Rezultaty skanu uzupełniającego Farbar Recovery Scan Tool (x64) Wersja:05-03-2016 01 Uruchomiony przez Paweł (2016-03-14 12:14:54) Uruchomiony z C:\Users\Paweł\Downloads Windows 10 Home Wersja 1511 (X64) (2015-12-12 03:45:07) Tryb startu: Normal ========================================================== ==================== Konta użytkowników: ============================= Administrator (S-1-5-21-1527049857-3966740355-1081886749-500 - Administrator - Disabled) Gość (S-1-5-21-1527049857-3966740355-1081886749-501 - Limited - Disabled) Konto domyślne (S-1-5-21-1527049857-3966740355-1081886749-503 - Limited - Disabled) Paweł (S-1-5-21-1527049857-3966740355-1081886749-1001 - Administrator - Enabled) => C:\Users\Paweł ==================== Centrum zabezpieczeń ======================== (Załączenie wejścia w fixlist spowoduje jego usunięcie.) AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AV: McAfee — ochrona antywirusowa i przed oprogramowaniem szpiegującym (Enabled - Up to date) {DA9F8ED0-D0DE-39CC-F55A-51AB4CC1B556} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: McAfee — ochrona antywirusowa i przed oprogramowaniem szpiegującym (Enabled - Up to date) {61FE6F34-F6E4-3642-CFEA-6AD93746FFEB} FW: McAfee Firewall (Enabled) {E2A40FF5-9AB1-3894-DE05-F89EB212F22D} ==================== Zainstalowane programy ====================== (W fixlist dozwolone tylko załączanie programów adware z flagą "Hidden" w celu ich uwidocznienia. Programy adware powinny zostać w poprawny sposób odinstalowane.) 7-Zip 9.20 (x64 edition) (HKLM\...\{23170F69-40C1-2702-0920-000001000000}) (Version: 9.20.00.0 - Igor Pavlov) Adblock Plus dla IE (32-bitowego i 64-bitowego) (HKLM\...\{E3EA4A92-E882-4BAF-9FE2-EAA7C692A1A1}) (Version: 1.4 - Eyeo GmbH) Adobe Acrobat Reader DC - Polish (HKLM-x32\...\{AC76BA86-7AD7-1045-7B44-AC0F074E4100}) (Version: 15.010.20060 - Adobe Systems Incorporated) Adobe Flash Player 21 PPAPI (HKLM-x32\...\Adobe Flash Player PPAPI) (Version: 21.0.0.182 - Adobe Systems Incorporated) Adobe Shockwave Player 12.2 (HKLM-x32\...\Adobe Shockwave Player) (Version: 12.2.4.194 - Adobe Systems, Inc.) Aktualizacje NVIDIA 16.13.21 (Version: 16.13.21 - NVIDIA Corporation) Hidden ALLPlayer Pilot (HKLM-x32\...\{146BDBDD-ACD9-4B04-A286-C27471841E8E}_is1) (Version: 1.2 - ALLPlayer Group, Ltd.) ALLPlayer V6.X (HKLM-x32\...\ALLPlayer_is1) (Version: - ALLPlayer Group, Ltd.) Battlefield 3™ (HKLM-x32\...\{76285C16-411A-488A-BCE3-C83CB933D8CF}) (Version: 1.6.0.0 - Electronic Arts) Battlefield 4™ (HKLM-x32\...\{ABADE36E-EC37-413B-8179-B432AD3FACE7}) (Version: 1.7.2.45672 - Electronic Arts) Battlelog Web Plugins (HKLM-x32\...\Battlelog Web Plugins) (Version: 2.3.0 - EA Digital Illusions CE AB) Brother MFL-Pro Suite MFC-L2720DW series (HKLM-x32\...\{F8ECC2FD-CE2B-4ED4-BDCC-90D0D34206FD}) (Version: 1.0.0.0 - Brother Industries, Ltd.) calibre 64bit (HKLM\...\{C569C9D1-CE3A-454C-9642-37FDFC6B628D}) (Version: 2.49.0 - Kovid Goyal) Call of Duty: Black Ops (HKLM-x32\...\Steam App 42700) (Version: - Treyarch) Cisco EAP-FAST Module (HKLM-x32\...\{64BF0187-F3D2-498B-99EA-163AF9AE6EC9}) (Version: 2.2.14 - Cisco Systems, Inc.) Cisco LEAP Module (HKLM-x32\...\{AF312B06-5C5C-468E-89B3-BE6DE2645722}) (Version: 1.0.19 - Cisco Systems, Inc.) Cisco PEAP Module (HKLM-x32\...\{0A4EF0E6-A912-4CDE-A7F3-6E56E7C13A2F}) (Version: 1.1.6 - Cisco Systems, Inc.) Crysis® 2 (HKLM-x32\...\{6033673D-2530-4587-8AD0-EB059FC263F9}) (Version: 1.9.0.0 - Electronic Arts) CyberLink PowerBackup 2.6 (HKLM-x32\...\InstallShield_{ADD5DB49-72CF-11D8-9D75-000129760D75}) (Version: 2.6.2.1307 - CyberLink Corp.) CyberLink YouCam (HKLM-x32\...\InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D}) (Version: 5.0.5.4523 - CyberLink Corp.) DisableMSDefender (Version: 1.0.0 - Hewlett-Packard Company) Hidden Dishonored (RU) (HKLM-x32\...\Steam App 217980) (Version: - ) Dragon Age: Origins (HKLM-x32\...\{AEC81925-9C76-4707-84A9-40696C613ED3}) (Version: 1.05.0.0 - Electronic Arts) Dragon Age™ II (HKLM-x32\...\{E1EB9F56-AFE2-4204-B28F-AD8DA793B9F4}) (Version: 1.04.8524.0 - Electronic Arts) Dragon Age™: Inkwizycja (HKLM-x32\...\{DC4C36DC-4E5B-4262-B0C7-157DF534B969}) (Version: 1.0.0.12 - Electronic Arts) Dropbox (HKU\S-1-5-21-1527049857-3966740355-1081886749-1001\...\Dropbox) (Version: 3.14.7 - Dropbox, Inc.) Dropbox 25 GB (HKLM-x32\...\{597A58EC-42D6-4940-8739-FB94491B013C}) (Version: 0.9.0 - Dropbox, Inc.) eGazetyReader 3.1 (HKLM-x32\...\eGazetyReader_is1) (Version: 3.1 - e-Kiosk S.A.) Empire: Total War (HKLM-x32\...\Steam App 10500) (Version: - The Creative Assembly) Energy Star (HKLM\...\{465CA2B6-98AF-4E77-BE22-A908C34BB9EC}) (Version: 1.0.9 - Hewlett-Packard Company) ESN Sonar (HKLM-x32\...\ESN Sonar-0.70.4) (Version: 0.70.4 - ESN Social Software AB) Evernote v. 5.5.3 (HKLM-x32\...\{B1A0F908-1448-11E4-8684-00163E98E7D0}) (Version: 5.5.3.4236 - Evernote Corp.) Football Manager 2015 (HKLM-x32\...\Steam App 295270) (Version: - Sports Interactive) Football Manager 2016 (HKLM-x32\...\Steam App 378120) (Version: - SEGA) Foxit PhantomPDF (HKLM-x32\...\{89BF1D4D-1D62-451E-9496-B971BDE82720}) (Version: 6.0.33.715 - Foxit Corporation) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 48.0.2564.116 - Google Inc.) Google Update Helper (x32 Version: 1.3.24.7 - Google Inc.) Hidden Google Update Helper (x32 Version: 1.3.29.5 - Google Inc.) Hidden Hewlett-Packard ACLM.NET v1.2.2.3 (x32 Version: 1.00.0000 - Hewlett-Packard Company) Hidden HP Deskjet 2510 series — badanie mające na celu poprawę produktów (HKLM\...\{6FD53CD7-D402-4328-9885-8401266D237D}) (Version: 28.0.1313.0 - Hewlett-Packard Co.) HP Deskjet 2510 series — podstawowe oprogramowanie urządzenia (HKLM\...\{F0DD70C6-B53F-42B5-8A67-62863E6E5EEF}) (Version: 28.0.1313.0 - Hewlett-Packard Co.) HP Deskjet 2510 series Pomoc (HKLM-x32\...\{BD366B89-6784-4636-9D01-291C2016912A}) (Version: 27.0.0 - Hewlett Packard) HP Deskjet 2510 series Setup Guide (HKLM-x32\...\{216C7F38-4BBC-4E9A-8392-C9FA21B54386}) (Version: 27.0.0 - Hewlett Packard) HP Documentation (HKLM-x32\...\{EA7EA537-8F93-42A2-9384-66E7F049E6B0}) (Version: 1.4.0.0 - Hewlett-Packard) HP Photo Creations (HKLM-x32\...\HP Photo Creations) (Version: 1.0.0.7702 - HP) HP Registration Service (HKLM\...\{D1E8F2D7-7794-4245-B286-87ED86C1893C}) (Version: 1.2.7745.4851 - Hewlett-Packard) HP SimplePass (HKLM-x32\...\InstallShield_{314FAD12-F785-4471-BCE8-AB506642B9A1}) (Version: 8.01.46 - Hewlett-Packard) HP Support Assistant (HKLM-x32\...\{79C54A05-F146-4EA0-8A70-D4EFE6181E52}) (Version: 8.1.40.3 - Hewlett-Packard Company) HP Support Solutions Framework (HKLM-x32\...\{B11B6E26-63A4-4BB6-AA39-0AF758B26092}) (Version: 12.0.30.219 - Hewlett-Packard Company) HP System Event Utility (HKLM-x32\...\{6B1ECC61-B581-400D-BFAF-101B1AAEA5AB}) (Version: 1.4.7 - Hewlett-Packard Company) HP Update (HKLM-x32\...\{912D30CF-F39E-4B31-AD9A-123C6B794EE2}) (Version: 5.005.002.002 - Hewlett-Packard) HP Wireless Button Driver (HKLM-x32\...\{EFA01423-3857-468C-B7B6-F30AA08E50BC}) (Version: 1.1.5.1 - Hewlett-Packard Company) HPDiagnosticAlert (x32 Version: 1.00.0001 - Microsoft) Hidden Inst5675 (Version: 8.01.46 - Softex Inc.) Hidden Inst5676 (Version: 8.01.46 - Softex Inc.) Hidden Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 10.0.28.1006 - Intel Corporation) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 20.19.15.4331 - Intel Corporation) Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 13.2.0.1016 - Intel Corporation) Intel(R) Update Manager (HKLM-x32\...\{B991A1BC-DE0F-41B3-9037-B2F948F706EC}) (Version: 3.1.1228 - Intel Corporation) Java 8 Update 71 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218071F0}) (Version: 8.0.710.15 - Oracle Corporation) McAfee LiveSafe - Internet Security (HKLM-x32\...\MSC) (Version: 14.0.7080 - McAfee, Inc.) McAfee SafeKey(uninstall only) (HKLM-x32\...\SafeKey) (Version: 2.2.3 - McAfee, Inc.) Medal of Honor (TM) (HKLM-x32\...\{415030B8-3E8B-462A-8C03-41D95AA3AB3B}) (Version: 1.0.0.0 - Electronic Arts) Microsoft ASP.NET MVC 4 Runtime (HKLM-x32\...\{3FE312D5-B862-40CE-8E4E-A6D8ABF62736}) (Version: 4.0.40804.0 - Microsoft Corporation) Microsoft Office 365 - pl-pl (HKLM\...\O365HomePremRetail - pl-pl) (Version: 16.0.6568.2025 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.41212.0 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{A49F249F-0C91-497F-86DF-B2585E8E76B7}) (Version: 8.0.50727.42 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (HKLM-x32\...\{a1909659-0a08-4554-8af1-2175904903a1}) (Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 (HKLM-x32\...\{95716cce-fc71-413f-8ad5-56c2892d4b3a}) (Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation) Mobile Partner (HKLM-x32\...\Mobile Partner) (Version: 23.012.05.00.1185 - Huawei Technologies Co.,Ltd) Mozilla Firefox 44.0.2 (x86 pl) (HKLM-x32\...\Mozilla Firefox 44.0.2 (x86 pl)) (Version: 44.0.2 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 44.0.2.5884 - Mozilla) MSXML 4.0 SP3 Parser (HKLM-x32\...\{196467F1-C11F-4F76-858B-5812ADC83B94}) (Version: 4.30.2100.0 - Microsoft Corporation) Need for Speed™ Most Wanted (HKLM-x32\...\{FB0127F3-985B-44CE-AE29-378CAF60B361}) (Version: 1.5.0.0 - Electronic Arts) Need for Speed™ The Run (HKLM-x32\...\{0EDC9BA0-016E-406a-86DA-04FC1BE00C21}) (Version: 1.1.0.0 - Electronic Arts) Nuance PaperPort 12 (HKLM-x32\...\{A04A7656-A8E6-451F-A687-B1E34F83A8E2}) (Version: 12.1.0006 - Nuance Communications, Inc.) Nuance PDF Viewer Plus (HKLM-x32\...\{28656860-4728-433C-8AD4-D1A930437BC8}) (Version: 5.30.3290 - Nuance Communications, Inc) NVIDIA GeForce Experience 2.1.2 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.1.2 - NVIDIA Corporation) NVIDIA Oprogramowanie systemu PhysX 9.14.0702 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.14.0702 - NVIDIA Corporation) NVIDIA Sterownik graficzny 344.24 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 344.24 - NVIDIA Corporation) Office 16 Click-to-Run Extensibility Component (x32 Version: 16.0.6528.1011 - Microsoft Corporation) Hidden Office 16 Click-to-Run Licensing Component (Version: 16.0.6528.1011 - Microsoft Corporation) Hidden Office 16 Click-to-Run Localization Component (x32 Version: 16.0.6528.1011 - Microsoft Corporation) Hidden Opera Stable 35.0.2066.92 (HKLM-x32\...\Opera 35.0.2066.92) (Version: 35.0.2066.92 - Opera Software) Oprogramowanie mikroukładu Intel® (x32 Version: 10.0.21 - Intel(R) Corporation) Hidden Origin (HKLM-x32\...\Origin) (Version: 9.5.12.2862 - Electronic Arts, Inc.) Panel sterowania NVIDIA 353.62 (Version: 353.62 - NVIDIA Corporation) Hidden PaperPort Image Printer 64-bit (HKLM\...\{715CAACC-579B-4831-A5F4-A83A8DE3EFE2}) (Version: 14.00.0000 - Nuance Communications, Inc.) Polski pakiet językowy dla narzędzi Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - PLK) (Version: 10.0.50903 - Microsoft Corporation) PriceFountain (HKU\S-1-5-21-1527049857-3966740355-1081886749-1001\...\PriceFountain) (Version: - ) <==== UWAGA PunkBuster Services (HKLM-x32\...\PunkBusterSvc) (Version: 0.993 - Even Balance, Inc.) qksee (HKLM-x32\...\qksee) (Version: - Taiwan Shui Mu Chih Ching Technology Limited) <==== UWAGA Railroad Tycoon 3 (HKLM-x32\...\Steam App 7610) (Version: - PopTop) REALTEK Bluetooth Driver (HKLM-x32\...\{9D3D8C60-A5EF-4123-B2B9-172095903AB}) (Version: 1.0.0.24 - REALTEK Semiconductor Corp.) Realtek Card Reader (HKLM-x32\...\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}) (Version: 6.3.9600.29082 - Realtek Semiconductor Corp.) Realtek Ethernet Controller All-In-One Windows Driver (HKLM-x32\...\{F7E7F0CB-AA41-4D5A-B6F2-8E6738EB063F}) (Version: 8.35.716.2014 - Realtek) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7564 - Realtek Semiconductor Corp.) REALTEK Wireless LAN Driver (HKLM-x32\...\{A5107464-AA9B-4177-8129-5FF2F42DD322}) (Version: 1.0.0.59 - REALTEK Semiconductor Corp.) Scansoft PDF Professional (x32 Version: - ) Hidden SHIELD Streaming (Version: 3.1.200 - NVIDIA Corporation) Hidden Sid Meier's Civilization IV Complete (HKLM-x32\...\{6A0D1689-6F8D-427C-8BC8-A7D0EE5B8DD6}) (Version: 3.19 - Firaxis Games) Sid Meier's Railroads! (HKLM-x32\...\Steam App 7600) (Version: - Firaxis Games) SimCity™ (HKLM-x32\...\{F70FDE4B-8F86-4eb6-8C8E-636EC89F6419}) (Version: 4.0.86.0859 - Electronic Arts) Skype™ 7.18 (HKLM-x32\...\{FC965A47-4839-40CA-B618-18F486F042C6}) (Version: 7.18.112 - Skype Technologies S.A.) Sparta (HKU\S-1-5-21-1527049857-3966740355-1081886749-1001\...\Sparta) (Version: - Sparta) <==== UWAGA Spotify (HKU\S-1-5-21-1527049857-3966740355-1081886749-1001\...\Spotify) (Version: 1.0.24.104.g92a22684 - Spotify AB) Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation) swMSM (x32 Version: 12.0.0.1 - Adobe Systems, Inc) Hidden Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 19.0.12.95 - Synaptics Incorporated) The Sims™ 3 (HKLM-x32\...\{C05D8CDB-417D-4335-A38C-A0659EDFD6B8}) (Version: 1.69.43.024017 - Electronic Arts Inc.) The Sims™ 3 Cztery pory roku (HKLM-x32\...\{3DE92282-CB49-434F-81BF-94E5B380E889}) (Version: 16.0.136 - Electronic Arts) The Sims™ 3 Diesel Akcesoria (HKLM-x32\...\{1C9B6173-6DC9-4EEE-9EFC-6BA115CFBE43}) (Version: 14.0.48 - Electronic Arts) The Sims™ 3 Film - Akcesoria (HKLM-x32\...\{D0087539-3C57-44E0-BEE7-D779D546CBE1}) (Version: 20.0.53 - Electronic Arts) The Sims™ 3 Impreza w plenerze Akcesoria (HKLM-x32\...\{117B6BF6-82C3-420C-B284-9247C8568E53}) (Version: 7.0.55 - Electronic Arts) The Sims™ 3 Kariera (HKLM-x32\...\{910F4A29-1134-49E0-AD8B-56E4A3152BD1}) (Version: 4.0.87 - Electronic Arts) The Sims™ 3 Luksusowy wypoczynek Akcesoria (HKLM-x32\...\{08A25478-C5DD-4EA7-B168-3D687CA987FF}) (Version: 11.0.84 - Electronic Arts) The Sims™ 3 Miejskie Życie Akcesoria (HKLM-x32\...\{7B11296A-F894-449C-8DF6-6AAAA7D4D118}) (Version: 9.0.73 - Electronic Arts) The Sims™ 3 Nowoczesny apartament Akcesoria (HKLM-x32\...\{71828142-5A24-4BD0-97E7-976DA08CE6CF}) (Version: 3.0.38 - Electronic Arts) The Sims™ 3 Po zmroku (HKLM-x32\...\{45057FCE-5784-48BE-8176-D9D00AF56C3C}) (Version: 6.0.81 - Electronic Arts) The Sims™ 3 Pokolenia (HKLM-x32\...\{E6B88BD6-E4B2-4701-A648-B6DAC6E491CC}) (Version: 8.0.152 - Electronic Arts) The Sims™ 3 Studenckie życie (HKLM-x32\...\{F26DE8EF-F2CF-40DC-8CDA-CC0D82D11B36}) (Version: 18.0.126 - Electronic Arts) The Sims™ 3 Szalone Lata 70. 80. i 90. Akcesoria (HKLM-x32\...\{E1868CAE-E3B9-4099-8C18-AA8944D336FD}) (Version: 17.0.77 - Electronic Arts) The Sims™ 3 Wymarzone Podróże (HKLM-x32\...\{BA26FFA5-6D47-47DB-BE56-34C357B5F8CC}) (Version: 2.0.86 - Electronic Arts) The Sims™ 3 Zostań gwiazdą (HKLM-x32\...\{3BBFD444-5FAB-49F6-98B1-A1954E831399}) (Version: 12.0.273 - Electronic Arts) Train Simulator 2015 (HKLM-x32\...\Steam App 24010) (Version: - Dovetail Games) Trojan Remover 6.9.4.2943 (HKLM-x32\...\Trojan Remover_is1) (Version: 6.9.4.2943 - Simply Super Software) Update for PriceFountain (HKU\S-1-5-21-1527049857-3966740355-1081886749-1001\...\PriceFountainUpdateVer) (Version: - Update for PriceFountain) <==== UWAGA VirtualDJ 8 (HKLM-x32\...\{4D5A0E11-2E8C-4F1F-A847-CE6DA223250C}) (Version: 8.1.2770.0 - Atomix Productions) ==================== Niestandardowe rejestracje CLSID (filtrowane): ========================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) CustomCLSID: HKU\S-1-5-21-1527049857-3966740355-1081886749-1001_Classes\CLSID\{005A3A96-BAC4-4B0A-94EA-C0CE100EA736}\localserver32 -> C:\Users\Paweł\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-1527049857-3966740355-1081886749-1001_Classes\CLSID\{71DCE5D6-4B57-496B-AC21-CD5B54EB93FD}\localserver32 -> C:\Users\Paweł\AppData\Local\Microsoft\OneDrive\17.3.6301.0127\FileCoAuth.exe (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-1527049857-3966740355-1081886749-1001_Classes\CLSID\{ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C}\InprocServer32 -> C:\Users\Paweł\AppData\Roaming\Dropbox\bin\DropboxExt64.33.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-1527049857-3966740355-1081886749-1001_Classes\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Paweł\AppData\Roaming\Dropbox\bin\DropboxExt64.33.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-1527049857-3966740355-1081886749-1001_Classes\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Paweł\AppData\Roaming\Dropbox\bin\DropboxExt64.33.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-1527049857-3966740355-1081886749-1001_Classes\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Paweł\AppData\Roaming\Dropbox\bin\DropboxExt64.33.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-1527049857-3966740355-1081886749-1001_Classes\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Paweł\AppData\Roaming\Dropbox\bin\DropboxExt64.33.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-1527049857-3966740355-1081886749-1001_Classes\CLSID\{FB314EDD-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Paweł\AppData\Roaming\Dropbox\bin\DropboxExt64.33.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-1527049857-3966740355-1081886749-1001_Classes\CLSID\{FB314EDE-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Paweł\AppData\Roaming\Dropbox\bin\DropboxExt64.33.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-1527049857-3966740355-1081886749-1001_Classes\CLSID\{FB314EDF-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Paweł\AppData\Roaming\Dropbox\bin\DropboxExt64.33.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-1527049857-3966740355-1081886749-1001_Classes\CLSID\{FB314EE0-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Paweł\AppData\Roaming\Dropbox\bin\DropboxExt64.33.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-1527049857-3966740355-1081886749-1001_Classes\CLSID\{FBC9D74C-AF55-4309-9FB2-C426E071637F}\InprocServer32 -> C:\Users\Paweł\AppData\Roaming\Dropbox\bin\DropboxExt64.33.dll (Dropbox, Inc.) ==================== Zaplanowane zadania (filtrowane) ============= (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) Task: {069724E8-FC50-4847-80C3-1A4D1281130A} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe [2016-02-17] (Hewlett-Packard) Task: {0CDBFF39-3798-47C1-9D24-3B929C3D11DB} - System32\Tasks\Opera scheduled Autoupdate 1429887366 => C:\Program Files (x86)\Opera\launcher.exe [2016-03-01] (Opera Software) Task: {0EF69011-9907-4E78-86A7-5F0D9BDCDEF6} - \Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd -> Brak pliku <==== UWAGA Task: {1425E068-E378-4FE4-8DD9-B0C480772FF6} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-28] (Google Inc.) Task: {14FE998A-D06C-4A59-969C-81D8A6B091DE} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance => C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonx86\Microsoft Shared\Office16\OLicenseHeartbeat.exe [2016-02-23] (Microsoft Corporation) Task: {164EACF4-D349-423E-B55E-27329C76199B} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> Brak pliku <==== UWAGA Task: {1A9F482D-E600-4E5C-82D6-7A134732EDB5} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> Brak pliku <==== UWAGA Task: {1BDF7289-3C06-4220-B8B9-273E99EA24CD} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> Brak pliku <==== UWAGA Task: {1E403F14-1F18-416C-BDB3-D3FCF0DC82DB} - System32\Tasks\PawełPaddyAdmiringV2 => Rundll32.exe QueenliestRecurrence.dll,main 7 1 <==== UWAGA Task: {1F39B388-7B7F-4A25-9284-E5A252152AAB} - System32\Tasks\DropboxUpdateTaskUserS-1-5-21-1527049857-3966740355-1081886749-1001UA => C:\Users\Paweł\AppData\Local\Dropbox\Update\DropboxUpdate.exe [2015-06-30] (Dropbox, Inc.) Task: {216DF7FA-9D53-410C-97BA-5BFAB6FB4F57} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> Brak pliku <==== UWAGA Task: {2E8540C2-FA82-46C8-A523-7036B7FEA6E2} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\WINDOWS\system32\MRT.exe [2016-03-13] (Microsoft Corporation) Task: {34DE1CC2-30B8-4D34-BAD0-44937929AB06} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2015-09-28] (Hewlett-Packard Company) Task: {3AB78FE4-9736-4D3F-9C9F-AD14E6EF0C1A} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_ERROR_HB => C:\WINDOWS\system32\MRT.exe [2016-03-13] (Microsoft Corporation) Task: {3B20ABCC-A039-4425-A59B-49E49B036D3E} - System32\Tasks\Intel Security DAT Reputation (AMCore) periodic endpoint safety pulse => C:\Program Files\Common Files\McAfee\AMContent\scanners\x86_64\datrep\54.0\mcdatrep.exe [2016-02-17] (McAfee, Inc.) Task: {40E1E19F-A0FF-46D3-BD01-C8EF8A951993} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-03-13] (Adobe Systems Incorporated) Task: {423FE242-78A7-42F8-9E7F-6A27DB679156} - System32\Tasks\YCMServiceAgent => C:\Program Files (x86)\CyberLink\YouCam\YouCamService.exe [2014-09-23] (CyberLink Corp.) Task: {4562F8C2-42CE-47C6-B16E-8EBDECC42982} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2015-12-13] (Adobe Systems Incorporated) Task: {4D1F3484-BEA8-4E46-B9B4-A7930F97D96B} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2016-02-04] (Microsoft Corporation) Task: {5511DC82-A6EE-409D-BFA4-D4445571278E} - System32\Tasks\DropboxUpdateTaskUserS-1-5-21-1527049857-3966740355-1081886749-1001Core => C:\Users\Paweł\AppData\Local\Dropbox\Update\DropboxUpdate.exe [2015-06-30] (Dropbox, Inc.) Task: {5D6E3D6C-9B20-4A10-87D3-60FA2B03690E} - System32\Tasks\Start OPBHOBroker => C:\Program Files\Hewlett-Packard\SimplePass\OPBHOBroker.exe [2015-07-02] (Hewlett-Packard) Task: {607DFA8B-A9B2-49EC-93B2-1D805187BBD1} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Active Health Launcher => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPActiveHealth\ActiveHealth.exe [2016-01-20] (Hewlett-Packard) Task: {6F9908AF-2211-4EC8-9F69-F33CCE08BB09} - System32\Tasks\HPCeeScheduleForPaweł => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe [2015-06-16] (Hewlett-Packard) Task: {840FB214-B101-43F3-8523-9D5095447604} - System32\Tasks\PriceFountainUpdateVer => C:\Users\Paweł\AppData\Roaming\PriceFountainUpdateVer\UpdateProc\UpdateTask.exe [2016-03-10] () <==== UWAGA Task: {8E785614-6758-4FAF-B0F0-7C5043C164F7} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> Brak pliku <==== UWAGA Task: {91030B59-D556-4E29-96E8-0214D6C55886} - System32\Tasks\McAfee\McAfee Auto Maintenance Task Agent Task: {94868A7A-5D2A-4E22-93FA-FDEBDB0AD766} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> Brak pliku <==== UWAGA Task: {975F8AE6-0989-4346-A8B6-D175AFB33F9F} - System32\Tasks\Intel Security DAT Reputation (AMCore) Post DAT update endpoint safety pulse => C:\Program Files\Common Files\McAfee\AMContent\scanners\x86_64\datrep\54.0\mcdatrep.exe [2016-02-17] (McAfee, Inc.) Task: {9D845D6E-FE5D-4E6B-9787-D203CBB2A8BE} - System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473 => C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe [2015-09-25] (Intel Corporation) Task: {AB60656C-EC98-41C0-99D0-AA1B062A3051} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> Brak pliku <==== UWAGA Task: {B6835CA6-8D4B-4674-8A78-CB089C416ABE} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> Brak pliku <==== UWAGA Task: {C1CF8710-A162-4F81-9925-B5217646FD07} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Report => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSFReport.exe [2016-02-18] (Hewlett-Packard) Task: {CC0EB8D5-705E-4315-9EB1-F47DFC4594DC} - System32\Tasks\Start OPBHOBrokerDesktop => C:\Program Files\Hewlett-Packard\SimplePass\OPBHOBrokerDsktop.exe [2015-07-02] (Hewlett-Packard) Task: {CE339E86-EF09-4B1C-A096-F37120195C4B} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2016-02-04] (Microsoft Corporation) Task: {CF7555BC-8CB0-4F5B-BE3D-AC04819AC48F} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> Brak pliku <==== UWAGA Task: {E128FA5B-91A7-4F40-A4EE-871357339B33} - System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473-Logon => C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe [2015-09-25] (Intel Corporation) Task: {E90A9C72-93CA-4A44-8089-AA9B1816B225} - System32\Tasks\McAfee\McAfee Idle Detection Task Task: {E98ECC78-0F74-4AE9-BD65-52CD54815F36} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-28] (Google Inc.) Task: {EDE76E34-53E0-44B3-982B-D8ABE8E2864C} - System32\Tasks\Start SimplePass => C:\Program Files\Hewlett-Packard\SimplePass\ClientCore.exe [2015-07-02] (Hewlett-Packard) Task: {F529CB91-AC37-41BD-BAF3-2B7298C8606F} - System32\Tasks\HPCustParticipation HP Deskjet 2510 series => C:\Program Files\HP\HP Deskjet 2510 series\Bin\HPCustPartic.exe [2012-10-02] (Hewlett-Packard Co.) Task: {F5DB1E82-A7FD-4E97-BFDC-A08BE25B63FC} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2015-09-28] (Hewlett-Packard Company) Task: {F99BA971-BFF0-4EA6-8687-9722F50DCFC5} - System32\Tasks\Adobe Flash Player PPAPI Notifier => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_21_0_0_182_pepper.exe [2016-03-13] (Adobe Systems Incorporated) Task: {F9E778F4-77E3-4C2E-99CA-FF3EE10C4E72} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> Brak pliku <==== UWAGA (Załączenie wejścia w fixlist spowoduje przesunięcie pliku zadania (.job). Plik uruchamiany docelowo przez zadanie nie zostanie przeniesiony.) Task: C:\WINDOWS\Tasks\Adobe Flash Player PPAPI Notifier.job => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_21_0_0_182_pepper.exe Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\WINDOWS\Tasks\DropboxUpdateTaskUserS-1-5-21-1527049857-3966740355-1081886749-1001Core.job => C:\Users\Paweł\AppData\Local\Dropbox\Update\DropboxUpdate.exe Task: C:\WINDOWS\Tasks\DropboxUpdateTaskUserS-1-5-21-1527049857-3966740355-1081886749-1001UA.job => C:\Users\Paweł\AppData\Local\Dropbox\Update\DropboxUpdate.exe Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\WINDOWS\Tasks\HPCeeScheduleForPaweł.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe Task: C:\WINDOWS\Tasks\PriceFountainUpdateVer.job => ==================== Skróty ============================= (Wybrane wejścia mogą zostać załączone w celu ich zresetowania lub usunięcia.) ShortcutWithArgument: C:\Users\Paweł\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Sparta\Sparta.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --app=hxxp://plarium.com/play/en/sparta/navy_pl?adCampaign=88078&clickID=0CyCzz0Ezz0FtCyC0EyBzzyByD0DzytA&publisherID=100 --app-window-size=1366,768 ShortcutWithArgument: C:\Users\Paweł\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Sparta.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --app=hxxp://plarium.com/play/en/sparta/navy_pl?adCampaign=88078&clickID=0CyCzz0Ezz0FtCyC0EyBzzyByD0DzytA&publisherID=100 --app-window-size=1366,768 ShortcutWithArgument: C:\Users\Paweł\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Opera.lnk -> C:\Program Files (x86)\Opera\launcher.exe (Opera Software) -> hxxp://www.yoursites123.com/?type=sc&ts=1457616819&z=eb3fdeb65f9f964376a5457gezew6m9q6gcq2b1oce&from=wpm06023&uid=HGSTXHTS541010A9E680_JD1008CC22NTXV22NTXVX ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> hxxp://www.yoursites123.com/?type=sc&ts=1457616819&z=eb3fdeb65f9f964376a5457gezew6m9q6gcq2b1oce&from=wpm06023&uid=HGSTXHTS541010A9E680_JD1008CC22NTXV22NTXVX ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk -> C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation) -> hxxp://www.yoursites123.com/?type=sc&ts=1457616819&z=eb3fdeb65f9f964376a5457gezew6m9q6gcq2b1oce&from=wpm06023&uid=HGSTXHTS541010A9E680_JD1008CC22NTXV22NTXVX ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Opera.lnk -> C:\Program Files (x86)\Opera\launcher.exe (Opera Software) -> hxxp://www.yoursites123.com/?type=sc&ts=1457616819&z=eb3fdeb65f9f964376a5457gezew6m9q6gcq2b1oce&from=wpm06023&uid=HGSTXHTS541010A9E680_JD1008CC22NTXV22NTXVX ShortcutWithArgument: C:\Users\Public\Desktop\Mozilla Firefox.lnk -> C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation) -> hxxp://www.yoursites123.com/?type=sc&ts=1457616819&z=eb3fdeb65f9f964376a5457gezew6m9q6gcq2b1oce&from=wpm06023&uid=HGSTXHTS541010A9E680_JD1008CC22NTXV22NTXVX ==================== Załadowane moduły (filtrowane) ============== 2015-10-30 08:18 - 2015-10-30 08:18 - 00185856 _____ () C:\WINDOWS\SYSTEM32\ism32k.dll 2015-12-12 04:08 - 2015-07-23 02:10 - 00116552 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll 2015-10-17 22:13 - 2012-09-18 14:27 - 00192512 _____ () C:\WINDOWS\System32\zlhp1020.dll 2015-10-17 22:13 - 2012-09-18 14:27 - 00065024 _____ () C:\WINDOWS\system32\spool\PRTPROCS\x64\pphp1020.dll 2015-03-03 16:39 - 2014-10-11 10:24 - 00098816 _____ () C:\Program Files (x86)\REALTEK\Realtek Bluetooth\BTDevMgr.exe 2013-04-10 06:58 - 2013-04-10 06:58 - 00351824 _____ () C:\ProgramData\DatacardService\HWDeviceService64.exe 2015-10-21 15:55 - 2016-02-04 05:51 - 00173256 _____ () C:\Program Files\Common Files\Microsoft Shared\ClickToRun\ApiClient.dll 2015-12-21 17:57 - 2016-01-13 16:03 - 00076888 _____ () C:\WINDOWS\SysWOW64\PnkBstrA.exe 2015-05-06 11:42 - 2005-04-22 05:36 - 00143360 ____R () C:\WINDOWS\system32\BrSNMP64.dll 2016-02-13 21:02 - 2013-05-21 08:28 - 00656976 _____ () C:\ProgramData\Mobile Partner\OnlineUpdate\ouc.exe 2016-03-02 15:45 - 2016-02-23 12:27 - 02654872 _____ () C:\WINDOWS\system32\CoreUIComponents.dll 2016-03-02 15:45 - 2016-02-23 12:27 - 02654872 _____ () C:\WINDOWS\System32\CoreUIComponents.dll 2016-01-21 19:22 - 2016-01-21 19:23 - 00144384 _____ () C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkypeHost.exe 2015-12-18 10:49 - 2015-12-07 05:14 - 00093696 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\Windows.UI.Shell.SharedUtilities.dll 2016-03-02 15:45 - 2016-02-23 09:36 - 00472064 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\QuickActions.dll 2016-01-13 14:20 - 2016-01-05 02:29 - 07992832 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll 2016-01-13 14:20 - 2016-01-05 02:23 - 00591360 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll 2016-01-28 19:32 - 2016-01-16 06:10 - 02483200 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll 2016-01-28 19:32 - 2016-01-16 06:13 - 04089856 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll 2016-03-10 14:36 - 2016-02-15 03:21 - 00582144 _____ () C:\Program Files (x86)\qksee\curlpp.dll 2016-03-10 14:36 - 2016-02-15 03:21 - 00065752 _____ () C:\Program Files (x86)\qksee\zlib1.dll 2016-02-13 21:02 - 2009-01-10 19:32 - 00011362 _____ () C:\ProgramData\Mobile Partner\OnlineUpdate\mingwm10.dll 2016-02-13 21:02 - 2009-06-23 03:42 - 00043008 _____ () C:\ProgramData\Mobile Partner\OnlineUpdate\libgcc_s_dw2-1.dll 2016-02-13 21:02 - 2012-10-31 10:11 - 02417152 _____ () C:\ProgramData\Mobile Partner\OnlineUpdate\QtCore4.dll 2016-02-13 21:02 - 2012-10-31 10:14 - 01148416 _____ () C:\ProgramData\Mobile Partner\OnlineUpdate\QtNetwork4.dll 2016-02-13 21:02 - 2013-05-21 08:20 - 00839680 _____ () C:\ProgramData\Mobile Partner\OnlineUpdate\QueryStrategy.dll 2016-02-13 21:02 - 2012-10-31 10:11 - 00398336 _____ () C:\ProgramData\Mobile Partner\OnlineUpdate\QtXml4.dll 2016-01-21 19:22 - 2016-01-21 19:23 - 00141312 _____ () C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkypeBackgroundTasks.dll 2016-01-21 19:22 - 2016-01-21 19:23 - 22330368 _____ () C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkyWrap.dll 2015-05-04 01:23 - 2016-03-03 08:54 - 47503472 _____ () C:\Users\Paweł\AppData\Roaming\Spotify\libcef.dll 2015-05-06 11:41 - 2009-02-27 15:38 - 00139264 ____R () C:\Program Files (x86)\Brother\BrUtilities\BrLogAPI.dll 2015-05-04 01:23 - 2016-03-03 08:54 - 01584240 _____ () C:\Users\Paweł\AppData\Roaming\Spotify\libglesv2.dll 2015-05-04 01:23 - 2016-03-03 08:54 - 00082032 _____ () C:\Users\Paweł\AppData\Roaming\Spotify\libegl.dll 2014-09-03 11:03 - 2014-09-03 11:03 - 01241560 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll 2016-02-23 11:32 - 2016-02-04 14:24 - 01073856 _____ () C:\Program Files (x86)\Microsoft Office\Root\Office16\ADDINS\UmOutlookAddin.dll 2016-02-23 11:33 - 2016-02-23 11:34 - 00464584 _____ () C:\Program Files (x86)\Microsoft Office\root\Office16\msfad.dll 2016-03-10 14:31 - 2016-03-10 14:31 - 00356864 _____ () C:\Users\Paweł\AppData\Local\PaddyAdmiring\QueenliestRecurrence.dll 2016-03-03 17:40 - 2016-03-03 17:39 - 62332456 _____ () C:\Program Files (x86)\Opera\35.0.2066.92\opera.dll 2016-03-03 17:40 - 2016-03-03 17:39 - 02074664 _____ () C:\Program Files (x86)\Opera\35.0.2066.92\libglesv2.dll 2016-03-03 17:40 - 2016-03-03 17:39 - 00081960 _____ () C:\Program Files (x86)\Opera\35.0.2066.92\libegl.dll ==================== Alternate Data Streams (filtrowane) ========= (Załączenie wejścia w fixlist spowoduje usunięcie strumienia ADS.) AlternateDataStreams: C:\ProgramData\Temp:CB0AACC9 [144] ==================== Tryb awaryjny (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Wartość "AlternateShell" zostanie przywrócona.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS => ""="" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcpltsvc => ""="" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mcapexe => ""="" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\McMPFSvc => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\McNaiAnn => ""="" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MCODS => ""="" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mcpltsvc => ""="" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfeaack => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfeaack.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfeavfk => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfeavfk.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfefire => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfefirek => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfefirek.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfehidk => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfehidk.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfemms => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfetdi2k => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfetdi2k.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfevtp => ""="Service" ==================== EXE - Powiązania (filtrowane) =============== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci.) ==================== Internet Explorer - Witryny zaufane i z ograniczeniami =============== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru.) ==================== Hosts - zawartość: =============================== (Użycie dyrektywy Hosts: w fixlist spowoduje reset pliku Hosts.) 2013-08-22 14:25 - 2016-03-10 15:37 - 00000824 ____A C:\WINDOWS\system32\Drivers\etc\hosts ==================== Inne obszary ============================ (Obecnie brak automatycznej naprawy dla tej sekcji.) HKU\S-1-5-21-1527049857-3966740355-1081886749-1001\Control Panel\Desktop\\Wallpaper -> C:\Windows\web\wallpaper\Hewlett-Packard Backgrounds\backgroundDefault.jpg DNS Servers: 192.168.1.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Zapora systemu Windows [funkcja włączona] ==================== MSCONFIG/TASK MANAGER - Wyłączone elementy == (Obecnie brak automatycznej naprawy dla tej sekcji.) HKLM\...\StartupApproved\Run32: => "BrStsMon00" HKU\S-1-5-21-1527049857-3966740355-1081886749-1001\...\StartupApproved\StartupFolder: => "Dropbox.lnk" HKU\S-1-5-21-1527049857-3966740355-1081886749-1001\...\StartupApproved\Run: => "Dropbox Update" HKU\S-1-5-21-1527049857-3966740355-1081886749-1001\...\StartupApproved\Run: => "Steam" HKU\S-1-5-21-1527049857-3966740355-1081886749-1001\...\StartupApproved\Run: => "ALLUpdate" HKU\S-1-5-21-1527049857-3966740355-1081886749-1001\...\StartupApproved\Run: => "Napisy24Update" ==================== Reguły Zapory systemu Windows (filtrowane) =============== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139 FirewallRules: [{2C9902CC-98A5-4094-A6B1-E64291C94094}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Railroad Tycoon 3\RT3.exe FirewallRules: [{B9CE7FDC-12BD-4C52-B6AF-93C70CEFEC80}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Railroad Tycoon 3\RT3.exe FirewallRules: [{9D573B63-BBE2-41DF-8B41-65C101C75E9C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Sid Meier's Railroads\RailRoads.exe FirewallRules: [{C407318B-8EDF-4E9C-B964-6407EE5D1C33}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Sid Meier's Railroads\RailRoads.exe FirewallRules: [{43C7071D-5B06-4663-997F-95645BF9C400}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\outlook.exe FirewallRules: [{102E0AE6-CA58-4C23-ACFB-8BE67E6B49B0}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Football Manager 2016\fm.exe FirewallRules: [{8C267D46-1AAF-4C07-9470-F4C271CF5028}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Football Manager 2016\fm.exe FirewallRules: [{BBF8D425-B6C3-4BB4-81CD-FC6F3EB52AA1}] => (Allow) C:\Program Files (x86)\Firaxis Games\Sid Meier's Civilization IV Complete\Warlords\Civ4Warlords.exe FirewallRules: [{E926697B-8622-4691-90FB-7500B3A69C43}] => (Allow) C:\Program Files (x86)\Firaxis Games\Sid Meier's Civilization IV Complete\Warlords\Civ4Warlords.exe FirewallRules: [{7B31A4AF-1ADB-4E8F-A468-7C848FA4C00C}] => (Allow) C:\Program Files (x86)\Firaxis Games\Sid Meier's Civilization IV Complete\Beyond the Sword\Civ4BeyondSword.exe FirewallRules: [{D9EA49FE-B4E0-45D2-AF7B-1474187F4B00}] => (Allow) C:\Program Files (x86)\Firaxis Games\Sid Meier's Civilization IV Complete\Beyond the Sword\Civ4BeyondSword.exe FirewallRules: [{A5C33B6A-6356-46EF-827D-B1540F2A048D}] => (Allow) C:\Program Files (x86)\Firaxis Games\Sid Meier's Civilization IV Complete\Civilization4.exe FirewallRules: [{D741A420-196C-4580-A6CC-9F2081ADCFA7}] => (Allow) C:\Program Files (x86)\Firaxis Games\Sid Meier's Civilization IV Complete\Civilization4.exe FirewallRules: [{19679A5F-2DB9-48EA-85B0-2594E540EB87}] => (Allow) C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPDeviceDetection3.exe FirewallRules: [{C4DB962C-DADF-4BA4-9F2F-9450D1C233CF}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe FirewallRules: [{4B8966BD-0B96-43C4-8E31-58ADA201270C}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{B679A704-0E65-43ED-9561-5B4FCA920B77}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [UDP Query User{D70F290C-705B-446D-9A33-F90922EC1132}C:\users\paweł\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\paweł\appdata\roaming\spotify\spotify.exe FirewallRules: [TCP Query User{B87A1AC5-7A67-4951-9BD0-31D9EB90B29A}C:\users\paweł\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\paweł\appdata\roaming\spotify\spotify.exe FirewallRules: [{788C1E2C-82EA-4BFE-9CF8-24E31AFE2D55}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe FirewallRules: [{88F135CC-A3BD-44D7-B768-A8019CC568FA}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe FirewallRules: [{B6D5232C-9C96-469C-96CE-B2343F3C9A26}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe FirewallRules: [{AB62EA30-36F7-4A2D-B871-CD8B7302C931}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe FirewallRules: [{FBAA5A4A-4DBF-40ED-B946-1DC39B065542}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{024A1A8F-4152-4A7C-B98E-886F5A895AA6}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{54EC0DB2-ACE2-4CF6-95A5-AF86397D4636}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{644A7115-E989-40CC-810A-A3297CA045AF}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{F2E24430-9D0E-47E7-AC75-FCF3C5F6C1A4}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{5EA91672-9ED9-44D6-831F-248BA8D283AE}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{6F62D1F5-390D-4B1C-8B70-9677EEBBDDBD}] => (Allow) C:\Program Files\CyberLink\PowerDirector12\PDR10.EXE FirewallRules: [{2DAB346C-ED78-4D2D-960B-D3FE01DA4BF0}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{E6657736-EC2B-49D8-AAA7-E04AD98B5580}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{578A645D-8CFF-415C-9E37-86F3E3AF4701}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe FirewallRules: [{74D1ED7A-1FD5-4F64-9BA2-7886AA9D9372}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe FirewallRules: [{7ABA36CE-08EB-4CE9-9580-09913BE67EAF}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Football Manager 2015\fm.exe FirewallRules: [{A5031924-0355-460A-A585-A110FAAA7369}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Football Manager 2015\fm.exe FirewallRules: [{D37F7F71-974C-45E9-B9B4-43C8331B8706}] => (Allow) C:\Program Files\Microsoft Office 15\root\Office15\outlook.exe FirewallRules: [{14948D4B-9F11-4A0A-B364-C265B4A43831}] => (Allow) C:\Users\Paweł\AppData\Local\Microsoft\SkyDrive\SkyDrive.exe FirewallRules: [{F586B032-8B09-43E8-8695-6CDE6AAE372B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Call of Duty Black Ops\BlackOps.exe FirewallRules: [{5BFD9F06-0E0F-4EAB-9A95-12EC47227D4D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Call of Duty Black Ops\BlackOps.exe FirewallRules: [{FC176E89-3FC7-41B9-957F-8FDFE6405CAF}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Empire Total War\Empire.exe FirewallRules: [{DEDB7C2F-A13C-47D6-A029-19EFE6A2F0A2}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Empire Total War\Empire.exe FirewallRules: [{E608CE45-64AF-4183-9636-9DFF91C5AACD}] => (Allow) C:\Program Files (x86)\Origin Games\SimCity\SimCity\SimCity.exe FirewallRules: [{0B3FBF70-1A4B-4FB6-9C4A-4343D46CFD4E}] => (Allow) C:\Program Files (x86)\Origin Games\SimCity\SimCity\SimCity.exe FirewallRules: [{F9DFD68D-AB61-4DAA-A2CC-1B5C40FE6CFF}] => (Allow) C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe FirewallRules: [{85A11151-A4D3-4500-A308-0B141EA2FC74}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD12\PowerDVD12.exe FirewallRules: [{A6070C09-0B8C-4172-B25B-9D3AC546AAC1}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMR\PowerDVD12DMREngine.exe FirewallRules: [{A9EBBCBE-9B7D-4A4C-B016-E066D4FAD853}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMS\CLMSServerPDVD12.exe FirewallRules: [{E9B27E11-7B49-4E8B-B809-4A4ABB7C1547}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD12\PowerDVD12Agent.exe FirewallRules: [{83129BF7-19F7-4575-9811-7F575E6EAFD6}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD12\PowerDVD12ML.exe FirewallRules: [{C3C3414C-FB57-4AE9-A72B-CBF259D7F52E}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD12\Movie\PowerDVD.exe FirewallRules: [{4AAEF02A-E3DC-4900-B255-A223A2A9646D}] => (Allow) C:\Users\Paweł\AppData\Roaming\Dropbox\bin\Dropbox.exe FirewallRules: [{8FC6614A-0CC9-4553-85AD-78CB4DCE1470}] => (Allow) C:\Users\Paweł\AppData\Roaming\Dropbox\bin\Dropbox.exe FirewallRules: [{50771974-3BA7-431D-A54A-CF57FA03B763}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\RailWorks\RailWorks.exe FirewallRules: [{5E570ABF-9C38-4627-8962-1CDDD5F1BCB6}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\RailWorks\RailWorks.exe FirewallRules: [{4F8A9521-67FD-46E7-99B3-3A4757647636}] => (Allow) C:\Program Files (x86)\Hewlett-Packard\HP System Event\HPSOCKSVC.exe FirewallRules: [{073709F8-14EA-4E2D-B49C-87A8A1E378D4}] => (Allow) C:\Program Files (x86)\Brother\Brmfl14d\FAXRX.EXE FirewallRules: [{09A23098-90BC-4D6D-BAC9-B2EC5B15F192}] => (Allow) LPort=54925 FirewallRules: [{ED9D769B-26E0-4009-8C36-AF936A62D56A}] => (Allow) C:\Program Files\HP\HP Deskjet 2510 series\Bin\USBSetup.exe FirewallRules: [{C3DE5F2D-2963-43C9-AA7C-8C49673615AD}] => (Allow) C:\Program Files (x86)\Origin Games\Dragon Age II\bin_ship\DragonAge2.exe FirewallRules: [{237842E7-CC7A-4A37-813F-36829F1ED2C3}] => (Allow) C:\Program Files (x86)\Origin Games\Dragon Age II\bin_ship\DragonAge2.exe FirewallRules: [{106DE84A-4D7E-4995-959C-8E0E4AD0E189}] => (Allow) C:\Program Files (x86)\Origin Games\Dragon Age\bin_ship\daorigins.exe FirewallRules: [{E5FB7DAD-8B90-4489-9E20-E1B1A831F367}] => (Allow) C:\Program Files (x86)\Origin Games\Dragon Age\bin_ship\daorigins.exe FirewallRules: [{A2D27E28-9C19-4FAE-AA7E-612FF7C3188B}] => (Allow) C:\Program Files (x86)\Origin Games\Battlefield 3\bf3.exe FirewallRules: [{537405F7-7ACF-4181-A7D6-70FEE7D0C0D7}] => (Allow) C:\Program Files (x86)\Origin Games\Battlefield 3\bf3.exe FirewallRules: [{AC654ED4-24F2-414A-AA2A-B5908301D5C9}] => (Allow) C:\Program Files (x86)\Origin Games\Need for Speed(TM) Most Wanted\NFS13.exe FirewallRules: [{65A5D56A-8F76-4BBB-A7A9-8047FD57DB27}] => (Allow) C:\Program Files (x86)\Origin Games\Need for Speed(TM) Most Wanted\NFS13.exe FirewallRules: [{9C66A46F-3942-4966-87BD-A8E35A3C3573}] => (Allow) C:\Program Files (x86)\Origin Games\Need for Speed The Run\Need For Speed The Run.exe FirewallRules: [{B71EF8E1-1673-4629-ABAB-3E1B61853B0F}] => (Allow) C:\Program Files (x86)\Origin Games\Need for Speed The Run\Need For Speed The Run.exe FirewallRules: [{90CA1E02-5E64-4220-A05F-F3B362999559}] => (Allow) C:\Program Files (x86)\Origin Games\Dragon Age Inquisition\DragonAgeInquisition.exe FirewallRules: [{38F1E860-7672-469C-8070-23C4D793D29A}] => (Allow) C:\Program Files (x86)\Origin Games\Dragon Age Inquisition\DragonAgeInquisition.exe FirewallRules: [{C997C26C-787A-4F16-B437-38E7015137A8}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe FirewallRules: [{78B03C83-1962-45BC-9E7B-56A32EFF77AA}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe FirewallRules: [{8DA3085A-CD27-41E9-855D-32CFB168DADC}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe FirewallRules: [{CB27E211-A2FC-4234-A6B9-4A6ECDFC3C85}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe FirewallRules: [{51D570F6-399C-4DF5-BF65-C650F072CD46}] => (Allow) C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\SonarHost.exe FirewallRules: [{8156ACE0-A8D0-490B-8FCF-0AD1174752D3}] => (Allow) C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\SonarHost.exe FirewallRules: [{2A32BDF4-AC45-4EF2-93C0-17676B0B6FDC}] => (Allow) C:\Program Files (x86)\Origin Games\Battlefield 4\BF4WebHelper.exe FirewallRules: [{348EF2AF-900D-45A0-8023-4A03A4E76E6C}] => (Allow) C:\Program Files (x86)\Origin Games\Battlefield 4\BF4WebHelper.exe FirewallRules: [{FE0824D4-873D-49C2-ADBC-F7EDD4E62593}] => (Allow) C:\Program Files (x86)\Origin Games\Battlefield 4\BF4X86WebHelper.exe FirewallRules: [{8743BE24-4469-4620-8010-A28F39A6A20A}] => (Allow) C:\Program Files (x86)\Origin Games\Battlefield 4\BF4X86WebHelper.exe FirewallRules: [{34CEB157-BDB7-47C5-8B2B-3770397458F2}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe FirewallRules: [{88571212-8E53-41E5-9BC3-E584584208CC}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Dishonored RHCP\Binaries\Win32\Dishonored.exe FirewallRules: [{87C77C9D-BBEB-4EB4-BBAE-CE449CB0FAF4}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Dishonored RHCP\Binaries\Win32\Dishonored.exe ==================== Punkty Przywracania systemu ========================= 20-02-2016 10:59:27 Zaplanowany punkt kontrolny 27-02-2016 14:38:11 Zaplanowany punkt kontrolny 02-03-2016 16:58:21 Windows Update 02-03-2016 16:59:53 Windows Update 03-03-2016 18:26:49 McAfee Vulnerability Scanner 10-03-2016 14:50:11 PC Decrapifier Restore Point ==================== Wadliwe urządzenia w Menedżerze urządzeń ============= ==================== Błędy w Dzienniku zdarzeń: ========================= Dziennik Aplikacja: ================== Error: (03/14/2016 11:11:06 AM) (Source: MsiInstaller) (EventID: 1002) (User: SKORPION) Description: Nieoczekiwana lub brakująca wartość (nazwa: „PackageName”, wartość: „”) w kluczu „HKLM\Software\Classes\Installer\Products\D139E7FE48CDB174D86B8A3385904547\SourceList” Error: (03/14/2016 11:02:56 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: igfxHK.exe, wersja: 6.15.10.4331, sygnatura czasowa: 0x564cc83e Nazwa modułu powodującego błąd: igfxHK.exe, wersja: 6.15.10.4331, sygnatura czasowa: 0x564cc83e Kod wyjątku: 0xc0000409 Przesunięcie błędu: 0x0000000000015953 Identyfikator procesu powodującego błąd: 0x1820 Godzina uruchomienia aplikacji powodującej błąd: 0xigfxHK.exe0 Ścieżka aplikacji powodującej błąd: igfxHK.exe1 Ścieżka modułu powodującego błąd: igfxHK.exe2 Identyfikator raportu: igfxHK.exe3 Pełna nazwa pakietu powodującego błąd: igfxHK.exe4 Identyfikator aplikacji względem pakietu powodującego błąd: igfxHK.exe5 Error: (03/14/2016 10:15:59 AM) (Source: WdMan) (EventID: 102) (User: ) Description: WdMan Error: (03/14/2016 10:05:03 AM) (Source: Perflib) (EventID: 1008) (User: ) Description: BITSC:\Windows\System32\bitsperf.dll8 Error: (03/14/2016 09:38:35 AM) (Source: Office 2016 Licensing Service) (EventID: 0) (User: ) Description: Subscription licensing service failed: -1073418220 Error: (03/13/2016 05:21:51 PM) (Source: MsiInstaller) (EventID: 1002) (User: SKORPION) Description: Nieoczekiwana lub brakująca wartość (nazwa: „PackageName”, wartość: „”) w kluczu „HKLM\Software\Classes\Installer\Products\D139E7FE48CDB174D86B8A3385904547\SourceList” Error: (03/13/2016 05:18:05 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: SKORPION) Description: Aktywacja aplikacji Microsoft.Windows.Photos_8wekyb3d8bbwe!App nie powiodła się. Błąd: -2147023170. Więcej informacji można znaleźć w dzienniku Microsoft-Windows-TWinUI/Działa. Error: (03/13/2016 12:50:08 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: igfxHK.exe, wersja: 6.15.10.4331, sygnatura czasowa: 0x564cc83e Nazwa modułu powodującego błąd: igfxHK.exe, wersja: 6.15.10.4331, sygnatura czasowa: 0x564cc83e Kod wyjątku: 0xc0000409 Przesunięcie błędu: 0x0000000000015953 Identyfikator procesu powodującego błąd: 0x1e30 Godzina uruchomienia aplikacji powodującej błąd: 0xigfxHK.exe0 Ścieżka aplikacji powodującej błąd: igfxHK.exe1 Ścieżka modułu powodującego błąd: igfxHK.exe2 Identyfikator raportu: igfxHK.exe3 Pełna nazwa pakietu powodującego błąd: igfxHK.exe4 Identyfikator aplikacji względem pakietu powodującego błąd: igfxHK.exe5 Error: (03/13/2016 01:52:47 AM) (Source: Perflib) (EventID: 1008) (User: ) Description: BITSC:\Windows\System32\bitsperf.dll8 Error: (03/13/2016 01:30:07 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: MRT.exe, wersja: 5.34.12400.0, sygnatura czasowa: 0x56cebba9 Nazwa modułu powodującego błąd: webio.dll, wersja: 10.0.10586.0, sygnatura czasowa: 0x5632d55a Kod wyjątku: 0xc0000409 Przesunięcie błędu: 0x000000000002ebbd Identyfikator procesu powodującego błąd: 0x1960 Godzina uruchomienia aplikacji powodującej błąd: 0xMRT.exe0 Ścieżka aplikacji powodującej błąd: MRT.exe1 Ścieżka modułu powodującego błąd: MRT.exe2 Identyfikator raportu: MRT.exe3 Pełna nazwa pakietu powodującego błąd: MRT.exe4 Identyfikator aplikacji względem pakietu powodującego błąd: MRT.exe5 Dziennik System: ============= Error: (03/14/2016 11:08:10 AM) (Source: DCOM) (EventID: 10016) (User: SKORPION) Description: domyślne ustawienia komputeraLokalnyAktywacja{C2F03A33-21F5-47FA-B4BB-156362A2F239}{316CDED5-E4AE-4B15-9113-7055D84DCC97}SkorpionPawełS-1-5-21-1527049857-3966740355-1081886749-1001LocalHost (użycie LRPC)Microsoft.Windows.Cortana_1.6.1.52_neutral_neutral_cw5n1h2txyewyS-1-15-2-1861897761-1695161497-2927542615-642690995-327840285-2659745135-2630312742 Error: (03/14/2016 11:08:10 AM) (Source: DCOM) (EventID: 10016) (User: SKORPION) Description: domyślne ustawienia komputeraLokalnyAktywacja{C2F03A33-21F5-47FA-B4BB-156362A2F239}{316CDED5-E4AE-4B15-9113-7055D84DCC97}SkorpionPawełS-1-5-21-1527049857-3966740355-1081886749-1001LocalHost (użycie LRPC)Microsoft.Windows.Cortana_1.6.1.52_neutral_neutral_cw5n1h2txyewyS-1-15-2-1861897761-1695161497-2927542615-642690995-327840285-2659745135-2630312742 Error: (03/14/2016 11:08:10 AM) (Source: DCOM) (EventID: 10016) (User: SKORPION) Description: domyślne ustawienia komputeraLokalnyAktywacja{C2F03A33-21F5-47FA-B4BB-156362A2F239}{316CDED5-E4AE-4B15-9113-7055D84DCC97}SkorpionPawełS-1-5-21-1527049857-3966740355-1081886749-1001LocalHost (użycie LRPC)Microsoft.Windows.Cortana_1.6.1.52_neutral_neutral_cw5n1h2txyewyS-1-15-2-1861897761-1695161497-2927542615-642690995-327840285-2659745135-2630312742 Error: (03/14/2016 11:08:10 AM) (Source: DCOM) (EventID: 10016) (User: SKORPION) Description: domyślne ustawienia komputeraLokalnyAktywacja{C2F03A33-21F5-47FA-B4BB-156362A2F239}{316CDED5-E4AE-4B15-9113-7055D84DCC97}SkorpionPawełS-1-5-21-1527049857-3966740355-1081886749-1001LocalHost (użycie LRPC)Microsoft.Windows.Cortana_1.6.1.52_neutral_neutral_cw5n1h2txyewyS-1-15-2-1861897761-1695161497-2927542615-642690995-327840285-2659745135-2630312742 Error: (03/14/2016 11:08:10 AM) (Source: DCOM) (EventID: 10016) (User: SKORPION) Description: domyślne ustawienia komputeraLokalnyAktywacja{C2F03A33-21F5-47FA-B4BB-156362A2F239}{316CDED5-E4AE-4B15-9113-7055D84DCC97}SkorpionPawełS-1-5-21-1527049857-3966740355-1081886749-1001LocalHost (użycie LRPC)Microsoft.Windows.Cortana_1.6.1.52_neutral_neutral_cw5n1h2txyewyS-1-15-2-1861897761-1695161497-2927542615-642690995-327840285-2659745135-2630312742 Error: (03/14/2016 11:08:10 AM) (Source: DCOM) (EventID: 10016) (User: SKORPION) Description: domyślne ustawienia komputeraLokalnyAktywacja{C2F03A33-21F5-47FA-B4BB-156362A2F239}{316CDED5-E4AE-4B15-9113-7055D84DCC97}SkorpionPawełS-1-5-21-1527049857-3966740355-1081886749-1001LocalHost (użycie LRPC)Microsoft.Windows.Cortana_1.6.1.52_neutral_neutral_cw5n1h2txyewyS-1-15-2-1861897761-1695161497-2927542615-642690995-327840285-2659745135-2630312742 Error: (03/14/2016 11:08:10 AM) (Source: DCOM) (EventID: 10016) (User: SKORPION) Description: domyślne ustawienia komputeraLokalnyAktywacja{C2F03A33-21F5-47FA-B4BB-156362A2F239}{316CDED5-E4AE-4B15-9113-7055D84DCC97}SkorpionPawełS-1-5-21-1527049857-3966740355-1081886749-1001LocalHost (użycie LRPC)Microsoft.Windows.Cortana_1.6.1.52_neutral_neutral_cw5n1h2txyewyS-1-15-2-1861897761-1695161497-2927542615-642690995-327840285-2659745135-2630312742 Error: (03/14/2016 11:08:10 AM) (Source: DCOM) (EventID: 10016) (User: SKORPION) Description: domyślne ustawienia komputeraLokalnyAktywacja{C2F03A33-21F5-47FA-B4BB-156362A2F239}{316CDED5-E4AE-4B15-9113-7055D84DCC97}SkorpionPawełS-1-5-21-1527049857-3966740355-1081886749-1001LocalHost (użycie LRPC)Microsoft.Windows.Cortana_1.6.1.52_neutral_neutral_cw5n1h2txyewyS-1-15-2-1861897761-1695161497-2927542615-642690995-327840285-2659745135-2630312742 Error: (03/14/2016 11:04:34 AM) (Source: DCOM) (EventID: 10010) (User: ZARZĄDZANIE NT) Description: {784E29F4-5EBE-4279-9948-1E8FE941646D} Error: (03/14/2016 11:02:34 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi Usługa buforowania czcionek platformy Windows Presentation Foundation, wersja 3.0.0.0 z powodu następującego błędu: %%1053 CodeIntegrity: =================================== Date: 2016-03-11 16:41:01.863 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system. Date: 2016-03-11 14:43:16.035 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system. Date: 2016-03-03 08:51:51.491 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system. Date: 2016-03-02 17:05:19.398 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system. Date: 2016-02-25 13:43:24.137 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system. Date: 2016-02-23 11:38:31.563 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system. Date: 2016-02-13 00:45:09.821 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system. Date: 2016-02-10 03:06:25.126 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system. Date: 2016-02-01 10:14:10.767 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system. Date: 2016-01-30 18:01:00.014 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system. ==================== Statystyki pamięci =========================== Procesor: Intel(R) Core(TM) i5-5200U CPU @ 2.20GHz Procent pamięci w użyciu: 43% Całkowita pamięć fizyczna: 8107.39 MB Dostępna pamięć fizyczna: 4568.68 MB Całkowita pamięć wirtualna: 9387.39 MB Dostępna pamięć wirtualna: 5441.67 MB ==================== Dyski ================================ Drive c: (Windows) (Fixed) (Total:908.68 GB) (Free:508.64 GB) NTFS Drive d: (RECOVERY) (Fixed) (Total:20.97 GB) (Free:2.36 GB) NTFS ==>[system z komponentami startowymi (pozyskano odczytując dysk)] ==================== MBR & Tablica partycji ================== ======================================================== Disk: 0 (Size: 931.5 GB) (Disk ID: 52D8E1B3) Partition: GPT. ==================== Koniec Addition.txt ============================