Rezultaty skanu uzupełniającego Farbar Recovery Scan Tool (x64) Wersja:09-12-2015 Uruchomiony przez Adam (2015-12-12 09:18:45) Uruchomiony z C:\Users\Adam\Desktop\usuwanie Windows 7 Home Premium Service Pack 1 (X64) (2015-03-14 21:07:39) Tryb startu: Normal ========================================================== ==================== Konta użytkowników: ============================= Adam (S-1-5-21-98012127-3107058649-3076572163-1000 - Administrator - Enabled) => C:\Users\Adam Administrator (S-1-5-21-98012127-3107058649-3076572163-500 - Administrator - Disabled) Gość (S-1-5-21-98012127-3107058649-3076572163-501 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-98012127-3107058649-3076572163-1002 - Limited - Enabled) ==================== Centrum zabezpieczeń ======================== (Załączenie wejścia w fixlist spowoduje jego usunięcie.) AV: avast! Antivirus (Enabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B} AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: avast! Antivirus (Enabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736} ==================== Zainstalowane programy ====================== (W fixlist dozwolone tylko załączanie programów adware z flagą "Hidden" w celu ich uwidocznienia. Programy adware powinny zostać w poprawny sposób odinstalowane.) ACP Application (Version: 2.15.10.0003 - Advanced Micro Devices, Inc.) Hidden ACP Application (Version: 2015.1117.2341.12 - Advanced Micro Devices, Inc.) Hidden Adobe Flash Player 20 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 20.0.0.235 - Adobe Systems Incorporated) Adobe Reader XI (11.0.12) - Polish (HKLM-x32\...\{AC76BA86-7AD7-1045-7B44-AB0000000001}) (Version: 11.0.12 - Adobe Systems Incorporated) AMD Catalyst Install Manager (HKLM\...\{F2A7CE36-57BF-5C86-952D-90DBF3746D82}) (Version: 8.0.916.0 - Advanced Micro Devices, Inc.) AMD Install Manager (HKLM\...\AMD Catalyst Install Manager) (Version: 5.00 - Advanced Micro Devices, Inc.) Avast Free Antivirus (HKLM-x32\...\Avast) (Version: 11.1.2241 - AVAST Software) Catalyst Control Center Next Localization BR (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization CHS (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization CHT (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization CS (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization DA (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization DE (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization EL (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization ES (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization FI (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization FR (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization HU (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization IT (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization JA (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization KO (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization NL (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization NO (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization PL (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization RU (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization SV (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization TH (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization TR (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden CCleaner (HKLM\...\CCleaner) (Version: 5.12 - Piriform) Counter-Strike (HKLM-x32\...\Steam App 10) (Version: - Valve) Counter-Strike: Global Offensive (HKLM-x32\...\Steam App 730) (Version: - Valve) CPUID CPU-Z 1.72 (HKLM\...\CPUID CPU-Z_is1) (Version: - ) CPUID HWMonitor 1.28 (HKLM\...\CPUID HWMonitor_is1) (Version: - ) EasyAntiCheat eSports (HKLM-x32\...\Steam App 282660) (Version: - EasyAntiCheat Ltd) ESL Wire 1.19.0 (HKLM\...\ESL Wire_is1) (Version: - Turtle Entertainment GmbH) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 47.0.2526.80 - Google Inc.) Google Drive (HKLM-x32\...\{1C3D2F92-D25E-4D98-B810-3F3B0857BF26}) (Version: 1.26.0707.2863 - Google, Inc.) Google Update Helper (x32 Version: 1.3.21.115 - Google Inc.) Hidden Google Update Helper (x32 Version: 1.3.29.1 - Google Inc.) Hidden Handset USB Driver (HKLM\...\{D2D77DC2-8299-11D1-8949-444553540000}_is1) (Version: 5.2066.1.A14B04 - ) Java 8 Update 51 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218051F0}) (Version: 8.0.510 - Oracle Corporation) Java 8 Update 66 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218066F0}) (Version: 8.0.660.18 - Oracle Corporation) Lightshot-5.2.1.1 (HKLM-x32\...\{30A5B3C9-2084-4063-A32A-628A98DE512B}_is1) (Version: 5.2.1.1 - Skillbrains) Metro 2033 (HKLM-x32\...\Steam App 43110) (Version: - 4A Games) Microsoft .NET Framework 4.5.2 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.51209 - Microsoft Corporation) Microsoft Office Professional Plus 2010 (HKLM-x32\...\Office14.PROPLUSR) (Version: 14.0.7015.1000 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.41105.0 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727 (HKLM-x32\...\{15134cb0-b767-4960-a911-f2d16ae54797}) (Version: 11.0.50727.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 (HKLM-x32\...\{22154f09-719a-4619-bb71-5b3356999fbf}) (Version: 11.0.50727.1 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation) Mozilla Firefox 42.0 (x86 pl) (HKLM-x32\...\Mozilla Firefox 42.0 (x86 pl)) (Version: 42.0 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 42.0.0.5780 - Mozilla) Notepad++ (HKLM-x32\...\Notepad++) (Version: 6.8.6 - Notepad++ Team) NVIDIA PhysX (HKLM-x32\...\{54194F60-988C-4D03-B922-C2B00EFDA39A}) (Version: 9.10.0222 - NVIDIA Corporation) Open Broadcaster Software (HKLM-x32\...\Open Broadcaster Software) (Version: - ) Oprogramowanie mikroukładu Intel® (x32 Version: 10.0.20 - Intel(R) Corporation) Hidden Polski pakiet językowy dla narzędzi Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - PLK) (Version: 10.0.50903 - Microsoft Corporation) Raptr (HKLM-x32\...\Raptr) (Version: - ) Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.77.1126.2013 - Realtek) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7293 - Realtek Semiconductor Corp.) Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{91140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUSR_{DE28B448-32E8-4E8F-84F0-A52B21A49B5B}) (Version: - Microsoft) Skype™ 7.2 (HKLM-x32\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 7.2.103 - Skype Technologies S.A.) Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation) TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.0.16 - TeamSpeak Systems GmbH) Vegas Pro 12.0 (64-bit) (HKLM\...\{BD422D00-5232-11E3-A6F3-F04DA23A5C58}) (Version: 12.0.770 - Sony) Vegas Pro 13.0 (64-bit) (HKLM\...\{CDA02BF0-BFBC-11E3-AFA0-F04DA23A5C58}) (Version: 13.0.290 - Sony) Visual Studio 2012 x64 Redistributables (HKLM\...\{8C775E70-A791-4DA8-BCC3-6AB7136F4484}) (Version: 14.0.0.1 - AVG Technologies) Visual Studio 2012 x86 Redistributables (HKLM-x32\...\{98EFF19A-30AB-4E4B-B943-F06B1C63EBF8}) (Version: 14.0.0.1 - AVG Technologies CZ, s.r.o.) WinRAR 5.21 (64-bitowy) (HKLM\...\WinRAR archiver) (Version: 5.21.0 - win.rar GmbH) ZTE Handset USB Driver (HKLM\...\{01D42BF0-ED08-463f-8A28-99EB6FEE962B}) (Version: - ZTE Corporation) ==================== Niestandardowe rejestracje CLSID (filtrowane): ========================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) ==================== Punkty Przywracania systemu ========================= 29-08-2015 07:40:59 AMDCleanupUtility Restore Point 17-10-2015 12:08:13 Chrome Cleanup Tool 27-10-2015 18:00:57 Installed Microsoft Fix it 50465 27-10-2015 18:27:35 Zainstalowany program DirectX 07-11-2015 13:34:50 Zaplanowany punkt kontrolny 15-11-2015 10:18:31 Zainstalowano: Microsoft Visual C++ 2005 Redistributable 15-11-2015 10:19:13 Zainstalowany program DirectX 15-11-2015 10:20:24 Installed NVIDIA PhysX 24-11-2015 18:12:52 Zaplanowany punkt kontrolny 26-11-2015 15:24:43 Instalacja pakietu sterownika urządzenia: TAP-Windows Provider V9 Karty sieciowe 05-12-2015 12:35:17 Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 11-12-2015 22:42:47 Windows Update 11-12-2015 23:10:51 Windows Update 12-12-2015 09:10:29 SPTD setup V1.87 ==================== Hosts - zawartość: ========================== (Użycie dyrektywy Hosts: w fixlist spowoduje reset pliku Hosts.) 2009-07-14 03:34 - 2015-03-23 18:47 - 00001001 ____A C:\Windows\system32\Drivers\etc\hosts 127.0.0.1 thislineskipsanyemptylines 127.0.0.1 mirillis.com 127.0.0.1 www.mirillis.com 127.0.0.1 serwer2.paka-service.com 127.0.0.1 ns386119.ovh.net 127.0.0.1 mirillis.pl ==================== Zaplanowane zadania (filtrowane) ============= (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) Task: {13502FA6-5A4F-4BB8-B7A0-392969683AF8} - System32\Tasks\AVAST Software\Avast settings backup => C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe [2015-12-03] (AVAST Software) Task: {14C9115A-AECA-4CFC-A699-BB10FB6253E7} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-28] (Google Inc.) Task: {150F2A6D-ED4C-4698-81C5-B1A57C650BE3} - System32\Tasks\GoogleUpdateTaskMachineUA1d108cc27afb84c => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-28] (Google Inc.) Task: {1D16FB02-E5CD-4666-B6C9-A310A7334F04} - System32\Tasks\GoogleUpdateTaskMachineCore1d108cc26d310b1 => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-28] (Google Inc.) Task: {2F57269B-1E09-4E2D-AB1E-B0FDAC7D279C} - \Microsoft\Windows\WindowsBackup\ConfigNotification -> Brak pliku <==== UWAGA Task: {57B0420F-0865-4E03-A6AE-E7C750D9F649} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2015-11-16] (Piriform Ltd) Task: {7A12F104-61E2-404C-BF8F-2F6B8EAAE3C2} - System32\Tasks\Java Platform SE Auto Updater => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2015-08-04] (Oracle Corporation) Task: {82674856-CDFD-475A-8A21-F9E8282787A1} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-12-11] (Adobe Systems Incorporated) Task: {94DC4EE1-550B-4B36-B0DB-696137ACDB58} - System32\Tasks\{BE33B681-9908-4321-8532-B3392BCEFD78} => Chrome.exe hxxp://ui.skype.com/ui/0/7.8.0.102/pl/go/help.faq.installer?LastError=1603 Task: {98656019-1CEC-4F37-9443-6F17EFAF98AE} - System32\Tasks\AMD Updater => C:\Program Files\AMD\CIM\\Bin64\InstallManagerApp.exe [2015-11-18] (Advanced Micro Devices, Inc.) Task: {9B3D5CCD-9C58-4D28-B120-40925257CD55} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-28] (Google Inc.) Task: {A097FE2F-A90E-4231-A711-1096DB429E5A} - System32\Tasks\avast! Emergency Update => C:\Program Files\Avast\AvastEmUpdate.exe [2015-11-22] (AVAST Software) Task: {A3197116-C500-4419-B4F4-92D00E6D5457} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2015-07-07] (Adobe Systems Incorporated) Task: {AC4E5ACF-89F7-4220-BA21-81EE183975E2} - \Microsoft\Windows\Application Experience\AitAgent -> Brak pliku <==== UWAGA Task: {B5F90B60-6898-4C9C-AB68-0BA034E83231} - System32\Tasks\{E4ABC9FF-0DBA-4CDF-A070-4BC732F710CB} => D:\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe [2015-12-09] () Task: {B68EEC4D-5F81-48CD-A47D-F40BFF01BDF4} - System32\Tasks\{56559CDF-7040-4775-B8CC-A9B9CE4F24DB} => D:\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe [2015-12-09] () Task: {B6DC6EDA-6FCC-4B1D-A969-2B3709D4B65E} - System32\Tasks\{AF971069-69BE-4B03-BA3D-57248662F744} => Chrome.exe hxxp://ui.skype.com/ui/0/7.3.0.101/pl/go/help.faq.installer?LastError=1601 Task: {CEE64558-E1A7-4D9D-80A7-2001912BE5B5} - \Microsoft\Windows\MemoryDiagnostic\CorruptionDetector -> Brak pliku <==== UWAGA Task: {D60AA63D-86AE-43E4-8B2F-BAB96D7321A6} - System32\Tasks\{D9465FBD-9486-45FA-B57B-611B4C2EE570} => Chrome.exe hxxp://ui.skype.com/ui/0/7.13.64.101/pl/go/help.faq.installer?LastError=1603 Task: {FA2BC0A6-8D4B-458A-85C8-2B8C72487513} - \Microsoft\Windows\MemoryDiagnostic\DecompressionFailureDetector -> Brak pliku <==== UWAGA (Załączenie wejścia w fixlist spowoduje przesunięcie pliku zadania (.job). Plik uruchamiany docelowo przez zadanie nie zostanie przeniesiony.) Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore1d108cc26d310b1.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA1d108cc27afb84c.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ==================== Skróty ============================= (Wybrane wejścia mogą zostać załączone w celu ich zresetowania lub usunięcia.) ==================== Załadowane moduły (filtrowane) ============== 2013-09-05 00:17 - 2013-09-05 00:17 - 04300456 _____ () C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Cultures\OFFICE.ODF 2015-04-15 21:13 - 2015-04-15 21:13 - 00222720 _____ () C:\Program Files (x86)\Notepad++\NppShell_06.dll 2015-12-06 17:34 - 2013-12-05 21:06 - 00663056 _____ () C:\Program Files\EslWire\service\WireHelperSvc.exe 2015-12-06 17:34 - 2014-10-14 19:33 - 00214016 _____ () C:\Program Files\EslWire\service\NocIPC64.dll 2015-11-16 17:55 - 2015-11-16 17:55 - 00061440 _____ () C:\Program Files\CCleaner\lang\lang-1045.dll 2015-11-22 20:52 - 2015-11-22 20:52 - 00103888 _____ () C:\Program Files\Avast\log.dll 2015-11-22 20:52 - 2015-11-22 20:52 - 00125512 _____ () C:\Program Files\Avast\JsonRpcServer.dll 2015-12-11 19:00 - 2015-12-11 19:00 - 02803200 _____ () C:\Program Files\Avast\defs\15121102\algo.dll 2015-11-22 20:52 - 2015-11-22 20:52 - 00466448 _____ () C:\Program Files\Avast\ffl2.dll 2015-12-10 18:23 - 2015-12-04 22:32 - 01583432 _____ () C:\Program Files (x86)\Google\Chrome\Application\47.0.2526.80\libglesv2.dll 2015-12-10 18:23 - 2015-12-04 22:32 - 00081224 _____ () C:\Program Files (x86)\Google\Chrome\Application\47.0.2526.80\libegl.dll 2015-04-03 20:36 - 2015-04-03 20:36 - 40540672 _____ () C:\Program Files\Avast\libcef.dll ==================== Alternate Data Streams (filtrowane) ========= (Załączenie wejścia w fixlist spowoduje usunięcie strumienia ADS.) ==================== Tryb awaryjny (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Wartość "AlternateShell" zostanie przywrócona.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PEVSystemStart => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\procexp90.Sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\PEVSystemStart => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\procexp90.Sys => ""="Driver" ==================== EXE - Powiązania (filtrowane) =============== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci.) ==================== Internet Explorer - Witryny zaufane i z ograniczeniami =============== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru.) ==================== Inne obszary ============================ (Obecnie brak automatycznej naprawy dla tej sekcji.) HKU\S-1-5-21-98012127-3107058649-3076572163-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\Adam\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg DNS Servers: 192.168.0.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 0) (ConsentPromptBehaviorUser: 3) (EnableLUA: 0) Zapora systemu Windows [funkcja włączona] ==================== MSCONFIG/TASK MANAGER - Wyłączone elementy == (Obecnie brak automatycznej naprawy dla tej sekcji.) MSCONFIG\startupfolder: C:^Users^Adam^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^cm-10.2-20131011-KonstaKANG-atlas40.zip (1).lnk => C:\Windows\pss\cm-10.2-20131011-KonstaKANG-atlas40.zip (1).lnk.Startup MSCONFIG\startupfolder: C:^Users^Adam^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^cm-10.2-20131011-KonstaKANG-atlas40.zip.lnk => C:\Windows\pss\cm-10.2-20131011-KonstaKANG-atlas40.zip.lnk.Startup MSCONFIG\startupfolder: C:^Users^Adam^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Tworzenie wycinków ekranu i uruchamianie programu OneNote 2010.lnk => C:\Windows\pss\Tworzenie wycinków ekranu i uruchamianie programu OneNote 2010.lnk.Startup MSCONFIG\startupreg: BCSSync => "D:\Microsoft Office\Office14\BCSSync.exe" /DelayServices MSCONFIG\startupreg: CCleaner Monitoring => "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR MSCONFIG\startupreg: Lightshot => C:\Program Files (x86)\Skillbrains\lightshot\Lightshot.exe MSCONFIG\startupreg: MSC => "C:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey MSCONFIG\startupreg: OfficeSyncProcess => "D:\Microsoft Office\Office14\MSOSYNC.EXE" MSCONFIG\startupreg: Raptr => "C:\Program Files (x86)\Raptr\raptrstub.exe" --startup MSCONFIG\startupreg: RTHDVCPL => "C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe" -s MSCONFIG\startupreg: screenSHU => "C:\Program Files (x86)\screenSHU\screenSHU.exe" --hidden MSCONFIG\startupreg: Skype => "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun MSCONFIG\startupreg: StartCCC => "C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\amd64\CLIStart.exe" MSRun MSCONFIG\startupreg: Steam => "D:\Steam\steam.exe" -silent ==================== Reguły Zapory systemu Windows (filtrowane) =============== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) FirewallRules: [{BDD5C201-EEB4-456D-B816-E3FEAE4C9710}] => (Allow) D:\Steam\Steam.exe FirewallRules: [{0622A22F-980A-454C-8F16-829470905521}] => (Allow) D:\Steam\Steam.exe FirewallRules: [{324033BE-C1A3-44FD-B8D1-573EA0BDB12B}] => (Allow) D:\Steam\bin\steamwebhelper.exe FirewallRules: [{513730F7-459E-4662-863A-B9191735AE57}] => (Allow) D:\Steam\bin\steamwebhelper.exe FirewallRules: [{5DC22E57-A327-4EBE-81D6-3C9BF99F7DF4}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe FirewallRules: [TCP Query User{03BA3D9F-9B5C-4629-87CA-5583902E46FA}C:\users\adam\desktop\runtime\jre-x64\1.8.0_25\bin\javaw.exe] => (Allow) C:\users\adam\desktop\runtime\jre-x64\1.8.0_25\bin\javaw.exe FirewallRules: [UDP Query User{FDBD5971-C7B6-495F-B2FE-B55FBECB7E0C}C:\users\adam\desktop\runtime\jre-x64\1.8.0_25\bin\javaw.exe] => (Allow) C:\users\adam\desktop\runtime\jre-x64\1.8.0_25\bin\javaw.exe FirewallRules: [{45B051BC-20C9-4BAC-B487-3B2AE76F5BAE}] => (Allow) D:\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe FirewallRules: [{C20A2414-AFCD-49D1-A1E6-106F9D151E57}] => (Allow) D:\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe FirewallRules: [{E58D0E2F-2E6D-436A-AA79-399310CFAB60}] => (Allow) D:\Microsoft Office\Office14\GROOVE.EXE FirewallRules: [{7ECCB8A6-F6CA-4EF2-9DD8-DDAA7ABACC79}] => (Allow) D:\Microsoft Office\Office14\GROOVE.EXE FirewallRules: [{4B661D40-6AB7-4D55-87D5-286E89D6D17D}] => (Allow) D:\Microsoft Office\Office14\ONENOTE.EXE FirewallRules: [{5D7B1D9C-08E5-4381-8D7C-BE70A0D235AA}] => (Allow) D:\Microsoft Office\Office14\ONENOTE.EXE FirewallRules: [{F62BCB52-05D8-4816-A770-76294B3150B5}] => (Allow) D:\Microsoft Office\Office14\outlook.exe FirewallRules: [{BF5A3E24-E2D8-4118-9446-EEE9C28E3A1E}] => (Allow) D:\Steam\steamapps\common\Tap Tap Infinity\TapTapInfinity.exe FirewallRules: [{09F2227E-2973-4E7D-ADB9-A39843AEB06A}] => (Allow) D:\Steam\steamapps\common\Tap Tap Infinity\TapTapInfinity.exe FirewallRules: [{F0EEE871-BA8A-44C6-B772-96C01E838184}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{4618F21D-8D31-458C-AC2B-13AA68BD7EBF}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{2FBBD726-5D6E-485C-AE9B-A0F1852FB137}] => (Allow) D:\Steam\steamapps\common\EasyAntiCheat\EasyAntiCheat.exe FirewallRules: [{CA174C50-3AC9-48D4-95DE-7A61617C4517}] => (Allow) D:\Steam\steamapps\common\EasyAntiCheat\EasyAntiCheat.exe FirewallRules: [{E6E69C03-830C-4FEE-9AD3-38FA2B3AA2BE}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{506AB2BF-79EA-4C47-96A7-F88B51B07832}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{49ED4C70-FAEC-4F52-9E42-21E10A83D4D3}] => (Allow) D:\Steam\steamapps\common\Half-Life\hl.exe FirewallRules: [{0848E4F2-ACD3-43CC-9A9C-2BC170D582F7}] => (Allow) D:\Steam\steamapps\common\Half-Life\hl.exe FirewallRules: [{741B57F5-60E6-48D3-8BE3-A3418877FB3D}] => (Allow) D:\Steam\steamapps\common\Metro 2033\metro2033.exe FirewallRules: [{01CCCDED-9C5F-4795-9E3A-7B57909188A3}] => (Allow) D:\Steam\steamapps\common\Metro 2033\metro2033.exe FirewallRules: [{E5798D02-D5E0-4738-A488-92E19BA6BC22}] => (Allow) C:\Program Files\Avast\ng\vbox\aswFe.exe FirewallRules: [{39492836-E5BE-4391-BF57-235B085A221E}] => (Allow) C:\Program Files\Avast\ng\vbox\aswFe.exe FirewallRules: [{1944C422-61E0-404A-9E84-D9B4A443767A}] => (Allow) C:\Program Files (x86)\Raptr\raptr.exe FirewallRules: [{000187CF-6C9E-448E-8419-54B91C44D8C1}] => (Allow) C:\Program Files (x86)\Raptr\raptr.exe FirewallRules: [{66D083B8-E334-4DD5-9390-3FE02261A31E}] => (Allow) C:\Program Files (x86)\Raptr\raptr_im.exe FirewallRules: [{1FB7FB5F-74C2-45ED-849F-3F946DE657B0}] => (Allow) C:\Program Files (x86)\Raptr\raptr_im.exe FirewallRules: [{4DDBC0E3-22C5-43C0-9319-0E84AE0CF618}] => (Allow) C:\Program Files\EslWire\wire.exe FirewallRules: [{5F4A179C-45FD-47BC-ADE0-ED8F9BB6D231}] => (Allow) C:\Program Files\EslWire\wire.exe FirewallRules: [{178F5FC4-E888-4402-BDF5-D614D6C67225}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Wadliwe urządzenia w Menedżerze urządzeń ============= Name: Description: Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: avast! SecureLine TAP Adapter v3 Description: avast! SecureLine TAP Adapter v3 Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318} Manufacturer: TAP-Windows Provider V9 Service: aswTap Problem: : This device is disabled. (Code 22) Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions. ==================== Błędy w Dzienniku zdarzeń: ========================= Dziennik Aplikacja: ================== Error: (12/12/2015 09:15:12 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (12/12/2015 09:14:32 AM) (Source: Schedule) (EventID: 0) (User: ) Description: Schedule error: 0Initialize call failed, bailing out Error: (12/12/2015 09:12:35 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (12/12/2015 09:12:01 AM) (Source: Schedule) (EventID: 0) (User: ) Description: Schedule error: 0Initialize call failed, bailing out Error: (12/12/2015 09:10:29 AM) (Source: VSS) (EventID: 8194) (User: ) Description: Błąd Usługi kopiowania woluminów w tle: nieoczekiwany błąd podczas badania interfejsu IVssWriterCallback. hr = 0x80070005, Odmowa dostępu. . To jest często spowodowane przez niepoprawne ustawienia zabezpieczeń w procesie zapisującym lub żądającym. Operacja: Zbieranie danych modułu zapisującego Kontekst: Identyfikator klasy modułu zapisującego: {e8132975-6f93-4464-a53e-1050253ae220} Nazwa modułu zapisującego: System Writer Identyfikator wystąpienia modułu zapisującego: {922238e9-3893-4731-b1ea-67e67b95bec6} Error: (12/12/2015 09:01:04 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: Explorer.EXE, wersja: 6.1.7601.17567, sygnatura czasowa: 0x4d672ee4 Nazwa modułu powodującego błąd: msi.dll, wersja: 5.0.7601.18896, sygnatura czasowa: 0x557f4749 Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x00000000001f1132 Identyfikator procesu powodującego błąd: 0xc10 Godzina uruchomienia aplikacji powodującej błąd: 0xExplorer.EXE0 Ścieżka aplikacji powodującej błąd: Explorer.EXE1 Ścieżka modułu powodującego błąd: Explorer.EXE2 Identyfikator raportu: Explorer.EXE3 Error: (12/12/2015 08:47:40 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (12/12/2015 08:47:21 AM) (Source: Schedule) (EventID: 0) (User: ) Description: Schedule error: 0Initialize call failed, bailing out Error: (12/11/2015 11:03:20 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (12/11/2015 11:02:57 PM) (Source: Schedule) (EventID: 0) (User: ) Description: Schedule error: 0Initialize call failed, bailing out Dziennik System: ============= Error: (12/11/2015 10:35:25 PM) (Source: BugCheck) (EventID: 1001) (User: ) Description: 0x000000d1 (0xfffffa7ffb18f71a, 0x0000000000000002, 0x0000000000000001, 0xfffffa8006d9c413)C:\Windows\MEMORY.DMP121115-15631-01 Error: (12/11/2015 10:35:20 PM) (Source: EventLog) (EventID: 6008) (User: ) Description: Poprzednie zamknięcie systemu przy 22:34:16 na ‎2015-‎12-‎11 było nieoczekiwane. Error: (12/10/2015 05:56:46 PM) (Source: Service Control Manager) (EventID: 7030) (User: ) Description: Usługa ESL Wire Helper Service jest oznaczona jako usługa interakcyjna. System jest jednak skonfigurowany tak, aby nie zezwalać na usługi interakcyjne, dlatego ta usługa może nie działać właściwie. Error: (12/10/2015 05:55:43 PM) (Source: WMPNetworkSvc) (EventID: 14332) (User: ) Description: WMPNetworkSvc0x80004005 Error: (12/06/2015 05:34:15 PM) (Source: Service Control Manager) (EventID: 7030) (User: ) Description: Usługa ESL Wire Helper Service jest oznaczona jako usługa interakcyjna. System jest jednak skonfigurowany tak, aby nie zezwalać na usługi interakcyjne, dlatego ta usługa może nie działać właściwie. Error: (12/05/2015 12:36:44 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi ACP Kernel Service Driver z powodu następującego błędu: %%31 Error: (12/05/2015 12:36:43 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi ACP Kernel Service Driver z powodu następującego błędu: %%31 Error: (12/05/2015 12:22:55 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi MSI_Trigger_Service z powodu następującego błędu: %%1053 Error: (12/05/2015 12:22:55 PM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: Upłynął limit czasu (30000 ms) podczas oczekiwania na połączenie się z usługą MSI_Trigger_Service. Error: (12/03/2015 05:47:09 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi MSI_Trigger_Service z powodu następującego błędu: %%1053 ==================== Statystyki pamięci =========================== Procesor: Intel(R) Core(TM) i5-4460 CPU @ 3.20GHz Procent pamięci w użyciu: 23% Całkowita pamięć fizyczna: 8120 MB Dostępna pamięć fizyczna: 6173.38 MB Całkowita pamięć wirtualna: 16238.21 MB Dostępna pamięć wirtualna: 13984.39 MB ==================== Dyski ================================ Drive c: () (Fixed) (Total:443.13 GB) (Free:352.94 GB) NTFS Drive d: () (Fixed) (Total:488.28 GB) (Free:457.92 GB) NTFS ==================== MBR & Tablica partycji ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: 02394DEC) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=443.1 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=488.3 GB) - (Type=07 NTFS) ==================== Koniec Addition.txt ============================