Rezultaty skanu uzupełniającego Farbar Recovery Scan Tool (x64) Wersja:13-12-2015 Uruchomiony przez Darek (2015-12-14 14:42:44) Uruchomiony z C:\Users\Darek\Downloads Windows 7 Home Premium Service Pack 1 (X64) (2013-05-31 08:54:01) Tryb startu: Normal ========================================================== ==================== Konta użytkowników: ============================= Administrator (S-1-5-21-1104056212-3661391068-887333560-500 - Administrator - Disabled) Darek (S-1-5-21-1104056212-3661391068-887333560-1000 - Administrator - Enabled) => C:\Users\Darek Gość (S-1-5-21-1104056212-3661391068-887333560-501 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-1104056212-3661391068-887333560-1003 - Limited - Enabled) ==================== Centrum zabezpieczeń ======================== (Załączenie wejścia w fixlist spowoduje jego usunięcie.) AV: Microsoft Security Essentials (Enabled - Up to date) {B7ECF8CD-0188-6703-DBA4-AA65C6ACFB0A} AS: Microsoft Security Essentials (Enabled - Up to date) {0C8D1929-27B2-688D-E114-9117BD2BB1B7} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Zainstalowane programy ====================== (W fixlist dozwolone tylko załączanie programów adware z flagą "Hidden" w celu ich uwidocznienia. Programy adware powinny zostać w poprawny sposób odinstalowane.) Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 16.0.0.273 - Adobe Systems Incorporated) Adobe Flash Player 20 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 20.0.0.228 - Adobe Systems Incorporated) Adobe Flash Player 20 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 20.0.0.235 - Adobe Systems Incorporated) Adobe Reader XI (11.0.13) - Polish (HKLM-x32\...\{AC76BA86-7AD7-1045-7B44-AB0000000001}) (Version: 11.0.13 - Adobe Systems Incorporated) Adobe Shockwave Player 12.0 (HKLM-x32\...\Adobe Shockwave Player) (Version: 12.0.6.147 - Adobe Systems, Inc.) Aktualizacje NVIDIA 2.4.1.21 (Version: 2.4.1.21 - NVIDIA Corporation) Hidden ALL YouTube Downloader (HKLM-x32\...\ALL YouTube Downloader_is1) (Version: 2.3 - ALLPlayer Ltd.) ALLConverter PRO 1.3 (HKLM-x32\...\{9370105C-71BB-4FF9-A85B-36D79B95457A}_is1) (Version: - ALLCinema, Inc.) ALLMediaServer (HKLM-x32\...\{FE77909E-B782-4554-A92A-4D887CEF0ACC}_is1) (Version: 0.95 - ALLCinema Ltd.) ALLPlayer V5.X (HKLM-x32\...\ALLPlayer_is1) (Version: - ALLCinema Ltd.) Battle.net (HKLM-x32\...\Battle.net) (Version: - ) BitTorrent (HKU\S-1-5-21-1104056212-3661391068-887333560-1000\...\BitTorrent) (Version: 7.9.5.41373 - BitTorrent Inc.) Brother MFL-Pro Suite DCP-395CN (HKLM-x32\...\{0A02D347-5E53-48A5-BC49-1469393103FA}) (Version: 2.0.0.0 - Brother Industries, Ltd.) Call of Duty(R) 4 - Modern Warfare(TM) 1.6 Patch (x32 Version: - ) Hidden Call of Duty(R) 4 - Modern Warfare(TM) 1.7 Patch (x32 Version: - ) Hidden CCleaner (HKLM\...\CCleaner) (Version: 3.20 - Piriform) Combined Community Codec Pack 2007-07-22 (HKLM-x32\...\Combined Community Codec Pack_is1) (Version: 2007-07-22 13:55 - CCCP Project) DAEMON Tools Lite (HKLM-x32\...\DAEMON Tools Lite) (Version: 4.49.1.0356 - Disc Soft Ltd) Detektor Winampa (HKU\S-1-5-21-1104056212-3661391068-887333560-1000\...\Winamp Detect) (Version: 1.0.0.1 - Nullsoft, Inc) Diablo III (HKLM-x32\...\Diablo III) (Version: - Blizzard Entertainment) e-Deklaracje Desktop (HKLM-x32\...\e-Deklaracje.A1909296681C7ACEFE45687D3A64758C8659BF46.1) (Version: 7.0.1 - Ministerstwo Finansow) e-Deklaracje Desktop (x32 Version: 7.0.1 - Ministerstwo Finansow) Hidden Fallout Mod Manager 0.13.21 (HKLM-x32\...\Generic Mod Manager_is1) (Version: - Q, Timeslip) GIMP 2.8.10 (HKLM\...\GIMP-2_is1) (Version: 2.8.10 - The GIMP Team) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 47.0.2526.80 - Google Inc.) Google Earth (HKLM-x32\...\{817750FA-EC6A-485D-9901-0683AE6FFDF1}) (Version: 7.1.5.1557 - Google) Google Update Helper (x32 Version: 1.3.25.11 - Google Inc.) Hidden Google Update Helper (x32 Version: 1.3.29.1 - Google Inc.) Hidden Grand Theft Auto IV (x32 Version: 1.0.0013.131 - Rockstar Games Inc.) Hidden Hearthstone (HKLM-x32\...\Hearthstone) (Version: - Blizzard Entertainment) Heroes of Might and Magic III - Złota Edycja (HKLM-x32\...\Heroes of Might and Magic III - Złota Edycja_is1) (Version: - ) Heroes of the Storm (HKLM-x32\...\Heroes of the Storm) (Version: - Blizzard Entertainment) Informacje o systemie Creative (HKLM-x32\...\SysInfo) (Version: 1.10 - Creative Technology Limited) Injustice: Gods Among Us Ultimate Edition (HKLM-x32\...\Steam App 242700) (Version: - NetherRealm Studios) Intel(R) Control Center (HKLM-x32\...\{F8A9085D-4C7A-41a9-8A77-C8998A96C421}) (Version: 1.2.1.1008 - Intel Corporation) Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 8.1.20.1337 - Intel Corporation) Intel(R) Smart Connect Technology 3.0 x64 (HKLM\...\{B2630BA9-0AFD-4BF4-98F3-29BC2143C834}) (Version: 3.0.41.1571 - Intel) Intel(R) USB 3.0 eXtensible Host Controller Driver (HKLM-x32\...\{240C3DDD-C5E9-4029-9DF7-95650D040CF2}) (Version: 1.0.5.235 - Intel Corporation) League of Legends (HKLM-x32\...\League of Legends 3.0.1) (Version: 3.0.1 - Riot Games) League of Legends (x32 Version: 3.0.1 - Riot Games) Hidden Metric Collection SDK 35 (x32 Version: 1.2.0010.00 - Lenovo Group Limited) Hidden Microsoft .NET Framework 4.5.2 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.51209 - Microsoft Corporation) Microsoft ASP.NET MVC 4 Runtime (HKLM-x32\...\{3FE312D5-B862-40CE-8E4E-A6D8ABF62736}) (Version: 4.0.40804.0 - Microsoft Corporation) Microsoft Chart Controls for Microsoft .NET Framework 3.5 (KB2500170) (HKLM-x32\...\{41785C66-90F2-40CE-8CB5-1C94BFC97280}) (Version: 3.5.30730.0 - Microsoft Corporation) Microsoft Games for Windows - LIVE Redistributable (HKLM-x32\...\{59E4543A-D49D-4489-B445-473D763C79AF}) (Version: 2.0.672.0 - Microsoft Corporation) Microsoft Office Professional Plus 2010 (HKLM-x32\...\Office14.PROPLUS) (Version: 14.0.7015.1000 - Microsoft Corporation) Microsoft Security Essentials (HKLM\...\Microsoft Security Client) (Version: 4.8.204.0 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.41105.0 - Microsoft Corporation) Microsoft SkyDrive (HKU\S-1-5-21-1104056212-3661391068-887333560-1000\...\SkyDriveSetup.exe) (Version: 16.4.6012.0828 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{A49F249F-0C91-497F-86DF-B2585E8E76B7}) (Version: 8.0.50727.42 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation) Microsoft Word 2013 - pl-pl (HKLM\...\WordRetail - pl-pl) (Version: 15.0.4433.1507 - Microsoft Corporation) Microsoft WSE 3.0 Runtime (HKLM-x32\...\{E3E71D07-CD27-46CB-8448-16D4FB29AA13}) (Version: 3.0.5305.0 - Microsoft Corp.) Mortal Kombat X (HKLM-x32\...\Steam App 307780) (Version: - NetherRealm Studios) MSVC90_x64 (Version: 1.0.1.2 - Nokia) Hidden MSVC90_x86 (x32 Version: 1.0.1.2 - Nokia) Hidden MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation) MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation) MSXML 4.0 SP3 Parser (HKLM-x32\...\{196467F1-C11F-4F76-858B-5812ADC83B94}) (Version: 4.30.2100.0 - Microsoft Corporation) MSXML 4.0 SP3 Parser (KB2758694) (HKLM-x32\...\{1D95BA90-F4F8-47EC-A882-441C99D30C1E}) (Version: 4.30.2117.0 - Microsoft Corporation) NapiProjekt (2.2.0.2399) (HKLM-x32\...\NapiProjekt_is1) (Version: - ) Notepad++ (HKLM-x32\...\Notepad++) (Version: 6.6.9 - Notepad++ Team) NVIDIA GeForce Experience 2.4.1.21 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.4.1.21 - NVIDIA Corporation) NVIDIA Oprogramowanie systemu PhysX 9.15.0324 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.15.0324 - NVIDIA Corporation) NVIDIA Sterownik 3D Vision 350.12 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 350.12 - NVIDIA Corporation) NVIDIA Sterownik dźwięku HD 1.3.33.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.33.0 - NVIDIA Corporation) NVIDIA Sterownik graficzny 350.12 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 350.12 - NVIDIA Corporation) NVIDIA Sterownik kontrolera 3D Vision 349.95 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 349.95 - NVIDIA Corporation) Office 15 Click-to-Run Extensibility Component (x32 Version: 15.0.4433.1507 - Microsoft Corporation) Hidden Office 15 Click-to-Run Licensing Component (Version: 15.0.4433.1507 - Microsoft Corporation) Hidden Office 15 Click-to-Run Localization Component (x32 Version: 15.0.4433.1507 - Microsoft Corporation) Hidden Origin (HKLM-x32\...\Origin) (Version: 9.10.1.1501 - Electronic Arts, Inc.) Panel sterowania NVIDIA 350.12 (Version: 350.12 - NVIDIA Corporation) Hidden Picexa (HKLM-x32\...\Picexa) (Version: - Taiwan Shui Mu Chih Ching Technology Limited) <==== UWAGA Pinnacle Game Profiler (HKLM-x32\...\{49BF48CC-ABB6-4795-9B35-B5DE005D8612}) (Version: 8.1.1 - PowerUp Software) Plague Inc: Evolved (HKLM-x32\...\Steam App 246620) (Version: - Ndemic Creations) Polski pakiet językowy dla narzędzi Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - PLK) (Version: 10.0.50903 - Microsoft Corporation) PunkBuster Services (HKLM-x32\...\PunkBusterSvc) (Version: 0.991 - Even Balance, Inc.) Razer Synapse (HKLM-x32\...\{0D78BEE2-F8FF-4498-AF1A-3FF81CED8AC6}) (Version: 1.18.19.24735 - Razer Inc.) Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.53.216.2012 - Realtek) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6738 - Realtek Semiconductor Corp.) Rockstar Games Social Club (HKLM-x32\...\Rockstar Games Social Club) (Version: 1.1.6.5 - Rockstar Games) Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{DE28B448-32E8-4E8F-84F0-A52B21A49B5B}) (Version: - Microsoft) SHIELD Streaming (Version: 4.1.1000 - NVIDIA Corporation) Hidden SHIELD Wireless Controller Driver (Version: 2.4.1.21 - NVIDIA Corporation) Hidden Sid Meier's Civilization V (HKLM-x32\...\steam app 8930) (Version: - 2K Games, Inc.) Skype Click to Call (HKLM-x32\...\{6D1221A9-17BF-4EC0-81F2-27D30EC30701}) (Version: 7.5.0.9082 - Microsoft Corporation) Skype™ 7.15 (HKLM-x32\...\{6A0549A9-1B96-498C-ACBC-3943001FEB19}) (Version: 7.15.103 - Skype Technologies S.A.) Sound Blaster Tactic(3D) Alpha (HKLM-x32\...\{2226247D-9846-4370-A1EF-FAA6958F7632}) (Version: 1.0 - Creative Technology Limited) South Park™: The Stick of Truth™ (HKLM-x32\...\Steam App 213670) (Version: - Obsidian Entertainment) Spotify (HKU\S-1-5-21-1104056212-3661391068-887333560-1000\...\Spotify) (Version: 1.0.10.107.gd0dfca3a - Spotify AB) StarCraft II (HKLM-x32\...\StarCraft II) (Version: - Blizzard Entertainment) Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation) Super-Charger (HKLM-x32\...\{7CDF10DD-A9B5-4DA3-AB95-E193248D4369}_is1) (Version: 1.2.014 - MSI) swMSM (x32 Version: 12.0.0.1 - Adobe Systems, Inc) Hidden System Requirements Lab (HKLM-x32\...\{0F659036-14C7-4622-9505-35A0DC93526A}) (Version: 6.1.3.0 - Husdawg, LLC) TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.0.10 - TeamSpeak Systems GmbH) The Binding of Isaac: Rebirth (HKLM-x32\...\Steam App 250900) (Version: - Nicalis, Inc.) Trove (HKLM-x32\...\Steam App 304050) (Version: - Trion Worlds) Tunatic (HKLM-x32\...\Tunatic) (Version: - ) Unity Web Player (HKU\S-1-5-21-1104056212-3661391068-887333560-1000\...\UnityWebPlayer) (Version: - Unity Technologies ApS) Unlocker 1.9.2 (HKLM\...\Unlocker) (Version: 1.9.2 - Cedrick Collomb) Uplay (HKLM-x32\...\Uplay) (Version: 2.0 - Ubisoft) VLC media player 2.1.3 (HKLM-x32\...\VLC media player) (Version: 2.1.3 - VideoLAN) Warhammer: End Times - Vermintide | Public Test (HKLM-x32\...\Steam App 252650) (Version: - ) Winamp (HKLM-x32\...\Winamp) (Version: 5.666 - Nullsoft, Inc) WinRAR 5.21 (32-bit) (HKLM-x32\...\WinRAR archiver) (Version: 5.21.0 - win.rar GmbH) WinZipper (HKLM-x32\...\WinZipper) (Version: 1.5.129 - Taiwan Shui Mu Chih Ching Technology Limited.) <==== UWAGA Wtyczka e-Deklaracje (HKLM-x32\...\{81BF6353-3C5B-4E6E-A566-7E162A00BF72}_is1) (Version: 4.0.0 - Ministerstwo Finansów) Xiph.Org Open Codecs 0.85.17777 (HKLM-x32\...\Open Codecs) (Version: 0.85.17777 - Xiph.Org) ==================== Niestandardowe rejestracje CLSID (filtrowane): ========================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) ==================== Punkty Przywracania systemu ========================= 16-11-2015 12:59:22 Windows Update 19-11-2015 18:07:59 Windows Update 23-11-2015 15:32:59 Windows Update 29-11-2015 10:03:42 Windows Update 03-12-2015 11:47:55 Windows Update 07-12-2015 11:18:01 Windows Update 09-12-2015 21:59:42 Windows Update 11-12-2015 22:36:53 Usunięte Grand Theft Auto V 11-12-2015 22:46:09 Removed System Requirements Lab 11-12-2015 22:48:14 Removed Java 8 Update 31 14-12-2015 14:38:28 Windows Update ==================== Hosts - zawartość: ========================== (Użycie dyrektywy Hosts: w fixlist spowoduje reset pliku Hosts.) 2009-07-14 03:34 - 2015-04-14 13:33 - 00000940 ____A C:\Windows\system32\Drivers\etc\hosts 54.225.95.126 hjjjegfhiceggepdokloeepnhlfnedkk 127.0.0.1 eszkola.opolskie.pl 127.0.0.1 www.eszkola.opolskie.pl ==================== Zaplanowane zadania (filtrowane) ============= (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) Task: {061BD404-1CA9-42B8-A5F3-7C095C41BE6B} - System32\Tasks\{17D6ECA6-AE30-4F94-A427-46D81D01D18F} => pcalua.exe -a "D:\Program Files (x86)\Steam\steam.exe" -c steam://uninstall/230410 Task: {29CD12CE-D01F-4389-8E94-B8B906AB7126} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-12-09] (Adobe Systems Incorporated) Task: {2BB4354D-C232-4642-88CC-05B43A9DC9B6} - System32\Tasks\{E6605988-A788-4B59-894E-42152ACF5A8A} => pcalua.exe -a I:\sa1356_97_fus_aen.exe -d I:\ Task: {2C4987B9-1365-4737-87BB-59CA39F0A520} - System32\Tasks\{61097DBB-6914-428F-A2FE-0E09EA6105EC} => Chrome.exe hxxp://ui.skype.com/ui/0/6.6.0.106/pl/abandoninstall?page=tsMain Task: {2EC3649C-6101-455D-BA31-6D8AC9ADA0FB} - System32\Tasks\{481CC9B1-0E64-4FAD-BE7B-518FFCE59BC5} => pcalua.exe -a C:\Users\Darek\Downloads\GTAIV_spolszczenie_1.0_www.INSTALKI.pl(1).exe -d C:\Users\Darek\Downloads Task: {4C80FE5E-8CC2-42E7-AA44-620E934AF6DF} - System32\Tasks\{008DA700-7B0C-44F8-BBBC-3A13B36A37DB} => pcalua.exe -a F:\setup.exe -d F:\ Task: {58F23ACE-107C-4F03-89E9-BB0C7C7961ED} - System32\Tasks\Lenovo\Lenovo Customer Feedback Program 64 35 => C:\Program Files (x86)\Lenovo\Customer Feedback Program 35\Lenovo.TVT.CustomerFeedback.Agent35.exe Task: {67F0BA0D-4184-41F1-96AD-AFB0949067A8} - System32\Tasks\{04A767F6-CBC0-493D-94D9-ED821AAB6598} => pcalua.exe -a E:\Pobrane\cjb7100EN.exe -d E:\Pobrane Task: {6F908E5D-94F6-4FAB-954D-94E88989BCD3} - System32\Tasks\{06470DC0-1287-4AD4-82CD-C4E9311F0985} => pcalua.exe -a C:\Users\Darek\Downloads\cjb7100EN.exe -d C:\Users\Darek\Downloads Task: {7D49401E-AC25-4A0E-93F7-49CA9D0AD3C1} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Microsoft Office 15\ClientX64\integratedoffice.exe [2012-11-02] (Microsoft Corporation) Task: {88BC8807-E3A8-4E67-A962-A3A9D45CBF7D} - System32\Tasks\{EF573546-F357-4E77-9B15-0050354D34C4} => pcalua.exe -a G:\INSTALL.EXE -d G:\ Task: {AB7BE3A2-0422-4B71-8223-BBF378516380} - System32\Tasks\{0AA9C947-3D38-4ADC-83C0-C44791300BAA} => pcalua.exe -a C:\Users\Darek\Desktop\mid\hde_mod_installer.exe -d C:\Users\Darek\Desktop\mid Task: {B6A0BEAA-8B78-4F43-B445-5184F0E17A13} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office 15\root\Office15\msoia.exe [2015-02-12] (Microsoft Corporation) Task: {C0A30709-61E5-4899-A4DD-AEF25E374016} - System32\Tasks\{53E777DF-28E4-4CEA-9322-BF98E178F6E0} => pcalua.exe -a "E:\Pobrane\INSTALL v2.03.exe" -d E:\Pobrane Task: {C7A2479A-7EEC-42D5-84CF-0C29E0583263} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2012-06-22] (Piriform Ltd) Task: {CB6B7177-F2EB-42E2-A602-90CA5BAD849E} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-30] (Google Inc.) Task: {CE0D9316-3EE7-4B6E-82ED-C73992D9B8AE} - System32\Tasks\{D8497738-BCA8-4A83-98D8-0F87A40F1C0C} => pcalua.exe -a C:\Users\Darek\Downloads\sa1356_97_fus_aen.exe -d C:\Users\Darek\Downloads Task: {DE367AD0-794F-40C1-A84B-98F2B11DA610} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2015-10-28] (Adobe Systems Incorporated) Task: {F11605F0-F173-42AC-A077-29278C337405} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-30] (Google Inc.) Task: {F12FD5EF-2F0F-4F79-ACC9-91E60063F1BC} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office 15\root\Office15\msoia.exe [2015-02-12] (Microsoft Corporation) (Załączenie wejścia w fixlist spowoduje przesunięcie pliku zadania (.job). Plik uruchamiany docelowo przez zadanie nie zostanie przeniesiony.) Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ==================== Skróty ============================= (Wybrane wejścia mogą zostać załączone w celu ich zresetowania lub usunięcia.) ShortcutWithArgument: C:\Users\Darek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) -> hxxp://www.yoursites123.com/?type=sc&ts=1449834235&z=35df6e9902be71cd64d8f8eg4z4z3tab4cdzao5c4g&from=ient07021&uid=WDCXWD10EZEX-00RKKA0_WD-WCC1S295291252912 <==== UWAGA ShortcutWithArgument: C:\Users\Darek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Internet Explorer (No Add-ons).lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) -> hxxp://www.yoursites123.com/?type=sc&ts=1449834235&z=35df6e9902be71cd64d8f8eg4z4z3tab4cdzao5c4g&from=ient07021&uid=WDCXWD10EZEX-00RKKA0_WD-WCC1S295291252912 <==== UWAGA ShortcutWithArgument: C:\Users\Darek\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> hxxp://www.yoursites123.com/?type=sc&ts=1450099754&z=fb672e988aa5bf19ececb03gezewaede1tct6m2wac&from=wpm07173&uid=WDCXWD10EZEX-00RKKA0_WD-WCC1S295291252912 <==== UWAGA ShortcutWithArgument: C:\Users\Darek\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk -> C:\Program Files (x86)\Internet Explorer\iexplore.exe (Microsoft Corporation) -> hxxp://www.yoursites123.com/?type=sc&ts=1449834235&z=35df6e9902be71cd64d8f8eg4z4z3tab4cdzao5c4g&from=ient07021&uid=WDCXWD10EZEX-00RKKA0_WD-WCC1S295291252912 <==== UWAGA ShortcutWithArgument: C:\Users\Darek\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> hxxp://www.yoursites123.com/?type=sc&ts=1450099754&z=fb672e988aa5bf19ececb03gezewaede1tct6m2wac&from=wpm07173&uid=WDCXWD10EZEX-00RKKA0_WD-WCC1S295291252912 <==== UWAGA ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> hxxp://www.yoursites123.com/?type=sc&ts=1450099754&z=fb672e988aa5bf19ececb03gezewaede1tct6m2wac&from=wpm07173&uid=WDCXWD10EZEX-00RKKA0_WD-WCC1S295291252912 <==== UWAGA ShortcutWithArgument: C:\Users\Public\Desktop\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> hxxp://www.yoursites123.com/?type=sc&ts=1450099754&z=fb672e988aa5bf19ececb03gezewaede1tct6m2wac&from=wpm07173&uid=WDCXWD10EZEX-00RKKA0_WD-WCC1S295291252912 <==== UWAGA ==================== Załadowane moduły (filtrowane) ============== 2013-05-31 10:14 - 2015-04-08 22:30 - 00116552 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll 2013-09-04 23:17 - 2013-09-04 23:17 - 04300456 _____ () C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Cultures\OFFICE.ODF 2012-08-16 19:36 - 2012-08-16 19:36 - 00149032 _____ () C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTAgent.exe 2012-08-16 19:36 - 2012-08-16 19:36 - 00058920 _____ () C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\NetworkHeuristic.dll 2015-02-12 21:53 - 2012-10-18 11:37 - 00376384 _____ () C:\Program Files\Microsoft Office 15\ClientX64\c2rui.dll 2015-02-12 21:53 - 2012-11-02 19:32 - 00499264 _____ () C:\Program Files\Microsoft Office 15\ClientX64\c2r64.dll 2014-05-07 01:41 - 2015-10-27 19:32 - 00076152 _____ () C:\Windows\SysWOW64\PnkBstrA.exe 2015-02-05 01:24 - 2015-02-05 01:25 - 00187072 _____ () C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe 2015-03-14 06:49 - 2015-03-14 06:49 - 00291840 _____ () C:\ProgramData\Razer\Synapse\RzStats\RzStats.Manager.exe 2015-12-11 12:45 - 2015-08-06 04:47 - 00582144 _____ () C:\Program Files (x86)\Picexa\curlpp.dll 2015-12-11 12:45 - 2015-07-15 06:58 - 00065688 _____ () C:\Program Files (x86)\Picexa\zlib1.dll 2015-04-15 15:44 - 2015-04-09 01:58 - 00011920 _____ () C:\Program Files (x86)\NVIDIA Corporation\Update Core\detoured.dll 2015-09-26 08:12 - 2015-11-10 20:55 - 00778752 _____ () D:\Program Files (x86)\Steam\SDL2.dll 2015-09-26 08:12 - 2015-07-03 17:12 - 04962816 _____ () D:\Program Files (x86)\Steam\v8.dll 2015-09-26 08:12 - 2015-07-03 17:12 - 01556992 _____ () D:\Program Files (x86)\Steam\icui18n.dll 2015-09-26 08:12 - 2015-07-03 17:12 - 01187840 _____ () D:\Program Files (x86)\Steam\icuuc.dll 2015-09-26 08:12 - 2015-12-10 21:11 - 02547280 _____ () D:\Program Files (x86)\Steam\video.dll 2015-09-26 08:12 - 2015-09-24 01:33 - 02549248 _____ () D:\Program Files (x86)\Steam\libavcodec-56.dll 2015-09-26 08:12 - 2015-09-24 01:33 - 00442880 _____ () D:\Program Files (x86)\Steam\libavutil-54.dll 2015-09-26 08:12 - 2015-09-24 01:33 - 00491008 _____ () D:\Program Files (x86)\Steam\libavformat-56.dll 2015-09-26 08:12 - 2015-09-24 01:33 - 00332800 _____ () D:\Program Files (x86)\Steam\libavresample-2.dll 2015-09-26 08:12 - 2015-09-24 01:33 - 00485888 _____ () D:\Program Files (x86)\Steam\libswscale-3.dll 2015-09-26 08:12 - 2015-12-10 21:11 - 00804432 _____ () D:\Program Files (x86)\Steam\bin\chromehtml.DLL 2015-02-05 10:20 - 2015-02-05 10:20 - 00137728 _____ () C:\ProgramData\Razer\Synapse\CrashReporter\CrashRpt1402.dll 2015-12-02 14:33 - 2015-08-06 04:47 - 00582144 _____ () C:\Program Files (x86)\WinZipper\curlpp.dll 2015-12-02 14:33 - 2015-07-15 06:58 - 00065688 _____ () C:\Program Files (x86)\WinZipper\zlib1.dll 2015-09-26 08:12 - 2015-11-17 01:31 - 47846176 _____ () D:\Program Files (x86)\Steam\bin\libcef.dll 2015-03-24 16:03 - 2014-11-26 03:12 - 40622592 _____ () C:\Users\Darek\AppData\Local\razer\InGameEngine\cache\RzStats.Manager\cef\libcef.dll 2015-03-24 16:03 - 2014-11-26 03:12 - 00911360 _____ () C:\Users\Darek\AppData\Local\razer\InGameEngine\cache\RzStats.Manager\cef\libglesv2.dll 2015-03-24 16:03 - 2014-11-26 03:12 - 00134144 _____ () C:\Users\Darek\AppData\Local\razer\InGameEngine\cache\RzStats.Manager\cef\libegl.dll 2013-09-04 23:14 - 2013-09-04 23:14 - 04300456 _____ () C:\Program Files (x86)\Common Files\microsoft shared\OFFICE14\Cultures\OFFICE.ODF 2015-12-11 22:51 - 2015-12-04 22:32 - 01583432 _____ () C:\Program Files (x86)\Google\Chrome\Application\47.0.2526.80\libglesv2.dll 2015-12-11 22:51 - 2015-12-04 22:32 - 00081224 _____ () C:\Program Files (x86)\Google\Chrome\Application\47.0.2526.80\libegl.dll 2013-05-31 10:04 - 2012-10-22 06:22 - 01199648 ____R () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\ACE.dll 2015-12-14 14:43 - 2015-12-14 14:43 - 00380416 _____ () C:\Users\Darek\Downloads\elvl67wr.exe ==================== Alternate Data Streams (filtrowane) ========= (Załączenie wejścia w fixlist spowoduje usunięcie strumienia ADS.) AlternateDataStreams: C:\Windows\SysWOW64\zlib.dll:DocumentSummaryInformation AlternateDataStreams: C:\Windows\SysWOW64\zlib.dll:SummaryInformation AlternateDataStreams: C:\Windows\SysWOW64\zlib.dll:{4c8cc155-6c1e-11d1-8e41-00c04fb9386d} AlternateDataStreams: C:\ProgramData\TEMP:B755D674 ==================== Tryb awaryjny (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Wartość "AlternateShell" zostanie przywrócona.) ==================== EXE - Powiązania (filtrowane) =============== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci.) ==================== Internet Explorer - Witryny zaufane i z ograniczeniami =============== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru.) IE trusted site: HKU\.DEFAULT\...\clonewarsadventures.com -> clonewarsadventures.com IE trusted site: HKU\.DEFAULT\...\freerealms.com -> freerealms.com IE trusted site: HKU\.DEFAULT\...\soe.com -> soe.com IE trusted site: HKU\.DEFAULT\...\sony.com -> sony.com IE trusted site: HKU\S-1-5-19\...\clonewarsadventures.com -> clonewarsadventures.com IE trusted site: HKU\S-1-5-19\...\freerealms.com -> freerealms.com IE trusted site: HKU\S-1-5-19\...\soe.com -> soe.com IE trusted site: HKU\S-1-5-19\...\sony.com -> sony.com IE trusted site: HKU\S-1-5-20\...\clonewarsadventures.com -> clonewarsadventures.com IE trusted site: HKU\S-1-5-20\...\freerealms.com -> freerealms.com IE trusted site: HKU\S-1-5-20\...\soe.com -> soe.com IE trusted site: HKU\S-1-5-20\...\sony.com -> sony.com IE trusted site: HKU\S-1-5-21-1104056212-3661391068-887333560-1000\...\4game.com -> hxxps://4game.com IE trusted site: HKU\S-1-5-21-1104056212-3661391068-887333560-1000\...\clonewarsadventures.com -> clonewarsadventures.com IE trusted site: HKU\S-1-5-21-1104056212-3661391068-887333560-1000\...\freerealms.com -> freerealms.com IE trusted site: HKU\S-1-5-21-1104056212-3661391068-887333560-1000\...\soe.com -> soe.com IE trusted site: HKU\S-1-5-21-1104056212-3661391068-887333560-1000\...\sony.com -> sony.com ==================== Inne obszary ============================ (Obecnie brak automatycznej naprawy dla tej sekcji.) HKU\S-1-5-21-1104056212-3661391068-887333560-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\Darek\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg DNS Servers: 192.168.0.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Zapora systemu Windows [funkcja włączona] ==================== MSCONFIG/TASK MANAGER - Wyłączone elementy == (Obecnie brak automatycznej naprawy dla tej sekcji.) ==================== Reguły Zapory systemu Windows (filtrowane) =============== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) FirewallRules: [{2D838BCE-7C4E-4167-9764-7C022FFB8785}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe FirewallRules: [TCP Query User{5F1168D9-FE8E-4E4E-96A6-C308E40019CE}D:\program files (x86)\winamp\winamp.exe] => (Allow) D:\program files (x86)\winamp\winamp.exe FirewallRules: [UDP Query User{BD0972A2-80A0-4769-9353-A1032F3FAC52}D:\program files (x86)\winamp\winamp.exe] => (Allow) D:\program files (x86)\winamp\winamp.exe FirewallRules: [{99B7EFF4-990C-4787-A6F4-AC9B8ABBE600}] => (Allow) D:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{59BEB681-C23B-4993-AECC-D065CF834BB7}] => (Allow) D:\Program Files (x86)\Steam\Steam.exe FirewallRules: [TCP Query User{35E8D293-0F02-41AB-A2CD-1339FD1EFF7C}C:\users\darek\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\darek\appdata\roaming\spotify\spotify.exe FirewallRules: [UDP Query User{93D7855B-2203-4599-B7D4-82ABF609540A}C:\users\darek\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\darek\appdata\roaming\spotify\spotify.exe FirewallRules: [{4A5EA9FF-D638-4E73-9DD1-A2001EC4EF46}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe FirewallRules: [{7FBA7634-B4FE-45D4-AC9F-C1F9470B164F}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe FirewallRules: [{05C69695-11B4-400E-808B-596876CA9ABD}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{A6D0493F-A48E-4D26-890F-B0CB599C6B8F}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [TCP Query User{55191072-652B-4BCA-9CF7-49E37A03F332}C:\users\darek\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\darek\appdata\roaming\spotify\spotify.exe FirewallRules: [UDP Query User{EF8DF066-2F12-4BDC-8CD8-D797A5DF3113}C:\users\darek\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\darek\appdata\roaming\spotify\spotify.exe FirewallRules: [{81800148-E211-4FD5-B15D-2C69432E684E}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe FirewallRules: [{2F35C3BD-9B5D-4602-AD09-4AEF842581E7}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe FirewallRules: [{06B3087A-72A2-4382-A318-F5922126DB66}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{D2B3312E-84EC-4EAF-BB00-C0B9F6EE2604}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{E5C84289-989A-422E-BA70-50C55AC9C15F}] => (Allow) D:\Program Files (x86)\Battle.net\Battle.net\Battle.net.exe FirewallRules: [{C63092F6-9969-442D-8D9B-9BF342267525}] => (Allow) D:\Program Files (x86)\Battle.net\Battle.net\Battle.net.exe FirewallRules: [{8056A665-EB11-462A-BB07-70C5D20B7EAD}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe FirewallRules: [{EB9BCD17-5C76-4B5E-A3EC-756CA5C3CCEA}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe FirewallRules: [{FF6A4FAF-6A3E-47CF-89EB-0BB929574DFE}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{502FF71F-5299-4872-81AF-AC3A7551EBC1}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [TCP Query User{5BE245DF-9615-4EE6-97A2-C542412A133E}C:\users\darek\appdata\local\temp\gw2.exe] => (Allow) C:\users\darek\appdata\local\temp\gw2.exe FirewallRules: [UDP Query User{609307F3-6FCE-4954-B7C2-8A89AD158B29}C:\users\darek\appdata\local\temp\gw2.exe] => (Allow) C:\users\darek\appdata\local\temp\gw2.exe FirewallRules: [{376EE804-0A23-4ECA-B394-ABC1807B061E}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe FirewallRules: [{35B641AB-A7AC-482D-8503-2BAD8DAF54EB}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe FirewallRules: [{F37BD13D-C80B-47E7-AE0E-E017BA215A5B}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe FirewallRules: [{6BF304C1-55F3-4B90-80FB-1007A2BB6DE4}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe FirewallRules: [{2C2714FE-1975-447C-9F9E-AAD7C1F180D5}] => (Allow) E:\Hearth Stone\Hearthstone\Hearthstone.exe FirewallRules: [{7A89C7E7-8C49-43B3-A0FC-E9E338FE2845}] => (Allow) E:\Hearth Stone\Hearthstone\Hearthstone.exe FirewallRules: [{DFD8487E-812B-4C66-A262-2BBCEDAC324E}] => (Allow) C:\ProgramData\NexonEU\NGM\NGM.exe FirewallRules: [{25D35E61-32CF-47BB-BE4C-369C64F620AA}] => (Allow) C:\ProgramData\NexonEU\NGM\NGM.exe FirewallRules: [{4C26EF34-E9F5-430A-9277-D75538E227B3}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.beta.2737\Agent.exe FirewallRules: [{66CE4FC6-E6C3-46C2-8C20-120E9CEACAFE}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.beta.2737\Agent.exe FirewallRules: [{2BFBCFC4-730C-4F58-9060-449DD673EB5F}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.beta.2753\Agent.exe FirewallRules: [{3CF60DF9-5E3C-474F-ABF0-C7D5C3C92851}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.beta.2753\Agent.exe FirewallRules: [{BA1429FD-DA94-41C3-98C4-D0B64EB4C0B4}] => (Allow) E:\Hearth Stone\Diablo III\Diablo III.exe FirewallRules: [{87C383F4-D84D-4CBF-A457-466A99A29084}] => (Allow) E:\Hearth Stone\Diablo III\Diablo III.exe FirewallRules: [{D96DAE67-2106-4C2B-95E3-927617E49F34}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe FirewallRules: [{7B5C4427-EE3C-4825-A81E-51C9D6CFA4B5}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe FirewallRules: [{67D22092-8E85-4390-BF0C-E3390BEC27BE}] => (Allow) D:\Program Files (x86)\Steam\bin\steamwebhelper.exe FirewallRules: [{53E60990-C378-4214-8C36-06E0B397E66E}] => (Allow) D:\Program Files (x86)\Steam\bin\steamwebhelper.exe FirewallRules: [{D5C24D2E-C7C2-42CC-9E89-A30BBC141B4B}] => (Allow) E:\Hearth Stone\Hearthstone\Hearthstone.exe FirewallRules: [{8037CE68-A904-481A-8593-BB6538960539}] => (Allow) E:\Hearth Stone\Hearthstone\Hearthstone.exe FirewallRules: [{55A8D55B-C2DD-469A-8686-69BFA03A9D31}] => (Allow) C:\Users\Darek\AppData\Roaming\BitTorrent\BitTorrent.exe FirewallRules: [{FFB1AA5C-EB7D-440A-8F5F-AD49DA286D87}] => (Allow) C:\Users\Darek\AppData\Roaming\BitTorrent\BitTorrent.exe FirewallRules: [{716909C0-D3FD-4CB8-B85D-F3F7AC3C6429}] => (Allow) C:\ProgramData\NexonEU\NGM\NGM.exe FirewallRules: [{87AEFAB2-5189-40A2-8989-D2284C9641FD}] => (Allow) C:\ProgramData\NexonEU\NGM\NGM.exe FirewallRules: [{0A631DBE-45DC-4B07-92D5-B83361EE009E}] => (Allow) C:\Windows\SysWOW64\lxbxcoms.exe FirewallRules: [{6AA704C8-0AE3-4499-A71C-F385EBC120D6}] => (Allow) C:\Windows\SysWOW64\lxbxcoms.exe FirewallRules: [{49810D97-7572-4B9E-AB43-0E4B6ED143DD}] => (Allow) C:\Users\Darek\AppData\Local\Microsoft\SkyDrive\SkyDrive.exe FirewallRules: [TCP Query User{F42FE9F2-2555-4EBD-9D01-B093CEEBB226}C:\program files (x86)\java\jre1.8.0_31\bin\javaw.exe] => (Allow) C:\program files (x86)\java\jre1.8.0_31\bin\javaw.exe FirewallRules: [UDP Query User{52AB8EA7-DC9A-4835-B40B-1FF3A5640628}C:\program files (x86)\java\jre1.8.0_31\bin\javaw.exe] => (Allow) C:\program files (x86)\java\jre1.8.0_31\bin\javaw.exe FirewallRules: [{B0DA6F92-6127-4F93-8BA4-3E0184D4D6C4}] => (Block) C:\program files (x86)\java\jre1.8.0_31\bin\javaw.exe FirewallRules: [{7F056A2E-418F-4BF1-AF13-4F3CF23FF7C0}] => (Block) C:\program files (x86)\java\jre1.8.0_31\bin\javaw.exe FirewallRules: [{F9BAF24E-DAD8-4CA7-B4FE-986A9784AE11}] => (Allow) D:\Program Files (x86)\Winamp\winamp.exe FirewallRules: [{3DF41AEB-D4DB-4221-9F0A-A38A995C47AD}] => (Allow) D:\Program Files (x86)\Winamp\winamp.exe FirewallRules: [TCP Query User{4A1C4240-3D89-44B3-BA3E-A0FEA6D34FCE}D:\program files (x86)\neverwinter_pl\neverwinter\live\gameclient.exe] => (Allow) D:\program files (x86)\neverwinter_pl\neverwinter\live\gameclient.exe FirewallRules: [UDP Query User{83DD42F5-0E20-487C-BC63-5F1BB2169103}D:\program files (x86)\neverwinter_pl\neverwinter\live\gameclient.exe] => (Allow) D:\program files (x86)\neverwinter_pl\neverwinter\live\gameclient.exe FirewallRules: [{27846BDF-EDB9-415F-B2EC-5E29ABDBCF28}] => (Block) D:\program files (x86)\neverwinter_pl\neverwinter\live\gameclient.exe FirewallRules: [{56E62026-436A-4B88-8B9D-5E4DEC1BA85F}] => (Block) D:\program files (x86)\neverwinter_pl\neverwinter\live\gameclient.exe FirewallRules: [{3799A009-5AFF-4D7C-A0C3-510A3B663FF7}] => (Allow) C:\Users\Darek\AppData\Roaming\BitTorrent\BitTorrent.exe FirewallRules: [{736217AD-3C61-440A-81E6-0725230D481D}] => (Allow) C:\Users\Darek\AppData\Roaming\BitTorrent\BitTorrent.exe FirewallRules: [{A2E99257-0190-4100-AB99-CE14DBC91E90}] => (Allow) C:\Users\Darek\AppData\Roaming\BitTorrent\BitTorrent.exe FirewallRules: [{2E54C7A7-1BA5-466C-9FA1-3F166A13D025}] => (Allow) C:\Users\Darek\AppData\Roaming\BitTorrent\BitTorrent.exe FirewallRules: [{BDFD7008-CD57-4A41-B310-05D1660261D3}] => (Allow) C:\Users\Darek\AppData\Roaming\BitTorrent\BitTorrent.exe FirewallRules: [{16521F5E-0AD6-4E09-8099-AD916EAF965A}] => (Allow) C:\Users\Darek\AppData\Roaming\BitTorrent\BitTorrent.exe FirewallRules: [{A34BCB9E-B89C-4863-8A91-CC6687B68A7F}] => (Allow) D:\Program Files (x86)\NapiProjekt\napisy.exe FirewallRules: [{03DF5799-BC48-47C0-9B0F-0EADA4D4FA5C}] => (Allow) D:\Program Files (x86)\NapiProjekt\napisy.exe FirewallRules: [{DFBD769B-68C6-4000-A140-A9CABC0EFF52}] => (Allow) D:\Program Files (x86)\NapiProjekt\napisy.exe FirewallRules: [{BEA29173-EC01-4127-A6DA-41AE20D0445E}] => (Allow) D:\Program Files (x86)\NapiProjekt\napisy.exe FirewallRules: [{90522164-556F-408A-BAC2-FAE528A0554A}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [TCP Query User{5D060C52-16A7-4CEF-8A60-2F0538CAC7C1}E:\program files\rockstar games\grand theft auto v\gta5.exe] => (Allow) E:\program files\rockstar games\grand theft auto v\gta5.exe FirewallRules: [UDP Query User{82C52FA4-C899-4BF0-9C5C-B5010D41EE88}E:\program files\rockstar games\grand theft auto v\gta5.exe] => (Allow) E:\program files\rockstar games\grand theft auto v\gta5.exe FirewallRules: [{AB281B20-AB5C-403F-B67B-CDB107C7E23F}] => (Block) E:\program files\rockstar games\grand theft auto v\gta5.exe FirewallRules: [{98825374-F0E7-492F-A098-590E40D52663}] => (Block) E:\program files\rockstar games\grand theft auto v\gta5.exe FirewallRules: [{F7BA99C7-C5A6-4E87-BCF6-5A1CAF17A406}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe FirewallRules: [{B867D190-5169-4F37-8F45-D1F23EDC6145}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe FirewallRules: [{C9EC6348-D77B-4189-9190-9FF9F15892DA}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe FirewallRules: [{847B32C7-414D-4DB9-B823-A5208011E989}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe FirewallRules: [{D325B1E6-FE5C-43E0-A35D-D40697E89B49}] => (Allow) D:\Program Files (x86)\Steam\steamapps\common\rocketleague\Binaries\Win32\RocketLeague.exe FirewallRules: [{FE6AC575-9A00-4EA3-B1F3-38686D077C93}] => (Allow) D:\Program Files (x86)\Steam\steamapps\common\rocketleague\Binaries\Win32\RocketLeague.exe FirewallRules: [TCP Query User{D377ECE7-DD66-4DB8-B756-151AD52513D2}E:\hearth stone\heroes of the storm\versions\base39271\heroesofthestorm_x64.exe] => (Allow) E:\hearth stone\heroes of the storm\versions\base39271\heroesofthestorm_x64.exe FirewallRules: [UDP Query User{075B5FD2-D0E1-450E-9803-67A9B4F1C49D}E:\hearth stone\heroes of the storm\versions\base39271\heroesofthestorm_x64.exe] => (Allow) E:\hearth stone\heroes of the storm\versions\base39271\heroesofthestorm_x64.exe FirewallRules: [{494B600E-B8FE-4FD6-8DD6-0E3D5083AC50}] => (Block) E:\hearth stone\heroes of the storm\versions\base39271\heroesofthestorm_x64.exe FirewallRules: [{57260405-768D-4A95-981C-FEF73684AC4E}] => (Block) E:\hearth stone\heroes of the storm\versions\base39271\heroesofthestorm_x64.exe FirewallRules: [{FF632542-D237-41B5-AE75-2F76B38ACABC}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [TCP Query User{E656EC75-FEDA-4294-9C86-347FDF821874}E:\hearth stone\heroes of the storm\versions\base39445\heroesofthestorm_x64.exe] => (Allow) E:\hearth stone\heroes of the storm\versions\base39445\heroesofthestorm_x64.exe FirewallRules: [UDP Query User{8D27D69D-5A99-4017-8209-BEAE05EF2BE9}E:\hearth stone\heroes of the storm\versions\base39445\heroesofthestorm_x64.exe] => (Allow) E:\hearth stone\heroes of the storm\versions\base39445\heroesofthestorm_x64.exe FirewallRules: [{85F9F93B-82D3-41B9-A49D-C2DD2914177C}] => (Block) E:\hearth stone\heroes of the storm\versions\base39445\heroesofthestorm_x64.exe FirewallRules: [{279BB0CA-9B0E-4D6E-BC48-58FB31681E6E}] => (Block) E:\hearth stone\heroes of the storm\versions\base39445\heroesofthestorm_x64.exe FirewallRules: [{AA49FFC5-7364-4C0B-B2F2-D10B49B2300E}] => (Allow) D:\Program Files (x86)\Steam\steamapps\common\Don't Starve Together\bin\dontstarve_steam.exe FirewallRules: [{C1689A21-BFD8-419E-BA7C-090E6FEC61BF}] => (Allow) D:\Program Files (x86)\Steam\steamapps\common\Don't Starve Together\bin\dontstarve_steam.exe FirewallRules: [{E19F4E13-E7F5-4C6E-9E58-1500F83868E0}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe FirewallRules: [TCP Query User{41988549-3B78-40B4-8A75-B2AA1C2EC74A}E:\hearth stone\starcraft ii\versions\base38996\sc2_x64.exe] => (Block) E:\hearth stone\starcraft ii\versions\base38996\sc2_x64.exe FirewallRules: [UDP Query User{2D9252AE-CAA1-4A96-8656-CA165D64463D}E:\hearth stone\starcraft ii\versions\base38996\sc2_x64.exe] => (Block) E:\hearth stone\starcraft ii\versions\base38996\sc2_x64.exe ==================== Wadliwe urządzenia w Menedżerze urządzeń ============= Name: Mysz Microsoft PS/2 Description: Mysz Microsoft PS/2 Class Guid: {4d36e96f-e325-11ce-bfc1-08002be10318} Manufacturer: Microsoft Service: i8042prt Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24) Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed. Devices stay in this state if they have been prepared for removal. After you remove the device, this error disappears.Remove the device, and this error should be resolved. Name: A2T1WP1Y IDE Controller Description: A2T1WP1Y IDE Controller Class Guid: {4D36E97B-E325-11CE-BFC1-08002BE10318} Manufacturer: (Standard mass storage controllers) Service: agqhz8et Problem: : Windows cannot load the device driver for this hardware. The driver may be corrupted or missing. (Code 39) Resolution: Reasons for this error include a driver that is not present; a binary file that is corrupt; a file I/O problem, or a driver that references an entry point in another binary file that could not be loaded. Uninstall the driver, and then click "Scan for hardware changes" to reinstall or upgrade the driver. Name: Standardowa klawiatura PS/2 Description: Standardowa klawiatura PS/2 Class Guid: {4d36e96b-e325-11ce-bfc1-08002be10318} Manufacturer: (Klawiatury standardowe) Service: i8042prt Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24) Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed. Devices stay in this state if they have been prepared for removal. After you remove the device, this error disappears.Remove the device, and this error should be resolved. ==================== Błędy w Dzienniku zdarzeń: ========================= Dziennik Aplikacja: ================== Error: (12/14/2015 02:44:26 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: elvl67wr.exe, wersja: 2.1.19357.0, sygnatura czasowa: 0x52e7ea83 Nazwa modułu powodującego błąd: elvl67wr.exe, wersja: 2.1.19357.0, sygnatura czasowa: 0x52e7ea83 Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x000011aa Identyfikator procesu powodującego błąd: 0xed0 Godzina uruchomienia aplikacji powodującej błąd: 0xelvl67wr.exe0 Ścieżka aplikacji powodującej błąd: elvl67wr.exe1 Ścieżka modułu powodującego błąd: elvl67wr.exe2 Identyfikator raportu: elvl67wr.exe3 Error: (12/14/2015 02:43:54 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: zjnvkn6d.exe, wersja: 2.1.19357.0, sygnatura czasowa: 0x52e7ea83 Nazwa modułu powodującego błąd: zjnvkn6d.exe, wersja: 2.1.19357.0, sygnatura czasowa: 0x52e7ea83 Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x000011aa Identyfikator procesu powodującego błąd: 0x1778 Godzina uruchomienia aplikacji powodującej błąd: 0xzjnvkn6d.exe0 Ścieżka aplikacji powodującej błąd: zjnvkn6d.exe1 Ścieżka modułu powodującego błąd: zjnvkn6d.exe2 Identyfikator raportu: zjnvkn6d.exe3 Error: (12/14/2015 02:43:10 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: zjnvkn6d.exe, wersja: 2.1.19357.0, sygnatura czasowa: 0x52e7ea83 Nazwa modułu powodującego błąd: zjnvkn6d.exe, wersja: 2.1.19357.0, sygnatura czasowa: 0x52e7ea83 Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x000011aa Identyfikator procesu powodującego błąd: 0x89c Godzina uruchomienia aplikacji powodującej błąd: 0xzjnvkn6d.exe0 Ścieżka aplikacji powodującej błąd: zjnvkn6d.exe1 Ścieżka modułu powodującego błąd: zjnvkn6d.exe2 Identyfikator raportu: zjnvkn6d.exe3 Error: (12/14/2015 02:37:55 PM) (Source: ESENT) (EventID: 474) (User: ) Description: wuaueng.dll (1112) SUS20ClientDataStore: Weryfikacja odczytu strony bazy danych z pliku "C:\Windows\SoftwareDistribution\DataStore\DataStore.edb" na pozycji względnej 348979200 (0x0000000014cd0000) (strona bazy danych: wuaueng.dll0) dla 32768 (0x00008000) bajtów nie powiodła się z powodu niezgodności sumy kontrolnej strony. Oczekiwano sumy kontrolnej [af2c50d310f5c5c2:c28e3d7106292987:ff8a00752e082990:c20dc20d7f8c29ee], podczas gdy faktyczna suma kontrolna to [75ae75ae1eedc5a1:c28e3d7106292987:ff8a00752e082990:c20dc20d7f8c29ee]. Operacja odczytu zostanie zakończona z błędem -1018 (0xfffffc06). Jeśli ten stan będzie się utrzymywał, przywróć bazę danych z wcześniejszej kopii zapasowej. Ten problem jest prawdopodobnie spowodowany wadliwym sprzętem. Skontaktuj się z dostawcą sprzętu, aby uzyskać dalszą pomoc w diagnozowaniu problemu. Error: (12/14/2015 02:28:45 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (12/13/2015 09:25:34 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (12/12/2015 07:06:57 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (12/12/2015 03:09:41 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (12/12/2015 02:17:33 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (12/12/2015 10:15:21 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Dziennik System: ============= Error: (12/14/2015 02:28:49 PM) (Source: DCOM) (EventID: 10016) (User: ZARZĄDZANIE NT) Description: właściwe dla aplikacjiLokalnyUruchom{C97FCC79-E628-407D-AE68-A06AD6D8B4D1}{344ED43D-D086-4961-86A6-1106F4ACAD9B}ZARZĄDZANIE NTSYSTEMS-1-5-18LocalHost (użycie LRPC) Error: (12/13/2015 04:51:55 PM) (Source: Schannel) (EventID: 4119) (User: ZARZĄDZANIE NT) Description: Odebrano następujący alert krytyczny: 20. Error: (12/13/2015 09:25:30 AM) (Source: DCOM) (EventID: 10016) (User: ZARZĄDZANIE NT) Description: właściwe dla aplikacjiLokalnyUruchom{C97FCC79-E628-407D-AE68-A06AD6D8B4D1}{344ED43D-D086-4961-86A6-1106F4ACAD9B}ZARZĄDZANIE NTSYSTEMS-1-5-18LocalHost (użycie LRPC) Error: (12/12/2015 07:07:42 PM) (Source: DCOM) (EventID: 10016) (User: ZARZĄDZANIE NT) Description: właściwe dla aplikacjiLokalnyUruchom{C97FCC79-E628-407D-AE68-A06AD6D8B4D1}{344ED43D-D086-4961-86A6-1106F4ACAD9B}ZARZĄDZANIE NTSYSTEMS-1-5-18LocalHost (użycie LRPC) Error: (12/12/2015 07:06:05 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi PicexaService z powodu następującego błędu: %%1053 Error: (12/12/2015 07:06:04 PM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: Upłynął limit czasu (30000 ms) podczas oczekiwania na połączenie się z usługą PicexaService. Error: (12/12/2015 03:09:40 PM) (Source: DCOM) (EventID: 10016) (User: ZARZĄDZANIE NT) Description: właściwe dla aplikacjiLokalnyUruchom{C97FCC79-E628-407D-AE68-A06AD6D8B4D1}{344ED43D-D086-4961-86A6-1106F4ACAD9B}ZARZĄDZANIE NTSYSTEMS-1-5-18LocalHost (użycie LRPC) Error: (12/12/2015 03:08:04 PM) (Source: BugCheck) (EventID: 1001) (User: ) Description: 0x0000000a (0x0000000000000080, 0x0000000000000002, 0x0000000000000001, 0xfffff8000347e78f)C:\Windows\MEMORY.DMP121215-13993-01 Error: (12/12/2015 03:08:03 PM) (Source: EventLog) (EventID: 6008) (User: ) Description: Poprzednie zamknięcie systemu przy 15:06:34 na ‎2015-‎12-‎12 było nieoczekiwane. Error: (12/12/2015 02:17:19 PM) (Source: DCOM) (EventID: 10016) (User: ZARZĄDZANIE NT) Description: właściwe dla aplikacjiLokalnyUruchom{C97FCC79-E628-407D-AE68-A06AD6D8B4D1}{344ED43D-D086-4961-86A6-1106F4ACAD9B}ZARZĄDZANIE NTSYSTEMS-1-5-18LocalHost (użycie LRPC) ==================== Statystyki pamięci =========================== Procesor: Intel(R) Core(TM) i5-3470 CPU @ 3.20GHz Procent pamięci w użyciu: 38% Całkowita pamięć fizyczna: 8122.48 MB Dostępna pamięć fizyczna: 4982.71 MB Całkowita pamięć wirtualna: 16243.16 MB Dostępna pamięć wirtualna: 12437.64 MB ==================== Dyski ================================ Drive c: () (Fixed) (Total:244.04 GB) (Free:85.25 GB) NTFS Drive d: () (Fixed) (Total:292.97 GB) (Free:192.84 GB) NTFS Drive e: () (Fixed) (Total:394.4 GB) (Free:160.83 GB) NTFS Drive g: (HAMM III) (CDROM) (Total:0.9 GB) (Free:0 GB) CDFS ==================== MBR & Tablica partycji ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: 8A1CB1D1) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=244 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=293 GB) - (Type=07 NTFS) Partition 4: (Not Active) - (Size=394.4 GB) - (Type=07 NTFS) ==================== Koniec Addition.txt ============================