Rezultaty skanu uzupełniającego Farbar Recovery Scan Tool (x64) Wersja:09-12-2015 Uruchomiony przez Admin (2015-12-10 18:37:54) Uruchomiony z C:\Users\Admin\Desktop Windows 7 Ultimate Service Pack 1 (X64) (2015-01-25 16:17:10) Tryb startu: Normal ========================================================== ==================== Konta użytkowników: ============================= Admin (S-1-5-21-1993643628-1500383753-3481848954-1000 - Administrator - Enabled) => C:\Users\Admin Administrator (S-1-5-21-1993643628-1500383753-3481848954-500 - Administrator - Disabled) Gość (S-1-5-21-1993643628-1500383753-3481848954-501 - Limited - Disabled) ==================== Centrum zabezpieczeń ======================== (Załączenie wejścia w fixlist spowoduje jego usunięcie.) AV: avast! Antivirus (Enabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B} AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: avast! Antivirus (Enabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736} FW: avast! Antivirus (Enabled) {2F96FC65-F07D-9D1E-5A6E-3DA5C487EAF0} ==================== Zainstalowane programy ====================== (W fixlist dozwolone tylko załączanie programów adware z flagą "Hidden" w celu ich uwidocznienia. Programy adware powinny zostać w poprawny sposób odinstalowane.) Adobe Acrobat Reader DC - Polish (HKLM-x32\...\{AC76BA86-7AD7-1045-7B44-AC0F074E4100}) (Version: 15.009.20079 - Adobe Systems Incorporated) Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 19.0.0.241 - Adobe Systems Incorporated) Adobe Flash Player 20 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 20.0.0.235 - Adobe Systems Incorporated) Adobe Flash Player ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 9.0.124.0 - Adobe Systems Incorporated) Adobe Shockwave Player 12.2 (HKLM-x32\...\Adobe Shockwave Player) (Version: 12.2.2.172 - Adobe Systems, Inc.) Aktualizacje NVIDIA 2.5.15.54 (Version: 2.5.15.54 - NVIDIA Corporation) Hidden Avast Premier (HKLM-x32\...\Avast) (Version: 11.1.2245 - AVAST Software) Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment) CCleaner (HKLM\...\CCleaner) (Version: 5.12 - Piriform) Dota 2 (HKLM-x32\...\Steam App 570) (Version: - Valve) Evolve (HKLM-x32\...\Steam App 273350) (Version: - Turtle Rock Studios) GeoGebra 5 (HKLM-x32\...\GeoGebra 5) (Version: 5.0.82.0 - International GeoGebra Institute) HD Tune 2.55 (HKLM-x32\...\HD Tune_is1) (Version: - EFD Software) Java 8 Update 60 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218060F0}) (Version: 8.0.600.27 - Oracle Corporation) Java 8 Update 66 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218066F0}) (Version: 8.0.660.17 - Oracle Corporation) League of Legends (HKLM-x32\...\League of Legends 3.0.1) (Version: 3.0.1 - Riot Games) League of Legends (x32 Version: 3.0.1 - Riot Games) Hidden Left 4 Dead 2 (HKLM-x32\...\Steam App 550) (Version: - Valve) Microsoft .NET Framework 4.5.2 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.51209 - Microsoft Corporation) Microsoft .NET Framework 4.5.2 (Polski) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1045) (Version: 4.5.51209 - Microsoft Corporation) Microsoft ASP.NET MVC 4 Runtime (HKLM-x32\...\{3FE312D5-B862-40CE-8E4E-A6D8ABF62736}) (Version: 4.0.40804.0 - Microsoft Corporation) Microsoft Office Professional Plus 2013 (HKLM\...\Office15.PROPLUSR) (Version: 15.0.4569.1506 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005 (HKLM-x32\...\{7f51bdb9-ee21-49ee-94d6-90afc321780e}) (Version: 12.0.21005.1 - Microsoft Corporation) Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation) Mozilla Firefox 42.0 (x86 pl) (HKLM-x32\...\Mozilla Firefox 42.0 (x86 pl)) (Version: 42.0 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 42.0.0.5780 - Mozilla) MSI Afterburner 4.1.1 (HKLM-x32\...\Afterburner) (Version: 4.1.1 - MSI Co., LTD) NVIDIA Drivers (HKLM\...\NVIDIA Drivers) (Version: 1.10.62.40 - NVIDIA Corporation) NVIDIA GeForce Experience 2.5.15.54 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.5.15.54 - NVIDIA Corporation) NVIDIA Oprogramowanie systemu PhysX 9.15.0428 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.15.0428 - NVIDIA Corporation) NVIDIA Sterownik 3D Vision 359.06 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 359.06 - NVIDIA Corporation) NVIDIA Sterownik dźwięku HD 1.3.34.4 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.34.4 - NVIDIA Corporation) NVIDIA Sterownik graficzny 359.06 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 359.06 - NVIDIA Corporation) NVIDIA Sterownik kontrolera 3D Vision 352.65 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 352.65 - NVIDIA Corporation) Outils de vérification linguistique 2013 de Microsoft Office - Français (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden Panel sterowania NVIDIA 359.06 (Version: 359.06 - NVIDIA Corporation) Hidden Polski pakiet językowy dla narzędzi Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - PLK) (Version: 10.0.50903 - Microsoft Corporation) RivaTuner Statistics Server 6.3.0 (HKLM-x32\...\RTSS) (Version: 6.3.0 - Unwinder) Rosyjski (fonetyczna pro) (HKLM\...\{2605539D-226A-4DA6-A6D6-DFC9A1689713}) (Version: 1.0.3.40 - modelina.net) SafeZone Stable 1.46.1990.139 (x32 Version: 1.46.1990.139 - Avast Software) Hidden Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{91150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUSR_{D82063A8-7C8C-4C3B-A9BB-95138CA55D26}) (Version: - Microsoft) Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (Version: - Microsoft) Hidden SHIELD Streaming (Version: 4.1.500 - NVIDIA Corporation) Hidden SHIELD Wireless Controller Driver (Version: 2.5.15.54 - NVIDIA Corporation) Hidden Skype™ 7.16 (HKLM-x32\...\{FC965A47-4839-40CA-B618-18F486F042C6}) (Version: 7.16.102 - Skype Technologies S.A.) Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation) swMSM (x32 Version: 12.0.0.1 - Adobe Systems, Inc) Hidden TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.0.16 - TeamSpeak Systems GmbH) TeamSpeak 3 Client (HKLM-x32\...\TeamSpeak 3 Client) (Version: 3.0.16 - TeamSpeak Systems GmbH) TP-LINK TL-WN821N(C)_TL-WN822N_TL-WN823N Driver (HKLM-x32\...\{852E893E-E4FD-45BB-8B17-72ADDF686974}) (Version: 1.3.1 - TP-LINK) TP-LINK Wireless Configuration Utility (HKLM-x32\...\{319D91C6-3D44-436C-9F79-36C0D22372DC}) (Version: 1.3.1 - TP-LINK) Visual Studio 2012 x64 Redistributables (HKLM\...\{8C775E70-A791-4DA8-BCC3-6AB7136F4484}) (Version: 14.0.0.1 - AVG Technologies) Visual Studio 2012 x86 Redistributables (HKLM-x32\...\{98EFF19A-30AB-4E4B-B943-F06B1C63EBF8}) (Version: 14.0.0.1 - AVG Technologies CZ, s.r.o.) WinRAR 5.21 (64-bitowy) (HKLM\...\WinRAR archiver) (Version: 5.21.0 - win.rar GmbH) World of Tanks (HKU\S-1-5-21-1993643628-1500383753-3481848954-1000\...\{1EAC1D02-C6AC-4FA6-9A44-96258C37C812eu}_is1) (Version: - Wargaming.net) ==================== Niestandardowe rejestracje CLSID (filtrowane): ========================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) ==================== Punkty Przywracania systemu ========================= 28-11-2015 14:38:18 Zaplanowany punkt kontrolny 10-12-2015 07:13:18 Operacja przywracania 10-12-2015 07:21:28 Windows Update 10-12-2015 07:46:26 Instalacja pakietu sterownika urządzenia: Avast Usługa sieciowa 10-12-2015 07:59:00 ASU_MSI_TRAN 10-12-2015 18:20:51 Removed League of Legends 10-12-2015 18:26:28 Zainstalowano: Microsoft Visual C++ 2005 Redistributable 10-12-2015 18:27:43 Installed League of Legends 10-12-2015 18:28:05 Zainstalowany program DirectX ==================== Hosts - zawartość: =============================== (Użycie dyrektywy Hosts: w fixlist spowoduje reset pliku Hosts.) 2009-07-14 03:34 - 2009-06-10 22:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Zaplanowane zadania (filtrowane) ============= (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) Task: {3A407AE3-1285-4205-9E37-910DB8481F40} - System32\Tasks\SafeZone scheduled Autoupdate 1449730172 => C:\Program Files\AVAST Software\SZBrowser\launcher.exe [2015-12-01] (Avast Software) Task: {5B4DB020-4B43-467F-B9FF-6179AC13F1BA} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office\Office15\msoia.exe Task: {69CC3303-2782-4133-A32B-AC2C913AFD4D} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2015-10-28] (Adobe Systems Incorporated) Task: {760D343F-52BC-4587-A8FD-36291C58D7EA} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office15\OLicenseHeartbeat.exe [2014-01-23] (Microsoft Corporation) Task: {8502FE94-A628-4063-913A-36163EACF1E5} - System32\Tasks\AVAST Software\Avast settings backup => C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe [2015-12-10] (AVAST Software) Task: {923A6ED5-9C7A-494D-9C17-4096DB4D4350} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office\Office15\msoia.exe Task: {9E17529D-BD9A-4D97-A6B2-4DF4669FB2F2} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-12-10] (Adobe Systems Incorporated) Task: {B6305A56-AFA3-4D58-9AC4-FADC8CAF1747} - System32\Tasks\Game_Booster_AutoUpdate => D:\Program Files\IObit\Game Booster 3\AutoUpdate.exe Task: {C37D9874-EEEB-48AB-BE55-5F474E9961FB} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2015-11-16] (Piriform Ltd) Task: {D8A3B123-72FB-47A9-80A2-97E507A1B3AA} - System32\Tasks\avast! Emergency Update => D:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2015-12-10] (AVAST Software) (Załączenie wejścia w fixlist spowoduje przesunięcie pliku zadania (.job). Plik uruchamiany docelowo przez zadanie nie zostanie przeniesiony.) Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe ==================== Skróty ============================= (Wybrane wejścia mogą zostać załączone w celu ich zresetowania lub usunięcia.) ShortcutWithArgument: C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) -> hxxp://www.yoursites123.com/?type=sc&ts=1449728436&z=98bcfd28c6268ef0df98395gezez9t9m3o8bezdocm&from=ient07021&uid=395049983_1052483_DC1F93FD <==== UWAGA ShortcutWithArgument: C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Internet Explorer (No Add-ons).lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) -> hxxp://www.yoursites123.com/?type=sc&ts=1449728436&z=98bcfd28c6268ef0df98395gezez9t9m3o8bezdocm&from=ient07021&uid=395049983_1052483_DC1F93FD <==== UWAGA ShortcutWithArgument: C:\Users\Admin\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) -> hxxp://www.yoursites123.com/?type=sc&ts=1449728436&z=98bcfd28c6268ef0df98395gezez9t9m3o8bezdocm&from=ient07021&uid=395049983_1052483_DC1F93FD <==== UWAGA ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk -> C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation) -> hxxp://www.yoursites123.com/?type=sc&ts=1449728436&z=98bcfd28c6268ef0df98395gezez9t9m3o8bezdocm&from=ient07021&uid=395049983_1052483_DC1F93FD <==== UWAGA ==================== Załadowane moduły (filtrowane) ============== 2015-01-25 20:54 - 2015-11-24 19:40 - 00116344 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll 2015-01-21 15:01 - 2015-01-21 15:01 - 08898728 _____ () D:\Program Files\Microsoft Office\Office15\1033\GrooveIntlResource.dll 2015-11-16 17:55 - 2015-11-16 17:55 - 00061440 _____ () C:\Program Files\CCleaner\lang\lang-1045.dll 2015-07-21 15:53 - 2014-04-08 08:43 - 00847360 _____ () C:\Program Files (x86)\TP-LINK\TP-LINK Wireless Configuration Utility\TWCU.exe 2015-01-25 20:49 - 2015-10-12 04:05 - 00709408 _____ () C:\Program Files\NVIDIA Corporation\ShadowPlay\gamecaster64.dll 2015-01-25 20:49 - 2015-10-12 04:05 - 00855328 _____ () C:\Program Files\NVIDIA Corporation\ShadowPlay\twitchsdk64.dll 2014-01-21 16:54 - 2015-12-10 18:29 - 01294336 _____ () D:\Riot Games\League of Legends\RADS\system\rads_user_kernel.exe 2015-12-10 18:29 - 2015-12-10 18:29 - 02307064 _____ () D:\Riot Games\League of Legends\RADS\projects\lol_launcher\releases\0.0.1.5\deploy\LoLLauncher.exe 2015-12-10 18:30 - 2015-12-10 18:30 - 04225528 _____ () D:\Riot Games\League of Legends\RADS\projects\lol_patcher\releases\0.0.0.45\deploy\LoLPatcher.exe 2015-12-10 18:30 - 2015-12-10 18:30 - 03077624 _____ () D:\Riot Games\League of Legends\RADS\projects\lol_patcher\releases\0.0.0.45\deploy\LoLPatcherUx.exe 2015-12-10 07:45 - 2015-12-10 07:45 - 00103888 _____ () D:\Program Files\AVAST Software\Avast\log.dll 2015-12-10 07:45 - 2015-12-10 07:45 - 00125512 _____ () D:\Program Files\AVAST Software\Avast\JsonRpcServer.dll 2015-12-10 16:06 - 2015-12-10 16:06 - 02803200 _____ () D:\Program Files\AVAST Software\Avast\defs\15121000\algo.dll 2015-12-10 07:45 - 2015-12-10 07:45 - 00469008 _____ () D:\Program Files\AVAST Software\Avast\ffl2.dll 2015-12-10 07:45 - 2015-12-10 07:45 - 00241896 _____ () D:\Program Files\AVAST Software\Avast\browser_pass.dll 2015-03-30 16:29 - 2015-10-12 04:05 - 00013088 _____ () C:\Program Files (x86)\NVIDIA Corporation\Update Core\detoured.dll 2015-07-21 15:53 - 2014-04-08 08:42 - 01411072 _____ () C:\Program Files (x86)\TP-LINK\TP-LINK Wireless Configuration Utility\nicLan.dll 2015-07-21 15:53 - 2014-04-08 08:42 - 00193024 _____ () C:\Program Files (x86)\TP-LINK\TP-LINK Wireless Configuration Utility\DC_WFF.dll 2015-07-21 15:53 - 2014-04-08 08:42 - 00298496 _____ () C:\Program Files (x86)\TP-LINK\TP-LINK Wireless Configuration Utility\WJRtl.dll 2015-12-10 07:45 - 2015-12-10 07:45 - 40539648 _____ () D:\Program Files\AVAST Software\Avast\libcef.dll 2015-01-21 15:01 - 2015-01-21 15:01 - 08898720 _____ () C:\Program Files (x86)\Microsoft Office\Office15\1033\GrooveIntlResource.dll 2015-01-25 21:15 - 2015-11-10 20:55 - 00778752 _____ () D:\Program Files\Steam\SDL2.dll 2015-01-25 21:15 - 2015-07-03 17:12 - 04962816 _____ () D:\Program Files\Steam\v8.dll 2015-01-25 21:15 - 2015-07-03 17:12 - 01556992 _____ () D:\Program Files\Steam\icui18n.dll 2015-01-25 21:15 - 2015-07-03 17:12 - 01187840 _____ () D:\Program Files\Steam\icuuc.dll 2015-01-25 21:15 - 2015-12-10 02:57 - 02547280 _____ () D:\Program Files\Steam\video.dll 2015-01-25 21:15 - 2015-09-24 01:33 - 02549248 _____ () D:\Program Files\Steam\libavcodec-56.dll 2015-01-25 21:15 - 2015-09-24 01:33 - 00442880 _____ () D:\Program Files\Steam\libavutil-54.dll 2015-01-25 21:15 - 2015-09-24 01:33 - 00491008 _____ () D:\Program Files\Steam\libavformat-56.dll 2015-01-25 21:15 - 2015-09-24 01:33 - 00332800 _____ () D:\Program Files\Steam\libavresample-2.dll 2015-01-25 21:15 - 2015-09-24 01:33 - 00485888 _____ () D:\Program Files\Steam\libswscale-3.dll 2015-01-25 21:15 - 2015-12-10 02:57 - 00804432 _____ () D:\Program Files\Steam\bin\chromehtml.DLL 2015-07-07 07:35 - 2015-11-03 23:00 - 00201728 _____ () D:\Program Files\Steam\bin\openvr_api.dll 2015-01-25 21:15 - 2015-11-17 01:31 - 47846176 _____ () D:\Program Files\Steam\bin\libcef.dll 2015-01-25 21:15 - 2015-09-25 00:56 - 00119208 _____ () D:\Program Files\Steam\winh264.dll 2015-12-10 18:30 - 2015-12-10 18:30 - 01465848 _____ () D:\Riot Games\League of Legends\RADS\projects\lol_patcher\releases\0.0.0.45\deploy\RiotLauncher.dll 2015-12-10 18:30 - 2015-12-10 18:30 - 34851320 _____ () D:\Riot Games\League of Legends\RADS\projects\lol_patcher\releases\0.0.0.45\deploy\libcef.dll 2015-12-10 18:30 - 2015-12-10 18:30 - 01383416 _____ () D:\Riot Games\League of Legends\RADS\projects\lol_patcher\releases\0.0.0.45\deploy\icui18n.dll 2015-12-10 18:30 - 2015-12-10 18:30 - 01142264 _____ () D:\Riot Games\League of Legends\RADS\projects\lol_patcher\releases\0.0.0.45\deploy\icuuc.dll 2015-12-10 18:30 - 2015-12-10 18:30 - 04382200 _____ () D:\Riot Games\League of Legends\RADS\projects\lol_patcher\releases\0.0.0.45\deploy\v8.dll 2015-12-10 18:30 - 2015-12-10 18:30 - 00953336 _____ () D:\Riot Games\League of Legends\RADS\projects\lol_patcher\releases\0.0.0.45\deploy\ffmpegsumo.dll ==================== Alternate Data Streams (filtrowane) ========= (Załączenie wejścia w fixlist spowoduje usunięcie strumienia ADS.) ==================== Tryb awaryjny (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Wartość "AlternateShell" zostanie przywrócona.) ==================== EXE - Powiązania (filtrowane) =============== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci.) ==================== Internet Explorer - Witryny zaufane i z ograniczeniami =============== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru.) ==================== Inne obszary ============================ (Obecnie brak automatycznej naprawy dla tej sekcji.) HKU\S-1-5-21-1993643628-1500383753-3481848954-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg DNS Servers: 192.168.0.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 0) (ConsentPromptBehaviorUser: 3) (EnableLUA: 0) Zapora systemu Windows [funkcja włączona] ==================== MSCONFIG/TASK MANAGER - Wyłączone elementy == (Obecnie brak automatycznej naprawy dla tej sekcji.) MSCONFIG\startupreg: Steam => "D:\Program Files\Steam\steam.exe" -silent ==================== Reguły Zapory systemu Windows (filtrowane) =============== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) FirewallRules: [{598E18ED-693D-4531-BDCA-A31642BE4C9B}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{4524A456-7B16-4820-9E9A-4E56BF8AB563}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{DB754936-7057-4845-BDFB-E2065539D724}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe FirewallRules: [{B0A854CA-95E9-4726-8591-4FAE0CBB6A35}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe FirewallRules: [{131E7A33-78FA-45D9-BB90-C4CE8C3CE70F}] => (Allow) D:\Program Files\Steam\Steam.exe FirewallRules: [{72B81FDB-C57C-40E3-A58A-E6DACC52983D}] => (Allow) D:\Program Files\Steam\Steam.exe FirewallRules: [{B9074B8D-E0FA-4020-BE7B-021B26A8BBBF}] => (Allow) D:\Program Files\Steam\bin\steamwebhelper.exe FirewallRules: [{026635AE-17BE-4E79-9668-B6B3C9E4F350}] => (Allow) D:\Program Files\Steam\bin\steamwebhelper.exe FirewallRules: [TCP Query User{7D40673C-9FAB-44E9-9D42-F7D7CEF70E8B}D:\games\world_of_tanks\wotlauncher.exe] => (Allow) D:\games\world_of_tanks\wotlauncher.exe FirewallRules: [UDP Query User{D041DA22-13A9-49E4-A254-379E55AB615C}D:\games\world_of_tanks\wotlauncher.exe] => (Allow) D:\games\world_of_tanks\wotlauncher.exe FirewallRules: [{B5F2295B-BC34-4B44-BB7F-7A5733D2D8B3}] => (Allow) D:\Riot Games\League of Legends\lol.launcher.exe FirewallRules: [{6D6E013F-1E43-45B2-A243-B256312C8CF0}] => (Allow) D:\Riot Games\League of Legends\lol.launcher.exe FirewallRules: [{5B28FE4F-96D0-4618-B9A9-30F58F1CAE15}] => (Allow) D:\Riot Games\League of Legends\lol.launcher.exe FirewallRules: [{29C412C1-997B-4AE2-99D1-5D629E13660A}] => (Allow) D:\Riot Games\League of Legends\lol.launcher.exe FirewallRules: [{BF160379-425C-454C-BD33-541343CF78A6}] => (Allow) D:\Program Files\Steam\steamapps\common\Left 4 Dead 2\left4dead2.exe FirewallRules: [{2463BD0D-E275-4527-87F6-4C02D5247DE9}] => (Allow) D:\Program Files\Steam\steamapps\common\Left 4 Dead 2\left4dead2.exe FirewallRules: [TCP Query User{229E3DF0-146F-4A4C-9556-DE9EA91AE033}C:\program files (x86)\mozilla firefox\firefox.exe] => (Allow) C:\program files (x86)\mozilla firefox\firefox.exe FirewallRules: [UDP Query User{73D6D2EE-EDEE-4BAA-833B-79AB995B587F}C:\program files (x86)\mozilla firefox\firefox.exe] => (Allow) C:\program files (x86)\mozilla firefox\firefox.exe FirewallRules: [{57EEB7BF-07C1-41C7-AC82-C7BA2C3A339B}] => (Allow) D:\Program Files\Microsoft Office\Office15\lync.exe FirewallRules: [{5A0665D8-8D5E-44B6-916D-43C621DDD8F8}] => (Allow) D:\Program Files\Microsoft Office\Office15\lync.exe FirewallRules: [{019EEE2D-13D5-4CD0-A606-15827D500351}] => (Allow) D:\Program Files\Microsoft Office\Office15\UcMapi.exe FirewallRules: [{240F16BB-72C0-49EA-90D4-EA49111FBB38}] => (Allow) D:\Program Files\Microsoft Office\Office15\UcMapi.exe FirewallRules: [TCP Query User{6AED9101-0A94-4068-BDC4-678CBEC85576}D:\program files\steam\steamapps\common\war thunder\aces.exe] => (Allow) D:\program files\steam\steamapps\common\war thunder\aces.exe FirewallRules: [UDP Query User{971BCF0B-A5BA-4359-9AA3-9A31EA2768E8}D:\program files\steam\steamapps\common\war thunder\aces.exe] => (Allow) D:\program files\steam\steamapps\common\war thunder\aces.exe FirewallRules: [TCP Query User{0B536747-B4D7-4A3F-8EC9-E0C4DBD5E7A6}D:\games\world_of_tanks\worldoftanks.exe] => (Allow) D:\games\world_of_tanks\worldoftanks.exe FirewallRules: [UDP Query User{B91D767E-0789-456B-9EA6-B42B20B0A4D9}D:\games\world_of_tanks\worldoftanks.exe] => (Allow) D:\games\world_of_tanks\worldoftanks.exe FirewallRules: [TCP Query User{5AA4AD4B-D86D-4F17-B7A7-BC9F75DE96E0}E:\easysetupassistant\easysetupassistant.exe] => (Allow) E:\easysetupassistant\easysetupassistant.exe FirewallRules: [UDP Query User{F1759371-5729-457D-9A9E-EF6A9E81FC42}E:\easysetupassistant\easysetupassistant.exe] => (Allow) E:\easysetupassistant\easysetupassistant.exe FirewallRules: [{B3A043A4-AC06-4AC1-BBBD-DE06D2A10BF1}] => (Allow) D:\Program Files\Steam\steamapps\common\dota 2 beta\game\bin\win32\dota2.exe FirewallRules: [{0C8C1FB7-E496-4BF0-871F-F69843EB9345}] => (Allow) D:\Program Files\Steam\steamapps\common\dota 2 beta\game\bin\win32\dota2.exe FirewallRules: [{FA08A444-7832-4843-B76B-9979ECF8B6E8}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe FirewallRules: [{9DBC8601-829D-4E5B-8B5A-4DC965E001ED}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe FirewallRules: [{257F5825-550D-46DC-BECE-9D2D116A5AE3}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe FirewallRules: [{8BBBB8EA-08E9-4727-A224-DC23E6491A04}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{5ECAF2C8-0E61-4CFE-BFD9-58CE6D120CEE}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{077B368A-69AD-4C93-A487-585032E5A63B}] => (Allow) D:\Program Files\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{FE7BE163-EA0D-4A91-9D3A-C75C142B66B7}] => (Allow) D:\Program Files\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{836A3EEF-C3AF-4AC8-B157-4CFDDA097912}] => (Allow) D:\Riot Games\League of Legends\lol.launcher.exe FirewallRules: [{845059B1-FEE6-436D-B0CA-15ABD56088A9}] => (Allow) D:\Riot Games\League of Legends\lol.launcher.exe FirewallRules: [TCP Query User{7F266DF9-2CF0-419E-B651-C339FF18EF6E}D:\program files\hs\hearthstone\hearthstone.exe] => (Allow) D:\program files\hs\hearthstone\hearthstone.exe FirewallRules: [UDP Query User{4CC165B2-F67E-48D0-BBC4-48CDE993E3F4}D:\program files\hs\hearthstone\hearthstone.exe] => (Allow) D:\program files\hs\hearthstone\hearthstone.exe FirewallRules: [{3B1996F2-04C8-43F0-8143-9D5F54C425D9}] => (Allow) D:\Program Files\Steam\steamapps\common\EvolveGame\Bin64_SteamRetail\Evolve.exe FirewallRules: [{A2453C37-09DC-4C63-961E-ED1E88DA8240}] => (Allow) D:\Program Files\Steam\steamapps\common\EvolveGame\Bin64_SteamRetail\Evolve.exe FirewallRules: [{F4B46CED-3515-4419-825D-CCB2875ECB52}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{6BA6DEF1-609D-4C6E-B4AD-A61FF558D142}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [TCP Query User{FBBCD386-2BCD-4628-894C-FA781B26527F}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe FirewallRules: [UDP Query User{9695823B-D0CE-49AF-A108-92C82D5F558D}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe ==================== Wadliwe urządzenia w Menedżerze urządzeń ============= ==================== Błędy w Dzienniku zdarzeń: ========================= Dziennik Aplikacja: ================== Error: (12/10/2015 05:38:32 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (12/10/2015 04:42:25 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: TWCU.exe, wersja: 0.0.0.0, sygnatura czasowa: 0x5264951a Nazwa modułu powodującego błąd: RtlLib.dll, wersja: 700.1067.330.2011, sygnatura czasowa: 0x4d93eea6 Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x00002849 Identyfikator procesu powodującego błąd: 0x780 Godzina uruchomienia aplikacji powodującej błąd: 0xTWCU.exe0 Ścieżka aplikacji powodującej błąd: TWCU.exe1 Ścieżka modułu powodującego błąd: TWCU.exe2 Identyfikator raportu: TWCU.exe3 Error: (12/10/2015 04:38:55 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (12/10/2015 04:05:23 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (12/10/2015 07:55:21 AM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Program GFExperience.exe w wersji 2.5.15.54 zatrzymał interakcję z systemem Windows i został zamknięty. Aby zobaczyć, czy jest dostępnych więcej informacji dotyczących tego problemu, sprawdź historię problemu w panelu sterowania Centrum akcji. Identyfikator procesu: 17f8 Godzina rozpoczęcia: 01d133172373d080 Godzina zakończenia: 5 Ścieżka aplikacji: C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\GFExperience.exe Identyfikator raportu: Error: (12/10/2015 07:29:24 AM) (Source: Office 2013 Licensing Service) (EventID: 0) (User: ) Description: Subscription licensing service failed: -1073418231 Error: (12/10/2015 07:20:45 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (12/10/2015 07:11:46 AM) (Source: Office 2013 Licensing Service) (EventID: 0) (User: ) Description: Subscription licensing service failed: -1073418231 Error: (12/10/2015 07:03:18 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (12/10/2015 07:02:36 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: TWCU.exe, wersja: 0.0.0.0, sygnatura czasowa: 0x5264951a Nazwa modułu powodującego błąd: RtlLib.dll, wersja: 700.1067.330.2011, sygnatura czasowa: 0x4d93eea6 Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x00002849 Identyfikator procesu powodującego błąd: 0xaa8 Godzina uruchomienia aplikacji powodującej błąd: 0xTWCU.exe0 Ścieżka aplikacji powodującej błąd: TWCU.exe1 Ścieżka modułu powodującego błąd: TWCU.exe2 Identyfikator raportu: TWCU.exe3 Dziennik System: ============= Error: (12/10/2015 05:37:57 PM) (Source: Microsoft-Windows-WLAN-AutoConfig) (EventID: 10000) (User: ZARZĄDZANIE NT) Description: Uruchomienie modułu rozszerzalności sieci WLAN nie powiodło się. Ścieżka modułu: C:\Windows\system32\Rtlihvs.dll Kod błędu: 126 Error: (12/10/2015 05:36:37 PM) (Source: Service Control Manager) (EventID: 7032) (User: ) Description: Menedżer sterowania usługami próbował podjąć akcję korekcyjną (Uruchom usługę ponownie) po nieoczekiwanym zakończeniu usługi Windows Search, ale ta akcja nie powiodła się przy następującym błędzie: %%1056. Error: (12/10/2015 05:36:07 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Usługa Windows Search niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 30000 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie. Error: (12/10/2015 05:36:07 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Usługa WdMan Service niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. Error: (12/10/2015 05:36:07 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Usługa NVIDIA Streamer Service niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. Error: (12/10/2015 05:36:07 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Usługa NVIDIA Network Service niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. Error: (12/10/2015 05:36:07 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Usługa NVIDIA GeForce Experience Service niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. Error: (12/10/2015 05:36:07 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Usługa Adobe Acrobat Update Service niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. Error: (12/10/2015 05:36:07 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Usługa Bufor wydruku niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 60000 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie. Error: (12/10/2015 05:36:06 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Usługa NVIDIA Stereoscopic 3D Driver Service niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. ==================== Statystyki pamięci =========================== Procesor: AMD Phenom(tm) II X4 955 Processor Procent pamięci w użyciu: 39% Całkowita pamięć fizyczna: 8191.3 MB Dostępna pamięć fizyczna: 4978.45 MB Całkowita pamięć wirtualna: 16380.8 MB Dostępna pamięć wirtualna: 12952.5 MB ==================== Dyski ================================ Drive c: () (Fixed) (Total:150.16 GB) (Free:90.3 GB) NTFS Drive d: (Nowy) (Fixed) (Total:781.25 GB) (Free:674.13 GB) NTFS ==================== MBR & Tablica partycji ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: 214AA32D) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=150.2 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=781.2 GB) - (Type=07 NTFS) ==================== Koniec Addition.txt ============================