samsung Printer Live Update) (Version: 1.01.00:04(2013-04-22) - Samsung Electronics Co., Ltd.) Service Pack 2 for Microsoft Office 2010 (KB2687455) 64-Bit Edition (HKLM\...\{90140000-0011-0000-1000-0000000FF1CE}_Office14.PROPLUS_{A3364707-2F53-4C83-8F68-C9877A9080C7}) (Version: - Microsoft) Skype Click to Call (HKLM-x32\...\{873F8E7C-10E6-449F-BD7E-5FBA7C8E1C9B}) (Version: 8.5.0.9167 - Microsoft Corporation) Skype™ 7.40 (HKLM-x32\...\{3B7E914A-93D5-4A29-92BB-AF8C3F66C431}) (Version: 7.40.103 - Skype Technologies S.A.) Visual Studio 2012 x64 Redistributables (HKLM\...\{8C775E70-A791-4DA8-BCC3-6AB7136F4484}) (Version: 14.0.0.1 - AVG Technologies) Visual Studio 2012 x86 Redistributables (HKLM-x32\...\{98EFF19A-30AB-4E4B-B943-F06B1C63EBF8}) (Version: 14.0.0.1 - AVG Technologies CZ, s.r.o.) VLC media player (HKLM\...\VLC media player) (Version: 2.1.5 - VideoLAN) Winamp (HKLM-x32\...\Winamp) (Version: 5.666 - Nullsoft, Inc) Windows Movie Maker 2.6 (HKLM-x32\...\{B3DAF54F-DB25-4586-9EF1-96D24BB14088}) (Version: 2.6.4037.0 - Microsoft Corporation) WinRAR 5.70 (64-bitowy) (HKLM\...\WinRAR archiver) (Version: 5.70.0 - win.rar GmbH) ==================== Niestandardowe rejestracje CLSID (filtrowane): ============== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2019-10-04] (AVAST Software s.r.o. -> AVAST Software) ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2019-10-04] (AVAST Software s.r.o. -> AVAST Software) ShellIconOverlayIdentifiers: [00avg] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2019-10-04] (AVAST Software s.r.o. -> AVAST Software) ShellIconOverlayIdentifiers-x32: [DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\User\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll -> Brak pliku ShellIconOverlayIdentifiers-x32: [DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\User\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll -> Brak pliku ShellIconOverlayIdentifiers-x32: [DropboxExt3] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\User\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll -> Brak pliku ShellIconOverlayIdentifiers-x32: [DropboxExt4] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\User\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll -> Brak pliku ContextMenuHandlers1: [Atheros] -> {B8952421-0E55-400B-94A6-FA858FC0A39F} => C:\Program Files (x86)\Bluetooth Suite\BtvAppExt.dll [2013-03-27] (Qualcomm Atheros -> Atheros Commnucations) [Brak podpisu cyfrowego] ContextMenuHandlers1: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2019-10-04] (AVAST Software s.r.o. -> AVAST Software) ContextMenuHandlers1: [BthSendToContextMenuExt] -> {CF373149-C3D9-4AEB-9CE8-BDD1D2FFFA5B} => C:\Windows\system32\BSAppShlExt.dll [2013-05-14] (IVT CORPORATION -> TODO: <公司名>) ContextMenuHandlers1: [FileAssociationHelper] -> {D5CF14A2-B3CA-49DC-8E3E-0BB233B26D09} => C:\Program Files\File Association Helper\FAHDll.dll [2014-01-28] (WinZip Computing LLC -> Nico Mak Computing) ContextMenuHandlers1: [ShellConverter] -> {30A4E07E-068A-4d91-8F05-691283A1336B} => C:\Program Files (x86)\Common Files\AVSMedia\ActiveX\AVSShellConverter64.dll [2017-12-18] (Online Media Technologies Ltd. -> Online Media Technologies Ltd.) ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2019-03-01] (win.rar GmbH -> Alexander Roshal) ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2019-03-01] (win.rar GmbH -> Alexander Roshal) ContextMenuHandlers3: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2019-10-04] (AVAST Software s.r.o. -> AVAST Software) ContextMenuHandlers3: [FTShellContext] -> {AFF81F7B-6942-40c4-AADA-7214EF7B6DD1} => C:\Program Files (x86)\Bluetooth Suite\ShellContextExt.dll [2013-03-27] (Qualcomm Atheros -> Qualcomm Atheros Commnucations) [Brak podpisu cyfrowego] ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => C:\Windows\system32\igfxpph.dll [2013-06-04] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation) ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\Windows\system32\nvshext.dll [2013-10-23] (NVIDIA Corporation -> NVIDIA Corporation) ContextMenuHandlers6: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2019-10-04] (AVAST Software s.r.o. -> AVAST Software) ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2019-03-01] (win.rar GmbH -> Alexander Roshal) ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2019-03-01] (win.rar GmbH -> Alexander Roshal) ==================== Codecs (filtrowane) ==================== ==================== Skróty & WMI ======================== (Wybrane wejścia mogą zostać załączone w celu ich zresetowania lub usunięcia.) WMI:subscription\__FilterToConsumerBinding->CommandLineEventConsumer.Name=\"BVTConsumer\"",Filter="__EventFilter.Name=\"BVTFilter\":: WMI:subscription\__EventFilter->BVTFilter::[Query => SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99] WMI:subscription\CommandLineEventConsumer->BVTConsumer::[CommandLineTemplate => cscript KernCap.vbs][WorkingDirectory => C:\\tools\\kernrate] ==================== Załadowane moduły (filtrowane) ============= 2013-03-27 11:33 - 2013-03-27 11:33 - 000086016 _____ () [Brak podpisu cyfrowego] C:\Program Files (x86)\Bluetooth Suite\Modules\Map\MAP.dll 2014-03-23 12:29 - 2012-03-27 01:12 - 000073728 _____ (Intel Corporation) [Brak podpisu cyfrowego] C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.dll 2013-03-27 11:39 - 2013-03-27 11:39 - 000033408 _____ (Qualcomm Atheros -> Qualcomm Atheros Commnucations) [Brak podpisu cyfrowego] C:\Program Files (x86)\Bluetooth Suite\CommApi.dll 2013-03-27 11:40 - 2013-03-27 11:40 - 000203392 _____ (Qualcomm Atheros -> Qualcomm Atheros Commnucations) [Brak podpisu cyfrowego] C:\Program Files (x86)\Bluetooth Suite\FolderViewImpl.dll 2013-03-27 11:40 - 2013-03-27 11:40 - 000085632 _____ (Qualcomm Atheros -> Qualcomm Atheros Commnucations) [Brak podpisu cyfrowego] C:\Program Files (x86)\Bluetooth Suite\GattI.dll 2013-03-27 11:40 - 2013-03-27 11:40 - 000126592 _____ (Qualcomm Atheros -> Qualcomm Atheros Commnucations) [Brak podpisu cyfrowego] C:\Program Files (x86)\Bluetooth Suite\gatts.DLL 2013-03-27 11:40 - 2013-03-27 11:40 - 000083072 _____ (Qualcomm Atheros -> Qualcomm Atheros Commnucations) [Brak podpisu cyfrowego] C:\Program Files (x86)\Bluetooth Suite\Handsfree.dll 2013-03-27 11:40 - 2013-03-27 11:40 - 000034432 _____ (Qualcomm Atheros -> Qualcomm Atheros Commnucations) [Brak podpisu cyfrowego] C:\Program Files (x86)\Bluetooth Suite\ipc.dll 2013-03-27 11:40 - 2013-03-27 11:40 - 000063104 _____ (Qualcomm Atheros -> Qualcomm Atheros Commnucations) [Brak podpisu cyfrowego] C:\Program Files (x86)\Bluetooth Suite\ModuleManager.dll 2013-03-27 11:40 - 2013-03-27 11:40 - 001067648 _____ (Qualcomm Atheros -> Qualcomm Atheros Commnucations) [Brak podpisu cyfrowego] C:\Program Files (x86)\Bluetooth Suite\OutlookLib.dll 2013-03-27 11:40 - 2013-03-27 11:40 - 000130176 _____ (Qualcomm Atheros -> Qualcomm Atheros Commnucations) [Brak podpisu cyfrowego] C:\Program Files (x86)\Bluetooth Suite\skypeagent.dll 2013-03-27 11:40 - 2013-03-27 11:40 - 000027264 _____ (Qualcomm Atheros -> Qualcomm Atheros Commnucations) [Brak podpisu cyfrowego] C:\Program Files (x86)\Bluetooth Suite\TCPConnection.dll 2013-03-27 11:40 - 2013-03-27 11:40 - 000114816 _____ (Qualcomm Atheros -> Qualcomm Atheros Commnucations) [Brak podpisu cyfrowego] C:\Program Files (x86)\Bluetooth Suite\utils.dll 2013-03-27 11:34 - 2013-03-27 11:34 - 000194560 _____ (Qualcomm Atheros Commnucations) [Brak podpisu cyfrowego] C:\Program Files (x86)\Bluetooth Suite\Modules\Audio\audio.dll 2013-03-27 11:36 - 2013-03-27 11:36 - 000161792 _____ (Qualcomm Atheros Commnucations) [Brak podpisu cyfrowego] C:\Program Files (x86)\Bluetooth Suite\Modules\BasicPrintProfile\BPP.dll 2013-03-27 11:36 - 2013-03-27 11:36 - 000177152 _____ (Qualcomm Atheros Commnucations) [Brak podpisu cyfrowego] C:\Program Files (x86)\Bluetooth Suite\Modules\BIP\BIP.dll 2013-03-27 11:33 - 2013-03-27 11:33 - 000018432 _____ (Qualcomm Atheros Commnucations) [Brak podpisu cyfrowego] C:\Program Files (x86)\Bluetooth Suite\Modules\DID\DId.dll 2013-03-27 11:33 - 2013-03-27 11:33 - 000036352 _____ (Qualcomm Atheros Commnucations) [Brak podpisu cyfrowego] C:\Program Files (x86)\Bluetooth Suite\Modules\FAX\Fax.dll 2013-03-27 11:36 - 2013-03-27 11:36 - 000421888 _____ (Qualcomm Atheros Commnucations) [Brak podpisu cyfrowego] C:\Program Files (x86)\Bluetooth Suite\Modules\FileTransfer\FileTransfer.dll 2013-03-27 11:35 - 2013-03-27 11:35 - 000094208 _____ (Qualcomm Atheros Commnucations) [Brak podpisu cyfrowego] C:\Program Files (x86)\Bluetooth Suite\Modules\GapSdp\GapSdp.dll 2013-03-27 11:32 - 2013-03-27 11:32 - 000096768 _____ (Qualcomm Atheros Commnucations) [Brak podpisu cyfrowego] C:\Program Files (x86)\Bluetooth Suite\Modules\goep\goep.dll 2013-03-27 11:33 - 2013-03-27 11:33 - 000029696 _____ (Qualcomm Atheros Commnucations) [Brak podpisu cyfrowego] C:\Program Files (x86)\Bluetooth Suite\Modules\HCRP\Hcrp.dll 2013-03-27 11:33 - 2013-03-27 11:33 - 000142848 _____ (Qualcomm Atheros Commnucations) [Brak podpisu cyfrowego] C:\Program Files (x86)\Bluetooth Suite\Modules\HealthDevice\HDP.dll 2013-03-27 11:36 - 2013-03-27 11:36 - 000090624 _____ (Qualcomm Atheros Commnucations) [Brak podpisu cyfrowego] C:\Program Files (x86)\Bluetooth Suite\Modules\L2capLib\l2caplib.dll 2013-03-27 11:33 - 2013-03-27 11:33 - 000308224 _____ (Qualcomm Atheros Commnucations) [Brak podpisu cyfrowego] C:\Program Files (x86)\Bluetooth Suite\Modules\LE\LE.dll 2013-03-27 11:32 - 2013-03-27 11:32 - 000181248 _____ (Qualcomm Atheros Commnucations) [Brak podpisu cyfrowego] C:\Program Files (x86)\Bluetooth Suite\Modules\OppOperation\ObjPush.dll 2013-03-27 11:36 - 2013-03-27 11:36 - 000065024 _____ (Qualcomm Atheros Commnucations) [Brak podpisu cyfrowego] C:\Program Files (x86)\Bluetooth Suite\Modules\OppOperation\OppOperation.dll 2013-03-27 11:36 - 2013-03-27 11:36 - 000066560 _____ (Qualcomm Atheros Commnucations) [Brak podpisu cyfrowego] C:\Program Files (x86)\Bluetooth Suite\Modules\pbap\pbap.dll 2013-03-27 11:36 - 2013-03-27 11:36 - 000063488 _____ (Qualcomm Atheros Commnucations) [Brak podpisu cyfrowego] C:\Program Files (x86)\Bluetooth Suite\Modules\RfcommLib\rfcommlib.dll 2013-03-27 11:36 - 2013-03-27 11:36 - 000097280 _____ (Qualcomm Atheros Commnucations) [Brak podpisu cyfrowego] C:\Program Files (x86)\Bluetooth Suite\Modules\sap\sap.dll 2013-03-27 11:36 - 2013-03-27 11:36 - 000087552 _____ (Qualcomm Atheros Commnucations) [Brak podpisu cyfrowego] C:\Program Files (x86)\Bluetooth Suite\Modules\SesMgr\sesmgr.dll 2013-03-27 11:36 - 2013-03-27 11:36 - 000055296 _____ (Qualcomm Atheros Commnucations) [Brak podpisu cyfrowego] C:\Program Files (x86)\Bluetooth Suite\Modules\spp\spp.dll 2013-03-27 11:33 - 2013-03-27 11:33 - 000064512 _____ (Qualcomm Atheros Commnucations) [Brak podpisu cyfrowego] C:\Program Files (x86)\Bluetooth Suite\Modules\Sync\Sync.dll ==================== Alternate Data Streams (filtrowane) ======== ==================== Tryb awaryjny (filtrowane) ================== ==================== Powiązania plików (filtrowane) ================= ==================== Internet Explorer - Witryny zaufane i z ograniczeniami ========== ==================== Hosts - zawartość: ========================= (Użycie dyrektywy Hosts: w fixlist spowoduje reset pliku Hosts.) 2018-09-29 19:41 - 2020-01-28 18:46 - 000000002 _____ C:\Windows\system32\drivers\etc\hosts ==================== Inne obszary =========================== (Obecnie brak automatycznej naprawy dla tej sekcji.) HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\ProgramData\Oracle\Java\javapath;C:\Program Files (x86)\Intel\iCLS Client\;C:\Program Files\Intel\iCLS Client\;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;C:\Program Files\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files\Intel\Intel(R) Management Engine Components\IPT;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT;C:\Users\Weronika\Desktop\bin;C:\Program Files (x86)\Skype\Phone\ HKU\S-1-5-21-1940709926-2010511596-994217772-1003\Control Panel\Desktop\\Wallpaper -> C:\Users\User\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg DNS Servers: 192.168.1.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Zapora systemu Windows [funkcja włączona] ==================== MSCONFIG/TASK MANAGER - Wyłączone elementy == (Załączenie wejścia w fixlist spowoduje jego usunięcie.) MSCONFIG\startupreg: ApnTBMon => "C:\Program Files (x86)\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe" MSCONFIG\startupreg: BCSSync => "C:\Program Files\Microsoft Office\Office14\BCSSync.exe" /DelayServices MSCONFIG\startupreg: CDAServer => C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe MSCONFIG\startupreg: EEDSpeedLauncher => rundll32.exe C:\Windows\system32\eed_ec.dll,SpeedLauncher MSCONFIG\startupreg: FAHConsole => C:\Program Files\File Association Helper\FAHConsole.exe ==================== Reguły Zapory systemu Windows (filtrowane) ================ (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) FirewallRules: [{D2D7260E-ACF3-4FC6-AC38-739151F3BA19}] => (Allow) C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BlueSoleilCS.exe (IVT CORPORATION -> IVT Corporation) FirewallRules: [{C946359A-C9C5-43A8-800C-80AFE875F915}] => (Allow) C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BlueSoleilCS.exe (IVT CORPORATION -> IVT Corporation) FirewallRules: [{FC1B8C6F-88DB-402A-B3B6-49D19591A202}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe (NVIDIA Corporation -> NVIDIA Corporation) FirewallRules: [{AA138BEB-9EE2-42A2-BEE7-8CDC161665C9}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe (NVIDIA Corporation -> NVIDIA Corporation) FirewallRules: [{5EDDFA97-1ED6-4654-8865-2648E1ED6925}] => (Allow) C:\Users\Weronika\AppData\Roaming\Dropbox\bin\Dropbox.exe Brak pliku FirewallRules: [{C1BCC634-5DF4-4962-92D3-BBB42405F47D}] => (Allow) C:\Users\Weronika\AppData\Roaming\Dropbox\bin\Dropbox.exe Brak pliku FirewallRules: [{924B5C1A-7296-426B-B836-8162C82C8C1A}] => (Allow) C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe (Samsung Electronics CO., LTD. -> ) FirewallRules: [{2172DE39-5431-4864-853E-3723CD140BE9}] => (Allow) C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe (Samsung Electronics CO., LTD. -> ) FirewallRules: [{DA2246CB-7C0A-4E38-A7A9-6C6155609ED3}] => (Allow) C:\Program Files (x86)\Samsung\Easy Printer Manager\IDS.Application.exe (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.) FirewallRules: [{2BDEB402-EE0B-4524-A733-7BEE87EA0948}] => (Allow) C:\Program Files (x86)\Samsung\Easy Printer Manager\IDS.Application.exe (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.) FirewallRules: [{94DE35E2-3A95-408F-A073-AF39EC9F4531}] => (Allow) C:\Program Files (x86)\Samsung\Easy Printer Manager\OrderSupplies.exe (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.) FirewallRules: [{6537523C-3CEB-4E18-87A6-CFAC98174E22}] => (Allow) C:\Program Files (x86)\Samsung\Easy Printer Manager\OrderSupplies.exe (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.) FirewallRules: [{5E69B4AA-B958-4CF6-BA29-0345309CE381}] => (Allow) C:\Program Files (x86)\Samsung\Easy Printer Manager\IDSAlert.exe (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.) FirewallRules: [{0FEC9F57-BCDA-4929-BA94-ED1F8E1D4BBD}] => (Allow) C:\Program Files (x86)\Samsung\Easy Printer Manager\IDSAlert.exe (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.) FirewallRules: [{656F22D2-466B-42F9-9521-09F7BAC9C14F}] => (Allow) C:\Program Files (x86)\Samsung\Easy Printer Manager\uninstall.exe (Samsung Electronics Co., Ltd.) [Brak podpisu cyfrowego] FirewallRules: [{168CF9DA-A258-4745-8F85-B29B00412A05}] => (Allow) C:\Program Files (x86)\Samsung\Easy Printer Manager\uninstall.exe (Samsung Electronics Co., Ltd.) [Brak podpisu cyfrowego] FirewallRules: [{45C43781-9C02-41D3-A53A-6E0BA06AB6E3}] => (Allow) C:\Program Files (x86)\Samsung\Easy Printer Manager\CDAS2PC\CDAS2PC.exe (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.) FirewallRules: [{96BDA77C-B284-4D69-B3DF-90CDA03E7794}] => (Allow) C:\Program Files (x86)\Samsung\Easy Printer Manager\CDAS2PC\CDAS2PC.exe (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.) FirewallRules: [{02C2ED3B-C20D-4F1A-909D-C1D486012C0D}] => (Allow) C:\Program Files (x86)\Samsung\Easy Printer Manager\CDAS2PC\ScanProcess.exe (Samsung Electronics CO., LTD. -> ScanProcess) FirewallRules: [{D6181B59-D237-4221-9558-79F4BDB4103B}] => (Allow) C:\Program Files (x86)\Samsung\Easy Printer Manager\CDAS2PC\ScanProcess.exe (Samsung Electronics CO., LTD. -> ScanProcess) FirewallRules: [{BFD52925-4ABD-47C7-8115-458FF9214B92}] => (Allow) C:\Program Files (x86)\Samsung\Easy Printer Manager\CDAS2PC\Scan2PCNotify.exe (Samsung Electronics CO., LTD. -> Scan2PCNotify) FirewallRules: [{6BB5B879-11BE-4041-9258-4100288CB80B}] => (Allow) C:\Program Files (x86)\Samsung\Easy Printer Manager\CDAS2PC\Scan2PCNotify.exe (Samsung Electronics CO., LTD. -> Scan2PCNotify) FirewallRules: [{FEE60533-A2EE-4C94-9219-510A2EE3D28D}] => (Allow) C:\Program Files (x86)\Common Files\Common Desktop Agent\CDASrv.exe (Samsung Electronics CO., LTD. -> ) FirewallRules: [{9393F21D-EF08-4E35-85E0-B00E4D3D642A}] => (Allow) C:\Program Files (x86)\Common Files\Common Desktop Agent\CDASrv.exe (Samsung Electronics CO., LTD. -> ) FirewallRules: [{FC5D20FB-7C45-4C49-B02F-05C350570ECD}] => (Allow) C:\Users\Weronika\AppData\Local\Facebook\Video\Skype\FacebookVideoCalling.exe Brak pliku FirewallRules: [{F9515134-C1C5-4A99-AABB-1DED484EBEA8}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.) FirewallRules: [{091859B5-2377-4CFB-9ECA-D3C38557EEE6}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.) FirewallRules: [{DA15DEF6-BDFE-4D53-B5C2-7D33679E2D90}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.) FirewallRules: [{3445357B-6088-4255-A510-017CA7BAC25D}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.) FirewallRules: [TCP Query User{D7D56856-C618-44B8-A556-496244462319}C:\windows\microsoft.net\framework\v2.0.50727\vbc.exe] => (Allow) C:\windows\microsoft.net\framework\v2.0.50727\vbc.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [UDP Query User{1629C58C-C3F6-4578-B9ED-99B731B09821}C:\windows\microsoft.net\framework\v2.0.50727\vbc.exe] => (Allow) C:\windows\microsoft.net\framework\v2.0.50727\vbc.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{34F1E6D5-34FA-4160-9E15-2C7587B40A30}] => (Allow) C:\Program Files (x86)\Winamp\winamp.exe (Nullsoft Inc. -> Nullsoft, Inc.) FirewallRules: [{5C10FD1D-7E64-4FC3-B074-2659E7139AFD}] => (Allow) C:\Program Files (x86)\Winamp\winamp.exe (Nullsoft Inc. -> Nullsoft, Inc.) FirewallRules: [{F576AF9E-FB28-4250-8F42-E1A89B913CA4}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe (NVIDIA Corporation -> NVIDIA Corporation) FirewallRules: [{857B09BF-5FC5-4781-92F5-2E3691E1DCC1}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe (NVIDIA Corporation -> NVIDIA Corporation) FirewallRules: [{59CCFC64-F49F-4DA7-9633-13340C80524B}] => (Allow) C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BlueSoleilCS.exe (IVT CORPORATION -> IVT Corporation) FirewallRules: [{D908F838-2E4A-46DC-A55D-0541290E6B27}] => (Allow) C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BlueSoleilCS.exe (IVT CORPORATION -> IVT Corporation) FirewallRules: [{D2F01525-E547-4303-9886-E51263CC1E1C}] => (Allow) C:\Program Files (x86)\AVG\AVG2015\avgmfapx.exe Brak pliku FirewallRules: [{40E2568C-3164-4C01-8B81-315F94A1634F}] => (Allow) C:\Program Files (x86)\AVG\AVG2015\avgmfapx.exe Brak pliku FirewallRules: [{A980CE4A-731C-4166-9B50-CE7AAA85D2FD}] => (Allow) C:\Program Files (x86)\AVG\AVG2015\avgnsa.exe Brak pliku FirewallRules: [{0BDA2B94-1E46-4A89-AC0B-77B76144E152}] => (Allow) C:\Program Files (x86)\AVG\AVG2015\avgnsa.exe Brak pliku FirewallRules: [{C9021D15-9407-45BE-B5BF-6231AFC645B3}] => (Allow) C:\Program Files (x86)\AVG\AVG2015\avgdiagex.exe Brak pliku FirewallRules: [{C78EFF43-D8FB-4EFA-86D6-E49F92D198AB}] => (Allow) C:\Program Files (x86)\AVG\AVG2015\avgdiagex.exe Brak pliku FirewallRules: [{09E0FB93-6E4F-4D54-9657-EB3209044438}] => (Allow) C:\Program Files (x86)\AVG\AVG2015\avgemca.exe Brak pliku FirewallRules: [{ED3B7B2F-9A0C-42F1-836B-8026F7565066}] => (Allow) C:\Program Files (x86)\AVG\AVG2015\avgemca.exe Brak pliku FirewallRules: [{1135C149-3F50-4686-8DE8-A59CD401F64C}] => (Allow) C:\Program Files (x86)\AVG\AVG2015\avgmfapx.exe Brak pliku FirewallRules: [{334D7304-3220-465A-B74D-8B8AFC39F694}] => (Allow) C:\Program Files (x86)\AVG\AVG2015\avgmfapx.exe Brak pliku FirewallRules: [{371373E4-4926-4EE0-A9A3-5ADE6E71F0FC}] => (Allow) C:\Program Files (x86)\AVG\Av\avgmfapx.exe Brak pliku FirewallRules: [{88D8B5B7-A208-43D2-8809-60801612DE79}] => (Allow) C:\Program Files (x86)\AVG\Av\avgmfapx.exe Brak pliku FirewallRules: [TCP Query User{54F7151F-09D6-40DC-919D-4754C29B2742}C:\users\weronika\desktop\bin\win64\matlab.exe] => (Allow) C:\users\weronika\desktop\bin\win64\matlab.exe Brak pliku FirewallRules: [UDP Query User{DC84455B-62D0-4451-9153-E6FF72CA0863}C:\users\weronika\desktop\bin\win64\matlab.exe] => (Allow) C:\users\weronika\desktop\bin\win64\matlab.exe Brak pliku FirewallRules: [{BFA19C98-31BE-4244-B24B-DA0F61D9286C}] => (Block) C:\users\weronika\desktop\bin\win64\matlab.exe Brak pliku FirewallRules: [{AFC1BA47-EBEA-4081-ADE2-87887051B032}] => (Block) C:\users\weronika\desktop\bin\win64\matlab.exe Brak pliku FirewallRules: [{2AE6A5C0-6841-4C62-8671-21E0505908CD}] => (Allow) C:\Users\Weronika\AppData\Local\Apowersoft\Apowersoft Online Launcher\Apowersoft Online Launcher.exe Brak pliku FirewallRules: [{E698E416-3473-4466-807A-2A0579931B3B}] => (Allow) C:\Users\Weronika\AppData\Local\Apowersoft\Apowersoft Online Launcher\Apowersoft Online Launcher.exe Brak pliku FirewallRules: [{A42338D5-56DE-48A9-9E81-519A148D601E}] => (Allow) C:\Users\Weronika\AppData\Local\Apowersoft\Online Video Converter\Online Video Converter.exe Brak pliku FirewallRules: [{4E3597F1-5A93-4BAE-BC73-4D5E08DE51BC}] => (Allow) C:\Users\Weronika\AppData\Local\Apowersoft\Online Video Converter\Online Video Converter.exe Brak pliku FirewallRules: [{1825C2BE-340F-41DB-B896-B647983B989D}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.) FirewallRules: [{5F4D47F9-D137-4814-9A02-0C1ED4492419}] => (Allow) C:\Program Files (x86)\BlueStacks\HD-Player.exe Brak pliku FirewallRules: [{1AA45441-18D3-4AC4-86B7-EC4D4CAC6911}] => (Allow) C:\Program Files (x86)\Popcorn Time\Updater.exe (Popcorn Time) [Brak podpisu cyfrowego] FirewallRules: [{456207CD-1509-497C-A2D7-04D4201BD7C3}] => (Allow) C:\Program Files (x86)\Popcorn Time\Updater.exe (Popcorn Time) [Brak podpisu cyfrowego] FirewallRules: [{E8D0ED72-46D2-4270-B858-893E2A32AD42}] => (Allow) C:\Users\Weronika\AppData\Roaming\uTorrent\uTorrent.exe Brak pliku FirewallRules: [{4C6C705C-4655-4C35-88DF-AEB33836381D}] => (Allow) C:\Users\Weronika\AppData\Roaming\uTorrent\uTorrent.exe Brak pliku FirewallRules: [{0E30CCC6-A885-4115-8A52-7E20A1131689}] => (Allow) C:\Program Files\CCleaner\CCUpdate.exe (Piriform Ltd -> Piriform Ltd) FirewallRules: [{413950CF-9EB5-46B2-BE14-E7086E146426}] => (Allow) C:\Program Files\CCleaner\CCUpdate.exe (Piriform Ltd -> Piriform Ltd) FirewallRules: [{2DE65254-C873-4E13-89BA-374BE7E4FB6F}] => (Allow) C:\Users\Weronika\AppData\Local\Programs\Opera\56.0.3051.36\opera.exe Brak pliku FirewallRules: [{3EF01D7E-3C70-470E-8B49-576F7D373890}] => (Allow) C:\Users\Weronika\AppData\Local\Chromium\Application\chrome.exe Brak pliku FirewallRules: [{966CD41A-EB26-4217-AD89-E1983436DB27}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) FirewallRules: [{F5EE40EC-181A-4258-8C67-4119BA445E0D}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\outlook.exe (Microsoft Corporation -> Microsoft Corporation) ==================== Punkty Przywracania systemu ========================= UWAGA: Przywracanie systemu jest wyłączone (Total:100 GB) (Free:3.93 GB) (4%) Sprawdź usługę "VSS" ==================== Wadliwe urządzenia w Menedżerze urządzeń ============ Name: Bluetooth Profile Interface Driver Description: Bluetooth Profile Interface Driver Class Guid: {5b0e08fd-59eb-47af-b743-965f15c0f8f1} Manufacturer: Ralink Corporation Service: BthL2caScoIfSrv Problem: : This device cannot start. (Code10) Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device. On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard. ==================== Błędy w Dzienniku zdarzeń: ======================== Dziennik Aplikacja: ================== Error: (02/27/2020 06:10:07 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected. Error: (02/27/2020 10:17:56 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected. Error: (02/26/2020 06:20:18 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected. Error: (02/26/2020 07:37:01 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected. Error: (02/25/2020 08:26:29 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 5023 Error: (02/25/2020 08:26:29 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledEvent 5023 Error: (02/25/2020 08:26:29 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: Continuously busy for more than a second Error: (02/25/2020 08:26:28 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 4009 Dziennik System: ============= Error: (02/27/2020 06:59:54 PM) (Source: DCOM) (EventID: 10016) (User: Lapek) Description: Zgodnie z ustawieniami uprawnienia właściwe dla aplikacji nie jest udzielane uprawnienie Lokalny Aktywacja do aplikacji serwera COM z identyfikatorem klasy CLSID {E579AB5F-1CC4-44B4-BED9-DE0991FF0623} i identyfikatorem aplikacji APPID {56BE716B-2F76-4DFA-8702-67AE10044F0B} użytkownikowi Lapek\User o identyfikatorze zabezpieczeń SID (S-1-5-21-1940709926-2010511596-994217772-1003) z adresu LocalHost (użycie LRPC). To uprawnienie zabezpieczeń można modyfikować przy użyciu narzędzia administracyjnego Usługi składowe. Error: (02/27/2020 06:59:54 PM) (Source: DCOM) (EventID: 10016) (User: Lapek) Description: Zgodnie z ustawieniami uprawnienia właściwe dla aplikacji nie jest udzielane uprawnienie Lokalny Aktywacja do aplikacji serwera COM z identyfikatorem klasy CLSID {E579AB5F-1CC4-44B4-BED9-DE0991FF0623} i identyfikatorem aplikacji APPID {56BE716B-2F76-4DFA-8702-67AE10044F0B} użytkownikowi Lapek\User o identyfikatorze zabezpieczeń SID (S-1-5-21-1940709926-2010511596-994217772-1003) z adresu LocalHost (użycie LRPC). To uprawnienie zabezpieczeń można modyfikować przy użyciu narzędzia administracyjnego Usługi składowe. Error: (02/27/2020 06:59:54 PM) (Source: DCOM) (EventID: 10016) (User: Lapek) Description: Zgodnie z ustawieniami uprawnienia właściwe dla aplikacji nie jest udzielane uprawnienie Lokalny Aktywacja do aplikacji serwera COM z identyfikatorem klasy CLSID {E579AB5F-1CC4-44B4-BED9-DE0991FF0623} i identyfikatorem aplikacji APPID {56BE716B-2F76-4DFA-8702-67AE10044F0B} użytkownikowi Lapek\User o identyfikatorze zabezpieczeń SID (S-1-5-21-1940709926-2010511596-994217772-1003) z adresu LocalHost (użycie LRPC). To uprawnienie zabezpieczeń można modyfikować przy użyciu narzędzia administracyjnego Usługi składowe. Error: (02/27/2020 06:57:12 PM) (Source: DCOM) (EventID: 10016) (User: Lapek) Description: Zgodnie z ustawieniami uprawnienia właściwe dla aplikacji nie jest udzielane uprawnienie Lokalny Aktywacja do aplikacji serwera COM z identyfikatorem klasy CLSID {E579AB5F-1CC4-44B4-BED9-DE0991FF0623} i identyfikatorem aplikacji APPID {56BE716B-2F76-4DFA-8702-67AE10044F0B} użytkownikowi Lapek\User o identyfikatorze zabezpieczeń SID (S-1-5-21-1940709926-2010511596-994217772-1003) z adresu LocalHost (użycie LRPC). To uprawnienie zabezpieczeń można modyfikować przy użyciu narzędzia administracyjnego Usługi składowe. Error: (02/27/2020 06:57:12 PM) (Source: DCOM) (EventID: 10016) (User: Lapek) Description: Zgodnie z ustawieniami uprawnienia właściwe dla aplikacji nie jest udzielane uprawnienie Lokalny Aktywacja do aplikacji serwera COM z identyfikatorem klasy CLSID {E579AB5F-1CC4-44B4-BED9-DE0991FF0623} i identyfikatorem aplikacji APPID {56BE716B-2F76-4DFA-8702-67AE10044F0B} użytkownikowi Lapek\User o identyfikatorze zabezpieczeń SID (S-1-5-21-1940709926-2010511596-994217772-1003) z adresu LocalHost (użycie LRPC). To uprawnienie zabezpieczeń można modyfikować przy użyciu narzędzia administracyjnego Usługi składowe. Error: (02/27/2020 06:57:12 PM) (Source: DCOM) (EventID: 10016) (User: Lapek) Description: Zgodnie z ustawieniami uprawnienia właściwe dla aplikacji nie jest udzielane uprawnienie Lokalny Aktywacja do aplikacji serwera COM z identyfikatorem klasy CLSID {E579AB5F-1CC4-44B4-BED9-DE0991FF0623} i identyfikatorem aplikacji APPID {56BE716B-2F76-4DFA-8702-67AE10044F0B} użytkownikowi Lapek\User o identyfikatorze zabezpieczeń SID (S-1-5-21-1940709926-2010511596-994217772-1003) z adresu LocalHost (użycie LRPC). To uprawnienie zabezpieczeń można modyfikować przy użyciu narzędzia administracyjnego Usługi składowe. Error: (02/27/2020 06:09:06 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi Update service z powodu następującego błędu: Odmowa dostępu. Error: (02/27/2020 10:16:54 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi Update service z powodu następującego błędu: Odmowa dostępu. Windows Defender: =================================== Date: 2014-11-17 19:36:20.833 Description: Produkt Windows Defender napotkał błąd podczas próby załadowania podpisów i podejmie próbę powrotu do znanego zestawu dobrych podpisów. Podpisy objęte próbą:Bieżące Kod błędu:0x80070002 Opis błędu:Nie można odnaleźć określonego pliku. Wersja podpisu:0.0.0.0 Wersja aparatu:0.0.0.0 CodeIntegrity: =================================== Date: 2015-03-13 10:19:11.529 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Program Files (x86)\AVG\AVG2015\avghooka.dll because the set of per-page image hashes could not be found on the system. Date: 2015-03-13 10:01:53.872 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Program Files (x86)\AVG\AVG2015\avghooka.dll because the set of per-page image hashes could not be found on the system. Date: 2015-03-13 09:43:43.554 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Program Files (x86)\AVG\AVG2015\avghooka.dll because the set of per-page image hashes could not be found on the system. Date: 2015-03-13 00:54:23.754 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Program Files (x86)\AVG\AVG2015\avghooka.dll because the set of per-page image hashes could not be found on the system. Date: 2015-03-13 00:31:42.012 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Program Files (x86)\AVG\AVG2015\avghooka.dll because the set of per-page image hashes could not be found on the system. Date: 2015-03-12 23:37:04.967 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Program Files (x86)\AVG\AVG2015\avghooka.dll because the set of per-page image hashes could not be found on the system. Date: 2015-03-12 21:21:15.760 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Program Files (x86)\AVG\AVG2015\avghooka.dll because the set of per-page image hashes could not be found on the system. Date: 2015-03-12 21:10:06.014 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Program Files (x86)\AVG\AVG2015\avghooka.dll because the set of per-page image hashes could not be found on the system. ==================== Statystyki pamięci =========================== BIOS: American Megatrends Inc. X550CL.207 07/10/2014 Płyta główna: ASUSTeK COMPUTER INC. X550CL Procesor: Intel(R) Core(TM) i3-3217U CPU @ 1.80GHz Procent pamięci w użyciu: 80% Całkowita pamięć fizyczna: 3981.7 MB Dostępna pamięć fizyczna: 787.43 MB Całkowita pamięć wirtualna: 7961.58 MB Dostępna pamięć wirtualna: 4225.27 MB ==================== Dyski ================================ Drive c: (Windows) (Fixed) (Total:100 GB) (Free:3.93 GB) NTFS Drive d: (DATA) (Fixed) (Total:365.29 GB) (Free:286.45 GB) NTFS ==================== MBR & Tablica partycji ==================== ==================== Koniec Addition.txt =======================