Rezultaty skanu uzupełniającego Farbar Recovery Scan Tool (x64) Wersja:05-12-2015 Uruchomiony przez Marcin (2015-12-06 15:11:35) Uruchomiony z C:\Users\Marcin\Downloads Windows 7 Home Premium Service Pack 1 (X64) (2012-12-17 20:54:26) Tryb startu: Normal ========================================================== ==================== Konta użytkowników: ============================= Administrator (S-1-5-21-1718635078-569779591-784435394-500 - Administrator - Disabled) ETB User (S-1-5-21-1718635078-569779591-784435394-1005 - Limited - Enabled) Gość (S-1-5-21-1718635078-569779591-784435394-501 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-1718635078-569779591-784435394-1008 - Limited - Enabled) Marcin (S-1-5-21-1718635078-569779591-784435394-1001 - Administrator - Enabled) => C:\Users\Marcin ==================== Centrum zabezpieczeń ======================== (Załączenie wejścia w fixlist spowoduje jego usunięcie.) AV: Lavasoft Ad-Watch Live! Anti-Virus (Enabled - Up to date) {9FF26384-70D4-CE6B-3ECB-E759A6A40116} AV: Microsoft Security Essentials (Enabled - Up to date) {B7ECF8CD-0188-6703-DBA4-AA65C6ACFB0A} AS: Microsoft Security Essentials (Enabled - Up to date) {0C8D1929-27B2-688D-E114-9117BD2BB1B7} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Lavasoft Ad-Watch Live! (Enabled - Up to date) {24938260-56EE-C1E5-047B-DC2BDD234BAB} ==================== Zainstalowane programy ====================== (W fixlist dozwolone tylko załączanie programów adware z flagą "Hidden" w celu ich uwidocznienia. Programy adware powinny zostać w poprawny sposób odinstalowane.) Ad-Aware (HKLM-x32\...\{D0046F17-A170-4E07-A349-F1BCB3A8A8EB}) (Version: 9.0.7 - Lavasoft Limited) Adobe Flash Player 19 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 19.0.0.245 - Adobe Systems Incorporated) Adobe Flash Player 19 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 19.0.0.245 - Adobe Systems Incorporated) Adobe Reader XI (11.0.13) - Polish (HKLM-x32\...\{AC76BA86-7AD7-1045-7B44-AB0000000001}) (Version: 11.0.13 - Adobe Systems Incorporated) Aktualizacja produktu Microsoft Office Excel 2007 Help (KB963678) (HKLM-x32\...\{90120000-0016-0415-0000-0000000FF1CE}_HOMESTUDENTR_{04E205D6-88B1-4652-B162-42DF2C3B1228}) (Version: - Microsoft) Aktualizacja produktu Microsoft Office Powerpoint 2007 Help (KB963669) (HKLM-x32\...\{90120000-0018-0415-0000-0000000FF1CE}_HOMESTUDENTR_{442ECBCF-94A7-48CC-8CD9-D31FFFD5FA86}) (Version: - Microsoft) Aktualizacja produktu Microsoft Office Word 2007 Help (KB963665) (HKLM-x32\...\{90120000-001B-0415-0000-0000000FF1CE}_HOMESTUDENTR_{128A36ED-21BE-4547-9FFE-5B85AEC735DD}) (Version: - Microsoft) Aktualizacje NVIDIA 10.4.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 10.4.0 - NVIDIA Corporation) Archiwizator WinRAR (HKLM\...\WinRAR archiver) (Version: - ) Aslain's XVM Mod wersja 4.2.50 (HKLM-x32\...\ZRwTINhSZfduKONYrSCTiCiGPggQZdcLRvoAVxyCOXXpkHeC~1DC3968F_is1) (Version: 4.2.50 - Aslain) Battlefield 3™ (HKLM-x32\...\{64BFBE7A-886C-4CA2-A9B4-0C2B5A5942BC}) (Version: 1.6.0.0 - Electronic Arts) Battlefield 3™ (HKLM-x32\...\{76285C16-411A-488A-BCE3-C83CB933D8CF}) (Version: 1.6.0.0 - Electronic Arts) Battlelog Web Plugins (HKLM-x32\...\Battlelog Web Plugins) (Version: 2.7.1 - EA Digital Illusions CE AB) CutePDF Writer 3.0 (HKLM\...\CutePDF Writer Installation) (Version: 3.0 - CutePDF.com) CWK (Czasowy Wyłącznik Komputera) (HKLM-x32\...\CWK) (Version: 2.52.3.43 - Damian Pasternak) EaseUS Todo Backup Home Trial 5.5 (HKLM-x32\...\EaseUS Todo Backup Home Trial 5.5_is1) (Version: 5.5 - CHENGDU YIWO Tech Development Co., Ltd) FARO LS 1.1.406.58 (HKLM-x32\...\{951B0F30-9F1A-4BF6-B3DA-99EB0E917B1C}) (Version: 4.6.58.2 - FARO Scanner Production) FastStone Image Viewer 5.3 (HKLM-x32\...\FastStone Image Viewer) (Version: 5.3 - FastStone Soft) Microsoft .NET Framework 4.5.2 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.51209 - Microsoft Corporation) Microsoft .NET Framework 4.5.2 (Polski) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1045) (Version: 4.5.51209 - Microsoft Corporation) Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version: - Microsoft) Microsoft Office File Validation Add-In (HKLM-x32\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation) Microsoft Office Home and Student 2007 (HKLM-x32\...\HOMESTUDENTR) (Version: 12.0.6612.1000 - Microsoft Corporation) Microsoft Security Essentials (HKLM\...\Microsoft Security Client) (Version: 4.8.204.0 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.40728.0 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) MozBackup 1.5.1 (HKLM-x32\...\MozBackup) (Version: - Pavel Cvrcek) Mozilla Firefox 42.0 (x86 en-US) (HKLM-x32\...\Mozilla Firefox 42.0 (x86 en-US)) (Version: 42.0 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 42.0.0.5780 - Mozilla) NVIDIA Sterownik 3D Vision 353.82 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 353.82 - NVIDIA Corporation) NVIDIA Sterownik dźwięku HD 1.3.34.3 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.34.3 - NVIDIA Corporation) NVIDIA Sterownik graficzny 353.82 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 353.82 - NVIDIA Corporation) Origin (HKLM-x32\...\Origin) (Version: 9.1.3.2637 - Electronic Arts, Inc.) Panel sterowania NVIDIA 353.82 (Version: 353.82 - NVIDIA Corporation) Hidden PunkBuster Services (HKLM-x32\...\PunkBusterSvc) (Version: 0.991 - Even Balance, Inc.) Samsung SSD Magician (HKLM-x32\...\{29AE3F9F-7158-4ca7-B1ED-28A73ECDB215}_is1) (Version: 3.2 - Samsung Electronics) SAMSUNG USB Driver for Mobile Phones (HKLM\...\{D0795B21-0CDA-4a92-AB9E-6E92D8111E44}) (Version: 1.5.24.0 - SAMSUNG Electronics Co., Ltd.) Sentinel Protection Installer 7.6.1 (HKLM-x32\...\{7B1AA2AB-ACD2-45C7-B1B1-364BEA40615F}) (Version: 7.6.1 - SafeNet, Inc.) Sentinel System Driver Installer 7.5.1 (HKLM-x32\...\{BF9E346B-5ECE-4A18-9510-55729FD08323}) (Version: 7.5.1 - SafeNet, Inc.) Skype™ 7.14 (HKLM-x32\...\{6A0549A9-1B96-498C-ACBC-3943001FEB19}) (Version: 7.14.106 - Skype Technologies S.A.) TeamViewer 9 (HKLM-x32\...\TeamViewer 9) (Version: 9.0.29480 - TeamViewer) TP-LINK TL-WN725N_TL-WN723N Driver (HKLM-x32\...\{3C3F9CEB-2C5A-4A47-8EAA-DA76037546BA}) (Version: 1.3.1 - TP-LINK) Update for 2007 Microsoft Office System (KB967642) (HKLM-x32\...\{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version: - Microsoft) VBA (x32 Version: 6.03.00.9402 - Microsoft Corporation) Hidden Visual C++ 2008 x86 Runtime - v9.0.30729.01 (HKLM-x32\...\{F333A33D-125C-32A2-8DCE-5C5D14231E27}.vc_x86runtime_30729_01) (Version: 9.0.30729.01 - Microsoft Corporation) World of Warcraft (HKLM-x32\...\World of Warcraft) (Version: - Blizzard Entertainment) World of Warcraft Public Test (HKLM-x32\...\World of Warcraft Public Test) (Version: - Blizzard Entertainment) ==================== Niestandardowe rejestracje CLSID (filtrowane): ========================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) CustomCLSID: HKU\S-1-5-21-1718635078-569779591-784435394-1001_Classes\CLSID\{6D7AE628-FF41-4CD3-91DD-34825BB1A251}\localserver32 -> C:\Program Files\Autodesk\AutoCAD MEP 2012\acad.exe /Automation => Brak pliku CustomCLSID: HKU\S-1-5-21-1718635078-569779591-784435394-1001_Classes\CLSID\{B77E471C-FBF3-4CB5-880F-D7528AD4B349}\localserver32 -> C:\Program Files\Autodesk\AutoCAD MEP 2012\acad.exe /Automation => Brak pliku CustomCLSID: HKU\S-1-5-21-1718635078-569779591-784435394-1001_Classes\CLSID\{C92FB640-AD4D-498A-9979-A51A2540C977}\localserver32 -> C:\Program Files\Autodesk\AutoCAD MEP 2012\acad.exe /Automation => Brak pliku CustomCLSID: HKU\S-1-5-21-1718635078-569779591-784435394-1001_Classes\CLSID\{D70E31AD-2614-49F2-B0FC-ACA781D81F3E}\localserver32 -> C:\Program Files\Autodesk\AutoCAD MEP 2012\acad.exe => Brak pliku CustomCLSID: HKU\S-1-5-21-1718635078-569779591-784435394-1001_Classes\CLSID\{E2C40589-DE61-11ce-BAE0-0020AF6D7005}\InprocServer32 -> C:\Program Files\Autodesk\AutoCAD MEP 2012\acadficn.dll => Brak pliku CustomCLSID: HKU\S-1-5-21-1718635078-569779591-784435394-1001_Classes\CLSID\{E68D0A55-3C40-4712-B90D-DCFA93FF2534}\InprocServer32 -> C:\Users\Marcin\AppData\Roaming\GG\ggdrive\ggdrive-menu.dll => Brak pliku ==================== Punkty Przywracania systemu ========================= 23-11-2015 14:35:31 Windows Update 27-11-2015 19:52:39 Windows Update 01-12-2015 18:19:14 Windows Update 04-12-2015 10:32:32 Installed Vplayer 04-12-2015 10:35:02 Removed Vplayer 05-12-2015 16:19:02 Windows Update 06-12-2015 15:04:59 Punkt przywracania przed Nazwa jest niedostępna usunięto przy użyciu narzędzia do rozwiązywania problemów z instalowaniem i odinstalowywaniem programów ==================== Hosts - zawartość: =============================== (Użycie dyrektywy Hosts: w fixlist spowoduje reset pliku Hosts.) 2009-07-14 03:34 - 2009-06-10 22:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Zaplanowane zadania (filtrowane) ============= (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) Task: {070A9102-6AD0-4901-B2A2-B00D3AC6B6DF} - System32\Tasks\Ad-Aware Update (Weekly) => D:\Program Files (x86)\Lavasoft\Ad-Aware\Ad-AwareAdmin.exe [2014-10-01] (Lavasoft Limited ) Task: {2617EAF5-3882-41D5-9BBC-4D0B4066B3BB} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-11-11] (Adobe Systems Incorporated) Task: {5F32CCF5-F147-4F6C-8E6A-E911525EE85C} - System32\Tasks\ExcuserDisusesV2 => Rundll32.exe InsobrietyFlinches.dll,main 7 1 Task: {6089CEDB-9925-4F4D-B4B0-F13CBDB017D0} - System32\Tasks\{8F98D902-566B-4904-9712-990E47188B4F} => Firefox.exe hxxp://www.skype.com/go/downloading?source=lightinstaller&ver=4.1.0.179.259&LastError=404 Task: {E3E9D8C1-CD28-4F47-A265-827D405BA0A1} - System32\Tasks\Price Fountain => C:\Users\Marcin\AppData\Roaming\PriceFountain\UpdateProc\UpdateTask.exe [2015-12-04] () <==== UWAGA Task: {E594AEBD-D997-47CC-B64E-16E027275DA6} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2015-07-07] (Adobe Systems Incorporated) Task: {EBE57FCD-8F1E-41BD-B38F-D7A9EDF1D658} - System32\Tasks\{011893BF-33AF-408E-AF5C-25A7E2769BBE} => pcalua.exe -a C:\Users\Marcin\Desktop\pbsetup.exe -d C:\Users\Marcin\Desktop (Załączenie wejścia w fixlist spowoduje przesunięcie pliku zadania (.job). Plik uruchamiany docelowo przez zadanie nie zostanie przeniesiony.) Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\Price Fountain.job => C:\Users\Marcin\AppData\Roaming\PRICEF~1\UPDATE~1\UPDATE~1.EXE <==== UWAGA ==================== Skróty ============================= (Wybrane wejścia mogą zostać załączone w celu ich zresetowania lub usunięcia.) ==================== Załadowane moduły (filtrowane) ============== 2012-12-17 22:42 - 2015-08-07 01:44 - 00116528 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll 2014-04-29 21:17 - 2013-10-23 14:24 - 00087600 _____ () C:\Windows\System32\cpwmon64.dll 2014-10-23 20:25 - 2015-11-13 17:14 - 00076152 _____ () C:\Windows\SysWOW64\PnkBstrA.exe 2012-03-20 12:41 - 2014-10-01 21:00 - 00591232 _____ () D:\Program Files (x86)\Lavasoft\Ad-Aware\RPAPI.dll 2012-03-20 12:41 - 2014-10-01 21:00 - 00430568 _____ () D:\Program Files (x86)\Lavasoft\Ad-Aware\viprebridge.dll 2012-03-20 12:41 - 2012-03-20 12:41 - 00308560 _____ () D:\Program Files (x86)\Lavasoft\Ad-Aware\Vipre.dll 2014-10-04 20:41 - 2014-12-19 05:01 - 00192376 _____ () C:\ProgramData\Lavasoft\Ad-Aware\Defs\Extended\libBase64.dll 2014-10-04 20:41 - 2014-12-19 05:01 - 00180088 _____ () C:\ProgramData\Lavasoft\Ad-Aware\Defs\Extended\libMachoUniv.dll 2014-10-04 20:41 - 2014-10-01 20:38 - 00508776 _____ () C:\ProgramData\Lavasoft\Ad-Aware\Defs\thorax.aaw 2013-01-24 00:11 - 2012-12-19 22:53 - 00097864 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\CodeLog.dll 2013-01-24 00:11 - 2012-12-19 22:53 - 00035912 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\CompressFile.dll 2013-01-24 00:11 - 2008-11-25 17:18 - 01291264 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\libxml2.dll 2013-01-24 00:11 - 2004-10-05 03:08 - 00055808 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\zlib1.dll 2013-01-24 00:11 - 2012-12-19 22:53 - 00050248 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\TBGetRemoteNetInfo.dll 2013-01-24 00:11 - 2012-12-19 22:53 - 00035912 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\ActivationOnline.dll 2013-01-24 00:11 - 2012-12-19 22:53 - 00294472 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\ExchBackupSize.dll 2013-01-24 00:11 - 2012-12-19 22:53 - 00573000 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\ExImage.dll 2013-01-24 00:11 - 2012-12-19 22:53 - 00468552 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\ExchBackupSizeEx.dll 2013-01-24 00:11 - 2012-12-19 22:53 - 00185416 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\EmailBackupSize.dll 2013-01-24 00:11 - 2012-12-19 22:53 - 00069192 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\EnumTapeDevice.dll 2013-01-24 00:11 - 2012-12-19 22:53 - 00070216 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\TbTapeBrowse.dll 2013-01-24 00:11 - 2012-12-19 22:53 - 00022088 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\AccountManager.dll 2013-01-24 00:11 - 2012-12-19 22:53 - 00115784 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\NasOperator.dll 2013-01-24 00:11 - 2012-12-19 22:53 - 00183368 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\EmailBrowser.dll 2013-01-24 00:11 - 2012-12-19 22:53 - 00135752 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\CloudOperator.dll 2013-01-24 00:11 - 2012-12-19 22:53 - 00037960 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\ActiveOnline.dll 2013-01-24 00:11 - 2012-12-19 22:53 - 00096840 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\TBFireWall.dll 2015-12-04 19:30 - 2015-12-04 19:30 - 00349184 _____ () C:\Users\Marcin\AppData\Local\ExcuserDisuses\InsobrietyFlinches.dll ==================== Alternate Data Streams (filtrowane) ========= (Załączenie wejścia w fixlist spowoduje usunięcie strumienia ADS.) ==================== Tryb awaryjny (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Wartość "AlternateShell" zostanie przywrócona.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Lavasoft Ad-Aware Service => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Lavasoft Ad-Aware Service => ""="Service" ==================== EXE - Powiązania (filtrowane) =============== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci.) ==================== Internet Explorer - Witryny zaufane i z ograniczeniami =============== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru.) ==================== Inne obszary ============================ (Obecnie brak automatycznej naprawy dla tej sekcji.) HKU\S-1-5-21-1718635078-569779591-784435394-1001\Control Panel\Desktop\\Wallpaper -> DNS Servers: 192.168.1.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 0) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Zapora systemu Windows [funkcja włączona] ==================== MSCONFIG/TASK MANAGER - Wyłączone elementy == (Obecnie brak automatycznej naprawy dla tej sekcji.) MSCONFIG\startupfolder: C:^Users^Marcin^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Samsung SSD Magician.lnk => C:\Windows\pss\Samsung SSD Magician.lnk.Startup MSCONFIG\startupreg: Adobe ARM => "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" MSCONFIG\startupreg: EaseUs Tray => "C:\Program Files (x86)\EaseUS\Todo Backup\bin\TrayNotify.exe" MSCONFIG\startupreg: EaseUs Watch => "C:\Program Files (x86)\EaseUS\Todo Backup\bin\EuWatch.exe" MSCONFIG\startupreg: Skype => "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun ==================== Reguły Zapory systemu Windows (filtrowane) =============== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) FirewallRules: [TCP Query User{C53C93D5-6FC5-4E90-A9C0-CAC5D65020E2}D:\games\world_of_tanks\wotlauncher.exe] => (Allow) D:\games\world_of_tanks\wotlauncher.exe FirewallRules: [UDP Query User{C9B77A8B-F358-48D9-BE84-307099804A31}D:\games\world_of_tanks\wotlauncher.exe] => (Allow) D:\games\world_of_tanks\wotlauncher.exe FirewallRules: [TCP Query User{D3689ED1-9C33-475F-A697-34CE7F29B314}D:\games\world_of_tanks\worldoftanks.exe] => (Allow) D:\games\world_of_tanks\worldoftanks.exe FirewallRules: [UDP Query User{F6F0416B-F928-4E98-B382-0374F9756B46}D:\games\world_of_tanks\worldoftanks.exe] => (Allow) D:\games\world_of_tanks\worldoftanks.exe FirewallRules: [{48374D79-0C59-44D9-B514-22CD336493A5}] => (Allow) C:\Program Files (x86)\Origin Games\Battlefield 3\bf3.exe FirewallRules: [{24E79CAB-512B-4974-AAA4-3D429A21F131}] => (Allow) C:\Program Files (x86)\Origin Games\Battlefield 3\bf3.exe FirewallRules: [{EB6BB31D-F1BF-49B8-A723-28F393E1B0EF}] => (Allow) C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\SonarHost.exe FirewallRules: [{764AA647-B352-4F50-BE77-48BB7D5D76D1}] => (Allow) C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\SonarHost.exe FirewallRules: [{16AA61D4-20BB-4285-996F-9A2FFB88517D}] => (Allow) C:\Program Files\Autodesk\AutoCAD MEP 2012\acad.exe FirewallRules: [{EE0CFB76-9127-4F9D-B172-FD83C092479F}] => (Allow) C:\Program Files\Autodesk\AutoCAD MEP 2012\acad.exe FirewallRules: [{2398DACF-FF4B-4AE0-854B-8DA007649C04}] => (Allow) C:\Program Files\Autodesk\AutoCAD MEP 2012\acad.exe FirewallRules: [{31777D95-F5A3-4746-A91D-46A7B2F34E5D}] => (Allow) C:\Program Files\Autodesk\AutoCAD MEP 2012\acad.exe FirewallRules: [{4679514E-042D-41AE-AF5A-CC377B811D56}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe FirewallRules: [{3ACBDC68-A9A3-4FBF-8F05-E85EA21C542B}] => (Allow) C:\Program Files (x86)\EaseUS\Todo Backup\bin\Agent.exe FirewallRules: [{028768AB-7575-42A1-9F42-DB80788E2D3A}] => (Allow) C:\Program Files (x86)\EaseUS\Todo Backup\bin\TbService.exe FirewallRules: [{C7E28157-0E90-4706-AC71-150E90CDA7ED}] => (Allow) C:\Program Files (x86)\EaseUS\Todo Backup\bin\TbService.exe FirewallRules: [{1B69BF25-CAFE-47F3-A500-4D8F560A6679}] => (Allow) C:\Program Files (x86)\EaseUS\Todo Backup\bin\TBConsoleUI.exe FirewallRules: [{B7AAB0AF-A0C8-4249-9AC1-DDEE5BFA3B07}] => (Allow) C:\Program Files (x86)\EaseUS\Todo Backup\bin\TBConsoleUI.exe FirewallRules: [{D5501DBC-FC2D-486B-9418-D62BC5AADDFD}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe FirewallRules: [{A7993FBA-7641-4533-99F1-58CFB6A66E0D}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe FirewallRules: [TCP Query User{14050348-FE05-4916-922F-6E71BCE7348A}D:\games\world_of_tanks\wotlauncher.exe] => (Allow) D:\games\world_of_tanks\wotlauncher.exe FirewallRules: [UDP Query User{63DE647C-B534-42BE-8778-D9827F9ED81A}D:\games\world_of_tanks\wotlauncher.exe] => (Allow) D:\games\world_of_tanks\wotlauncher.exe FirewallRules: [TCP Query User{910A6FDA-80FF-49DD-A388-AC3A5F08741B}D:\games\world_of_tanks\worldoftanks.exe] => (Allow) D:\games\world_of_tanks\worldoftanks.exe FirewallRules: [UDP Query User{01F3ED7C-001B-4400-ACA5-512E070847BF}D:\games\world_of_tanks\worldoftanks.exe] => (Allow) D:\games\world_of_tanks\worldoftanks.exe FirewallRules: [{2E6E88CB-3FD0-4642-B736-6E6A756FCBA8}] => (Allow) C:\Program Files (x86)\TeamViewer\Version9\TeamViewer.exe FirewallRules: [{83EA02EC-E1BB-4CF8-8AD8-54BC30550F43}] => (Allow) C:\Program Files (x86)\TeamViewer\Version9\TeamViewer.exe FirewallRules: [{936C770F-0D2B-402B-90AE-B22EAD8A75C8}] => (Allow) C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe FirewallRules: [{576C6943-223F-490D-BC50-E710693D6136}] => (Allow) C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe FirewallRules: [{1D5B76F6-4BA2-4FA7-B844-56A36E44CE5F}] => (Allow) D:\Program Files (x86)\Battle.net\Battle.net.exe FirewallRules: [{EA0D162F-A106-4FD1-81D5-A127032EC2AC}] => (Allow) D:\Program Files (x86)\Battle.net\Battle.net.exe FirewallRules: [TCP Query User{BAE73FC0-729C-4D77-BDB8-ABDBD5E568C1}D:\origin games\battlefield 3\bf3.exe] => (Allow) D:\origin games\battlefield 3\bf3.exe FirewallRules: [UDP Query User{463AB34F-8784-4B0F-9AE3-093E02C13C5A}D:\origin games\battlefield 3\bf3.exe] => (Allow) D:\origin games\battlefield 3\bf3.exe FirewallRules: [{549C4D6C-FD45-4F37-88F6-C7CB85B09503}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe FirewallRules: [{7773C699-3B03-4FAC-A389-936274895DF7}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe FirewallRules: [{3F6000D4-869E-4643-A4CA-3C67042CFB48}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe FirewallRules: [{B8481EDD-DA54-45F8-A58F-EE7D609564A4}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe FirewallRules: [{94272F6C-AF0B-4758-990B-5F0A381CC389}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{5A1D6C25-01E1-46AA-9C6D-50D53F8A7AF4}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{BC16D1D0-E8D2-469A-B8E4-8196E0DF03AE}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3147\Agent.exe FirewallRules: [{F7442E4B-0472-45EA-AB39-80A5D71890D6}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3147\Agent.exe FirewallRules: [{FEF29813-2533-4EBE-8F11-07751B234B24}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3147\Agent.exe FirewallRules: [{309B43B6-E76F-4112-8478-C2F7AC4E8ADE}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3147\Agent.exe FirewallRules: [{8190A692-630D-41CD-9159-051AD5BFAEF2}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{70B13FB7-2CBE-4522-B40E-0B48522FF17C}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{65045A73-65C1-46DF-A73D-0374BF3816E0}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe FirewallRules: [{66849771-5707-4281-BE03-43DA4F0A4439}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe FirewallRules: [{F8839F9F-900E-4F83-860A-F1AFDB98B132}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe FirewallRules: [{496B1CA8-560A-43BA-B799-6C8A4543EB48}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe FirewallRules: [{639A18CE-FAAE-4877-A506-B7FF6E039703}] => (Allow) D:\ORIGIN GAMES\Battlefield 3\bf3.exe FirewallRules: [{6582E95B-26A9-40E7-8433-7359CDBAB66C}] => (Allow) D:\ORIGIN GAMES\Battlefield 3\bf3.exe ==================== Wadliwe urządzenia w Menedżerze urządzeń ============= ==================== Błędy w Dzienniku zdarzeń: ========================= Dziennik Aplikacja: ================== Error: (12/06/2015 03:04:59 PM) (Source: VSS) (EventID: 8194) (User: ) Description: Błąd Usługi kopiowania woluminów w tle: nieoczekiwany błąd podczas badania interfejsu IVssWriterCallback. hr = 0x80070005, Odmowa dostępu. . To jest często spowodowane przez niepoprawne ustawienia zabezpieczeń w procesie zapisującym lub żądającym. Operacja: Zbieranie danych modułu zapisującego Kontekst: Identyfikator klasy modułu zapisującego: {e8132975-6f93-4464-a53e-1050253ae220} Nazwa modułu zapisującego: System Writer Identyfikator wystąpienia modułu zapisującego: {099e641e-4211-4a3f-81ae-cc26b7eb4a17} Error: (12/06/2015 03:04:59 PM) (Source: MsiInstaller) (EventID: 1002) (User: Marcin-Komputer) Description: Nieoczekiwana lub brakująca wartość (nazwa: „PackageName”, wartość: „”) w kluczu „HKLM\Software\Classes\Installer\Products\D139E7FE48CDB174D86B8A3385904547\SourceList” Error: (12/06/2015 09:38:56 AM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Program IEXPLORE.EXE w wersji 11.0.9600.18098 zatrzymał interakcję z systemem Windows i został zamknięty. Aby zobaczyć, czy jest dostępnych więcej informacji dotyczących tego problemu, sprawdź historię problemu w panelu sterowania Centrum akcji. Identyfikator procesu: 8e0 Godzina rozpoczęcia: 01d1300170920442 Godzina zakończenia: 0 Ścieżka aplikacji: C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE Identyfikator raportu: Error: (10/04/2015 08:02:42 AM) (Source: Lavasoft Ad-Aware Service) (EventID: 0) (User: ) Description: Only one instance of service process is allowed. Error: (09/19/2015 07:22:28 AM) (Source: Lavasoft Ad-Aware Service) (EventID: 0) (User: ) Description: Only one instance of service process is allowed. Error: (09/05/2015 06:35:07 AM) (Source: Lavasoft Ad-Aware Service) (EventID: 0) (User: ) Description: Only one instance of service process is allowed. Error: (08/29/2015 06:23:57 AM) (Source: Lavasoft Ad-Aware Service) (EventID: 0) (User: ) Description: Only one instance of service process is allowed. Error: (08/29/2015 06:23:30 AM) (Source: Lavasoft Ad-Aware Service) (EventID: 0) (User: ) Description: Assertion failed: (m_state == _SDKState::NotInitialized || m_state == _SDKState::InitializingEngine || m_state == _SDKState::Finished || m_state == _SDKState::NoDefsAvailable || m_state == _SDKState::Idle) in .\SDKController.cpp:1058 Error: (08/23/2015 07:19:50 AM) (Source: Lavasoft Ad-Aware Service) (EventID: 0) (User: ) Description: Only one instance of service process is allowed. Error: (08/19/2015 05:37:46 PM) (Source: Lavasoft Ad-Aware Service) (EventID: 0) (User: ) Description: Only one instance of service process is allowed. Dziennik System: ============= Error: (12/04/2015 07:53:54 PM) (Source: Service Control Manager) (EventID: 7006) (User: ) Description: Wywołanie ScRegSetValueExW dla FailureCommand nie powiodło się i wystąpił następujący błąd: %%5. Error: (12/04/2015 07:53:51 PM) (Source: Service Control Manager) (EventID: 7006) (User: ) Description: Wywołanie ScRegSetValueExW dla Start nie powiodło się i wystąpił następujący błąd: %%5. Error: (12/02/2015 07:10:03 PM) (Source: Service Control Manager) (EventID: 7006) (User: ) Description: Wywołanie ScRegSetValueExW dla FailureCommand nie powiodło się i wystąpił następujący błąd: %%5. Error: (12/02/2015 07:10:00 PM) (Source: Service Control Manager) (EventID: 7006) (User: ) Description: Wywołanie ScRegSetValueExW dla Start nie powiodło się i wystąpił następujący błąd: %%5. Error: (12/01/2015 07:56:51 AM) (Source: Service Control Manager) (EventID: 7006) (User: ) Description: Wywołanie ScRegSetValueExW dla FailureCommand nie powiodło się i wystąpił następujący błąd: %%5. Error: (12/01/2015 07:56:45 AM) (Source: Service Control Manager) (EventID: 7006) (User: ) Description: Wywołanie ScRegSetValueExW dla Start nie powiodło się i wystąpił następujący błąd: %%5. Error: (11/20/2015 08:24:29 PM) (Source: BROWSER) (EventID: 8032) (User: ) Description: Usługa przeglądarki zbyt wiele razy nie zdołała pobrać listy kopii zapasowych w transporcie \Device\NetBT_Tcpip_{EB47BF3B-BD7C-42D5-90FB-6382E5D1DE97}. Przeglądarka zapasowa jest zatrzymywana. Error: (11/14/2015 05:54:18 PM) (Source: Service Control Manager) (EventID: 7006) (User: ) Description: Wywołanie ScRegSetValueExW dla FailureCommand nie powiodło się i wystąpił następujący błąd: %%5. Error: (11/14/2015 05:54:15 PM) (Source: Service Control Manager) (EventID: 7006) (User: ) Description: Wywołanie ScRegSetValueExW dla Start nie powiodło się i wystąpił następujący błąd: %%5. Error: (11/13/2015 10:27:40 AM) (Source: Service Control Manager) (EventID: 7006) (User: ) Description: Wywołanie ScRegSetValueExW dla FailureCommand nie powiodło się i wystąpił następujący błąd: %%5. ==================== Statystyki pamięci =========================== Procesor: Intel(R) Core(TM) i7 CPU 860 @ 2.80GHz Procent pamięci w użyciu: 23% Całkowita pamięć fizyczna: 16382.05 MB Dostępna pamięć fizyczna: 12551.46 MB Całkowita pamięć wirtualna: 32762.31 MB Dostępna pamięć wirtualna: 29568.66 MB ==================== Dyski ================================ Drive c: () (Fixed) (Total:119.14 GB) (Free:31.93 GB) NTFS Drive d: () (Fixed) (Total:244.14 GB) (Free:209.28 GB) NTFS Drive e: () (Fixed) (Total:53.85 GB) (Free:52.09 GB) NTFS ==================== MBR & Tablica partycji ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 119.2 GB) (Disk ID: 9B4C6A22) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=119.1 GB) - (Type=07 NTFS) ======================================================== Disk: 1 (MBR Code: Windows 7 or 8) (Size: 298.1 GB) (Disk ID: 6E916E91) Partition 1: (Not Active) - (Size=244.1 GB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=53.9 GB) - (Type=07 NTFS) ==================== Koniec Addition.txt ============================