Rezultaty skanu uzupełniającego Farbar Recovery Scan Tool (x64) Wersja:09-12-2015 Uruchomiony przez Krzysiek (2015-12-11 20:00:43) Uruchomiony z C:\Users\Krzysiek\Downloads Windows 7 Home Premium Service Pack 1 (X64) (2013-02-10 23:09:10) Tryb startu: Normal ========================================================== ==================== Konta użytkowników: ============================= Administrator (S-1-5-21-1765370731-3468206040-3838702788-500 - Administrator - Disabled) Gość (S-1-5-21-1765370731-3468206040-3838702788-501 - Limited - Disabled) Krzysiek (S-1-5-21-1765370731-3468206040-3838702788-1000 - Administrator - Enabled) => C:\Users\Krzysiek UpdatusUser (S-1-5-21-1765370731-3468206040-3838702788-1002 - Limited - Enabled) => C:\Users\UpdatusUser ==================== Centrum zabezpieczeń ======================== (Załączenie wejścia w fixlist spowoduje jego usunięcie.) AV: ESET NOD32 Antivirus 4.0 (Enabled - Up to date) {CB0F8167-5331-BA19-698E-64816B6801A5} AS: ESET NOD32 Antivirus 4.0 (Enabled - Up to date) {706E6083-750B-B597-533E-5FF310EF4B18} AS: Windows Defender (Enabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Spybot - Search and Destroy (Enabled - Up to date) {9BC38DF1-3CCA-732D-A930-C1CA5F20A4B0} ==================== Zainstalowane programy ====================== (W fixlist dozwolone tylko załączanie programów adware z flagą "Hidden" w celu ich uwidocznienia. Programy adware powinny zostać w poprawny sposób odinstalowane.) Adobe Flash Player 11 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 11.6.602.168 - Adobe Systems Incorporated) Adobe Flash Player 16 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 16.0.0.305 - Adobe Systems Incorporated) Adobe Reader XI (11.0.13) - Polish (HKLM-x32\...\{AC76BA86-7AD7-1045-7B44-AB0000000001}) (Version: 11.0.13 - Adobe Systems Incorporated) AION Free-to-Play (HKLM-x32\...\{82E73E8D-E1E7-45A4-A311-6D31492AA913}_is1) (Version: - Gameforge) Akamai NetSession Interface (HKU\S-1-5-21-1765370731-3468206040-3838702788-1000\...\Akamai) (Version: - Akamai Technologies, Inc) Aktualizacje NVIDIA 1.14.17 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 1.14.17 - NVIDIA Corporation) Archiwizator WinRAR (HKLM-x32\...\WinRAR archiver) (Version: - ) Aslain's XVM Mod wersja 4.2.2 (HKLM-x32\...\ZRwTINhSZfduKONYrSCTiCiGPggQZdcLRvoAVxyCOXXpkHeC~1DC3968F_is1) (Version: 4.2.2 - Aslain) ATK Package (HKLM-x32\...\{AB5C933E-5C7D-4D30-B314-9C83A49B94BE}) (Version: 1.0.0015 - ASUS) Badanie mające na celu poprawę produktów HP Deskjet 2540 series (HKLM\...\{C563C37E-0690-42D9-8B53-3AAABF494A14}) (Version: 32.2.188.47710 - Hewlett-Packard Co.) Bing Bar (HKLM-x32\...\{3611CA6C-5FCA-4900-A329-6A118123CCFC}) (Version: 7.1.355.0 - Microsoft Corporation) BitComet 1.35 (HKLM-x32\...\BitComet) (Version: 1.35 - CometNetwork) BlazeHDTV 6.0 (HKLM-x32\...\BlazeHDTV 6.0_is1) (Version: - ) Brother MFL-Pro Suite MFC-6490CW (HKLM-x32\...\{20E970DF-A7B2-4345-9DEB-72213A29645E}) (Version: 1.0.1.0 - Brother Industries, Ltd.) Call of Duty: Black Ops (HKLM-x32\...\Call of Duty: Black Ops_is1) (Version: - ) Call of Duty: Modern Warfare 3 - Dedicated Server (HKLM-x32\...\Steam App 42750) (Version: - Infinity Ward - Sledgehammer Games) Call of Duty: Modern Warfare 3 - Multiplayer (HKLM-x32\...\Steam App 42690) (Version: - Infinity Ward - Sledgehammer Games) Call of Duty: Modern Warfare 3 (HKLM-x32\...\Steam App 42680) (Version: - Infinity Ward - Sledgehammer Games) CloneDVD (HKLM-x32\...\CloneDVD) (Version: - Elaborate Bytes) Codecs for Windows 7 Pack 4.0.5 (HKLM-x32\...\Codecs for Windows 7 Pack) (Version: 4.0.5 - Codecs for Windows 7 Pack) Colin McRae Rally 2 (HKLM-x32\...\{19B72AA9-985A-11D4-9C8A-00D0B75D1498}) (Version: - ) ConvertHelper 2.2 (HKLM-x32\...\{27CC6AB1-E72B-4179-AF1A-EAE507EBAF51}_is1) (Version: - DownloadHelper) Corel Paint Shop Pro Photo XI (HKLM-x32\...\{93A1B09E-BAFA-4628-A5B6-921CB026955A}) (Version: 11.20.0000 - Corel Corporation) Crysis 3 (HKLM-x32\...\Crysis 3_R.G. Mechanics_is1) (Version: - R.G. Mechanics, spider91) Crysis®3 (HKLM-x32\...\{4198AE83-A3C6-4C41-85C8-EC63E990696E}) (Version: 1.1.0.0 - Electronic Arts) DIAL Communication Framework (HKLM-x32\...\{562D0D31-FBAF-4505-8B27-4EC92EEA91D6}) (Version: 1.2.0.200 - DIAL GmbH) DIALux 4.11 (HKLM-x32\...\DIALux) (Version: 4.11.0.3 - DIAL GmbH) EaseUS MobiSaver for Android version 4.1 (HKLM-x32\...\{82D2239C-0F46-4446-B3CA-810A07BF7A6E}_is1) (Version: 4.1 - CHENGDU YIWO Tech Development Co., Ltd.) ESET NOD32 Antivirus (HKLM\...\{302725CC-C7B9-4650-8602-7F353B01366A}) (Version: 4.0.437.0 - Eset spol s r. o.) Fast Boot (HKLM\...\{13F4A7F3-EABC-4261-AF6B-1317777F0755}) (Version: 1.0.10 - ASUS) ffdshow (HKLM-x32\...\ffdshow) (Version: 20051103 - Milan Cutka) Futuremark SystemInfo (HKLM-x32\...\{991C8DEA-3C01-45B8-A62B-1BB69BDC277D}) (Version: 4.23.255 - Futuremark) Gameforge Live 2.0.5 (HKLM-x32\...\{9C98989A-3A15-42DA-A3B9-D20331437D67}}_is1) (Version: 2.0.5 - Gameforge) HD Tune 2.55 (HKLM-x32\...\HD Tune_is1) (Version: - EFD Software) Heroes III The Shadow of Death (HKLM-x32\...\Heroes III The Shadow of Death) (Version: - ) Heroes of Might and Magic IV - Złota Edycja (HKLM-x32\...\{94B4E2D8-A184-415C-BF9E-F699D76466BD}) (Version: 3.0 - ) Heroes of Might and Magic® IV (HKLM-x32\...\Heroes of Might and Magic IV) (Version: - ) Heroes of Might and Magic® IV: The Gathering Storm (HKLM-x32\...\InstallShield_{60D2936B-1E1F-41DA-AF39-19A9B1E9D021}) (Version: 2.2 - 3DO) Heroes of Might and Magic® IV: The Gathering Storm (x32 Version: 2.2 - 3DO) Hidden HP Deskjet 2540 series — podstawowe oprogramowanie urządzenia (HKLM\...\{642A855A-F7A6-429C-9818-DF41AE1982BE}) (Version: 32.2.188.47710 - Hewlett-Packard Co.) HP Deskjet 2540 series Pomoc (HKLM-x32\...\{387813C9-5DFE-453E-95AE-142F2C6E929E}) (Version: 30.0.0 - Hewlett Packard) HP Deskjet 5520 series — badanie mające na celu poprawę produktów (HKLM\...\{3A2EF43E-B23C-4DFE-A8D8-C922AE2C0D02}) (Version: 28.0.1315.0 - Hewlett-Packard Co.) HP Deskjet 5520 series — podstawowe oprogramowanie urządzenia (HKLM\...\{D78FDB18-F199-4510-8DC6-FB428DB504C5}) (Version: 28.0.1315.0 - Hewlett-Packard Co.) HP Deskjet 5520 series Pomoc (HKLM-x32\...\{A74780A4-53E0-4505-A22D-582A8D25F558}) (Version: 27.0.0 - Hewlett Packard) HP Photo Creations (HKLM-x32\...\HP Photo Creations) (Version: 1.0.0.7702 - HP) HP Update (HKLM-x32\...\{912D30CF-F39E-4B31-AD9A-123C6B794EE2}) (Version: 5.005.002.002 - Hewlett-Packard) Huawei E5372 (HKLM-x32\...\Huawei E5372) (Version: 1.12.01.69 - Huawei Technologies Co.,Ltd) Intel(R) Control Center (HKLM-x32\...\{F8A9085D-4C7A-41a9-8A77-C8998A96C421}) (Version: 1.2.1.1007 - Intel Corporation) Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 8.0.3.1427 - Intel Corporation) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 9.17.10.2932 - Intel Corporation) Intel(R) USB 3.0 eXtensible Host Controller Driver (HKLM-x32\...\{240C3DDD-C5E9-4029-9DF7-95650D040CF2}) (Version: 1.0.3.214 - Intel Corporation) Intel® Trusted Connect Service Client (HKLM\...\{09536BA1-E498-4CC3-B834-D884A67D7E34}) (Version: 1.23.605.1 - Intel Corporation) ISScript (x32 Version: 3.00.185 - InstallShield Software Corp.) Hidden League of Legends (HKLM-x32\...\League of Legends 3.0.1) (Version: 3.0.1 - Riot Games) League of Legends (x32 Version: 3.0.1 - Riot Games) Hidden Microsoft .NET Framework 4 Client Profile (HKLM\...\Microsoft .NET Framework 4 Client Profile) (Version: 4.0.30319 - Microsoft Corporation) Microsoft .NET Framework 4 Extended (HKLM\...\Microsoft .NET Framework 4 Extended) (Version: 4.0.30319 - Microsoft Corporation) Microsoft Office Professional Plus 2010 (HKLM\...\Office14.PROPLUS) (Version: 14.0.4763.1000 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.40416.0 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Mozilla Firefox 43.0 (x86 pl) (HKLM-x32\...\Mozilla Firefox 43.0 (x86 pl)) (Version: 43.0 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 43.0.0.5815 - Mozilla) NapiProjekt (2.1.0.2287) (HKLM-x32\...\NapiProjekt_is1) (Version: - ) NVIDIA Oprogramowanie systemu PhysX 9.12.1031 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.12.1031 - NVIDIA Corporation) NVIDIA Sterownik 3D Vision 320.14 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 320.14 - NVIDIA Corporation) NVIDIA Sterownik dźwięku HD 1.3.24.2 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.24.2 - NVIDIA Corporation) NVIDIA Sterownik graficzny 320.14 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 320.14 - NVIDIA Corporation) OMC ModPack Client wersja 1.3.4.4 (HKLM-x32\...\{E2F3187C-2B94-486F-8914-E69211487FB6}_is1) (Version: 1.3.4.4 - Odem Mortis) Panel sterowania NVIDIA 320.14 (Version: 320.14 - NVIDIA Corporation) Hidden PDF Architect (HKLM-x32\...\{064A929A-4DE8-40CF-A901-BD40C14E4D25}) (Version: 1.1.83.9982 - pdfforge GmbH) PDFCreator (HKLM\...\{0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D}) (Version: 2.0.1 - pdfforge) Polski pakiet językowy dla programu Microsoft .NET Framework 4 Client Profile (HKLM\...\Microsoft .NET Framework 4 Client Profile PLK Language Pack) (Version: 4.0.30319 - Microsoft Corporation) Polski pakiet językowy dla programu Microsoft .NET Framework 4 Extended (HKLM\...\Microsoft .NET Framework 4 Extended PLK Language Pack) (Version: 4.0.30319 - Microsoft Corporation) Qualcomm Atheros WiFi Driver Installation Program (HKLM-x32\...\{7D916FA5-DAE9-4A25-B089-655C70EAF607}) (Version: 3.0 - Qualcomm Atheros) Quick Startup 2.9.0.823 (HKLM-x32\...\Quick Startup_is1) (Version: - Glarysoft.com) Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.48.823.2011 - Realtek) Realtek PCIE Card Reader (HKLM-x32\...\{C1594429-8296-4652-BF54-9DBE4932A44C}) (Version: 6.1.7601.27012 - Realtek Semiconductor Corp.) SIMARIS design 8.0 (HKLM-x32\...\SIMARIS design 8.0) (Version: 8.0.0 - Siemens AG) Skype™ 7.1 (HKLM-x32\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 7.1.105 - Skype Technologies S.A.) Sony PC Companion 2.10.197 (HKLM-x32\...\{F09EF8F2-0976-42C1-8D9D-8DF78337C6E3}) (Version: 2.10.197 - Sony) Spybot - Search & Destroy (HKLM-x32\...\{B4092C6D-E886-4CB2-BA68-FE5A99D31DE7}_is1) (Version: 2.0.12 - Safer-Networking Ltd.) SpyHunter (HKLM-x32\...\{4FC9DA9D-F608-454E-8191-D7EFFDCC5726}) (Version: 4.1.11 - Enigma Software Group USA, LLC) Steam (HKLM-x32\...\{048298C9-A4D3-490B-9FF9-AB023A9238F3}) (Version: 1.0.0.0 - Valve Corporation) Sunrise Seven 1.1.54 (HKLM-x32\...\{AB0DBC9A-422A-4888-A8E5-A32EC1779E68}_is1) (Version: - Sunrise Software) TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.0.16 - TeamSpeak Systems GmbH) Technic packages - Poland (HKLM-x32\...\SIMARIS design localisation pl_PL 3.0.0) (Version: 3.0.0 - SIEMENS AG) The Elder Scrolls V - Skyrim (HKLM-x32\...\The Elder Scrolls V - Skyrim_is1) (Version: - ) Total Commander 64-bit (Remove or Repair) (HKLM\...\Totalcmd64) (Version: 8.51a - Ghisler Software GmbH) VirtualCloneDrive (HKLM-x32\...\VirtualCloneDrive) (Version: - Elaborate Bytes) Web Connection (HKLM-x32\...\Alcatel LINKS Web Connection_is1) (Version: - Alcatel) Winamp (remove only) (HKLM-x32\...\Winamp) (Version: - ) Wireless Console 3 (HKLM-x32\...\{19EA33FB-B34E-40EA-8B8A-61743AEB795A}) (Version: 3.0.25 - ASUS) World of Tanks (HKU\S-1-5-21-1765370731-3468206040-3838702788-1000\...\{1EAC1D02-C6AC-4FA6-9A44-96258C37C812EU}_is1) (Version: - Wargaming.net) Youtube Downloader HD v. 2.9.9.11 (HKLM-x32\...\Youtube Downloader HD_is1) (Version: - YoutubeDownloaderHD.com) ==================== Niestandardowe rejestracje CLSID (filtrowane): ========================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) ==================== Punkty Przywracania systemu ========================= ==================== Hosts - zawartość: =============================== (Użycie dyrektywy Hosts: w fixlist spowoduje reset pliku Hosts.) 2009-07-14 03:34 - 2015-12-11 19:49 - 00000027 ____A C:\Windows\system32\Drivers\etc\hosts 127.0.0.1 localhost ==================== Zaplanowane zadania (filtrowane) ============= (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) Task: {1EF08A0E-8116-44E7-98A8-7E6B52A8F4F5} - System32\Tasks\ATKOSD2 => C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe [2011-12-22] (ASUSTek Computer Inc.) Task: {28C90197-5CE5-4C5F-8332-F927BE878554} - System32\Tasks\elbyExecuteWithUAC => C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\ExecuteWithUAC.exe [2008-06-27] () Task: {41772D7A-5289-4A0F-A680-24040A47EE75} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2015-09-14] (Adobe Systems Incorporated) Task: {4EC41F23-303E-436B-A67D-6B5F308618FC} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Refresh immunization => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDImmunize.exe [2012-11-13] (Safer-Networking Ltd.) Task: {5D7DC37B-71F1-4093-98DD-DB0AAB8C087E} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Check for updates => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe [2012-11-13] (Safer-Networking Ltd.) Task: {66B58F1B-5C38-491B-993D-9108471226A7} - System32\Tasks\HPCustParticipation HP Deskjet 5520 series => C:\Program Files\HP\HP Deskjet 5520 series\Bin\HPCustPartic.exe [2012-10-17] (Hewlett-Packard Co.) Task: {84BA99F9-8108-4E9D-8FA5-2EDA9ABB45B8} - System32\Tasks\{F64E7904-D529-4E96-9F80-90AD75CEF134} => pcalua.exe -a C:\Users\Krzysiek\AppData\Roaming\omiga-plus\UninstallManager.exe -c -ptid=cor <==== UWAGA Task: {8DC9890B-4D11-4ABC-BB5E-003F89EC68DC} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Scan the system => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDScan.exe [2012-11-13] (Safer-Networking Ltd.) Task: {93A48392-6E7F-4C4B-90F5-EAB8A4AD7D55} - System32\Tasks\SpyHunter4Startup => C:\Program Files (x86)\Enigma Software Group\SpyHunter\Spyhunter4.exe [2015-11-04] (Enigma Software Group USA, LLC.) Task: {BAD8021B-6C60-4F1F-8AE0-389207B9F6AE} - System32\Tasks\HPCustParticipation HP Deskjet 2540 series => C:\Program Files\HP\HP Deskjet 2540 series\Bin\HPCustPartic.exe [2014-03-06] (Hewlett-Packard Co.) Task: {C9B119B5-54B6-4156-9130-9B7A55734F61} - System32\Tasks\{B8D6475C-7981-4762-9459-6E2CF40F10AD} => pcalua.exe -a "C:\Program Files (x86)\Picexa\uninstall.exe" (Załączenie wejścia w fixlist spowoduje przesunięcie pliku zadania (.job). Plik uruchamiany docelowo przez zadanie nie zostanie przeniesiony.) ==================== Skróty ============================= (Wybrane wejścia mogą zostać załączone w celu ich zresetowania lub usunięcia.) ShortcutWithArgument: C:\Users\Krzysiek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer (64-bit).lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) -> hxxp://www.yoursites123.com/?type=sc&ts=1449713510&z=8851b9d48d80fdceb415b26gfz3zat4mbg8c4wde9z&from=ient07021&uid=TOSHIBAXMQ01ABD050_82CBSETRSXX82CBSETRS <==== UWAGA ShortcutWithArgument: C:\Users\Krzysiek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk -> C:\Program Files (x86)\Internet Explorer\iexplore.exe (Microsoft Corporation) -> hxxp://www.yoursites123.com/?type=sc&ts=1449713510&z=8851b9d48d80fdceb415b26gfz3zat4mbg8c4wde9z&from=ient07021&uid=TOSHIBAXMQ01ABD050_82CBSETRSXX82CBSETRS <==== UWAGA ShortcutWithArgument: C:\Users\Krzysiek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WarThunder.lnk -> C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation) -> hxxp://www.yoursites123.com/?type=sc&ts=1449713510&z=8851b9d48d80fdceb415b26gfz3zat4mbg8c4wde9z&from=ient07021&uid=TOSHIBAXMQ01ABD050_82CBSETRSXX82CBSETRS <==== UWAGA ShortcutWithArgument: C:\Users\Krzysiek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Internet Explorer (No Add-ons).lnk -> C:\Program Files (x86)\Internet Explorer\iexplore.exe (Microsoft Corporation) -> hxxp://www.yoursites123.com/?type=sc&ts=1449713510&z=8851b9d48d80fdceb415b26gfz3zat4mbg8c4wde9z&from=ient07021&uid=TOSHIBAXMQ01ABD050_82CBSETRSXX82CBSETRS <==== UWAGA ShortcutWithArgument: C:\Users\Krzysiek\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk -> C:\Program Files (x86)\Internet Explorer\iexplore.exe (Microsoft Corporation) -> hxxp://www.yoursites123.com/?type=sc&ts=1449713510&z=8851b9d48d80fdceb415b26gfz3zat4mbg8c4wde9z&from=ient07021&uid=TOSHIBAXMQ01ABD050_82CBSETRSXX82CBSETRS <==== UWAGA ShortcutWithArgument: C:\Users\Krzysiek\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\WarThunder.lnk -> C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation) -> hxxp://www.yoursites123.com/?type=sc&ts=1449713510&z=8851b9d48d80fdceb415b26gfz3zat4mbg8c4wde9z&from=ient07021&uid=TOSHIBAXMQ01ABD050_82CBSETRSXX82CBSETRS <==== UWAGA ShortcutWithArgument: C:\Users\Krzysiek\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Mozilla Firefox.lnk -> C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation) -> hxxp://www.yoursites123.com/?type=sc&ts=1449713510&z=8851b9d48d80fdceb415b26gfz3zat4mbg8c4wde9z&from=ient07021&uid=TOSHIBAXMQ01ABD050_82CBSETRSXX82CBSETRS <==== UWAGA ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk -> C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation) -> hxxp://www.yoursites123.com/?type=sc&ts=1449713510&z=8851b9d48d80fdceb415b26gfz3zat4mbg8c4wde9z&from=ient07021&uid=TOSHIBAXMQ01ABD050_82CBSETRSXX82CBSETRS <==== UWAGA ShortcutWithArgument: C:\Users\Public\Desktop\Mozilla Firefox.lnk -> C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation) -> hxxp://www.yoursites123.com/?type=sc&ts=1449713510&z=8851b9d48d80fdceb415b26gfz3zat4mbg8c4wde9z&from=ient07021&uid=TOSHIBAXMQ01ABD050_82CBSETRSXX82CBSETRS <==== UWAGA ShortcutWithArgument: C:\Users\Public\Desktop\The Elder Scrolls V - Skyrim.lnk -> C:\Program Files (x86)\Bethesda\The Elder Scrolls V - Skyrim\Launcher.exe (Bethesda Softworks) -> hxxp://www.yoursites123.com/?type=sc&ts=1449713510&z=8851b9d48d80fdceb415b26gfz3zat4mbg8c4wde9z&from=ient07021&uid=TOSHIBAXMQ01ABD050_82CBSETRSXX82CBSETRS <==== UWAGA ==================== Załadowane moduły (filtrowane) ============== 2014-09-19 11:55 - 2013-04-15 10:50 - 00198144 _____ () C:\Windows\System32\HP1006LM.DLL 2014-09-19 11:55 - 2013-04-15 10:50 - 00065024 _____ () C:\Windows\system32\spool\PRTPROCS\x64\HP1006PP.dll 2014-03-10 16:23 - 2013-05-07 23:35 - 00087328 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll 2015-12-04 18:45 - 2014-09-17 18:56 - 00076624 _____ () C:\Program Files (x86)\Web Connection\Y858\BackgroundService\ServiceManager.exe 2013-04-10 06:58 - 2013-04-10 06:58 - 00351824 _____ () C:\ProgramData\DatacardService\HWDeviceService64.exe 2010-01-30 01:40 - 2010-01-30 01:40 - 04254560 _____ () C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Cultures\OFFICE.ODF 2006-11-02 19:40 - 2006-11-02 19:40 - 00174656 _____ () C:\Windows\SysWOW64\PSIService.exe 2015-01-27 09:58 - 2005-04-22 13:36 - 00143360 ____N () C:\Windows\system32\BrSNMP64.dll 2012-12-14 02:42 - 2012-12-14 02:42 - 00094208 _____ () C:\Windows\System32\IccLibDll_x64.dll 2015-12-04 18:45 - 2014-06-06 16:21 - 00159056 _____ () C:\Program Files (x86)\Web Connection\Y858\BackgroundService\ModemListener.exe 2013-02-13 09:50 - 2010-03-15 11:28 - 00052224 _____ () C:\Program Files (x86)\WinRAR\rarext64.dll 2010-05-18 16:54 - 2010-05-18 16:54 - 00395776 _____ () C:\Program Files (x86)\Enigma Software Group\SpyHunter\ExecutionGuard.dll 2013-03-13 19:37 - 2012-11-13 14:06 - 00108960 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\snlThirdParty150.bpl 2013-03-13 19:37 - 2012-11-13 14:06 - 00416160 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\DEC150.bpl 2013-03-13 19:37 - 2012-11-13 14:06 - 00158624 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\snlFileFormats150.bpl 2013-03-13 19:37 - 2012-08-23 09:38 - 00574840 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\sqlite3.dll 2013-03-13 19:37 - 2012-11-13 14:06 - 00528288 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\JSDialogPack150.bpl 2007-07-12 11:11 - 2007-07-12 11:11 - 01163264 _____ () C:\Program Files (x86)\ASUS\Wireless Console 3\acAuth.dll 2013-03-13 19:37 - 2012-11-13 14:06 - 00554400 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\VirtualTreesDXE150.bpl 2015-01-27 09:58 - 2009-02-27 16:38 - 00139264 ____R () C:\Program Files (x86)\Brother\BrUtilities\BrLogAPI.dll 2013-02-13 09:19 - 2012-02-21 12:09 - 01198872 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\ACE.dll 2010-01-30 01:41 - 2010-01-30 01:41 - 04254560 _____ () C:\Program Files (x86)\Common Files\microsoft shared\OFFICE14\Cultures\OFFICE.ODF ==================== Alternate Data Streams (filtrowane) ========= (Załączenie wejścia w fixlist spowoduje usunięcie strumienia ADS.) ==================== Tryb awaryjny (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Wartość "AlternateShell" zostanie przywrócona.) ==================== EXE - Powiązania (filtrowane) =============== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci.) ==================== Internet Explorer - Witryny zaufane i z ograniczeniami =============== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru.) ==================== Inne obszary ============================ (Obecnie brak automatycznej naprawy dla tej sekcji.) HKU\S-1-5-21-1765370731-3468206040-3838702788-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\Krzysiek\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg DNS Servers: 8.8.8.8 - 8.8.4.4 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 0) (ConsentPromptBehaviorUser: 3) (EnableLUA: 0) Zapora systemu Windows [funkcja włączona] ==================== MSCONFIG/TASK MANAGER - Wyłączone elementy == (Obecnie brak automatycznej naprawy dla tej sekcji.) ==================== Reguły Zapory systemu Windows (filtrowane) =============== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) FirewallRules: [TCP Query User{F18385DA-1545-4136-9717-8776F5F8E789}C:\program files (x86)\activision\call of duty - black ops\blackops.exe] => (Block) C:\program files (x86)\activision\call of duty - black ops\blackops.exe FirewallRules: [UDP Query User{5D167B3A-8410-4DCB-85FA-6DB3DC488161}C:\program files (x86)\activision\call of duty - black ops\blackops.exe] => (Block) C:\program files (x86)\activision\call of duty - black ops\blackops.exe FirewallRules: [TCP Query User{CCE8176F-AA33-4444-9B02-3FCF06EE3F37}C:\emule0.50a-xtreme8.1\emule.exe] => (Allow) C:\emule0.50a-xtreme8.1\emule.exe FirewallRules: [UDP Query User{D89ADD0A-B018-437C-B595-5E3A16991E35}C:\emule0.50a-xtreme8.1\emule.exe] => (Allow) C:\emule0.50a-xtreme8.1\emule.exe FirewallRules: [{67EF53AF-6E5C-4806-A209-FD0A62FA901B}] => (Allow) C:\Program Files (x86)\BitComet\BitComet.exe FirewallRules: [{24DBC960-54F2-44B3-8BD9-61A4BEE3818A}] => (Allow) C:\Program Files (x86)\BitComet\BitComet.exe FirewallRules: [{DE84F933-9A93-4D82-9F42-E9DE2C68D88B}] => (Allow) LPort=23842 FirewallRules: [{BF6CA6B6-1EA8-44F8-940E-164F79F9BD2D}] => (Allow) LPort=23842 FirewallRules: [TCP Query User{91F5FC83-A8FC-42BC-B6BB-6CAD1C640CA7}C:\downloads\crysis 3\bin32\crysis3.exe] => (Allow) C:\downloads\crysis 3\bin32\crysis3.exe FirewallRules: [UDP Query User{1F0F1633-B9B9-4EC0-8CA7-CF877B78EE36}C:\downloads\crysis 3\bin32\crysis3.exe] => (Allow) C:\downloads\crysis 3\bin32\crysis3.exe FirewallRules: [{7A075FC1-B982-4712-A9F5-830E58BE8610}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{3CCE5FEB-BBA9-48D5-B4D9-032898583C4D}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{4C191837-99F7-4E0C-AD99-AFC99E3E6C51}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe FirewallRules: [TCP Query User{07A6B56F-C57B-438F-8EDE-70B1BA927611}C:\mbot\mbot_vsro110.exe] => (Block) C:\mbot\mbot_vsro110.exe FirewallRules: [UDP Query User{DB28C37F-798B-4025-A1F0-26AF0AFF2323}C:\mbot\mbot_vsro110.exe] => (Block) C:\mbot\mbot_vsro110.exe FirewallRules: [TCP Query User{4826003C-FB5C-4597-A9B4-732DB2A6BD79}C:\program files (x86)\bitcomet\plugin_emule\plugin_emule.exe] => (Allow) C:\program files (x86)\bitcomet\plugin_emule\plugin_emule.exe FirewallRules: [UDP Query User{78B6F189-EAB7-45A1-B92B-B56DEA205630}C:\program files (x86)\bitcomet\plugin_emule\plugin_emule.exe] => (Allow) C:\program files (x86)\bitcomet\plugin_emule\plugin_emule.exe FirewallRules: [{0EABDD41-D7C3-46D3-BAED-303AD9C35736}] => (Allow) LPort=21661 FirewallRules: [{47304BCA-3E2A-47A2-9EA7-3392BA68841A}] => (Allow) LPort=21661 FirewallRules: [{4B552350-7EA3-41D9-90EC-0463ADD45252}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\call of duty modern warfare 3\iw5mp_server.exe FirewallRules: [{36BAE85E-3337-443C-8F67-FDF064D66227}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\call of duty modern warfare 3\iw5mp_server.exe FirewallRules: [{2FEF1579-4C75-420F-80DD-3C65B4F227D9}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\call of duty modern warfare 3\iw5sp.exe FirewallRules: [{1D06E0DF-8FCB-4480-BB0F-4C57CB74B0CC}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\call of duty modern warfare 3\iw5sp.exe FirewallRules: [{50CF680D-62EA-417B-A42D-D1CA072ED967}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\call of duty modern warfare 3\iw5mp.exe FirewallRules: [{33A84EF5-242D-46E6-9701-496B958F93E7}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\call of duty modern warfare 3\iw5mp.exe FirewallRules: [TCP Query User{24184E12-7DF0-463D-B281-3FD623FD21E3}C:\program files (x86)\r.g. mechanics\crysis 3\bin32\crysis3.exe] => (Allow) C:\program files (x86)\r.g. mechanics\crysis 3\bin32\crysis3.exe FirewallRules: [UDP Query User{CB48E67B-B726-4F48-A375-B38B199E0C1C}C:\program files (x86)\r.g. mechanics\crysis 3\bin32\crysis3.exe] => (Allow) C:\program files (x86)\r.g. mechanics\crysis 3\bin32\crysis3.exe FirewallRules: [{A6D2589E-0F67-49E3-84A1-60E4F407E798}] => (Allow) C:\Program Files\HP\HP Deskjet 5520 series\Bin\DeviceSetup.exe FirewallRules: [{7A8000A5-18FC-4064-9365-BFB4C7FC0D55}] => (Allow) C:\Program Files\HP\HP Deskjet 5520 series\Bin\HPNetworkCommunicator.exe FirewallRules: [{0DA1EC60-2FDC-46F3-BCD7-66CD9A4E97C7}] => (Allow) C:\Program Files\HP\HP Deskjet 5520 series\Bin\HPNetworkCommunicatorCom.exe FirewallRules: [{AF125704-6166-490D-AB5F-22BA7EB189F6}] => (Allow) LPort=7340 FirewallRules: [{84B1DA6A-2A57-4E3D-88C4-27726810F6D7}] => (Allow) LPort=7340 FirewallRules: [{6B8492B5-20D3-4CDB-9BDB-CC26C04005BD}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe FirewallRules: [{761EB3A7-581E-4546-B3DB-24F88B2AEBBF}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe FirewallRules: [TCP Query User{41E65516-E775-4A5D-A6D4-788557DA3B32}C:\program files (x86)\gameforgelive\games\pol_pol\aion\nclauncher.exe] => (Allow) C:\program files (x86)\gameforgelive\games\pol_pol\aion\nclauncher.exe FirewallRules: [UDP Query User{3291E5C5-1C62-4361-912C-0F68065A1E4B}C:\program files (x86)\gameforgelive\games\pol_pol\aion\nclauncher.exe] => (Allow) C:\program files (x86)\gameforgelive\games\pol_pol\aion\nclauncher.exe FirewallRules: [TCP Query User{C1A285C7-CF97-43B4-B0B4-8D9D1F999940}C:\users\krzysiek\appdata\local\akamai\netsession_win.exe] => (Allow) C:\users\krzysiek\appdata\local\akamai\netsession_win.exe FirewallRules: [UDP Query User{FEECC75C-C25C-4A9D-9F4B-BE0A408EC608}C:\users\krzysiek\appdata\local\akamai\netsession_win.exe] => (Allow) C:\users\krzysiek\appdata\local\akamai\netsession_win.exe FirewallRules: [{91B372EE-A9D5-4816-B1EC-A433FB97DEDF}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{271926A3-6F43-4DB0-AF83-0AD29F3BE9AE}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [TCP Query User{043CE1EA-57B4-4AB5-9492-8BF3039AF387}C:\users\krzysiek\downloads\asf tool v2.2\phconnector\phconnector.exe] => (Allow) C:\users\krzysiek\downloads\asf tool v2.2\phconnector\phconnector.exe FirewallRules: [UDP Query User{71656450-F1F7-4E1E-8D10-8D0190A56632}C:\users\krzysiek\downloads\asf tool v2.2\phconnector\phconnector.exe] => (Allow) C:\users\krzysiek\downloads\asf tool v2.2\phconnector\phconnector.exe FirewallRules: [{17C9A1B3-A151-45E0-8274-F724FE32575E}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [TCP Query User{E972EDAC-06DF-47DD-B04D-5CB139BDA929}C:\mbot_2\mbot_vsro110.exe] => (Allow) C:\mbot_2\mbot_vsro110.exe FirewallRules: [UDP Query User{C723EFD3-82DF-433F-9EE4-295288B820B5}C:\mbot_2\mbot_vsro110.exe] => (Allow) C:\mbot_2\mbot_vsro110.exe FirewallRules: [{3C696D72-99DE-414B-869C-41982475EB27}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{1784F7AA-F485-43EF-BB70-EB6F18F268E0}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{B40C2D3D-A5D6-439F-B9EF-26504B18E07B}] => (Allow) C:\Program Files (x86)\GameforgeLive\gfl_client.exe FirewallRules: [TCP Query User{C810C899-59F0-48B4-B920-227571D680B5}C:\users\krzysiek\appdata\local\temp\rar$ex00.628\bot 25-09-2014\mbot_vsro110.exe] => (Allow) C:\users\krzysiek\appdata\local\temp\rar$ex00.628\bot 25-09-2014\mbot_vsro110.exe FirewallRules: [UDP Query User{C0D61543-EFC6-493B-A1CB-C1A20634C2BA}C:\users\krzysiek\appdata\local\temp\rar$ex00.628\bot 25-09-2014\mbot_vsro110.exe] => (Allow) C:\users\krzysiek\appdata\local\temp\rar$ex00.628\bot 25-09-2014\mbot_vsro110.exe FirewallRules: [TCP Query User{AA28EE69-7AB3-4EEF-A784-59E67DDFC43B}C:\users\krzysiek\downloads\solucion\solucion\socketspy.exe] => (Allow) C:\users\krzysiek\downloads\solucion\solucion\socketspy.exe FirewallRules: [UDP Query User{9F2D969E-3B6B-4844-A453-8FEC934FFE84}C:\users\krzysiek\downloads\solucion\solucion\socketspy.exe] => (Allow) C:\users\krzysiek\downloads\solucion\solucion\socketspy.exe FirewallRules: [{F9E46CF2-9C38-4160-B338-66BBF5A0C1DD}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{5281B40B-D168-43B0-B4F3-6D30F0A459C9}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{8F41A860-4697-472E-80D7-A2430CFF2F63}] => (Allow) C:\Users\Krzysiek\Games\UnrealTournament2004\System\UT2004.exe FirewallRules: [{35E4C8FD-6461-455A-80A4-8FA1818EAD7E}] => (Allow) C:\Users\Krzysiek\Games\UnrealTournament2004\System\UT2004.exe FirewallRules: [TCP Query User{E36C2ECD-532A-4EFA-9CD1-6B48A3565A01}C:\games\world_of_tanks\wotlauncher.exe] => (Allow) C:\games\world_of_tanks\wotlauncher.exe FirewallRules: [UDP Query User{33234FB4-0A53-448D-8ED1-F7FE5963122B}C:\games\world_of_tanks\wotlauncher.exe] => (Allow) C:\games\world_of_tanks\wotlauncher.exe FirewallRules: [TCP Query User{E991A0C4-4F57-4325-ADD8-5F239ACEBCA8}C:\games\world_of_tanks\worldoftanks.exe] => (Allow) C:\games\world_of_tanks\worldoftanks.exe FirewallRules: [UDP Query User{D1C113E3-79AF-42E4-A080-F52DCEF8A7E6}C:\games\world_of_tanks\worldoftanks.exe] => (Allow) C:\games\world_of_tanks\worldoftanks.exe FirewallRules: [{EB96D822-FD92-4FCF-8812-34131EBE11B1}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{FE7E53B9-1D1F-4136-8601-3922B1A2C1E2}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{54092F92-2E56-4241-9D75-3584CFD23EE8}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [TCP Query User{2D545A62-D202-49DE-B8C4-43C63A036A4F}C:\riot games\league of legends\rads\projects\lol_patcher\releases\0.0.0.14\deploy\lolpatcher.exe] => (Allow) C:\riot games\league of legends\rads\projects\lol_patcher\releases\0.0.0.14\deploy\lolpatcher.exe FirewallRules: [UDP Query User{A5F8C52E-FBCC-4032-815C-93B3384AEAF7}C:\riot games\league of legends\rads\projects\lol_patcher\releases\0.0.0.14\deploy\lolpatcher.exe] => (Allow) C:\riot games\league of legends\rads\projects\lol_patcher\releases\0.0.0.14\deploy\lolpatcher.exe FirewallRules: [TCP Query User{339AB1EC-0496-478C-9DA2-F899B699D464}C:\riot games\league of legends\rads\projects\lol_patcher\releases\0.0.0.14\deploy\lolpatcherux.exe] => (Allow) C:\riot games\league of legends\rads\projects\lol_patcher\releases\0.0.0.14\deploy\lolpatcherux.exe FirewallRules: [UDP Query User{3F260294-F08F-49C8-ACFB-0570C4DCD55E}C:\riot games\league of legends\rads\projects\lol_patcher\releases\0.0.0.14\deploy\lolpatcherux.exe] => (Allow) C:\riot games\league of legends\rads\projects\lol_patcher\releases\0.0.0.14\deploy\lolpatcherux.exe FirewallRules: [{3E3117D2-5295-4B9A-952C-7F71C3B598FE}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{48F461C4-B809-4D90-A462-E36770CD80F7}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{8AC7136D-AFB1-4AE3-BB8D-D0A89D5B0F41}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{26ECE78A-C932-48FF-A9BD-3B2AF27F5398}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{E3EA509D-D0A5-4C02-B461-8158755407B2}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [TCP Query User{DDFEC2D3-BACF-4537-A63C-0422CB21609C}C:\program files (x86)\mozilla firefox\firefox.exe] => (Allow) C:\program files (x86)\mozilla firefox\firefox.exe FirewallRules: [UDP Query User{9FDE2CA1-27B5-413F-9DAD-1117D776DFDD}C:\program files (x86)\mozilla firefox\firefox.exe] => (Allow) C:\program files (x86)\mozilla firefox\firefox.exe FirewallRules: [{D28C408A-C4C1-4956-8A22-BFF52C4AD074}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{7BC38F39-BF43-4423-AAE6-3F43684894F5}] => (Allow) C:\Program Files (x86)\Brother\Brmfl08y\FAXRX.exe FirewallRules: [{4A33CA85-DB8D-4075-AEA0-C4D1533CF637}] => (Allow) C:\Program Files (x86)\Brother\Brmfl08y\FAXRX.exe FirewallRules: [{EF4108D2-AEC1-41F5-9957-9765106DEB8A}] => (Allow) LPort=54925 FirewallRules: [{BEDEA53B-3707-42AF-93FC-C7832A65DD90}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{29862451-6FB4-4BEA-A115-DCBDB9D5F389}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{4F8D4005-4CA8-4663-A093-D8B7FF3C38CC}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{0F762743-FFBD-4399-8B64-D534B5A36BB6}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{B3738F9A-8A81-4948-A825-843FF464A191}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{3AA3B273-0D60-44BB-BC9C-EA134C1ACC37}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{96F71792-E647-4465-A1B2-9EDC6C8F9A82}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{F1F34841-4D13-4B8F-B4E3-8A675447DF38}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{70B736A1-4EE0-4432-AACA-A06975A28A32}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{A50BEDAF-78C8-4628-92AE-54AACAFF0E39}] => (Allow) C:\Program Files (x86)\OMC ModPack Client\OMC ModPack Client.exe FirewallRules: [{035A88A6-F58A-43FD-81C8-CB459A8C1A88}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{95314941-48C3-4CCC-BF0F-B70049378D18}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{24A17C87-3917-46DF-859E-35204B693730}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{F741C4E2-90C4-4062-BC1D-7332502E4C9B}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{C7E0DEAD-BB74-4436-A718-663A0C8C828F}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{BA42908B-18B8-4F96-8E45-8D5A7B03071B}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{316F3F24-9ADD-4982-8F98-FC03C07E0963}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{C76D2025-C4EE-42D8-8DED-0F74497DC540}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{9887B276-24DD-4E32-BB49-E5DDB09873EB}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{CC740812-22F1-44D6-95E0-3949B8DA316A}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{723BFAA0-BDAC-4269-886F-3FCE68FBC414}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{C7AE9D4B-3659-465E-AFD2-212D72394655}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{7D9C824E-9A34-4E10-A815-3B28B8C380E4}] => (Allow) C:\Program Files\HP\HP Deskjet 2540 series\Bin\DeviceSetup.exe FirewallRules: [{68E1AF98-9DE4-4C7F-9AD2-40D1E3BFA4F9}] => (Allow) LPort=5357 FirewallRules: [{321BC488-40D8-4199-9921-645E225F71DC}] => (Allow) C:\Program Files\HP\HP Deskjet 2540 series\Bin\HPNetworkCommunicatorCom.exe FirewallRules: [{1F11772A-578C-40B4-A1D9-89A19A747D33}] => (Allow) LPort=49203 FirewallRules: [{8FEF6028-CF23-4ECC-9481-C91F74FDD612}] => (Allow) LPort=5000 StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe] => Enabled:Spybot-S&D 2 Tray Icon StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe] => Enabled:Spybot-S&D 2 Scanner Service StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe] => Enabled:Spybot-S&D 2 Updater StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe] => Enabled:Spybot-S&D 2 Background update service ==================== Wadliwe urządzenia w Menedżerze urządzeń ============= Name: Teredo Tunneling Pseudo-Interface Description: Karta tunelowania Teredo firmy Microsoft Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318} Manufacturer: Microsoft Service: tunnel Problem: : This device is disabled. (Code 22) Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions. Name: esgiguard Description: esgiguard Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1} Manufacturer: Service: esgiguard Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24) Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed. Devices stay in this state if they have been prepared for removal. After you remove the device, this error disappears.Remove the device, and this error should be resolved. ==================== Błędy w Dzienniku zdarzeń: ========================= Dziennik Aplikacja: ================== Error: (12/11/2015 07:48:31 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (12/11/2015 07:44:11 PM) (Source: Application Error) (EventID: 1005) (User: ) Description: System Windows nie może uzyskać dostępu do pliku C:\Windows\System32\services.exe z jednej z następujących przyczyn: problem z połączeniem sieciowym; problem z dyskiem, na którym jest przechowywany plik; problem ze sterownikami magazynu zainstalowanymi na tym komputerze; brak dysku. System Windows zamknął program Usługi i aplikacja Kontroler z powodu tego błędu. Program: Usługi i aplikacja Kontroler Plik: C:\Windows\System32\services.exe Wartość błędu jest wyświetlona w sekcji Dodatkowe dane. Akcja użytkownika 1. Otwórz plik ponownie. Ta sytuacja może być przejściowym problemem, który sam się rozwiąże po ponownym uruchomieniu programu. 2. Jeśli nadal nie można uzyskać dostępu do pliku i - jest w sieci, administrator sieci powinien sprawdzić, czy nie ma problemu z siecią i czy można skontaktować się z serwerem. - jest na dysku wymiennym, na przykład dyskietce lub dysku CD-ROM, sprawdź, czy cały dysk jest włożony do komputera. 3. Sprawdź i napraw system plików, uruchamiając program CHKDSK. Aby uruchomić program CHKDSK, kliknij przycisk Start, kliknij polecenie Uruchom, wpisz polecenie CMD, a następnie kliknij przycisk OK. W wierszu polecenia wpisz polecenie CHKDSK /F, a następnie naciśnij klawisz ENTER. 4. Jeżeli problem nie ustąpi, przywróć plik z kopii zapasowej. 5. Ustal, czy można otworzyć inne pliki na tym samym dysku. Jeśli nie, dysk może być uszkodzony. Jeśli jest to dysk twardy, skontaktuj się z administratorem komputera lub dostawcą sprzętu komputerowego, aby uzyskać dalszą pomoc. Dodatkowe dane Wartość błędu: C0000185 Typ dysku: 3 Error: (12/11/2015 07:44:11 PM) (Source: Application Error) (EventID: 1005) (User: ) Description: System Windows nie może uzyskać dostępu do pliku C:\Windows\System32\msvcrt.dll z jednej z następujących przyczyn: problem z połączeniem sieciowym; problem z dyskiem, na którym jest przechowywany plik; problem ze sterownikami magazynu zainstalowanymi na tym komputerze; brak dysku. System Windows zamknął program Proces hosta dla usług systemu Windows z powodu tego błędu. Program: Proces hosta dla usług systemu Windows Plik: C:\Windows\System32\msvcrt.dll Wartość błędu jest wyświetlona w sekcji Dodatkowe dane. Akcja użytkownika 1. Otwórz plik ponownie. Ta sytuacja może być przejściowym problemem, który sam się rozwiąże po ponownym uruchomieniu programu. 2. Jeśli nadal nie można uzyskać dostępu do pliku i - jest w sieci, administrator sieci powinien sprawdzić, czy nie ma problemu z siecią i czy można skontaktować się z serwerem. - jest na dysku wymiennym, na przykład dyskietce lub dysku CD-ROM, sprawdź, czy cały dysk jest włożony do komputera. 3. Sprawdź i napraw system plików, uruchamiając program CHKDSK. Aby uruchomić program CHKDSK, kliknij przycisk Start, kliknij polecenie Uruchom, wpisz polecenie CMD, a następnie kliknij przycisk OK. W wierszu polecenia wpisz polecenie CHKDSK /F, a następnie naciśnij klawisz ENTER. 4. Jeżeli problem nie ustąpi, przywróć plik z kopii zapasowej. 5. Ustal, czy można otworzyć inne pliki na tym samym dysku. Jeśli nie, dysk może być uszkodzony. Jeśli jest to dysk twardy, skontaktuj się z administratorem komputera lub dostawcą sprzętu komputerowego, aby uzyskać dalszą pomoc. Dodatkowe dane Wartość błędu: C0000185 Typ dysku: 3 Error: (12/11/2015 07:44:11 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: svchost.exe_wuauserv, wersja: 6.1.7600.16385, sygnatura czasowa: 0x4a5bc3c1 Nazwa modułu powodującego błąd: msvcrt.dll, wersja: 7.0.7601.17744, sygnatura czasowa: 0x4eeb033f Kod wyjątku: 0xc0000006 Przesunięcie błędu: 0x0000000000046000 Identyfikator procesu powodującego błąd: 0x238 Godzina uruchomienia aplikacji powodującej błąd: 0xsvchost.exe_wuauserv0 Ścieżka aplikacji powodującej błąd: svchost.exe_wuauserv1 Ścieżka modułu powodującego błąd: svchost.exe_wuauserv2 Identyfikator raportu: svchost.exe_wuauserv3 Error: (12/11/2015 07:44:11 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: services.exe, wersja: 6.1.7600.16385, sygnatura czasowa: 0x4a5bc10e Nazwa modułu powodującego błąd: services.exe, wersja: 6.1.7600.16385, sygnatura czasowa: 0x4a5bc10e Kod wyjątku: 0xc0000006 Przesunięcie błędu: 0x00000000000188f7 Identyfikator procesu powodującego błąd: 0x2a8 Godzina uruchomienia aplikacji powodującej błąd: 0xservices.exe0 Ścieżka aplikacji powodującej błąd: services.exe1 Ścieżka modułu powodującego błąd: services.exe2 Identyfikator raportu: services.exe3 Error: (12/11/2015 07:37:38 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (12/11/2015 06:42:23 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Program SDFiles.exe w wersji 2.0.12.135 zatrzymał interakcję z systemem Windows i został zamknięty. Aby zobaczyć, czy jest dostępnych więcej informacji dotyczących tego problemu, sprawdź historię problemu w panelu sterowania Centrum akcji. Identyfikator procesu: ae0 Godzina rozpoczęcia: 01d1343af37c21c2 Godzina zakończenia: 6 Ścieżka aplikacji: C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFiles.exe Identyfikator raportu: 85550e81-a02e-11e5-b716-bb2249c4cd36 Error: (12/11/2015 12:37:02 AM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: ) Description: Przetwarzanie wywołania OnIdentity() w obiekcie System Writer przez Usługi kryptograficzne nie powiodło się. Details: AddWin32ServiceFiles: Unable to back up image of service WdMan Service since QueryServiceConfig API failed System Error: Nie można odnaleźć określonego pliku. . Error: (12/10/2015 02:53:28 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: explorer.exe, wersja: 6.1.7601.17567, sygnatura czasowa: 0x4d672ee4 Nazwa modułu powodującego błąd: msi.dll, wersja: 5.0.7601.18604, sygnatura czasowa: 0x541a3cbf Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x00000000001f0fc6 Identyfikator procesu powodującego błąd: 0xe28 Godzina uruchomienia aplikacji powodującej błąd: 0xexplorer.exe0 Ścieżka aplikacji powodującej błąd: explorer.exe1 Ścieżka modułu powodującego błąd: explorer.exe2 Identyfikator raportu: explorer.exe3 Error: (12/10/2015 12:51:31 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Dziennik System: ============= Error: (12/11/2015 07:50:18 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi esgiguard z powodu następującego błędu: %%1275 Error: (12/11/2015 07:50:18 PM) (Source: Application Popup) (EventID: 1060) (User: ) Description: Ładowanie sterownika \??\C:\Program Files (x86)\Enigma Software Group\SpyHunter\esgi zostało zablokowane z powodu niezgodności z tym systemem. Skontaktuj się z dostawcą oprogramowania w celu uzyskania zgodnej wersji sterownika. Error: (12/11/2015 07:48:56 PM) (Source: DCOM) (EventID: 10016) (User: ZARZĄDZANIE NT) Description: właściwe dla aplikacjiLokalnyUruchom{C97FCC79-E628-407D-AE68-A06AD6D8B4D1}{344ED43D-D086-4961-86A6-1106F4ACAD9B}ZARZĄDZANIE NTUSŁUGA LOKALNAS-1-5-19LocalHost (użycie LRPC) Error: (12/11/2015 07:48:50 PM) (Source: DCOM) (EventID: 10016) (User: ZARZĄDZANIE NT) Description: właściwe dla aplikacjiLokalnyUruchom{C97FCC79-E628-407D-AE68-A06AD6D8B4D1}{344ED43D-D086-4961-86A6-1106F4ACAD9B}ZARZĄDZANIE NTSYSTEMS-1-5-18LocalHost (użycie LRPC) Error: (12/11/2015 07:47:54 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi SSFK z powodu następującego błędu: %%2 Error: (12/11/2015 07:47:51 PM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: Usługa PDF Architect Service zakończyła działanie; wystąpił następujący błąd: %%-2147467259 Error: (12/11/2015 07:47:32 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi IhPul z powodu następującego błędu: %%2 Error: (12/11/2015 07:47:28 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi BingBar Service z powodu następującego błędu: %%2 Error: (12/11/2015 07:47:25 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi Eset Trial Reset z powodu następującego błędu: %%1053 Error: (12/11/2015 07:47:25 PM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: Upłynął limit czasu (30000 ms) podczas oczekiwania na połączenie się z usługą Eset Trial Reset. CodeIntegrity: =================================== Date: 2015-12-11 19:50:18.487 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files (x86)\Enigma Software Group\SpyHunter\esgiguard.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2015-12-11 19:50:18.424 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files (x86)\Enigma Software Group\SpyHunter\esgiguard.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2015-12-11 19:41:31.702 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files (x86)\Enigma Software Group\SpyHunter\esgiguard.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2015-12-11 19:41:31.671 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files (x86)\Enigma Software Group\SpyHunter\esgiguard.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2015-12-11 19:38:59.222 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files (x86)\Enigma Software Group\SpyHunter\esgiguard.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2015-12-11 19:38:59.175 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files (x86)\Enigma Software Group\SpyHunter\esgiguard.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2015-12-11 19:38:55.790 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files (x86)\Enigma Software Group\SpyHunter\esgiguard.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2015-12-11 19:38:55.743 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files (x86)\Enigma Software Group\SpyHunter\esgiguard.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2015-12-10 11:33:50.552 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files (x86)\Enigma Software Group\SpyHunter\esgiguard.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2015-12-10 11:33:50.474 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files (x86)\Enigma Software Group\SpyHunter\esgiguard.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. ==================== Statystyki pamięci =========================== Procesor: Intel(R) Core(TM) i3-3110M CPU @ 2.40GHz Procent pamięci w użyciu: 87% Całkowita pamięć fizyczna: 3981.48 MB Dostępna pamięć fizyczna: 490.18 MB Całkowita pamięć wirtualna: 7961.14 MB Dostępna pamięć wirtualna: 4343.11 MB ==================== Dyski ================================ Drive c: () (Fixed) (Total:465.66 GB) (Free:159.09 GB) NTFS ==================== MBR & Tablica partycji ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: F525ABCA) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=465.7 GB) - (Type=07 NTFS) ==================== Koniec Addition.txt ============================