Rezultaty skanu uzupełniającego Farbar Recovery Scan Tool (x64) Wersja:25-01-2016 Uruchomiony przez JULIA (2016-01-27 05:28:16) Uruchomiony z C:\Users\JULIA\Downloads Windows 8.1 (X64) (2014-12-19 20:27:32) Tryb startu: Normal ========================================================== ==================== Konta użytkowników: ============================= Administrator (S-1-5-21-204455593-1543837664-2498303104-500 - Administrator - Disabled) Gość (S-1-5-21-204455593-1543837664-2498303104-501 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-204455593-1543837664-2498303104-1006 - Limited - Enabled) JULIA (S-1-5-21-204455593-1543837664-2498303104-1001 - Administrator - Enabled) => C:\Users\JULIA ==================== Centrum zabezpieczeń ======================== (Załączenie wejścia w fixlist spowoduje jego usunięcie.) AV: Windows Defender (Disabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AV: McAfee — ochrona antywirusowa i przed oprogramowaniem szpiegującym (Enabled - Up to date) {DA9F8ED0-D0DE-39CC-F55A-51AB4CC1B556} AS: Windows Defender (Disabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: McAfee — ochrona antywirusowa i przed oprogramowaniem szpiegującym (Enabled - Up to date) {61FE6F34-F6E4-3642-CFEA-6AD93746FFEB} FW: McAfee Firewall (Enabled) {E2A40FF5-9AB1-3894-DE05-F89EB212F22D} ==================== Zainstalowane programy ====================== (W fixlist dozwolone tylko załączanie programów adware z flagą "Hidden" w celu ich uwidocznienia. Programy adware powinny zostać w poprawny sposób odinstalowane.) Absolute Reminder (HKLM-x32\...\{40F4FF7A-B214-4453-B973-080B09CED019}) (Version: 2.2.0.26 - Absolute Software) Adobe Flash Player 20 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 20.0.0.286 - Adobe Systems Incorporated) Adobe Flash Player 20 PPAPI (HKLM-x32\...\Adobe Flash Player PPAPI) (Version: 20.0.0.286 - Adobe Systems Incorporated) Adobe Photoshop Elements 11 (HKLM-x32\...\Adobe Photoshop Elements 11) (Version: 11.0 - Adobe Systems Incorporated) Adobe Reader XI (11.0.14) MUI (HKLM-x32\...\{AC76BA86-7AD7-FFFF-7B44-AB0000000001}) (Version: 11.0.14 - Adobe Systems Incorporated) AllShare Framework DMS (HKLM\...\{C5850BE4-67AA-4CFB-894B-27F1172E42E0}) (Version: 1.3.14 - Samsung) AMD Catalyst Install Manager (HKLM\...\{AE969C83-0ADD-B50E-9B89-BBB3B15F63FA}) (Version: 8.0.911.0 - Advanced Micro Devices, Inc.) AMD Quick Stream (HKLM\...\{E9EED4AE-682B-4501-9574-D09A21717599}_is1) (Version: 3.4.4.2 - AppEx Networks) Bitcasa version 1.0.1.5011 (HKLM\...\{EDA09459-AD7D-4434-BA0C-647F6703EA12}_is1) (Version: 1.0.1.5011 - Bitcasa Inc.) Catalyst Control Center (HKLM-x32\...\WUCCCApp) (Version: 1.00.0000 - AMD) Dropbox (HKU\S-1-5-21-204455593-1543837664-2498303104-1001\...\Dropbox) (Version: 3.12.5 - Dropbox, Inc.) Elements 11 Organizer (x32 Version: 11.0 - Adobe Systems Incorporated) Hidden ETDWare X64 11.7.10.4_WHQL (HKLM\...\Elantech) (Version: 11.7.10.4 - ELAN Microelectronic Corp.) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 47.0.2526.111 - Google Inc.) Google Update Helper (x32 Version: 1.3.25.11 - Google Inc.) Hidden Google Update Helper (x32 Version: 1.3.29.1 - Google Inc.) Hidden Help Desk (HKLM\...\{890EA23E-9AA2-4F51-836B-4E26B91C18E8}) (Version: 1.0.93 - Samsung Electronics CO., LTD.) HomeSync Lite (HKLM-x32\...\{82EC241F-DFCA-4166-A8C3-EA5D2B9A41C4}) (Version: 1.0.1.34 - Samsung Electronics CO., LTD.) Huawei E3372 (HKLM-x32\...\Huawei E3372) (Version: 22.001.22.03.1202 - Huawei Technologies Co.,Ltd) LibreOffice 5.0.4.2 (HKLM\...\{8C3F291E-AA0A-4188-A83F-1D97103AE27C}) (Version: 5.0.4.2 - The Document Foundation) McAfee LiveSafe (HKLM-x32\...\MSC) (Version: 14.0.6136 - McAfee, Inc.) McAfee WebAdvisor (HKLM-x32\...\{35ED3F83-4BDC-4c44-8EC6-6A8301C7413A}) (Version: 4.0.207 - McAfee, Inc.) Microsoft Office (HKLM-x32\...\{90150000-0138-0409-0000-0000000FF1CE}) (Version: 15.0.4454.1510 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.30319 (HKLM-x32\...\{196BB40D-1578-3D01-B289-BEFC77A11A1E}) (Version: 10.0.30319 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727 (HKLM-x32\...\{15134cb0-b767-4960-a911-f2d16ae54797}) (Version: 11.0.50727.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 (HKLM-x32\...\{22154f09-719a-4619-bb71-5b3356999fbf}) (Version: 11.0.50727.1 - Microsoft Corporation) Microsoft WSE 3.0 Runtime (HKLM-x32\...\{E3E71D07-CD27-46CB-8448-16D4FB29AA13}) (Version: 3.0.5305.0 - Microsoft Corp.) OpenOffice 4.1.1 (HKLM-x32\...\{B5373BA3-BAD7-4EAC-A9D2-B66B41B82C57}) (Version: 4.11.9775 - Apache Software Foundation) Opera Stable 34.0.2036.50 (HKLM-x32\...\Opera 34.0.2036.50) (Version: 34.0.2036.50 - Opera Software) Origin (HKLM-x32\...\Origin) (Version: 8.4.1.210 - Electronic Arts, Inc.) Phone Screen Sharing (HKLM-x32\...\{DF02C515-40B5-45AC-A601-5DC69D03885C}) (Version: 2.0.0.6 - RSUPPORT) Plants vs. Zombies (HKLM-x32\...\Plants vs. Zombies) (Version: - PopCap Games) PLAY ONLINE (HKLM-x32\...\PLAY ONLINE) (Version: 21.005.11.14.264 - Huawei Technologies Co.,Ltd) PSE11 STI Installer (x32 Version: 11.0 - Adobe Systems Incorporated) Hidden Qualcomm Atheros Bluetooth Suite (64) (HKLM\...\{A84A4FB1-D703-48DB-89E0-68B6499D2801}) (Version: 8.0.0.226 - Qualcomm Atheros Communications) Qualcomm Atheros Client Installation Program (HKLM-x32\...\{28006915-2739-4EBE-B5E8-49B25D32EB33}) (Version: 10.0 - Qualcomm Atheros) Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 8.9.1212.2012 - Realtek) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6937 - Realtek Semiconductor Corp.) Realtek USB Card Reader (HKLM-x32\...\{1E496A68-4943-424E-829D-5C3C85B7B8F2}) (Version: 6.2.9200.39036 - Realtek Semiconductor Corp.) Recovery (HKLM-x32\...\{145DE957-0679-4A2A-BB5C-1D3E9808FAB2}) (Version: 6.0.9.9 - Samsung Electronics CO., LTD.) Revo Uninstaller Pro 3.1.5 (HKLM\...\{67579783-0FB7-4F7B-B881-E5BE47C9DBE0}_is1) (Version: 3.1.5 - VS Revo Group, Ltd.) S Agent (Version: 1.1.42 - Samsung Electronics CO., LTD.) Hidden Samsung Kies (HKLM-x32\...\InstallShield_{758C8301-2696-4855-AF45-534B1200980A}) (Version: 2.5.3.13052_10 - Samsung Electronics Co., Ltd.) Samsung Kies (x32 Version: 2.5.3.13052_10 - Samsung Electronics Co., Ltd.) Hidden Samsung Link 1.6.0.1307100416 (HKLM\...\8474-7877-9059-0204) (Version: 1.6.0.1307100416 - Copyright 2013 SAMSUNG) SAMSUNG USB Driver for Mobile Phones (HKLM\...\{D0795B21-0CDA-4a92-AB9E-6E92D8111E44}) (Version: 1.5.22.0 - SAMSUNG Electronics Co., Ltd.) Settings (HKLM-x32\...\{3EFE4249-907B-4E7A-8BBD-8B2E5AC4E2CE}) (Version: 2.1.0 - Samsung Electronics CO., LTD.) SideSync (HKLM-x32\...\{59687468-8CE9-4ABF-9C6A-5C31F0E09F8B}) (Version: 2.0.0 - Samsung Electronics CO., LTD.) Support Center (HKLM\...\{7113278A-044A-4DFE-BEA4-5B163DA2CC3B}) (Version: 2.1.1102 - Samsung Electronics CO., LTD.) Support Center FAQ (x32 Version: 1.0.10 - Samsung Electronics CO., LTD.) Hidden SW Update (HKLM-x32\...\{A483E62C-7DDE-47F3-B11B-F0A844E27EF9}) (Version: 2.1.16 - Samsung Electronics CO., LTD.) The Sims™ 3 (HKLM-x32\...\{C05D8CDB-417D-4335-A38C-A0659EDFD6B8}) (Version: 1.0.631 - Electronic Arts) User Manual (HKLM-x32\...\{AB22873D-2A58-49B7-8124-D6AAA1AE952D}) (Version: 1.2.00 - Samsung Electronics CO., LTD.) WinRAR 5.21 (64-bitowy) (HKLM\...\WinRAR archiver) (Version: 5.21.0 - win.rar GmbH) ==================== Niestandardowe rejestracje CLSID (filtrowane): ========================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) CustomCLSID: HKU\S-1-5-21-204455593-1543837664-2498303104-1001_Classes\CLSID\{005A3A96-BAC4-4B0A-94EA-C0CE100EA736}\localserver32 -> C:\Users\JULIA\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-204455593-1543837664-2498303104-1001_Classes\CLSID\{ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C}\InprocServer32 -> C:\Users\JULIA\AppData\Roaming\Dropbox\bin\DropboxExt64.28.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-204455593-1543837664-2498303104-1001_Classes\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\JULIA\AppData\Roaming\Dropbox\bin\DropboxExt64.28.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-204455593-1543837664-2498303104-1001_Classes\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\JULIA\AppData\Roaming\Dropbox\bin\DropboxExt64.28.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-204455593-1543837664-2498303104-1001_Classes\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\JULIA\AppData\Roaming\Dropbox\bin\DropboxExt64.28.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-204455593-1543837664-2498303104-1001_Classes\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\JULIA\AppData\Roaming\Dropbox\bin\DropboxExt64.28.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-204455593-1543837664-2498303104-1001_Classes\CLSID\{FB314EDD-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\JULIA\AppData\Roaming\Dropbox\bin\DropboxExt64.28.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-204455593-1543837664-2498303104-1001_Classes\CLSID\{FB314EDE-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\JULIA\AppData\Roaming\Dropbox\bin\DropboxExt64.28.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-204455593-1543837664-2498303104-1001_Classes\CLSID\{FB314EDF-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\JULIA\AppData\Roaming\Dropbox\bin\DropboxExt64.28.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-204455593-1543837664-2498303104-1001_Classes\CLSID\{FB314EE0-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\JULIA\AppData\Roaming\Dropbox\bin\DropboxExt64.28.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-204455593-1543837664-2498303104-1001_Classes\CLSID\{FBC9D74C-AF55-4309-9FB2-C426E071637F}\InprocServer32 -> C:\Users\JULIA\AppData\Roaming\Dropbox\bin\DropboxExt64.28.dll (Dropbox, Inc.) ==================== Zaplanowane zadania (filtrowane) ============= (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) Task: {0628219F-B4E4-4B3A-9BC9-91A260A3CFD2} - System32\Tasks\JULIACongenialityModulatorV2 => Rundll32.exe MailedAppointment.dll,main 7 1 <==== UWAGA Task: {0AECA963-862C-44D4-ACF7-56D8EF9E5BCF} - System32\Tasks\SUPatchForW10Up => C:\ProgramData\Samsung\SamsungUpdatePatch\SUPatchForW10Up.exe [2015-08-18] (Samsung Electronics CO., LTD.) Task: {11552854-3D6C-4868-B0D2-B46BDDDAFF46} - System32\Tasks\McAfee\McAfee Auto Maintenance Task Agent Task: {176EEACC-F9B3-4AF9-ABCD-7787D5AA3CD3} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-09-21] (Google Inc.) Task: {2DEEE03B-F7D8-4BEF-A60E-C2B651DD1A4E} - System32\Tasks\RtHDVBg => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2013-05-20] (Realtek Semiconductor) Task: {2E8BE1C3-DACD-4035-81B0-BC6C5BD3D9DA} - System32\Tasks\SAgent => C:\Program Files\Samsung\S Agent\CommonAgent.exe [2013-06-04] (Samsung Electronics CO., LTD.) Task: {3DC51A31-4AC8-4412-B631-0379CD0D0B09} - System32\Tasks\AVAST Software\Avast settings backup => C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe [2016-01-21] (AVAST Software) Task: {5A337DD2-3412-46E3-AF6A-013222163449} - System32\Tasks\Adobe Flash Player Updater => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-01-25] (Adobe Systems Incorporated) Task: {65531FB0-3A19-421E-8738-DD67A219BA27} - System32\Tasks\Adobe Flash Player PPAPI Notifier => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_20_0_0_286_pepper.exe [2016-01-25] (Adobe Systems Incorporated) Task: {79DE47F0-9262-4AC1-9095-2C52830FF095} - System32\Tasks\Opera scheduled Autoupdate 1413490159 => C:\Program Files (x86)\Opera\launcher.exe [2016-01-18] (Opera Software) Task: {86837C6B-43CE-4D2A-89C3-8A44615383EF} - System32\Tasks\DropboxUpdateTaskUserS-1-5-21-204455593-1543837664-2498303104-1001UA => C:\Users\JULIA\AppData\Local\Dropbox\Update\DropboxUpdate.exe [2015-06-17] (Dropbox, Inc.) Task: {88CCBFF6-ABD8-4BD6-B690-AC7CC27D0BB5} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2015-12-13] (Adobe Systems Incorporated) Task: {9281DF3C-3C0F-4AF2-819F-701411EFF810} - System32\Tasks\RTKCPL => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2013-05-30] (Realtek Semiconductor) Task: {A0896159-4AE1-4D3C-88AB-C28B92E83C85} - System32\Tasks\Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeReminderTime => C:\Windows\system32\GWX\GWXUXWorker.exe [2015-12-05] (Microsoft Corporation) Task: {A964F83B-AF5F-4471-9375-3234AEF34F7C} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-09-21] (Google Inc.) Task: {B08278C4-8B13-4FD6-A61C-69BF602B1DB0} - System32\Tasks\advRecovery => C:\Program Files\Samsung\Recovery\WCScheduler.exe [2013-06-14] (SEC) Task: {BA48FCCD-F364-42BF-B684-E7B4DCC4D3D1} - System32\Tasks\Microsoft\Windows\UPnP\UPnPHostConfig => config upnphost start= auto Task: {BC61D618-9391-4812-8EC5-A1D8C6E36DE7} - System32\Tasks\McAfee\McAfee Idle Detection Task Task: {BEF0920C-9AF9-47A8-907A-8F7B10F147F5} - System32\Tasks\Intel Security DAT Reputation (AMCore) Post DAT update endpoint safety pulse => C:\Program Files\Common Files\McAfee\AMContent\scanners\x86_64\datrep\21.0\mcdatrep.exe [2015-08-04] (McAfee, Inc.) Task: {EB274DC7-1C30-4091-8872-AE35D36E693D} - System32\Tasks\Intel Security DAT Reputation (AMCore) periodic endpoint safety pulse => C:\Program Files\Common Files\McAfee\AMContent\scanners\x86_64\datrep\21.0\mcdatrep.exe [2015-08-04] (McAfee, Inc.) Task: {EB3F61A6-F8E3-408B-B707-C5D616A35C74} - System32\Tasks\LaunchSettings => C:\Program Files (x86)\Samsung\Settings\Settings.exe [2013-06-14] () Task: {ECFEF78D-6153-445F-B767-A67081B6F9A3} - System32\Tasks\SamsungHomeSyncPC => C:\Program Files (x86)\Samsung\HomeSync Lite\RefreshToken.exe [2013-07-11] () Task: {EF4FB0B9-7794-4606-AC6B-5378BC79A705} - System32\Tasks\Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeTime => C:\Windows\system32\GWX\GWXUXWorker.exe [2015-12-05] (Microsoft Corporation) Task: {F3B222BD-DEE3-4917-B1EC-C58DC31DF372} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\WINDOWS\system32\MRT.exe [2016-01-16] (Microsoft Corporation) Task: {FB9F3CF0-F9A0-41FD-A53A-54905E743FAD} - System32\Tasks\DropboxUpdateTaskUserS-1-5-21-204455593-1543837664-2498303104-1001Core => C:\Users\JULIA\AppData\Local\Dropbox\Update\DropboxUpdate.exe [2015-06-17] (Dropbox, Inc.) (Załączenie wejścia w fixlist spowoduje przesunięcie pliku zadania (.job). Plik uruchamiany docelowo przez zadanie nie zostanie przeniesiony.) Task: C:\WINDOWS\Tasks\Adobe Flash Player PPAPI Notifier.job => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_20_0_0_286_pepper.exe Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\WINDOWS\Tasks\DropboxUpdateTaskUserS-1-5-21-204455593-1543837664-2498303104-1001Core.job => C:\Users\JULIA\AppData\Local\Dropbox\Update\DropboxUpdate.exe Task: C:\WINDOWS\Tasks\DropboxUpdateTaskUserS-1-5-21-204455593-1543837664-2498303104-1001UA.job => C:\Users\JULIA\AppData\Local\Dropbox\Update\DropboxUpdate.exe Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ==================== Skróty ============================= (Wybrane wejścia mogą zostać załączone w celu ich zresetowania lub usunięcia.) ==================== Załadowane moduły (filtrowane) ============== 2014-07-04 21:33 - 2014-07-04 21:33 - 00127488 _____ () C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Container.Wlan.dll 2014-12-01 19:06 - 2014-03-07 02:41 - 00240720 _____ () C:\ProgramData\MobileBrServ\mbbservice.exe 2011-03-14 16:27 - 2011-03-14 16:27 - 00346976 _____ () C:\ProgramData\DatacardService\HWDeviceService64.exe 2014-11-25 11:21 - 2014-11-25 11:19 - 00246112 _____ () C:\ProgramData\PLAY ONLINE\OnlineUpdate\ouc.exe 2013-07-23 17:16 - 2013-07-09 20:16 - 00012800 _____ () C:\Program Files\Samsung\Samsung Link\JniSys.dll 2014-12-19 21:21 - 2014-12-19 21:21 - 00515584 _____ () C:\Windows\Temp\sqlite-3.7.2-sqlitejdbc.dll 2013-07-23 17:16 - 2013-07-09 20:16 - 01283584 _____ () C:\Program Files\Samsung\Samsung Link\SecProxyJNI.dll 2013-07-23 17:16 - 2013-07-09 20:16 - 01340928 _____ () C:\Program Files\Samsung\Samsung Link\SecStubJNI.dll 2013-07-23 17:16 - 2013-07-09 20:16 - 01588736 _____ () C:\Program Files\Samsung\Samsung Link\SppAgentSvc.dll 2013-06-18 05:51 - 2013-06-18 05:51 - 00036864 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.14\64bit\JNIInterface.dll 2013-06-18 05:51 - 2013-06-18 05:51 - 00144384 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.14\64bit\ASFAPI.dll 2013-06-18 05:54 - 2013-06-18 05:54 - 00018944 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.14\64bit\MediaDB_Manager.dll 2013-02-14 11:41 - 2013-02-14 11:41 - 00030720 _____ () C:\WINDOWS\SYSTEM32\MediaDB64.dll 2013-02-14 11:41 - 2013-02-14 11:41 - 00905216 _____ () C:\WINDOWS\SYSTEM32\ContentDirectoryPresenter64.dll 2013-06-18 05:55 - 2013-06-18 05:55 - 00521728 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.14\64bit\DMS_Manager.dll 2013-04-15 10:52 - 2013-04-15 10:52 - 00049152 _____ () C:\WINDOWS\SYSTEM32\boost_date_time-vc90-mt-1_47.dll 2013-04-15 10:52 - 2013-04-15 10:52 - 00016896 _____ () C:\WINDOWS\SYSTEM32\boost_system-vc90-mt-1_47.dll 2013-04-15 10:52 - 2013-04-15 10:52 - 00058880 _____ () C:\WINDOWS\SYSTEM32\boost_thread-vc90-mt-1_47.dll 2013-04-15 10:52 - 2013-04-15 10:52 - 00299520 _____ () C:\WINDOWS\SYSTEM32\boost_serialization-vc90-mt-1_47.dll 2013-07-23 17:10 - 2013-06-06 05:23 - 01645056 _____ () C:\Program Files\Bitcasa\bitcasaui.dll 2013-07-23 17:10 - 2013-06-06 05:15 - 00288720 _____ () C:\Program Files\Bitcasa\ExplorerMenu.dll 2013-07-23 17:16 - 2013-07-09 20:16 - 00042496 _____ () C:\Program Files\Samsung\Samsung Link\JniIO.dll 2014-07-04 21:33 - 2014-07-04 21:33 - 00102400 _____ () C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Proxy.Native.dll 2013-06-04 23:28 - 2013-06-04 23:28 - 00088624 _____ () C:\Program Files\Samsung\S Agent\ToastX64.dll 2013-04-24 08:09 - 2013-04-24 08:09 - 00011264 _____ () C:\Program Files (x86)\Bluetooth Suite\Modules\ActivateDesktopDebugger\ActivateDesktopDebugger.dll 2013-04-24 08:07 - 2013-04-24 08:07 - 00086016 _____ () C:\Program Files (x86)\Bluetooth Suite\Modules\Map\MAP.dll 2013-04-24 08:12 - 2013-04-24 08:12 - 00012928 _____ () C:\Program Files (x86)\Bluetooth Suite\ActivateDesktop.exe 2014-11-25 11:21 - 2014-11-25 11:19 - 00011362 _____ () C:\ProgramData\PLAY ONLINE\OnlineUpdate\mingwm10.dll 2014-11-25 11:21 - 2014-11-25 11:19 - 00043008 _____ () C:\ProgramData\PLAY ONLINE\OnlineUpdate\libgcc_s_dw2-1.dll 2014-11-25 11:21 - 2014-11-25 11:19 - 02415104 _____ () C:\ProgramData\PLAY ONLINE\OnlineUpdate\QtCore4.dll 2014-11-25 11:21 - 2014-11-25 11:19 - 01148416 _____ () C:\ProgramData\PLAY ONLINE\OnlineUpdate\QtNetwork4.dll 2014-11-25 11:21 - 2014-11-25 11:19 - 00384512 _____ () C:\ProgramData\PLAY ONLINE\OnlineUpdate\QueryStrategy.dll 2014-11-25 11:21 - 2014-11-25 11:19 - 00398336 _____ () C:\ProgramData\PLAY ONLINE\OnlineUpdate\QtXml4.dll 2013-06-14 02:54 - 2013-06-14 02:54 - 00211064 _____ () C:\Program Files (x86)\Samsung\Settings\CmdServer\WinCRT.dll 2016-01-27 00:45 - 2016-01-27 00:45 - 00349184 _____ () C:\Users\JULIA\AppData\Local\CongenialityModulator\MailedAppointment.dll 2016-01-16 18:34 - 2016-01-12 17:35 - 01590088 _____ () C:\Program Files (x86)\Google\Chrome\Application\47.0.2526.111\libglesv2.dll 2016-01-16 18:33 - 2016-01-12 17:35 - 00087880 _____ () C:\Program Files (x86)\Google\Chrome\Application\47.0.2526.111\libegl.dll 2015-12-14 21:03 - 2015-10-31 01:59 - 00034768 _____ () C:\Users\JULIA\AppData\Roaming\Dropbox\bin\_multiprocessing.pyd 2015-12-14 21:03 - 2015-10-31 02:00 - 00019408 _____ () C:\Users\JULIA\AppData\Roaming\Dropbox\bin\faulthandler.pyd 2015-12-14 21:03 - 2015-12-08 22:36 - 00022848 _____ () C:\Users\JULIA\AppData\Roaming\Dropbox\bin\Crypto.Random.OSRNG.winrandom.pyd 2015-12-14 21:03 - 2015-12-08 22:36 - 00023352 _____ () C:\Users\JULIA\AppData\Roaming\Dropbox\bin\Crypto.Util._counter.pyd 2015-12-14 21:03 - 2015-12-08 22:36 - 00042296 _____ () C:\Users\JULIA\AppData\Roaming\Dropbox\bin\Crypto.Cipher._AES.pyd 2015-12-14 21:03 - 2015-10-31 01:59 - 00116688 _____ () C:\Users\JULIA\AppData\Roaming\Dropbox\bin\pywintypes27.dll 2015-12-14 21:03 - 2015-10-31 01:59 - 00093640 _____ () C:\Users\JULIA\AppData\Roaming\Dropbox\bin\_ctypes.pyd 2015-12-14 21:03 - 2015-10-31 01:59 - 00018376 _____ () C:\Users\JULIA\AppData\Roaming\Dropbox\bin\select.pyd 2015-12-14 21:03 - 2015-12-08 22:36 - 00019760 _____ () C:\Users\JULIA\AppData\Roaming\Dropbox\bin\tornado.speedups.pyd 2015-12-14 21:03 - 2015-10-31 02:00 - 00105928 _____ () C:\Users\JULIA\AppData\Roaming\Dropbox\bin\win32api.pyd 2015-12-14 21:03 - 2015-10-31 01:59 - 00392144 _____ () C:\Users\JULIA\AppData\Roaming\Dropbox\bin\pythoncom27.dll 2015-12-14 21:03 - 2015-12-08 22:36 - 00381752 _____ () C:\Users\JULIA\AppData\Roaming\Dropbox\bin\win32com.shell.shell.pyd 2015-12-14 21:03 - 2015-10-31 01:59 - 00692688 _____ () C:\Users\JULIA\AppData\Roaming\Dropbox\bin\unicodedata.pyd 2015-12-14 21:03 - 2015-12-08 22:36 - 00020816 _____ () C:\Users\JULIA\AppData\Roaming\Dropbox\bin\cryptography.hazmat.bindings._constant_time.pyd 2015-12-14 21:03 - 2015-10-31 02:00 - 00109520 _____ () C:\Users\JULIA\AppData\Roaming\Dropbox\bin\_cffi_backend.pyd 2015-12-14 21:03 - 2015-12-08 22:36 - 01737032 _____ () C:\Users\JULIA\AppData\Roaming\Dropbox\bin\cryptography.hazmat.bindings._openssl.pyd 2015-12-14 21:03 - 2015-12-08 22:36 - 00020808 _____ () C:\Users\JULIA\AppData\Roaming\Dropbox\bin\cryptography.hazmat.bindings._padding.pyd 2015-12-14 21:03 - 2015-12-08 22:36 - 00020800 _____ () C:\Users\JULIA\AppData\Roaming\Dropbox\bin\_cffi_python_x66cf7a7cx17a72769.pyd 2015-12-14 21:03 - 2015-12-08 22:36 - 00021840 _____ () C:\Users\JULIA\AppData\Roaming\Dropbox\bin\_cffi_unicode_environ_win32_x8bf8e68bx9968e850.pyd 2015-12-14 21:03 - 2015-12-08 22:36 - 00038696 _____ () C:\Users\JULIA\AppData\Roaming\Dropbox\bin\fastpath.pyd 2015-12-14 21:03 - 2015-10-31 02:00 - 00024528 _____ () C:\Users\JULIA\AppData\Roaming\Dropbox\bin\win32event.pyd 2015-12-14 21:03 - 2015-10-31 02:00 - 00020936 _____ () C:\Users\JULIA\AppData\Roaming\Dropbox\bin\mmapfile.pyd 2015-12-14 21:03 - 2015-10-31 02:00 - 00114640 _____ () C:\Users\JULIA\AppData\Roaming\Dropbox\bin\win32security.pyd 2015-12-14 21:03 - 2015-12-08 22:36 - 00021320 _____ () C:\Users\JULIA\AppData\Roaming\Dropbox\bin\_cffi_pywin_kernel32_xde9e4433x360333f0.pyd 2015-12-14 21:03 - 2015-10-31 02:00 - 00124880 _____ () C:\Users\JULIA\AppData\Roaming\Dropbox\bin\win32file.pyd 2015-12-14 21:03 - 2015-10-31 02:00 - 00030160 _____ () C:\Users\JULIA\AppData\Roaming\Dropbox\bin\win32pipe.pyd 2015-12-14 21:03 - 2015-10-31 02:00 - 00043472 _____ () C:\Users\JULIA\AppData\Roaming\Dropbox\bin\win32process.pyd 2015-12-14 21:03 - 2015-10-31 02:00 - 00175560 _____ () C:\Users\JULIA\AppData\Roaming\Dropbox\bin\win32gui.pyd 2015-12-14 21:03 - 2015-10-31 02:00 - 00028616 _____ () C:\Users\JULIA\AppData\Roaming\Dropbox\bin\win32ts.pyd 2015-12-14 21:03 - 2015-10-31 02:00 - 00024016 _____ () C:\Users\JULIA\AppData\Roaming\Dropbox\bin\win32clipboard.pyd 2015-12-14 21:03 - 2015-10-31 02:00 - 00048592 _____ () C:\Users\JULIA\AppData\Roaming\Dropbox\bin\win32service.pyd 2015-12-14 21:03 - 2015-12-08 22:36 - 00024392 _____ () C:\Users\JULIA\AppData\Roaming\Dropbox\bin\librsyncffi.compiled._librsyncffi.pyd 2015-12-14 21:03 - 2015-10-31 02:00 - 00036296 _____ () C:\Users\JULIA\AppData\Roaming\Dropbox\bin\librsync.dll 2015-12-14 21:03 - 2015-10-31 02:00 - 00024016 _____ () C:\Users\JULIA\AppData\Roaming\Dropbox\bin\win32profile.pyd 2015-12-14 21:03 - 2015-12-08 22:36 - 00117056 _____ () C:\Users\JULIA\AppData\Roaming\Dropbox\bin\breakpad.client.windows.handler.pyd 2015-12-14 21:03 - 2015-12-08 22:36 - 00023376 _____ () C:\Users\JULIA\AppData\Roaming\Dropbox\bin\winscreenshot.compiled._CaptureScreenshot.pyd 2015-12-14 21:03 - 2015-10-31 01:59 - 00134608 _____ () C:\Users\JULIA\AppData\Roaming\Dropbox\bin\_elementtree.pyd 2015-12-14 21:03 - 2015-10-31 01:59 - 00134088 _____ () C:\Users\JULIA\AppData\Roaming\Dropbox\bin\pyexpat.pyd 2015-12-14 21:03 - 2015-10-31 02:00 - 00240584 _____ () C:\Users\JULIA\AppData\Roaming\Dropbox\bin\jpegtran.pyd 2015-12-14 21:03 - 2015-12-08 22:36 - 00020280 _____ () C:\Users\JULIA\AppData\Roaming\Dropbox\bin\cpuid.compiled._cpuid.pyd 2015-12-14 21:03 - 2015-12-08 22:36 - 00052024 _____ () C:\Users\JULIA\AppData\Roaming\Dropbox\bin\psutil._psutil_windows.pyd 2015-12-14 21:03 - 2015-12-08 22:36 - 00021304 _____ () C:\Users\JULIA\AppData\Roaming\Dropbox\bin\Crypto.Util.strxor.pyd 2015-12-14 21:03 - 2015-10-31 02:00 - 00350152 _____ () C:\Users\JULIA\AppData\Roaming\Dropbox\bin\winxpgui.pyd 2015-12-14 21:03 - 2015-12-08 22:36 - 00084792 _____ () C:\Users\JULIA\AppData\Roaming\Dropbox\bin\dropbox_sqlite_ext.DLL 2015-12-14 21:03 - 2015-12-08 22:36 - 01826608 _____ () C:\Users\JULIA\AppData\Roaming\Dropbox\bin\PyQt5.QtCore.pyd 2015-12-14 21:03 - 2015-10-31 02:00 - 00083912 _____ () C:\Users\JULIA\AppData\Roaming\Dropbox\bin\sip.pyd 2015-12-14 21:03 - 2015-12-08 22:36 - 03891504 _____ () C:\Users\JULIA\AppData\Roaming\Dropbox\bin\PyQt5.QtWidgets.pyd 2015-12-14 21:03 - 2015-12-08 22:36 - 01950000 _____ () C:\Users\JULIA\AppData\Roaming\Dropbox\bin\PyQt5.QtGui.pyd 2015-12-14 21:03 - 2015-12-08 22:36 - 00519984 _____ () C:\Users\JULIA\AppData\Roaming\Dropbox\bin\PyQt5.QtNetwork.pyd 2015-12-14 21:03 - 2015-12-08 22:36 - 00133936 _____ () C:\Users\JULIA\AppData\Roaming\Dropbox\bin\PyQt5.QtWebKit.pyd 2015-12-14 21:03 - 2015-12-08 22:36 - 00225080 _____ () C:\Users\JULIA\AppData\Roaming\Dropbox\bin\PyQt5.QtWebKitWidgets.pyd 2015-12-14 21:03 - 2015-12-08 22:36 - 00207672 _____ () C:\Users\JULIA\AppData\Roaming\Dropbox\bin\PyQt5.QtPrintSupport.pyd 2015-12-14 21:03 - 2015-12-08 22:36 - 00024904 _____ () C:\Users\JULIA\AppData\Roaming\Dropbox\bin\_cffi_wpad_proxy_win_x752e3d61xdcfdcc84.pyd 2015-12-14 21:03 - 2015-12-08 22:36 - 00486704 _____ () C:\Users\JULIA\AppData\Roaming\Dropbox\bin\PyQt5.QtQuick.pyd 2015-12-14 21:03 - 2015-12-08 22:36 - 00357680 _____ () C:\Users\JULIA\AppData\Roaming\Dropbox\bin\PyQt5.QtQml.pyd 2015-06-17 12:51 - 2015-10-31 02:01 - 00019920 _____ () C:\Users\JULIA\AppData\Roaming\Dropbox\bin\QtQuick.2\qtquick2plugin.dll 2015-03-04 22:45 - 2015-10-31 02:00 - 00786904 _____ () C:\Users\JULIA\AppData\Roaming\Dropbox\bin\QtQuick\Controls\qtquickcontrolsplugin.dll 2015-07-31 21:08 - 2015-10-31 02:00 - 00063448 _____ () C:\Users\JULIA\AppData\Roaming\Dropbox\bin\QtQuick\Layouts\qquicklayoutsplugin.dll 2015-06-17 12:51 - 2015-10-31 02:00 - 00019408 _____ () C:\Users\JULIA\AppData\Roaming\Dropbox\bin\QtQuick\Window.2\windowplugin.dll 2013-04-19 09:29 - 2013-04-19 09:29 - 01113600 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.14\DMSManager.dll 2013-04-15 10:52 - 2013-04-15 10:52 - 00227840 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.14\boost_serialization-vc90-mt-1_47.dll 2013-04-15 10:53 - 2013-04-15 10:53 - 00038912 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.14\boost_date_time-vc90-mt-1_47.dll 2013-04-15 10:52 - 2013-04-15 10:52 - 00012800 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.14\boost_system-vc90-mt-1_47.dll 2013-04-15 10:53 - 2013-04-15 10:53 - 00046592 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.14\boost_thread-vc90-mt-1_47.dll 2013-04-19 08:37 - 2013-04-19 08:37 - 00704000 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.14\ContentDirectoryPresenter.dll 2013-04-19 08:39 - 2013-04-19 08:39 - 00107008 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.14\DCMCDP.dll 2013-04-19 08:38 - 2013-04-19 08:38 - 00101376 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.14\FolderCDP.dll 2013-04-19 08:39 - 2013-04-19 08:39 - 00032768 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.14\Autobackup.dll 2013-04-19 08:38 - 2013-04-19 08:38 - 00055808 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.14\RosettaAllShare.dll 2013-04-19 09:29 - 2013-04-19 09:29 - 00077312 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.14\MetadataFramework.dll 2013-02-14 11:42 - 2013-02-14 11:42 - 00520234 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.14\sqlite3.dll 2013-02-14 11:42 - 2013-02-14 11:42 - 00450560 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.14\MoodExtractor.dll 2013-02-14 11:42 - 2013-02-14 11:42 - 05717504 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.14\DCMImgExtractor.dll 2013-04-12 00:58 - 2013-04-12 00:58 - 00028672 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.14\AutoChaptering.dll 2013-04-19 09:29 - 2013-04-19 09:29 - 00028160 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.14\AudioExtractor.dll 2013-04-19 08:58 - 2013-04-19 08:58 - 00017920 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.14\VideoExtractor.dll 2013-04-19 08:58 - 2013-04-19 08:58 - 00012288 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.14\ImageExtractor.dll 2013-04-19 08:58 - 2013-04-19 08:58 - 00013824 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.14\TextExtractor.dll 2013-02-14 11:42 - 2013-02-14 11:42 - 00147456 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.14\libexpat.dll 2013-04-12 00:58 - 2013-04-12 00:58 - 00012288 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.14\VideoThumb.dll 2013-04-19 09:29 - 2013-04-19 09:29 - 00064000 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.14\ID3Driver.dll 2013-04-19 08:58 - 2013-04-19 08:58 - 00023040 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.14\RichInfoDriver.dll 2013-04-19 08:58 - 2013-04-19 08:58 - 00117248 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.14\ThumbnailMaker.dll 2013-04-19 08:58 - 2013-04-19 08:58 - 00133632 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.14\VideoMetadataDriver.dll 2013-04-19 08:58 - 2013-04-19 08:58 - 00024064 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.14\SECMetaDriver.dll 2013-04-12 00:58 - 2013-04-12 00:58 - 00024064 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.14\photoDriver.dll 2013-02-14 11:42 - 2013-02-14 11:42 - 04671488 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.14\avcodec-52.dll 2013-02-14 11:42 - 2013-02-14 11:42 - 00686080 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.14\avformat-52.dll 2013-02-14 11:42 - 2013-02-14 11:42 - 00070656 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.14\avutil-50.dll 2013-02-14 11:42 - 2013-02-14 11:42 - 00152064 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.14\swscale-0.dll 2013-02-14 11:42 - 2013-02-14 11:42 - 00366592 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.14\tag.dll 2013-04-12 00:58 - 2013-04-12 00:58 - 00289792 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.14\libThumbnail.dll 2013-04-12 00:59 - 2013-04-12 00:59 - 01033216 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.14\ImageMagickWrapper.dll 2013-04-19 08:58 - 2013-04-19 08:58 - 00290816 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.14\libKeyFrame.dll 2013-02-14 11:42 - 2013-02-14 11:42 - 00399826 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.14\libexif-12.dll.dll 2013-02-14 11:42 - 2013-02-14 11:42 - 00044032 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.14\us.dll 2016-01-21 19:51 - 2016-01-21 19:51 - 61568120 _____ () C:\Program Files (x86)\Opera\34.0.2036.50\opera.dll 2016-01-21 19:51 - 2016-01-21 19:50 - 01983096 _____ () C:\Program Files (x86)\Opera\34.0.2036.50\libglesv2.dll 2016-01-21 19:51 - 2016-01-21 19:50 - 00081528 _____ () C:\Program Files (x86)\Opera\34.0.2036.50\libegl.dll 2016-01-21 19:56 - 2016-01-19 14:06 - 16792256 _____ () C:\Users\JULIA\AppData\Local\Google\Chrome\User Data\PepperFlash\20.0.0.286\pepflashplayer.dll ==================== Alternate Data Streams (filtrowane) ========= (Załączenie wejścia w fixlist spowoduje usunięcie strumienia ADS.) ==================== Tryb awaryjny (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Wartość "AlternateShell" zostanie przywrócona.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS => ""="" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcpltsvc => ""="" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\McMPFSvc => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\McNaiAnn => ""="" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MCODS => ""="" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mcpltsvc => ""="" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfeaack => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfeaack.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfeavfk => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfeavfk.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfefire => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfefirek => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfefirek.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfehidk => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfehidk.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfemms => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfetdi2k => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfetdi2k.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfevtp => ""="Service" ==================== EXE - Powiązania (filtrowane) =============== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci.) ==================== Internet Explorer - Witryny zaufane i z ograniczeniami =============== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru.) ==================== Hosts - zawartość: =============================== (Użycie dyrektywy Hosts: w fixlist spowoduje reset pliku Hosts.) 2013-08-22 14:25 - 2013-08-22 14:25 - 00000824 ____N C:\WINDOWS\system32\Drivers\etc\hosts ==================== Inne obszary ============================ (Obecnie brak automatycznej naprawy dla tej sekcji.) HKU\S-1-5-21-204455593-1543837664-2498303104-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\JULIA\AppData\Roaming\Microsoft\Windows Photo Viewer\Tapeta z Przeglądarki fotografii systemu Windows.jpg DNS Servers: 192.168.43.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Zapora systemu Windows [funkcja włączona] ==================== MSCONFIG/TASK MANAGER - Wyłączone elementy == (Obecnie brak automatycznej naprawy dla tej sekcji.) HKLM\...\StartupApproved\StartupFolder: => "Orange - Anydata ADU890-W.lnk" HKLM\...\StartupApproved\Run: => "Bitcasa" ==================== Reguły Zapory systemu Windows (filtrowane) =============== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139 FirewallRules: [{C6045A29-1898-4C9B-A68E-52FFE669A951}] => (Allow) LPort=1900 FirewallRules: [{5CAC146B-FA38-44EB-88C6-8F12A0C1FBF7}] => (Allow) LPort=7900 FirewallRules: [{669828B4-0CF8-40DA-A347-91E6DCE8FA61}] => (Allow) LPort=24234 FirewallRules: [{E9020BD5-B213-4F92-B13E-2E24FED75D88}] => (Allow) LPort=7679 FirewallRules: [{56AA49CF-8038-413A-8033-9B797B64852D}] => (Allow) LPort=7676 FirewallRules: [{9E566C68-F69F-4AFA-B33C-B99EDBFEBA55}] => (Allow) LPort=8643 FirewallRules: [{F9233D12-24CD-432D-AC53-C99B833D5FA9}] => (Allow) LPort=8743 FirewallRules: [{68383EA0-28B3-4F74-B679-1FCA000EE403}] => (Allow) C:\Program Files\Samsung\AllShare Framework DMS\1.3.14\AllShareFrameworkDMS.exe FirewallRules: [{8D80419F-727D-4745-A3DB-3D6445307E9C}] => (Allow) C:\Program Files\Samsung\AllShare Framework DMS\1.3.14\AllShareFrameworkDMS.exe FirewallRules: [{A12E0A7C-2AB5-4C35-B6E6-7714EAA7C50B}] => (Allow) C:\Program Files\Samsung\AllShare Framework DMS\1.3.14\AllShareFrameworkDMS.exe FirewallRules: [{3B7684B8-4F77-4FF7-9A50-AD871962E9F6}] => (Allow) C:\Program Files\Samsung\AllShare Framework DMS\1.3.14\AllShareFrameworkDMS.exe FirewallRules: [{DAD7109E-CD86-4310-8826-C4FB4848EC31}] => (Allow) C:\Program Files\Samsung\Samsung Link\Samsung Link.exe FirewallRules: [{FD9E1F0C-2AB1-46D1-BCEC-4EB740C22766}] => (Allow) C:\Program Files\Samsung\Samsung Link\Samsung Link Tray Agent.exe FirewallRules: [{845B8606-C9F1-43F7-AD57-3CBF03D5E2F1}] => (Allow) C:\Program Files\Samsung\Samsung Link\Samsung Link.exe FirewallRules: [{48547165-252E-46D6-87FC-BAC889BF7500}] => (Allow) C:\Program Files\Samsung\Samsung Link\Samsung Link Tray Agent.exe FirewallRules: [{AAFD3544-4117-4150-920C-76C4E523BE84}] => (Allow) C:\Windows\SysWOW64\muzapp.exe FirewallRules: [{EDAC1D16-5ECE-4CC1-A7AA-955F3675E49E}] => (Allow) C:\Windows\SysWOW64\muzapp.exe FirewallRules: [{8B9292AE-727C-4C2B-920C-22E93FD824CA}] => (Allow) C:\Users\JULIA\AppData\Roaming\Dropbox\bin\Dropbox.exe FirewallRules: [{7DCCFD7E-2813-483E-A9E0-4E3EC51BB727}] => (Allow) C:\Users\JULIA\AppData\Roaming\Dropbox\bin\Dropbox.exe FirewallRules: [TCP Query User{FFC41D16-AE92-4C06-8BCC-8F52AF60020E}C:\users\julia\appdata\roaming\dropbox\bin\dropbox.exe] => (Allow) C:\users\julia\appdata\roaming\dropbox\bin\dropbox.exe FirewallRules: [UDP Query User{6CEE5C49-EF6A-4A01-A78E-6A56492BDA6D}C:\users\julia\appdata\roaming\dropbox\bin\dropbox.exe] => (Allow) C:\users\julia\appdata\roaming\dropbox\bin\dropbox.exe FirewallRules: [TCP Query User{390A8DE1-6337-46E1-93E2-379BA4223936}C:\program files (x86)\electronic arts\eadm\core.exe] => (Allow) C:\program files (x86)\electronic arts\eadm\core.exe FirewallRules: [UDP Query User{6C4E115C-3A41-4387-B70B-EC6EF450BA1C}C:\program files (x86)\electronic arts\eadm\core.exe] => (Allow) C:\program files (x86)\electronic arts\eadm\core.exe FirewallRules: [{99F29642-AAFF-4AEF-AAB8-B4590C139181}] => (Allow) C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe FirewallRules: [{EB449135-804D-4D3D-B430-159ED7FD85C3}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Punkty Przywracania systemu ========================= 05-01-2016 18:03:15 Windows Update 13-01-2016 17:36:36 Windows Update 16-01-2016 17:56:16 Windows Update ==================== Wadliwe urządzenia w Menedżerze urządzeń ============= ==================== Błędy w Dzienniku zdarzeń: ========================= Dziennik Aplikacja: ================== Error: (01/27/2016 03:53:48 AM) (Source: Microsoft-Windows-LocationProvider) (EventID: 2006) (User: ZARZĄDZANIE NT) Description: There was an error with the Windows Location Provider database Error: (01/27/2016 02:06:39 AM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Program Spyhunter4.exe w wersji 4.21.18.4608 przestał współpracować z systemem Windows i został zamknięty. Aby sprawdzić, czy jest dostępnych więcej informacji na temat tego problemu, sprawdź historię problemu w aplecie Centrum akcji w Panelu sterowania. Identyfikator procesu: 1204 Godzina rozpoczęcia: 01d1589d1e32b115 Godzina zakończenia: 2243 Ścieżka aplikacji: C:\Program Files\Enigma Software Group\SpyHunter\Spyhunter4.exe Identyfikator raportu: 3080b67b-c492-11e5-bec5-48d224595d7f Pełna nazwa pakietu powodującego błąd: Identyfikator aplikacji względem pakietu powodującego błąd: Error: (01/27/2016 01:48:05 AM) (Source: Customer Experience Improvement Program) (EventID: 1008) (User: ) Description: 80070005 Error: (01/27/2016 12:48:31 AM) (Source: Customer Experience Improvement Program) (EventID: 1008) (User: ) Description: 80070005 Error: (01/25/2016 12:19:46 AM) (Source: Customer Experience Improvement Program) (EventID: 1008) (User: ) Description: 80070005 Error: (01/21/2016 11:00:15 PM) (Source: Customer Experience Improvement Program) (EventID: 1008) (User: ) Description: 80070005 Error: (01/21/2016 07:47:27 PM) (Source: Customer Experience Improvement Program) (EventID: 1008) (User: ) Description: 80070005 Error: (01/17/2016 05:18:07 PM) (Source: Customer Experience Improvement Program) (EventID: 1008) (User: ) Description: 80070005 Error: (01/16/2016 11:05:13 PM) (Source: SideBySide) (EventID: 78) (User: ) Description: Nie można wygenerować kontekstu aktywacji dla „C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.18006_none_623f33d3ecbe86e8.manifest1”. Błąd w pliku manifestu lub w pliku zasad „C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.18006_none_623f33d3ecbe86e8.manifest2” w wierszu C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.18006_none_623f33d3ecbe86e8.manifest3. Wersja składnika wymagana przez aplikację powoduje konflikt z inną wersją składnika, która jest już aktywna. Składniki powodujące konflikt: Składnik 1: C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.18006_none_623f33d3ecbe86e8.manifest. Składnik 2: C:\WINDOWS\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.18006_none_a9ec6aab013aafee.manifest. Error: (01/16/2016 11:03:27 PM) (Source: Microsoft-Windows-Defrag) (EventID: 257) (User: ) Description: Wolumin \\?\Volume{10319d5e-e3e8-40f8-b1da-a994b3e9a923}\ nie został zoptymalizowany, ponieważ napotkano błąd: Parametr jest niepoprawny. (0x80070057) Dziennik System: ============= Error: (01/27/2016 04:17:30 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi TDataSvr z powodu następującego błędu: %%2 Error: (01/27/2016 04:17:29 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi Privoxy (PrivoxyService) z powodu następującego błędu: %%2 Error: (01/27/2016 04:17:29 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi PLAY ONLINE. OUC z powodu następującego błędu: %%1053 Error: (01/27/2016 04:17:29 AM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: Upłynął limit czasu (30000 ms) podczas oczekiwania na połączenie się z usługą PLAY ONLINE. OUC. Error: (01/27/2016 04:17:27 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi AppEx Networks Accelerator LWF z powodu następującego błędu: %%31 Error: (01/27/2016 04:17:27 AM) (Source: APXACC) (EventID: 1003) (User: ) Description: The NDIS6 LWF initialization has failed. (0xC0000001) Error: (01/27/2016 04:17:26 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi SpyHunter 4 Service z powodu następującego błędu: %%2 Error: (01/27/2016 04:17:04 AM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: Usługa Wstępne ładowanie do pamięci zakończyła działanie; wystąpił następujący błąd: %%1062 Error: (01/27/2016 04:16:55 AM) (Source: DCOM) (EventID: 10010) (User: JULKA) Description: {4545DEA0-2DFC-4906-A728-6D986BA399A9} Error: (01/27/2016 04:16:55 AM) (Source: DCOM) (EventID: 10010) (User: JULKA) Description: {4545DEA0-2DFC-4906-A728-6D986BA399A9} CodeIntegrity: =================================== Date: 2015-04-29 00:15:49.983 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-04-29 00:15:48.358 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-04-29 00:15:46.839 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-04-29 00:15:45.574 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-04-29 00:15:44.339 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-04-29 00:15:43.058 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-04-29 00:15:41.792 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-04-29 00:15:40.511 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-04-29 00:15:39.324 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-04-29 00:15:38.105 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. ==================== Statystyki pamięci =========================== Procesor: Quad-Core Processor (up to 1.4GHz) Procent pamięci w użyciu: 54% Całkowita pamięć fizyczna: 3526.79 MB Dostępna pamięć fizyczna: 1603.88 MB Całkowita pamięć wirtualna: 4742.79 MB Dostępna pamięć wirtualna: 1561.88 MB ==================== Dyski ================================ Drive c: () (Fixed) (Total:98.49 GB) (Free:27.67 GB) NTFS ==================== MBR & Tablica partycji ================== ======================================================== Disk: 0 (Size: 119.2 GB) (Disk ID: 91AAE69A) Partition: GPT. ==================== Koniec Addition.txt ============================