Rezultaty skanu uzupełniającego Farbar Recovery Scan Tool (x64) Wersja:04-10-2015 Uruchomiony przez Pawel (2015-10-04 21:11:12) Uruchomiony z C:\Users\Pawel\Downloads Windows 7 Professional N Service Pack 1 (X64) (2015-04-29 18:06:08) Tryb startu: Normal ========================================================== ==================== Konta użytkowników: ============================= Administrator (S-1-5-21-3441008413-1941201263-3828717484-500 - Administrator - Disabled) => C:\Users\Administrator Gość (S-1-5-21-3441008413-1941201263-3828717484-501 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-3441008413-1941201263-3828717484-1012 - Limited - Enabled) Pawel (S-1-5-21-3441008413-1941201263-3828717484-1001 - Administrator - Enabled) => C:\Users\Pawel ==================== Centrum zabezpieczeń ======================== (Załączenie wejścia w fixlist spowoduje jego usunięcie.) AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Zainstalowane programy ====================== (W fixlist dozwolone tylko załączanie programów adware z flagą "Hidden" w celu ich uwidocznienia. Programy adware powinny zostać w poprawny sposób odinstalowane.) µTorrent (HKU\S-1-5-21-3441008413-1941201263-3828717484-1001\...\uTorrent) (Version: 3.4.5.41073 - BitTorrent Inc.) 64 Bit HP CIO Components Installer (Version: 6.2.1 - Hewlett-Packard) Hidden Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 1.5.3.9120 - Adobe Systems Inc.) Adobe Community Help (HKLM-x32\...\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1) (Version: 3.0.0.400 - Adobe Systems Incorporated) Adobe Flash Player 10 ActiveX (HKLM-x32\...\{B7B3E9B3-FB14-4927-894B-E9124509AF5A}) (Version: 10.0.32.18 - Adobe Systems, Inc.) Adobe Media Player (HKLM-x32\...\com.adobe.amp.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1) (Version: 1.8 - Adobe Systems Incorporated) Adobe Photoshop CS5 (HKLM-x32\...\{15FEDA5F-141C-4127-8D7E-B962D1742728}) (Version: 12.0 - Adobe Systems Incorporated) Adobe Photoshop Lightroom 5.3 64-bit (HKLM\...\{2DD71ACB-552D-402C-9529-7906ACB95C30}) (Version: 5.3.1 - Adobe Systems Incorporated) AIMP2 (HKLM-x32\...\AIMP2) (Version: - AIMP DevTeam) AIO_Scan (x32 Version: 130.0.365.000 - Hewlett-Packard) Hidden Aktualizacje NVIDIA 2.5.14.5 (Version: 2.5.14.5 - NVIDIA Corporation) Hidden Assetto Corsa (HKLM-x32\...\Assetto Corsa_is1) (Version: - ) Assetto Corsa Update v1.1 Incl. Dream Pack 1 (HKLM-x32\...\QXNzZXR0b0NvcnNh_is1) (Version: 1 - ) Atheros Communications Inc.(R) AR81Family Gigabit/Fast Ethernet Driver (HKLM-x32\...\{3108C217-BE83-42E4-AE9E-A56A2A92E549}) (Version: 2.0.15.16 - Atheros Communications Inc.) ATI Catalyst Install Manager (HKLM\...\{91DE36DA-9DE8-0CE8-AE5A-884735889FF6}) (Version: 3.0.715.0 - ATI Technologies, Inc.) Audiograbber 1.83 SE (HKLM-x32\...\Audiograbber) (Version: 1.83 SE - Audiograbber) Audiograbber MP3 Plugin (HKLM-x32\...\Audiograbber-Lame) (Version: 1.0 - AG) BufferChm (x32 Version: 130.0.331.000 - Hewlett-Packard) Hidden CGS17_Setup_x64 (Version: 17.1 - Corel Corporation) Hidden Copy (x32 Version: 130.0.428.000 - Hewlett-Packard) Hidden Corel Graphics - Windows Shell Extension (HKLM\...\_{4DC318F5-1640-4417-A218-912ED9905FAA}) (Version: 17.1.0.572 - Corel Corporation) Corel Graphics - Windows Shell Extension (Version: 17.1.572 - Corel Corporation) Hidden Corel Graphics - Windows Shell Extension 32 Bit (Version: 17.1.572 - Corel Corporation) Hidden CorelDRAW Graphics Suite X7 - BR (x64) (Version: 17.1 - Corel Corporation) Hidden CorelDRAW Graphics Suite X7 - Capture (x64) (Version: 17.1 - Corel Corporation) Hidden CorelDRAW Graphics Suite X7 - Common (x64) (Version: 17.1 - Corel Corporation) Hidden CorelDRAW Graphics Suite X7 - Connect (x64) (Version: 17.1 - Corel Corporation) Hidden CorelDRAW Graphics Suite X7 - CS (x64) (Version: 17.1 - Corel Corporation) Hidden CorelDRAW Graphics Suite X7 - CT (x64) (Version: 17.1 - Corel Corporation) Hidden CorelDRAW Graphics Suite X7 - Custom Data (x64) (Version: 17.1 - Corel Corporation) Hidden CorelDRAW Graphics Suite X7 - CZ (x64) (Version: 17.1 - Corel Corporation) Hidden CorelDRAW Graphics Suite X7 - DE (x64) (Version: 17.1 - Corel Corporation) Hidden CorelDRAW Graphics Suite X7 - Draw (x64) (Version: 17.1 - Corel Corporation) Hidden CorelDRAW Graphics Suite X7 - EN (x64) (Version: 17.1 - Corel Corporation) Hidden CorelDRAW Graphics Suite X7 - ES (x64) (Version: 17.1 - Corel Corporation) Hidden CorelDRAW Graphics Suite X7 - Filters (x64) (Version: 17.1 - Corel Corporation) Hidden CorelDRAW Graphics Suite X7 - FontNav (x64) (Version: 17.1 - Corel Corporation) Hidden CorelDRAW Graphics Suite X7 - FR (x64) (Version: 17.1 - Corel Corporation) Hidden CorelDRAW Graphics Suite X7 - IPM (x64) (Version: 17.1 - Corel Corporation) Hidden CorelDRAW Graphics Suite X7 - IPM Content (x64) (Version: 17.0 - Corel Corporation) Hidden CorelDRAW Graphics Suite X7 - IT (x64) (Version: 17.1 - Corel Corporation) Hidden CorelDRAW Graphics Suite X7 - JP (x64) (Version: 17.1 - Corel Corporation) Hidden CorelDRAW Graphics Suite X7 - NL (x64) (Version: 17.1 - Corel Corporation) Hidden CorelDRAW Graphics Suite X7 - PHOTO-PAINT (x64) (Version: 17.1 - Corel Corporation) Hidden CorelDRAW Graphics Suite X7 - Photozoom Plugin (x64) (Version: 17.0 - Corel Corporation) Hidden CorelDRAW Graphics Suite X7 - PL (x64) (Version: 17.1 - Corel Corporation) Hidden CorelDRAW Graphics Suite X7 - Redist (x64) (Version: 17.0 - Corel Corporation) Hidden CorelDRAW Graphics Suite X7 - RU (x64) (Version: 17.1 - Corel Corporation) Hidden CorelDRAW Graphics Suite X7 - Setup Files (x64) (Version: 17.1 - Corel Corporation) Hidden CorelDRAW Graphics Suite X7 - VBA (x64) (Version: 17.1 - Corel Corporation) Hidden CorelDRAW Graphics Suite X7 - VideoBrowser (x64) (Version: 17.1 - Corel Corporation) Hidden CorelDRAW Graphics Suite X7 - Writing Tools (x64) (Version: 17.1 - Corel Corporation) Hidden CorelDRAW Graphics Suite X7 (64-Bit) (HKLM\...\_{5CB73140-806C-42C6-A05A-1AFD0E92DEB5}) (Version: 17.1.0.572 - Corel Corporation) Counter-Strike: Global Offensive (HKLM-x32\...\Steam App 730) (Version: - Valve) Destinations (x32 Version: 130.0.0.0 - Hewlett-Packard) Hidden DeviceDiscovery (x32 Version: 130.0.465.000 - Hewlett-Packard) Hidden DJ_AIO_ProductContext (x32 Version: 130.0.365.000 - Hewlett-Packard) Hidden DJ_AIO_Software (x32 Version: 130.0.365.000 - Hewlett-Packard) Hidden DJ_AIO_Software_min (x32 Version: 130.0.365.000 - Hewlett-Packard) Hidden F2100 (x32 Version: 130.0.365.000 - Hewlett-Packard) Hidden F2100_Help (x32 Version: 90.0.222.000 - Hewlett-Packard) Hidden Free YouTube Download version 3.2.59.616 (HKLM-x32\...\Free YouTube Download_is1) (Version: 3.2.59.616 - DVDVideoSoft Ltd.) Free YouTube to MP3 Converter version 3.12.59.505 (HKLM-x32\...\Free YouTube to MP3 Converter_is1) (Version: 3.12.59.505 - DVDVideoSoft Ltd.) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 45.0.2454.99 - Google Inc.) Google Update Helper (x32 Version: 1.3.28.15 - Google Inc.) Hidden GPBaseService2 (x32 Version: 130.0.371.000 - Hewlett-Packard) Hidden HP Customer Participation Program 13.0 (HKLM\...\HPExtendedCapabilities) (Version: 13.0 - HP) HP Deskjet All-In-One Driver Software 13.0 Rel. 1 (HKLM\...\{EB773820-0871-46A8-9B96-F2B04F8B34F0}) (Version: 13.0 - HP) HP Imaging Device Functions 13.0 (HKLM\...\HP Imaging Device Functions) (Version: 13.0 - HP) HP Photosmart Essential 3.5 (HKLM\...\HP Photosmart Essential) (Version: 3.5 - HP) HP Smart Web Printing 4.51 (HKLM\...\HP Smart Web Printing) (Version: 4.51 - HP) HP Solution Center 13.0 (HKLM\...\HP Solution Center & Imaging Support Tools) (Version: 13.0 - HP) HP Update (HKLM-x32\...\{7059BDA7-E1DB-442C-B7A1-6144596720A4}) (Version: 4.000.011.006 - Hewlett-Packard) HPPhotoGadget (x32 Version: 130.0.282.000 - Hewlett-Packard) Hidden HPPhotoSmartDiscLabelContent1 (x32 Version: 2.04.0000 - Hewlett-Packard) Hidden HPPhotosmartEssential (x32 Version: 2.04.0000 - Hewlett-Packard) Hidden HPProductAssistant (x32 Version: 130.0.371.000 - Hewlett-Packard) Hidden HPSSupply (x32 Version: 130.0.371.000 - Hewlett-Packard) Hidden Intel(R) C++ Redistributables for Windows* on Intel(R) 64 (HKLM-x32\...\{D2437C5C-2D8C-40D2-8059-689AD7239FA3}) (Version: 11.1.048 - Intel Corporation) K-Lite Mega Codec Pack 11.1.0 (HKLM-x32\...\KLiteCodecPack_is1) (Version: 11.1.0 - ) Komunikator WTW 1.6.0.4630 (HKLM\...\{1DF5019A-68B5-4ba1-8E59-E185C7B7FF11}) (Version: 1.6.0.4630 - K2T.eu) LG United Mobile Driver (HKLM-x32\...\{2A3A4BD6-6CE0-4e2a-80D2-1D0FF6ACBFBA}) (Version: 3.14.1 - LG Electronics) Lightroom Backup Cleaner (HKLM-x32\...\{FB3D6797-C51D-41C0-87F4-2F7C3DEF1352}) (Version: 1.0.2344 - Jim Keir) Lightroom SoftProof (HKLM-x32\...\{0DE52C82-61E0-4511-92EC-05DA3D0B5B7B}) (Version: 1.0.2650 - Jim Keir) Logitech Gaming Software 5.10 (HKLM\...\{1444D2EE-C7AD-44A8-844F-2634B49353D1}) (Version: 5.10.127 - Logitech) MarketResearch (x32 Version: 130.0.374.000 - Hewlett-Packard) Hidden MATLAB R2010a (HKLM\...\MatlabR2010a) (Version: 7.10 - The MathWorks, Inc.) Microsoft .NET Framework 4.5 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50709 - Microsoft Corporation) Microsoft Office Enterprise 2007 (HKLM-x32\...\ENTERPRISE) (Version: 12.0.4518.1014 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation) Microsoft Visual Studio Tools for Applications 2.0 - ENU (HKLM-x32\...\{AA4A4B2C-0465-3CF8-BA76-27A027D8ACAB}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual Studio Tools for Applications 2.0 Runtime (HKLM-x32\...\{299C0434-4F4E-341F-A916-4E07AEB35E79}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual Studio Tools for Applications 2012 (HKLM-x32\...\{89ca2a32-2b52-4595-8dfd-6fe4757958d0}) (Version: 11.0.51108 - Microsoft Corporation) MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation) MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation) NVIDIA GeForce Experience 2.5.14.5 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.5.14.5 - NVIDIA Corporation) NVIDIA Oprogramowanie systemu PhysX 9.15.0428 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.15.0428 - NVIDIA Corporation) NVIDIA Sterownik 3D Vision 355.82 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 355.82 - NVIDIA Corporation) NVIDIA Sterownik dźwięku HD 1.3.34.3 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.34.3 - NVIDIA Corporation) NVIDIA Sterownik graficzny 355.82 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 355.82 - NVIDIA Corporation) NVIDIA Sterownik kontrolera 3D Vision 352.65 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 352.65 - NVIDIA Corporation) Pacote de Idiomas do Microsoft Visual Studio Tools for Applications 2012 x64 Hosting Support - PTB (Version: 11.0.51108 - Microsoft Corporation) Hidden Pacote de Idiomas do Microsoft Visual Studio Tools for Applications 2012 x86 Hosting Support - PTB (x32 Version: 11.0.51108 - Microsoft Corporation) Hidden Panel sterowania NVIDIA 355.82 (Version: 355.82 - NVIDIA Corporation) Hidden PDF Settings CS5 (x32 Version: 10.0 - Adobe Systems Incorporated) Hidden Platform (x32 Version: 1.34 - VIA Technologies, Inc.) Hidden Polski pakiet językowy dla programu Microsoft .NET Framework 4 Client Profile (HKLM\...\Microsoft .NET Framework 4 Client Profile PLK Language Pack) (Version: 4.0.30319 - Microsoft Corporation) Polski pakiet językowy dla programu Microsoft .NET Framework 4 Extended (HKLM\...\Microsoft .NET Framework 4 Extended PLK Language Pack) (Version: 4.0.30319 - Microsoft Corporation) SAMSUNG USB Driver for Mobile Phones (HKLM\...\{D0795B21-0CDA-4a92-AB9E-6E92D8111E44}) (Version: 1.5.51.0 - SAMSUNG Electronics Co., Ltd.) Scan (x32 Version: 13.0.0.0 - Hewlett-Packard) Hidden SHIELD Streaming (Version: 4.1.3000 - NVIDIA Corporation) Hidden SHIELD Wireless Controller Driver (Version: 2.5.14.5 - NVIDIA Corporation) Hidden Shop for HP Supplies (HKLM\...\Shop for HP Supplies) (Version: 13.0 - HP) SmartWebPrinting (x32 Version: 130.0.457.000 - Hewlett-Packard) Hidden SolutionCenter (x32 Version: 130.0.373.000 - Hewlett-Packard) Hidden Sony Mobile Update Engine (HKLM-x32\...\Update Engine) (Version: 2.15.9.201506301709 - Sony Mobile Communications Inc.) SopCast 3.9.6 (HKLM-x32\...\SopCast) (Version: 3.9.6 - www.sopcast.com) Status (x32 Version: 130.0.469.000 - Hewlett-Packard) Hidden Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation) Toolbox (x32 Version: 130.0.648.000 - Hewlett-Packard) Hidden TrayApp (x32 Version: 130.0.422.000 - Hewlett-Packard) Hidden UnloadSupport (x32 Version: 11.0.0 - Hewlett-Packard) Hidden VIA Platforma Menedżera urządzeń (HKLM-x32\...\InstallShield_{20D4A895-748C-4D88-871C-FDB1695B0169}) (Version: 1.34 - VIA Technologies, Inc.) WebReg (x32 Version: 130.0.132.017 - Hewlett-Packard) Hidden WIDCOMM BTW Development Kit (HKLM-x32\...\{0B75A75A-3D2C-479B-ACA0-A17A0B4B7628}) (Version: 6.1.0.1506 - Broadcom Corporation) Win7 Themepack Creator (HKLM-x32\...\{CBF2AD63-4F72-41E3-83FD-93386D7A7922}) (Version: 1.0.2565 - Jim Keir) WinRAR 5.21 (64-bitowy) (HKLM\...\WinRAR archiver) (Version: 5.21.0 - win.rar GmbH) Языковой пакет для поддержки размещения набора средств Microsoft Visual Studio Tools для работы с приложениями 2012 (x64) - RUS (Version: 11.0.51108 - Microsoft Corporation) Hidden Языковой пакет для поддержки размещения набора средств Microsoft Visual Studio Tools для работы с приложениями 2012 (x86) - RUS (x32 Version: 11.0.51108 - Microsoft Corporation) Hidden ==================== Niestandardowe rejestracje CLSID (filtrowane): ========================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) ==================== Punkty Przywracania systemu ========================= 25-09-2015 15:07:28 Windows Update 29-09-2015 13:25:43 Windows Update 01-10-2015 23:07:59 Windows Update 02-10-2015 13:47:52 Windows Update ==================== Hosts - zawartość: =============================== (Użycie dyrektywy Hosts: w fixlist spowoduje reset pliku Hosts.) 2009-07-14 04:34 - 2009-06-10 23:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Zaplanowane zadania (filtrowane) ============= (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) Task: {63360C4F-6392-4FD8-9349-5F1D02458CDB} - System32\Tasks\RunAsStdUser Task => D:\Programy\MATLAB\R2010a\MATLAB R2010a.lnk [2015-10-04] () Task: {858FE441-10E4-4421-96FE-C335D95C979B} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-04-29] (Google Inc.) Task: {CF4263AD-97F7-4F47-8C2F-1364DAB8CB00} - System32\Tasks\AdobeAAMUpdater-1.0-Pawel-Komputer-Pawel => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2010-03-06] (Adobe Systems Incorporated) Task: {CFD7B370-6EFD-48B2-8AFB-56252B5E2534} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-04-29] (Google Inc.) Task: {F78EECE5-DA41-47C2-BE2A-61A9E126EA59} - System32\Tasks\Microsoft\Windows\Application Experience\ProgramDataUpdater => Rundll32.exe invagent.dll,RunUpdate -noappraiser (Załączenie wejścia w fixlist spowoduje przesunięcie pliku zadania (.job). Plik uruchamiany docelowo przez zadanie nie zostanie przeniesiony.) Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ==================== Załadowane moduły (filtrowane) ============== 2015-04-29 20:59 - 2015-08-25 16:24 - 00116344 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll 2015-04-29 21:14 - 2010-07-06 10:01 - 00078448 ____R () C:\Program Files (x86)\VIA\VIAudioi\VDeck\QsApoApi64.dll 2015-04-29 21:14 - 2010-07-06 10:00 - 00386160 ____R () C:\Program Files (x86)\VIA\VIAudioi\VDeck\Dts2ApoApi64.dll 2015-04-29 21:14 - 2010-07-06 10:01 - 00105584 ____R () C:\Program Files (x86)\VIA\VIAudioi\VDeck\VMicApi.dll 2015-04-29 21:14 - 2010-07-06 10:01 - 64643696 ____R () C:\Program Files (x86)\VIA\VIAudioi\VDeck\Skin.dll 2015-04-30 11:59 - 2015-10-04 17:52 - 00019456 _____ () D:\Programy\K2T\WTW\libCryptoLayer.module 2015-04-30 11:59 - 2015-10-04 17:52 - 00088064 _____ () D:\Programy\K2T\WTW\libCryptoWtw.module 2015-04-30 11:59 - 2015-10-04 17:52 - 00552960 _____ () D:\Programy\K2T\WTW\libSQ3.module 2015-04-30 11:59 - 2015-10-04 17:52 - 00579072 _____ () D:\Programy\K2T\WTW\libImage.module 2015-04-30 11:59 - 2015-10-04 17:52 - 00092160 _____ () D:\Programy\K2T\WTW\libZlib.module 2015-04-30 11:59 - 2015-10-04 17:52 - 00129024 _____ () D:\Programy\K2T\WTW\libExpat.module 2015-04-30 11:59 - 2015-10-04 17:52 - 00442880 _____ () D:\Programy\K2T\WTW\libLexer.module 2015-04-29 21:00 - 2015-08-27 02:37 - 00011896 _____ () C:\Program Files (x86)\NVIDIA Corporation\Update Core\detoured.dll 2015-09-22 21:45 - 2015-09-19 00:13 - 01501512 _____ () C:\Program Files (x86)\Google\Chrome\Application\45.0.2454.99\libglesv2.dll 2015-09-22 21:45 - 2015-09-19 00:13 - 00081224 _____ () C:\Program Files (x86)\Google\Chrome\Application\45.0.2454.99\libegl.dll ==================== Alternate Data Streams (filtrowane) ========= (Załączenie wejścia w fixlist spowoduje usunięcie strumienia ADS.) ==================== Tryb awaryjny (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Wartość "AlternateShell" zostanie przywrócona.) ==================== EXE - Powiązania (filtrowane) =============== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci.) ==================== Internet Explorer - Witryny zaufane i z ograniczeniami =============== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru.) ==================== Inne obszary ============================ (Obecnie brak automatycznej naprawy dla tej sekcji.) HKU\S-1-5-21-3441008413-1941201263-3828717484-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Pawel\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg DNS Servers: 192.168.0.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 2) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Zapora systemu Windows - funkcja włączona. ==================== MSCONFIG/TASK MANAGER - Wyłączone elementy == (Obecnie brak automatycznej naprawy dla tej sekcji.) MSCONFIG\Services: Browser => 3 MSCONFIG\Services: gupdate => 2 MSCONFIG\Services: gupdatem => 3 MSCONFIG\Services: hpqcxs08 => 3 MSCONFIG\Services: IEEtwCollectorService => 3 MSCONFIG\Services: LanmanServer => 2 MSCONFIG\Services: Net Driver HPZ12 => 2 MSCONFIG\Services: Pml Driver HPZ12 => 2 MSCONFIG\Services: PSI_SVC_2_x64 => 2 MSCONFIG\Services: ss_conn_service => 2 MSCONFIG\Services: SwitchBoard => 3 MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^HP Digital Imaging Monitor.lnk => C:\Windows\pss\HP Digital Imaging Monitor.lnk.CommonStartup MSCONFIG\startupreg: AdobeAAMUpdater-1.0 => "C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe" MSCONFIG\startupreg: AdobeCS5ServiceManager => "C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe" -launchedbylogin MSCONFIG\startupreg: HP Software Update => C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe MSCONFIG\startupreg: hpqSRMon => C:\Program Files (x86)\HP\Digital Imaging\bin\hpqSRMon.exe MSCONFIG\startupreg: MouseDriver => TiltWheelMouse.exe MSCONFIG\startupreg: Start WingMan Profiler => C:\Program Files\Logitech\Gaming Software\LWEMon.exe /noui MSCONFIG\startupreg: Steam => "D:\Programy\Steam\steam.exe" -silent MSCONFIG\startupreg: SwitchBoard => C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe MSCONFIG\startupreg: uTorrent => "C:\Users\Pawel\AppData\Roaming\uTorrent\uTorrent.exe" /MINIMIZED ==================== Reguły Zapory systemu Windows (filtrowane) =============== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) FirewallRules: [SPPSVC-In-TCP] => (Allow) %SystemRoot%\system32\sppsvc.exe FirewallRules: [SPPSVC-In-TCP-NoScope] => (Allow) %SystemRoot%\system32\sppsvc.exe FirewallRules: [{2232B6FE-C3BD-40F7-AF49-DB730FDA0CCC}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe FirewallRules: [{A5036B1E-7472-49A2-8B53-348C2D4D73F8}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe FirewallRules: [{2E520DD6-33C7-443C-9B38-5B9A6FE6D9FB}] => (Allow) D:\Programy\K2T\WTW\wtw.exe FirewallRules: [{F3A0836B-D16B-4D4E-B4A0-CCC5A0EE5474}] => (Allow) D:\Programy\K2T\WTW\wtw.exe FirewallRules: [{AC12F5A4-F542-40F0-9C9C-64B9D8C65BBC}] => (Allow) D:\Programy\Steam\Steam.exe FirewallRules: [{93B3613D-277E-4893-9CAC-70F9F9177C0C}] => (Allow) D:\Programy\Steam\Steam.exe FirewallRules: [{39D3C734-072F-4F8D-932C-3B36E8C4C902}] => (Allow) D:\Programy\Steam\bin\steamwebhelper.exe FirewallRules: [{225C01C5-3B11-4769-AC1C-F616D57751CF}] => (Allow) D:\Programy\Steam\bin\steamwebhelper.exe FirewallRules: [{F745D83F-DEF7-4DAA-9B6B-F5CC4CC6C74B}] => (Allow) D:\Programy\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe FirewallRules: [{A7806298-C319-4B94-93F4-57BB9B8F2C81}] => (Allow) D:\Programy\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe FirewallRules: [TCP Query User{6D767EEE-17A0-469D-AF05-8D8230581E3C}D:\programy\sopcast\sopcast.exe] => (Allow) D:\programy\sopcast\sopcast.exe FirewallRules: [UDP Query User{66E86491-83FB-4B2C-8A1F-5F226E1E6BF1}D:\programy\sopcast\sopcast.exe] => (Allow) D:\programy\sopcast\sopcast.exe FirewallRules: [{59EAA340-B5E9-462E-BAFB-DA707237C053}] => (Allow) C:\Users\Pawel\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{90389242-6608-47B5-83F3-692BF695CF68}] => (Allow) C:\Users\Pawel\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{D58FE68E-87D0-4871-A894-45CA14EF03D4}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe FirewallRules: [{C80E1F09-B1BA-4811-8BF4-C9F231AD4C3E}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqste08.exe FirewallRules: [{0E12A985-ED71-4339-8A52-5DA1FC7D0C6D}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hposid01.exe FirewallRules: [{F5776E2D-296C-4C81-9145-8034F05D4FB2}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqkygrp.exe FirewallRules: [{3BDB4132-5B26-404C-843D-63029539BDD7}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqcopy2.exe FirewallRules: [{C721F01F-E4BE-4738-BD38-B7C3BF9CBE49}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpfccopy.exe FirewallRules: [{39CAB37A-280F-4685-9208-9209FA06C22F}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqnrs08.exe FirewallRules: [{C14CC578-5F7D-4D2A-94FF-7315F8ED5580}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpiscnapp.exe FirewallRules: [{F0752DB0-32A2-4CCD-9635-6FCFF081DF53}] => (Allow) C:\Program Files (x86)\common files\hp\digital imaging\bin\hpqphotocrm.exe FirewallRules: [{03E2BCA4-A489-4D39-8CA5-142ACA960B25}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqsudi.exe FirewallRules: [{BFFAF3A4-16C9-4F8C-89D3-CBA8269AA334}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqpsapp.exe FirewallRules: [{4C2E9DC2-6D55-4AC2-A646-D53BC96CB3A4}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqpse.exe FirewallRules: [{EAE34AEF-801C-4148-B534-F58000A2BA2B}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqgplgtupl.exe FirewallRules: [{187E3BEF-F7B6-40D4-9C85-C45BF91FF87F}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqgpc01.exe FirewallRules: [{FECB570E-C9BF-4F85-995D-3F11DAFEE2E9}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqusgm.exe FirewallRules: [{288AF88C-1DA0-4FC8-AB3C-FD0451A02BB3}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqusgh.exe FirewallRules: [{87DFDC18-8514-4E7B-8161-D3CC70E5DD8B}] => (Allow) C:\Program Files (x86)\HP\hp software update\hpwucli.exe FirewallRules: [{12C3915A-C3C1-4CF0-A117-5FCC91731CCE}] => (Allow) C:\Program Files (x86)\HP\digital imaging\smart web printing\smartwebprintexe.exe FirewallRules: [TCP Query User{DD3BC134-2224-4BCF-B6F6-B8D9EED723B0}C:\program files (x86)\aimp2\aimp2.exe] => (Allow) C:\program files (x86)\aimp2\aimp2.exe FirewallRules: [UDP Query User{FCE8DF29-E8E8-4F2E-8432-7DC6811D505D}C:\program files (x86)\aimp2\aimp2.exe] => (Allow) C:\program files (x86)\aimp2\aimp2.exe FirewallRules: [{98C7C62D-A003-4CDD-AA41-7E13A9D48AFB}] => (Allow) C:\Program Files (x86)\Sony Mobile\Update Engine\Sony Mobile Update Engine.exe FirewallRules: [{D5CF82EB-B78B-4653-A729-D2B4FB3C7C73}] => (Allow) C:\Program Files (x86)\Sony Mobile\Update Engine\Sony Mobile Update Engine.exe FirewallRules: [TCP Query User{1029E74D-6ABE-4C4F-A6D8-5DCB0ABFC4A8}C:\program files (x86)\sony mobile\update engine\sony mobile update engine.exe] => (Allow) C:\program files (x86)\sony mobile\update engine\sony mobile update engine.exe FirewallRules: [UDP Query User{6659D247-7A8B-4203-9E2F-8B83D4E0405A}C:\program files (x86)\sony mobile\update engine\sony mobile update engine.exe] => (Allow) C:\program files (x86)\sony mobile\update engine\sony mobile update engine.exe FirewallRules: [{63094D66-F859-4D5E-AD05-7F1230696CD7}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe FirewallRules: [{37686908-BCB3-4410-B87C-94480E142AA9}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe FirewallRules: [{D4E21B36-135C-4002-9449-5CDA90181ED5}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe FirewallRules: [{FC12F4C4-428F-4C83-AEE6-09049422F1CF}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{6916E226-A9CC-4720-A7E0-ED585C92245F}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{DAEAE10E-4E72-4999-A0FB-D846A589BE26}] => (Block) d:\Programy\Corel\CorelDRAW Graphics Suite X7\Programs64\CorelDrw.exe FirewallRules: [{95F32CE8-7AE6-4542-871B-531B13C1FE1A}] => (Block) d:\Programy\Corel\CorelDRAW Graphics Suite X7\Programs64\CorelPP.exe FirewallRules: [TCP Query User{37E4C977-C881-4070-BD05-26F0D81767CA}D:\instalki\assetto corsa\acs.exe] => (Allow) D:\instalki\assetto corsa\acs.exe FirewallRules: [UDP Query User{608663C7-D721-4BAE-A3F6-2B8091C15983}D:\instalki\assetto corsa\acs.exe] => (Allow) D:\instalki\assetto corsa\acs.exe FirewallRules: [{72D59CAA-975D-45E9-AB33-DCBE5F729E11}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Wadliwe urządzenia w Menedżerze urządzeń ============= ==================== Błędy w Dzienniku zdarzeń: ========================= Dziennik Aplikacja: ================== Error: (10/04/2015 06:05:01 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (10/04/2015 05:51:45 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (10/04/2015 05:35:59 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (10/04/2015 05:33:08 PM) (Source: ESENT) (EventID: 215) (User: ) Description: WinMail (2296) WindowsMail0: Tworzenie kopii zapasowej zostało zatrzymane, ponieważ zostało przerwane przez klienta lub nie można nawiązać połączenia z klientem. Error: (10/04/2015 05:33:06 PM) (Source: ESENT) (EventID: 215) (User: ) Description: WinMail (2152) WindowsMail0: Tworzenie kopii zapasowej zostało zatrzymane, ponieważ zostało przerwane przez klienta lub nie można nawiązać połączenia z klientem. Error: (10/04/2015 05:33:01 PM) (Source: Wininit) (EventID: 1015) (User: ) Description: Błąd krytycznego procesu systemowego C:\Windows\system32\lsass.exe z kodem stanu 255. Komputer musi być ponownie uruchomiony. Error: (10/04/2015 05:33:00 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: lsass.exe, wersja: 6.1.7601.18939, sygnatura czasowa: 0x55afc81e Nazwa modułu powodującego błąd: ncrypt.dll, wersja: 6.1.7601.18939, sygnatura czasowa: 0x55b02e32 Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x0000000000016cd6 Identyfikator procesu powodującego błąd: 0x22c Godzina uruchomienia aplikacji powodującej błąd: 0xlsass.exe0 Ścieżka aplikacji powodującej błąd: lsass.exe1 Ścieżka modułu powodującego błąd: lsass.exe2 Identyfikator raportu: lsass.exe3 Error: (10/04/2015 05:31:40 PM) (Source: Wininit) (EventID: 1015) (User: ) Description: Błąd krytycznego procesu systemowego C:\Windows\system32\lsass.exe z kodem stanu 255. Komputer musi być ponownie uruchomiony. Error: (10/04/2015 05:31:38 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: lsass.exe, wersja: 6.1.7601.18939, sygnatura czasowa: 0x55afc81e Nazwa modułu powodującego błąd: ncrypt.dll, wersja: 6.1.7601.18939, sygnatura czasowa: 0x55b02e32 Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x0000000000016cd6 Identyfikator procesu powodującego błąd: 0x22c Godzina uruchomienia aplikacji powodującej błąd: 0xlsass.exe0 Ścieżka aplikacji powodującej błąd: lsass.exe1 Ścieżka modułu powodującego błąd: lsass.exe2 Identyfikator raportu: lsass.exe3 Error: (10/04/2015 05:01:43 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Dziennik System: ============= Error: (10/04/2015 09:10:06 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: Usługa Usługa nasłuchująca grup domowych zależy od usługi Serwer, której nie można uruchomić z powodu następującego błędu: %%1058 Error: (10/04/2015 09:01:23 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: Usługa Usługa nasłuchująca grup domowych zależy od usługi Serwer, której nie można uruchomić z powodu następującego błędu: %%1058 Error: (10/04/2015 09:01:12 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: Usługa Usługa nasłuchująca grup domowych zależy od usługi Serwer, której nie można uruchomić z powodu następującego błędu: %%1058 Error: (10/04/2015 08:30:06 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: Usługa Usługa nasłuchująca grup domowych zależy od usługi Serwer, której nie można uruchomić z powodu następującego błędu: %%1058 Error: (10/04/2015 08:29:50 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: Usługa Usługa nasłuchująca grup domowych zależy od usługi Serwer, której nie można uruchomić z powodu następującego błędu: %%1058 Error: (10/04/2015 08:26:18 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: Usługa Usługa nasłuchująca grup domowych zależy od usługi Serwer, której nie można uruchomić z powodu następującego błędu: %%1058 Error: (10/04/2015 06:30:48 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: Usługa Usługa nasłuchująca grup domowych zależy od usługi Serwer, której nie można uruchomić z powodu następującego błędu: %%1058 Error: (10/04/2015 06:30:44 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: Usługa Usługa nasłuchująca grup domowych zależy od usługi Serwer, której nie można uruchomić z powodu następującego błędu: %%1058 Error: (10/04/2015 06:22:45 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: Usługa Usługa nasłuchująca grup domowych zależy od usługi Serwer, której nie można uruchomić z powodu następującego błędu: %%1058 Error: (10/04/2015 06:05:21 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: Usługa Usługa nasłuchująca grup domowych zależy od usługi Serwer, której nie można uruchomić z powodu następującego błędu: %%1058 CodeIntegrity: =================================== Date: 2015-10-04 21:10:12.991 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\ViaKaraokeApo.dll because the set of per-page image hashes could not be found on the system. Date: 2015-10-04 21:10:08.062 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\ViaKaraokeApo.dll because the set of per-page image hashes could not be found on the system. Date: 2015-10-04 21:07:05.878 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\ViaKaraokeApo.dll because the set of per-page image hashes could not be found on the system. Date: 2015-10-04 21:04:55.314 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\ViaKaraokeApo.dll because the set of per-page image hashes could not be found on the system. Date: 2015-10-04 20:58:47.269 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\ViaKaraokeApo.dll because the set of per-page image hashes could not be found on the system. Date: 2015-10-04 20:58:47.072 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\ViaKaraokeApo.dll because the set of per-page image hashes could not be found on the system. Date: 2015-10-04 20:44:53.973 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\ViaKaraokeApo.dll because the set of per-page image hashes could not be found on the system. Date: 2015-10-04 20:31:33.855 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\ViaKaraokeApo.dll because the set of per-page image hashes could not be found on the system. Date: 2015-10-04 20:30:00.473 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\ViaKaraokeApo.dll because the set of per-page image hashes could not be found on the system. Date: 2015-10-04 20:18:17.443 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\ViaKaraokeApo.dll because the set of per-page image hashes could not be found on the system. ==================== Statystyki pamięci =========================== Procesor: AMD Athlon(tm) II X2 260 Processor Procent pamięci w użyciu: 44% Całkowita pamięć fizyczna: 6143.18 MB Dostępna pamięć fizyczna: 3436.93 MB Całkowita pamięć wirtualna: 12284.56 MB Dostępna pamięć wirtualna: 9334.48 MB ==================== Dyski ================================ Drive c: () (Fixed) (Total:99.9 GB) (Free:30.09 GB) NTFS Drive d: () (Fixed) (Total:831.51 GB) (Free:199.63 GB) NTFS ==================== MBR & Tablica partycji ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: 68DEE2D8) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=99.9 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=831.5 GB) - (Type=07 NTFS) ==================== Koniec Addition.txt ============================