Rezultaty skanu uzupełniającego Farbar Recovery Scan Tool (x86) Wersja:05-03-2016 Uruchomiony przez daria (2016-04-08 10:04:22) Uruchomiony z C:\Users\daria\Downloads Microsoft® Windows Vista™ Home Premium Service Pack 2 (X86) (2012-10-28 18:21:51) Tryb startu: Normal ========================================================== ==================== Konta użytkowników: ============================= Administrator (S-1-5-21-1611919641-228698746-1015890716-500 - Administrator - Disabled) daria (S-1-5-21-1611919641-228698746-1015890716-1000 - Administrator - Enabled) => C:\Users\daria Gość (S-1-5-21-1611919641-228698746-1015890716-501 - Limited - Disabled) ==================== Centrum zabezpieczeń ======================== (Załączenie wejścia w fixlist spowoduje jego usunięcie.) AV: Bitdefender Antivirus (Disabled - Up to date) {9A0813D8-CED6-F86B-072E-28D2AF25A83D} AS: Bitdefender Antispyware (Disabled - Up to date) {2169F23C-E8EC-F7E5-3D9E-13A0D4A2E280} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} FW: Bitdefender Firewall (Disabled) {A23392FD-84B9-F933-2C71-81E751F6EF46} ==================== Zainstalowane programy ====================== (W fixlist dozwolone tylko załączanie programów adware z flagą "Hidden" w celu ich uwidocznienia. Programy adware powinny zostać w poprawny sposób odinstalowane.) µTorrent (HKU\S-1-5-21-1611919641-228698746-1015890716-1000\...\uTorrent) (Version: 3.4.2.37754 - BitTorrent Inc.) Acer Crystal Eye webcam Ver:1.1.63.707 (HKLM\...\{D0ACE89D-EC7F-470F-80BE-4C98ED366B32}) (Version: 1.1.63.707 - Chicony Electronics Co.,Ltd.) Acer ePower Management (HKLM\...\{3DB0448D-AD82-4923-B305-D001E521A964}) (Version: 4.00.3001 - Acer Incorporated) Acer eRecovery Management (HKLM\...\{7F811A54-5A09-4579-90E1-C93498E230D9}) (Version: 4.00.3001 - Acer Incorporated) Acer GridVista (HKLM\...\GridVista) (Version: 2.72.317 - ) Acer Mobility Center Plug-In (HKLM\...\{11316260-6666-467B-AC34-183FCB5D4335}) (Version: 3.0.3000 - Acer Inc.) Acer Product Registration (HKLM\...\{DA20E1A8-07CB-4EE7-9B72-A7E28C953F0E}) (Version: 3.0.0.10 - Acer Incorporated) Adobe Flash Player 21 ActiveX (HKLM\...\Adobe Flash Player ActiveX) (Version: 21.0.0.213 - Adobe Systems Incorporated) Adobe Flash Player 21 NPAPI (HKLM\...\Adobe Flash Player NPAPI) (Version: 21.0.0.197 - Adobe Systems Incorporated) Adobe Reader X (10.1.16) (HKLM\...\{AC76BA86-7AD7-1033-7B44-AA1000000001}) (Version: 10.1.16 - Adobe Systems Incorporated) Aktualizacja produktu Microsoft Office Excel 2007 Help (KB963678) (HKLM\...\{90120000-0016-0415-0000-0000000FF1CE}_HOMESTUDENTR_{04E205D6-88B1-4652-B162-42DF2C3B1228}) (Version: - Microsoft) Aktualizacja produktu Microsoft Office Powerpoint 2007 Help (KB963669) (HKLM\...\{90120000-0018-0415-0000-0000000FF1CE}_HOMESTUDENTR_{442ECBCF-94A7-48CC-8CD9-D31FFFD5FA86}) (Version: - Microsoft) Aktualizacja produktu Microsoft Office Word 2007 Help (KB963665) (HKLM\...\{90120000-001B-0415-0000-0000000FF1CE}_HOMESTUDENTR_{128A36ED-21BE-4547-9FFE-5B85AEC735DD}) (Version: - Microsoft) Aktualizacje NVIDIA 2.5.15.54 (Version: 2.5.15.54 - NVIDIA Corporation) Hidden ALLPlayer V6.X (HKLM\...\ALLPlayer_is1) (Version: - ALLPlayer Group, Ltd.) Apple Mobile Device Support (HKLM\...\{A75CA58D-DB9C-4D14-9428-E0C7B0F623DC}) (Version: 9.0.0.26 - Apple Inc.) Apple Software Update (HKLM\...\{FFD1F7F1-1AC9-4BC4-A908-0686D635ABAF}) (Version: 2.1.4.131 - Apple Inc.) Ashampoo Photo Converter 2 v.2.0.0 (HKLM\...\Ashampoo Photo Converter 2_is1) (Version: 2.0.0 - Ashampoo GmbH & Co. KG) Asystent rejestracji usługi Windows Live (HKLM\...\{74CC5B4D-CBB5-46F1-82B0-3169977B1D36}) (Version: 5.000.818.6 - Microsoft Corporation) Bitdefender Total Security 2015 (HKLM\...\Bitdefender) (Version: 18.23.0.1604 - Bitdefender) Bonjour (HKLM\...\{79155F2B-9895-49D7-8612-D92580E0DE5B}) (Version: 3.0.0.10 - Apple Inc.) Broadcom Gigabit Integrated Controller (HKLM\...\{9E325417-AE9C-4EE1-A158-13DF451A5987}) (Version: 11.44.03 - Broadcom Corporation) CCleaner (HKLM\...\CCleaner) (Version: 3.25 - Piriform) Choice Guard (Version: 1.2.87.0 - Microsoft Corporation) Hidden Chromium (HKU\S-1-5-21-1611919641-228698746-1015890716-1000\...\Chromium) (Version: 45.0.2442.0 - Chromium) Corel PaintShop Pro X5 (HKLM\...\_{1563C6F2-E9B5-42DE-9EA6-207C9A8C2DFB}) (Version: 15.0.0.183 - Corel Corporation) Corel PaintShop Pro X5 (Version: 15.0.0.183 - Corel Corporation) Hidden CyberLink PowerDirector (HKLM\...\InstallShield_{CB099890-1D5F-11D5-9EA9-0050BAE317E1}) (Version: 6.5.3524 - CyberLink Corp.) Detektor Winampa (HKU\S-1-5-21-1611919641-228698746-1015890716-1000\...\Winamp Detect) (Version: 1.0.0.1 - Nullsoft, Inc) Gadu-Gadu 10 (HKLM\...\Gadu-Gadu 10) (Version: - GG Network S.A.) Galeria fotografii usługi Windows Live (Version: 14.0.8051.1204 - Microsoft Corporation) Hidden ICA (Version: 15.0.0.183 - Corel Corporation) Hidden IPM_PSP_COM (Version: 15.0.0.183 - Corel Corporation) Hidden iTunes (HKLM\...\{868B9974-4F23-494D-B6BC-4FAB92B2755D}) (Version: 12.1.3.6 - Apple Inc.) Java 7 Update 17 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F83217017FF}) (Version: 7.0.170 - Oracle) Java 8 Update 77 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F83218077F0}) (Version: 8.0.770.3 - Oracle Corporation) JMicron Flash Media Controller Driver (HKLM\...\{26604C7E-A313-4D12-867F-7C6E7820BE4C}) (Version: 1.00.23.06 - JMicron Technology Corp.) Junk Mail filter update (Version: 14.0.8050.1202 - Microsoft Corporation) Hidden K-Lite Mega Codec Pack 11.5.5 (HKLM\...\KLiteCodecPack_is1) (Version: 11.5.5 - ) LightScribe 1.4.142.1 (Version: 1.4.142.1 - hxxp://www.lightscribe.com) Hidden Microsoft .NET Framework 3.5 SP1 (HKLM\...\Microsoft .NET Framework 3.5 SP1) (Version: - Microsoft Corporation) Microsoft .NET Framework 4 Client Profile (HKLM\...\Microsoft .NET Framework 4 Client Profile) (Version: 4.0.30319 - Microsoft Corporation) Microsoft .NET Framework 4 Extended (HKLM\...\Microsoft .NET Framework 4 Extended) (Version: 4.0.30319 - Microsoft Corporation) Microsoft Office 2007 Service Pack 3 (SP3) (HKLM\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version: - Microsoft) Microsoft Office 2007 Service Pack 3 (SP3) (HKLM\...\{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version: - Microsoft) Microsoft Office Enterprise 2007 (HKLM\...\ENTERPRISE) (Version: 12.0.6612.1000 - Microsoft Corporation) Microsoft Office File Validation Add-In (HKLM\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation) Microsoft Office Home and Student 2007 (HKLM\...\HOMESTUDENTR) (Version: 12.0.6612.1000 - Microsoft Corporation) Microsoft Office PowerPoint Viewer 2007 (Polish) (HKLM\...\{95120000-00AF-0415-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) Microsoft Office Suite Activation Assistant (HKLM\...\{E50AE784-FABE-46DA-A1F8-7B6B56DCB22E}) (Version: 2.9 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.41212.0 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Works (HKLM\...\{306B39C9-3AB1-4161-8567-9C7E50B41AE3}) (Version: 9.7.0621 - Microsoft Corporation) Mozilla Firefox 45.0.1 (x86 pl) (HKLM\...\Mozilla Firefox 45.0.1 (x86 pl)) (Version: 45.0.1 - Mozilla) Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 45.0.1.5918 - Mozilla) MSXML 4.0 SP2 (KB954430) (HKLM\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation) MSXML 4.0 SP2 (KB973688) (HKLM\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation) NapiProjekt (2.2.0.2399) (HKLM\...\NapiProjekt_is1) (Version: - ) Narzędzie do przekazywania usługi Windows Live (HKLM\...\{205C6BDD-7B73-42DE-8505-9A093F35A238}) (Version: 14.0.8014.1029 - Microsoft Corporation) Nowy Rozkrój Demo 7.16 (HKLM\...\Nowy Rozkrój Demo_is1) (Version: 7.16 - Ecru Oprogramowanie) NTI Backup Now 5 (HKLM\...\InstallShield_{12EFA1A4-AC3B-443C-8143-237EDE760403}) (Version: 5.1.2.606 - NewTech Infosystems) NTI Backup Now Standard (Version: 5.1.2.606 - NewTech Infosystems) Hidden NTI Media Maker 8 (HKLM\...\InstallShield_{2413930C-8309-47A6-BC61-5EF27A4222BC}) (Version: 8.0.2.6329 - Nazwa firmy) NTI Media Maker 8 (Version: 8.0.2.6329 - Nazwa firmy) Hidden NVIDIA Drivers (HKLM\...\NVIDIA Drivers) (Version: - NVIDIA Corporation) NVIDIA GeForce Experience 2.5.15.54 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.5.15.54 - NVIDIA Corporation) NVIDIA Oprogramowanie systemu PhysX 9.12.1031 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.12.1031 - NVIDIA Corporation) NVIDIA Sterownik dźwięku HD 1.3.18.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.18.0 - NVIDIA Corporation) NVIDIA Sterownik graficzny 310.90 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 310.90 - NVIDIA Corporation) Obsługa programów Apple (32-bitowa) (HKLM\...\{AFA1153A-F547-409B-B837-3A0D6C5A3FEC}) (Version: 3.1.3 - Apple Inc.) Pakiet językowy programu Microsoft .NET Framework 3.5 z dodatkiem SP1 — PLK (HKLM\...\Microsoft .NET Framework 3.5 Language Pack SP1 - plk) (Version: - Microsoft Corporation) Pakiet zgodności dla systemu Office 2007 (HKLM\...\{90120000-0020-0415-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) Panel sterowania NVIDIA 310.90 (Version: 310.90 - NVIDIA Corporation) Hidden PDFCreator (HKLM\...\{0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D}) (Version: 2.1.2 - pdfforge) Photo Stamp Remover 5.3 (HKLM\...\Photo Stamp Remover_is1) (Version: 5.3 - SoftOrbits) PhotoNow! (HKLM\...\{D36DD326-7280-11D8-97C8-000129760CBE}) (Version: 1.1.5203 - CyberLink Corp.) PhotoScape (HKLM\...\PhotoScape) (Version: - ) Poczta usługi Windows Live (Version: 14.0.8050.1202 - Microsoft Corporation) Hidden Podstawowe programy Windows Live (HKLM\...\WinLiveSuite_Wave3) (Version: 14.0.8050.1202 - Microsoft Corporation) Podstawowe programy Windows Live (Version: 14.0.8050.1202 - Microsoft Corporation) Hidden Polski pakiet językowy dla programu Microsoft .NET Framework 4 Client Profile (HKLM\...\Microsoft .NET Framework 4 Client Profile PLK Language Pack) (Version: 4.0.30319 - Microsoft Corporation) PSPPContent (Version: 15.0.0.183 - Corel Corporation) Hidden PSPPHelp (Version: 15.0.0.183 - Corel Corporation) Hidden QuickTime Alternative 3.2.2 (HKLM\...\QuicktimeAlt_is1) (Version: 3.2.2 - ) Realtek High Definition Audio Driver (HKLM\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.5730 - Realtek Semiconductor Corp.) Rzeźnik MPEGów 1.1.992 (HKLM\...\Rzeźnik MPEGów 1.1.992_is1) (Version: 1.1.992 - Marcin Grenda) Setup (Version: 15.0.0.183 - Nazwa firmy) Hidden Skype™ 7.12 (HKLM\...\{6A0549A9-1B96-498C-ACBC-3943001FEB19}) (Version: 7.12.101 - Skype Technologies S.A.) Słownik Języka Włoskiego Ferrara 1.0 (HKLM\...\Słownik Języka Włoskiego Ferrara_is1) (Version: 1.0 - Europejska Szkoła Kształcenia Korespondencyjnego Sp. z o.o.) Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 12.1.3.1 - Synaptics) The KMPlayer (remove only) (HKLM\...\The KMPlayer) (Version: 3.9.0.127 - PandoraTV) Update for 2007 Microsoft Office System (KB967642) (HKLM\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version: - Microsoft) Update for 2007 Microsoft Office System (KB967642) (HKLM\...\{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version: - Microsoft) Visual Studio 2012 x86 Redistributables (HKLM\...\{98EFF19A-30AB-4E4B-B943-F06B1C63EBF8}) (Version: 14.0.0.1 - AVG Technologies CZ, s.r.o.) Winamp (HKLM\...\Winamp) (Version: 5.63 - Nullsoft, Inc) Windows Live Sync (HKLM\...\{C3335EFB-008F-44DB-A87A-9EC8EE53D045}) (Version: 14.0.8050.1202 - Microsoft Corporation) WinRAR 4.20 (32-bitowy) (HKLM\...\WinRAR archiver) (Version: 4.20.0 - win.rar GmbH) Włoski - Mówisz i rozumiesz (HKLM\...\Wloski_MiR_is1) (Version: - ) Włoski - Mówisz i rozumiesz DEMO (HKLM\...\Wloski_MiR_demo_is1) (Version: - ) ==================== Niestandardowe rejestracje CLSID (filtrowane): ========================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) ==================== Zaplanowane zadania (filtrowane) ============= (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) Task: {01DA68F3-D551-41B2-8583-386818CE039F} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2015-12-14] (Adobe Systems Incorporated) Task: {0D33CDC0-F282-454A-90C3-9AF962DCE79F} - System32\Tasks\{1EBA0009-4404-4D71-BCF4-C8B623BF4A7E} => pcalua.exe -a "C:\Users\daria\AppData\Roaming\Enigma Software Group\sh_installer.exe" -c -r sh Task: {75D15A54-A940-4805-A3A8-24ED4A6AB762} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files\Apple Software Update\SoftwareUpdate.exe [2015-08-27] (Apple Inc.) Task: {8F26C7E2-9388-4090-B30B-4F82F60B1EB9} - System32\Tasks\SpyHunter4Startup => C:\Program Files\Enigma Software Group\SpyHunter\Spyhunter4.exe Task: {91FC50D5-9272-4B0A-AE8B-60D94FD07374} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2016-04-08] (Adobe Systems Incorporated) Task: {A5343681-0E80-4513-A3FA-244DA523A189} - \Program aktualizacji online firmy Adobe. -> Brak pliku <==== UWAGA Task: {BB1B908B-213A-4F0C-B5EC-81D5C1D1178C} - System32\Tasks\Java Update Scheduler => C:\Program Files\Common Files\Java\Java Update\jusched.exe [2016-03-20] (Oracle Corporation) Task: {BEB68252-A984-4DFE-AAAE-DEDA4A89DCC7} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2012-11-24] (Piriform Ltd) Task: {D1771379-1A3A-4AD8-B2B2-8BA8FDE213E2} - System32\Tasks\{FFE90DBA-7721-4DA0-B43E-927B8AE4A2AD} => pcalua.exe -a "C:\Program Files\Mozilla Firefox\uninstall\helper.exe" Task: {EBCBFB83-D4BC-451F-A84A-51FDF7E59E43} - System32\Tasks\dariaFitsNonstructuralV2 => Rundll32.exe GlintPerfunctoriness.dll,main 7 1 <==== UWAGA Task: {FEA2EF55-3261-4D18-874F-954E4C222374} - System32\Tasks\klcp_update => C:\Program Files\K-Lite Codec Pack\Tools\CodecTweakTool.exe [2015-10-16] () (Załączenie wejścia w fixlist spowoduje przesunięcie pliku zadania (.job). Plik uruchamiany docelowo przez zadanie nie zostanie przeniesiony.) Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe ==================== Skróty ============================= (Wybrane wejścia mogą zostać załączone w celu ich zresetowania lub usunięcia.) ==================== Załadowane moduły (filtrowane) ============== 2015-09-06 13:21 - 2014-08-27 16:30 - 00204280 _____ () C:\Program Files\Bitdefender\Bitdefender 2015\txmlutil.dll 2015-09-06 13:20 - 2013-09-03 14:29 - 00095088 _____ () C:\Program Files\Bitdefender\Bitdefender 2015\bdmetrics.dll 2015-09-06 13:21 - 2015-06-22 16:22 - 00003072 _____ () C:\Program Files\Bitdefender\Bitdefender 2015\UI\accessl.ui 2015-09-06 13:21 - 2012-10-29 14:22 - 00130656 _____ () C:\Program Files\Bitdefender\Bitdefender 2015\bdfwcore.dll 2016-03-24 18:15 - 2016-03-24 18:15 - 00947640 _____ () C:\Program Files\Bitdefender\Bitdefender 2015\otengines_01743_008\ashttpbr.mdl 2016-03-24 18:15 - 2016-03-24 18:15 - 00678528 _____ () C:\Program Files\Bitdefender\Bitdefender 2015\otengines_01743_008\ashttpdsp.mdl 2016-03-24 18:15 - 2016-03-24 18:15 - 02492080 _____ () C:\Program Files\Bitdefender\Bitdefender 2015\otengines_01743_008\ashttpph.mdl 2016-03-24 18:15 - 2016-03-24 18:15 - 01388752 _____ () C:\Program Files\Bitdefender\Bitdefender 2015\otengines_01743_008\ashttprbl.mdl 2016-02-07 18:16 - 2016-02-07 18:16 - 00349184 _____ () C:\Users\daria\AppData\Local\FitsNonstructural\GlintPerfunctoriness.dll 2015-03-20 19:12 - 2015-03-20 19:12 - 00073544 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll 2015-03-20 19:12 - 2015-03-20 19:12 - 01044776 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll 2007-06-24 20:09 - 2007-06-24 20:09 - 01024000 _____ () C:\Program Files\NewTech Infosystems\NTI Backup Now 5\Client\ACE.dll 2007-06-24 20:09 - 2007-06-24 20:09 - 00098304 _____ () C:\Program Files\NewTech Infosystems\NTI Backup Now 5\Client\ACEXML.dll 2007-06-24 20:09 - 2007-06-24 20:09 - 00061440 _____ () C:\Program Files\NewTech Infosystems\NTI Backup Now 5\Client\ACEXML_Parser.dll 2009-02-05 20:39 - 2007-12-06 17:15 - 00110592 _____ () C:\Acer\Mobility Center\MobilityService.exe 2009-02-05 20:39 - 2007-11-27 16:08 - 00032768 _____ () C:\Acer\Mobility Center\MobilityInterface.dll 2012-10-28 20:20 - 2008-06-30 18:56 - 00200704 _____ () C:\Windows\PLFSetI.exe 2008-04-25 22:36 - 2008-04-25 22:36 - 00131072 _____ () C:\Program Files\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe 2015-10-12 20:48 - 2015-10-12 05:05 - 00013088 _____ () C:\Program Files\NVIDIA Corporation\Update Core\detoured.dll 2009-02-05 20:35 - 2007-01-09 04:25 - 00272024 _____ () C:\Program Files\Cyberlink\Shared files\RichVideo.exe ==================== Alternate Data Streams (filtrowane) ========= (Załączenie wejścia w fixlist spowoduje usunięcie strumienia ADS.) ==================== Tryb awaryjny (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Wartość "AlternateShell" zostanie przywrócona.) ==================== EXE - Powiązania (filtrowane) =============== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci.) ==================== Internet Explorer - Witryny zaufane i z ograniczeniami =============== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru.) ==================== Hosts - zawartość: =============================== (Użycie dyrektywy Hosts: w fixlist spowoduje reset pliku Hosts.) 2006-11-02 12:23 - 2006-09-18 23:41 - 00000761 ____N C:\Windows\system32\Drivers\etc\hosts 127.0.0.1 localhost ::1 localhost ==================== Inne obszary ============================ (Obecnie brak automatycznej naprawy dla tej sekcji.) HKU\S-1-5-21-1611919641-228698746-1015890716-1000\Control Panel\Desktop\\Wallpaper -> C:\Windows\Web\Wallpaper\img19.jpg DNS Servers: 85.202.144.12 - 85.202.144.11 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 2) (ConsentPromptBehaviorUser: 1) (EnableLUA: 0) Zapora systemu Windows [funkcja wyłączona] ==================== MSCONFIG/TASK MANAGER - Wyłączone elementy == (Obecnie brak automatycznej naprawy dla tej sekcji.) MSCONFIG\startupreg: ALLUpdate => "C:\Program Files\ALLPlayer\ALLUpdate.exe" "sleep" MSCONFIG\startupreg: BkupTray => "C:\Program Files\NewTech Infosystems\NTI Backup Now 5\BkupTray.exe" MSCONFIG\startupreg: msnmsgr => ~"C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background MSCONFIG\startupreg: Napisy24Update => "C:\Program Files\Napisy24\Napisy24Update.exe" "sleep" MSCONFIG\startupreg: Skype => "C:\Program Files\Skype\Phone\Skype.exe" /minimized /regrun MSCONFIG\startupreg: WinampAgent => "C:\Program Files\Winamp\winampa.exe" ==================== Reguły Zapory systemu Windows (filtrowane) =============== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) FirewallRules: [WinCollab-Out-UDP] => (Allow) %ProgramFiles%\Windows Collaboration\WinCollab.exe FirewallRules: [WinCollab-In-UDP] => (Allow) %ProgramFiles%\Windows Collaboration\WinCollab.exe FirewallRules: [WinCollab-Out-TCP] => (Allow) %ProgramFiles%\Windows Collaboration\WinCollab.exe FirewallRules: [WinCollab-In-TCP] => (Allow) %ProgramFiles%\Windows Collaboration\WinCollab.exe FirewallRules: [WinCollab-DFSR-Out-TCP] => (Allow) %SystemRoot%\system32\dfsr.exe FirewallRules: [WinCollab-DFSR-In-TCP] => (Allow) %SystemRoot%\system32\dfsr.exe FirewallRules: [{A1548063-79D6-4199-BB8C-D052A5543846}] => (Allow) C:\Program Files\Windows Live\Messenger\msnmsgr.exe FirewallRules: [{1A9E92EE-773A-479C-A135-84C5377CB0D7}] => (Allow) C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe FirewallRules: [{1D06DED7-0AF4-4EDA-B40B-193482A778EC}] => (Allow) C:\Program Files\NewTech Infosystems\NTI Backup Now 5\Client\Agentsvc.exe FirewallRules: [{0677BBD7-649E-4ECD-A012-D5A30F47EAF5}] => (Allow) C:\Program Files\NewTech Infosystems\NTI Backup Now 5\BackupSvc.exe FirewallRules: [{BBDB4741-0CED-430F-80D7-195ABBACCDD7}] => (Allow) C:\Program Files\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe FirewallRules: [{A18AA0AD-0DD7-4AD0-A1D7-EB974086072C}] => (Allow) C:\Program Files\NewTech Infosystems\NTI Backup Now 5\Client\Agentsvc.exe FirewallRules: [{2F1DD3CB-FE53-42E1-8379-7A2A8B1EB47F}] => (Allow) C:\Program Files\NewTech Infosystems\NTI Backup Now 5\BackupSvc.exe FirewallRules: [{315814FD-CB3C-42DC-B6B6-3C385E101ED8}] => (Allow) C:\Program Files\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe FirewallRules: [{422599DF-7DBD-441B-9B14-5BE0916B1E48}] => (Allow) C:\Program Files\Cyberlink\PowerDirector\PDR.EXE FirewallRules: [{C36B08E1-584E-4BA4-B63C-BF00156538BE}] => (Allow) LPort=80 FirewallRules: [{DB312465-9203-45A4-8946-EE2C4FD3F633}] => (Allow) LPort=80 FirewallRules: [{3FD51255-6A78-4AE6-A371-33F7E7D061E7}] => (Allow) LPort=80 FirewallRules: [{C5D49C59-B8E6-4DA3-A704-9DE30D4FF93F}] => (Allow) C:\Program Files\uTorrent\uTorrent.exe FirewallRules: [{B8673C21-95A5-4ADE-9E62-43E306464D96}] => (Allow) C:\Program Files\uTorrent\uTorrent.exe FirewallRules: [{BE2762E3-71A9-4889-993F-09844DECED81}] => (Allow) C:\Windows\System32\msiexec.exe FirewallRules: [{CCEA19A6-5E48-4DEE-B98A-AD276797F3AF}] => (Allow) C:\Windows\System32\msiexec.exe FirewallRules: [{EC75E345-7642-4B8A-A3B7-8B5454BABF59}] => (Allow) C:\Users\daria\AppData\Roaming\Spotify\spotify.exe FirewallRules: [{D0C5F34F-86BA-4324-89EA-4C4FA5CB3B0A}] => (Allow) C:\Users\daria\AppData\Roaming\Spotify\spotify.exe FirewallRules: [{C5E05D6C-7441-45C7-AFC0-1EA7CFA99D32}] => (Allow) C:\Program Files\NapiProjekt\napisy.exe FirewallRules: [{EDCE76A5-0EAA-4441-A30D-427CB2C002A3}] => (Allow) C:\Program Files\NapiProjekt\napisy.exe FirewallRules: [{8E87F6AC-AD85-4A92-A769-E96E550C535E}] => (Allow) C:\Users\daria\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{6DF17F69-F49B-4EFA-93A7-D2575B95B6D0}] => (Allow) C:\Users\daria\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{87638D21-5B26-4FD5-B164-3217DFBA3BB4}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{827238CA-7448-4291-BAF5-DD82B890DB83}] => (Allow) C:\Users\daria\AppData\Local\Chromium\Application\chrome.exe FirewallRules: [{8EFCBBB4-3978-4F81-A838-CB454B25314E}] => (Allow) C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe FirewallRules: [{1743C4D3-2748-4D6D-99E7-1DD983410A0A}] => (Allow) C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe FirewallRules: [{E6D57983-8E68-4BB1-B6C2-C6F0D323786D}] => (Allow) C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe FirewallRules: [{96CAA8EF-2BFE-4F90-99CE-4EA4BB614E16}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe FirewallRules: [{66F486BE-22B4-4B5D-8B81-F90F46C404E5}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe FirewallRules: [{F01331AB-FA91-4F5B-9E5B-C81187D22265}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{49EABE1E-11D0-4A2A-9CCD-29CA91D2E41D}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{7D49516B-5BDC-4EC7-B5DC-D2E32F30C7A9}] => (Allow) C:\Program Files\iTunes\iTunes.exe FirewallRules: [{D0E871C9-F311-498E-9EA8-73918CE9183A}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe FirewallRules: [{6F1DC482-4D14-403B-8ABF-7981DD296E2B}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe ==================== Punkty Przywracania systemu ========================= 18-01-2016 21:00:34 Windows Update 12-02-2016 22:13:03 Windows Update 16-02-2016 23:54:12 Zaplanowany punkt kontrolny 21-02-2016 20:37:04 Zaplanowany punkt kontrolny 03-03-2016 12:00:27 Zaplanowany punkt kontrolny 14-03-2016 21:01:00 Windows Update 15-03-2016 13:15:03 Zaplanowany punkt kontrolny ==================== Wadliwe urządzenia w Menedżerze urządzeń ============= Name: CANON_DC Description: SD/MMC Class Guid: {eec5ad98-8080-425f-922a-dabf3de3f69a} Manufacturer: JMCR Service: WUDFRd Problem: : Windows has stopped this device because it has reported problems. (Code 43) Resolution: One of the drivers controlling the device notified the operating system that the device failed in some manner. For more information about how to diagnose the problem, see the hardware documentation. Name: KINGSTON Description: DataTraveler G2 Class Guid: {eec5ad98-8080-425f-922a-dabf3de3f69a} Manufacturer: Kingston Service: WUDFRd Problem: : This device is not working properly because Windows cannot load the drivers required for this device. (Code 31) Resolution: Update the driver ==================== Błędy w Dzienniku zdarzeń: ========================= Dziennik Aplikacja: ================== Error: (04/08/2016 09:41:46 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Aplikacja powodująca błąd gmer.exe, wersja 2.2.19882.0, sygnatura czasowa 0x56e2cdca, moduł powodujący błąd gmer.exe, wersja 2.2.19882.0, sygnatura czasowa 0x56e2cdca, kod wyjątku 0xc0000005, przesunięcie błędu 0x00012298, identyfikator procesu 0x12b0, godzina rozpoczęcia aplikacji 0xgmer.exe0. Error: (04/08/2016 09:39:08 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Aplikacja powodująca błąd gmer.exe, wersja 2.2.19882.0, sygnatura czasowa 0x56e2cdca, moduł powodujący błąd gmer.exe, wersja 2.2.19882.0, sygnatura czasowa 0x56e2cdca, kod wyjątku 0xc0000005, przesunięcie błędu 0x00012298, identyfikator procesu 0x117c, godzina rozpoczęcia aplikacji 0xgmer.exe0. Error: (04/08/2016 09:33:58 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (04/08/2016 09:06:48 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (04/07/2016 08:38:47 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 1554862 Error: (04/07/2016 08:38:47 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledEvent 1554862 Error: (04/07/2016 08:38:47 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: Continuously busy for more than a second Error: (04/07/2016 08:12:56 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 4618 Error: (04/07/2016 08:12:56 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledEvent 4618 Error: (04/07/2016 08:12:56 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: Continuously busy for more than a second Dziennik System: ============= Error: (04/08/2016 09:40:20 AM) (Source: nvstor32) (EventID: 5) (User: ) Description: Na \Device\RaidPort0 został wykryty błąd parzystości. Error: (04/08/2016 09:40:15 AM) (Source: nvstor32) (EventID: 5) (User: ) Description: Na \Device\RaidPort0 został wykryty błąd parzystości. Error: (04/08/2016 09:40:04 AM) (Source: nvstor32) (EventID: 5) (User: ) Description: Na \Device\RaidPort0 został wykryty błąd parzystości. Error: (04/08/2016 09:40:00 AM) (Source: nvstor32) (EventID: 5) (User: ) Description: Na \Device\RaidPort0 został wykryty błąd parzystości. Error: (04/08/2016 09:38:23 AM) (Source: nvstor32) (EventID: 5) (User: ) Description: Na \Device\RaidPort0 został wykryty błąd parzystości. Error: (04/08/2016 09:37:46 AM) (Source: nvstor32) (EventID: 5) (User: ) Description: Na \Device\RaidPort0 został wykryty błąd parzystości. Error: (04/08/2016 09:37:04 AM) (Source: nvstor32) (EventID: 5) (User: ) Description: Na \Device\RaidPort0 został wykryty błąd parzystości. Error: (04/08/2016 09:34:05 AM) (Source: Service Control Manager) (EventID: 7026) (User: ) Description: GLogin Error: (04/08/2016 09:33:58 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Parallel port driver%%1058 Error: (04/08/2016 09:33:03 AM) (Source: EventLog) (EventID: 6008) (User: ) Description: Poprzednie zamknięcie systemu przy 09:29:02 na 2016-04-08 było nieoczekiwane. CodeIntegrity: =================================== Date: 2015-10-23 21:50:58.316 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\nvapo32v.dll because the set of per-page image hashes could not be found on the system. Date: 2015-10-23 21:50:23.136 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\nvapo32v.dll because the set of per-page image hashes could not be found on the system. Date: 2015-10-23 20:55:16.305 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\nvapo32v.dll because the set of per-page image hashes could not be found on the system. Date: 2015-10-23 20:50:30.123 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\nvapo32v.dll because the set of per-page image hashes could not be found on the system. Date: 2015-10-23 20:40:06.304 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\nvapo32v.dll because the set of per-page image hashes could not be found on the system. Date: 2015-10-22 23:41:33.876 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\nvapo32v.dll because the set of per-page image hashes could not be found on the system. Date: 2015-10-22 23:41:15.473 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\nvapo32v.dll because the set of per-page image hashes could not be found on the system. Date: 2015-10-22 23:19:12.091 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\nvapo32v.dll because the set of per-page image hashes could not be found on the system. Date: 2015-10-22 23:19:02.917 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\nvapo32v.dll because the set of per-page image hashes could not be found on the system. Date: 2015-10-22 23:18:39.242 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\nvapo32v.dll because the set of per-page image hashes could not be found on the system. ==================== Statystyki pamięci =========================== Procesor: Pentium(R) Dual-Core CPU T4200 @ 2.00GHz Procent pamięci w użyciu: 49% Całkowita pamięć fizyczna: 2813.68 MB Dostępna pamięć fizyczna: 1423.4 MB Całkowita pamięć wirtualna: 5843.5 MB Dostępna pamięć wirtualna: 4278.01 MB ==================== Dyski ================================ Drive c: (ACER) (Fixed) (Total:144.04 GB) (Free:59.22 GB) NTFS ==>[dysk z komponentami startowymi (pozyskano odczytując BCD)] Drive d: (DATA) (Fixed) (Total:144.04 GB) (Free:72.68 GB) NTFS Drive f: () (Removable) (Total:7.2 GB) (Free:7 GB) FAT32 Drive g: (KINGSTON) (Removable) (Total:14.9 GB) (Free:10.78 GB) NTFS ==================== MBR & Tablica partycji ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or Vista) (Size: 298.1 GB) (Disk ID: 72C43225) Partition 1: (Not Active) - (Size=10 GB) - (Type=27) Partition 2: (Active) - (Size=144 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=144 GB) - (Type=07 NTFS) ======================================================== Disk: 1 (Size: 7.2 GB) (Disk ID: 00000000) Partition: GPT. ======================================================== Disk: 2 (Size: 14.9 GB) (Disk ID: 3FB37313) Partition 1: (Active) - (Size=14.9 GB) - (Type=07 NTFS) ==================== Koniec Addition.txt ============================