Rezultaty skanu uzupełniającego Farbar Recovery Scan Tool (x64) Wersja: 13-07-2016 02 Uruchomiony przez USER1 (2016-07-15 15:00:00) Uruchomiony z C:\trener\downloD Windows 10 Pro Wersja 1511 (X64) (2016-05-31 15:17:12) Tryb startu: Normal ========================================================== ==================== Konta użytkowników: ============================= Administrator (S-1-5-21-1322809636-3719341389-1593366197-500 - Administrator - Disabled) Gość (S-1-5-21-1322809636-3719341389-1593366197-501 - Limited - Disabled) => C:\Users\Gość HomeGroupUser$ (S-1-5-21-1322809636-3719341389-1593366197-1002 - Limited - Enabled) Konto domyślne (S-1-5-21-1322809636-3719341389-1593366197-503 - Limited - Disabled) USER1 (S-1-5-21-1322809636-3719341389-1593366197-1000 - Administrator - Enabled) => C:\Users\USER1 ==================== Centrum zabezpieczeń ======================== (Załączenie wejścia w fixlist spowoduje jego usunięcie.) AV: Trend Micro Maximum Security (Enabled - Up to date) {8242D66F-41BD-4049-C2E6-E578E73B62A0} AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Trend Micro Maximum Security (Enabled - Up to date) {3923378B-6787-4FC7-F856-DE0A9CBC281D} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Zainstalowane programy ====================== (W fixlist dozwolone tylko załączanie programów adware z flagą "Hidden" w celu ich uwidocznienia. Programy adware powinny zostać w poprawny sposób odinstalowane.) µTorrent (HKU\S-1-5-21-1322809636-3719341389-1593366197-1000\...\uTorrent) (Version: 3.4.6.42178 - BitTorrent Inc.) 2007 Microsoft Office Suite Service Pack 3 (SP3) (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version: - Microsoft) 2007 Microsoft Office Suite Service Pack 3 (SP3) (x32 Version: - Microsoft) Hidden ACR38/100/122 PC/SC Driver 1.1.4.0 (HKLM\...\{155796AE-16D0-45D2-8939-6AE3AD67147B}) (Version: 1.1.4 - Advanced Card Systems Ltd.) Adobe Acrobat Reader DC - Polish (HKLM-x32\...\{AC76BA86-7AD7-1045-7B44-AC0F074E4100}) (Version: 15.017.20050 - Adobe Systems Incorporated) Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 21.0.0.215 - Adobe Systems Incorporated) Adobe Flash Player 21 PPAPI (HKLM-x32\...\Adobe Flash Player PPAPI) (Version: 21.0.0.197 - Adobe Systems Incorporated) Adobe Flash Player 22 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 22.0.0.192 - Adobe Systems Incorporated) AirDroid 3.3.2.0 (HKLM-x32\...\AirDroid) (Version: 3.3.2.0 - Sand Studio) Aktualizacja produktu Microsoft Office Excel 2007 Help (KB963678) (HKLM-x32\...\{90120000-0016-0415-0000-0000000FF1CE}_ENTERPRISE_{04E205D6-88B1-4652-B162-42DF2C3B1228}) (Version: - Microsoft) Aktualizacja produktu Microsoft Office Powerpoint 2007 Help (KB963669) (HKLM-x32\...\{90120000-0018-0415-0000-0000000FF1CE}_ENTERPRISE_{442ECBCF-94A7-48CC-8CD9-D31FFFD5FA86}) (Version: - Microsoft) Aktualizacja produktu Microsoft Office Word 2007 Help (KB963665) (HKLM-x32\...\{90120000-001B-0415-0000-0000000FF1CE}_ENTERPRISE_{128A36ED-21BE-4547-9FFE-5B85AEC735DD}) (Version: - Microsoft) Aktualizacje NVIDIA 16.13.65 (Version: 16.13.65 - NVIDIA Corporation) Hidden AnoMail 2014 pakiet do obsługi e-mailingów (HKLM-x32\...\AnoMail 2014 pakiet do obsługi e-mailingów) (Version: 2014.595.000 - AnoMail SOFTWARE) Any Video Converter 5.9.5 (HKLM-x32\...\Any Video Converter_is1) (Version: - Any-Video-Converter.com) Audacity 2.1.0 (HKLM-x32\...\Audacity_is1) (Version: 2.1.0 - Audacity Team) Bluefish 2.2.8 (HKLM-x32\...\Bluefish) (Version: 2.2.8 - The Bluefish Developers) BurnAware Free 8.7 (HKLM-x32\...\BurnAware Free_is1) (Version: - Burnaware) CCleaner (HKLM\...\CCleaner) (Version: 5.16 - Piriform) Cisco EAP-FAST Module (x32 Version: 2.2.14 - Cisco Systems, Inc.) Hidden Cisco LEAP Module (x32 Version: 1.0.19 - Cisco Systems, Inc.) Hidden Cisco PEAP Module (x32 Version: 1.1.6 - Cisco Systems, Inc.) Hidden Cyberfox Web Browser (HKLM\...\{5EFB52C0-4EC9-46B4-80EB-8432C6599641}_is1) (Version: 45.0.2.0 - 8pecxstudios) D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden DAEMON Tools Lite (HKLM-x32\...\DAEMON Tools Lite) (Version: 4.46.1.0328 - DT Soft Ltd) Dell Digital Delivery (HKLM-x32\...\{03A9F528-A754-460F-B2C1-AC125A147114}) (Version: 2.8.5000.0 - Dell Products, LP) Dell System Detect (HKU\S-1-5-21-1322809636-3719341389-1593366197-1000\...\73f463568823ebbe) (Version: 5.12.0.3 - Dell) Dell Touchpad (HKLM\...\SynTPDeinstKey) (Version: 18.1.16.0 - Synaptics Incorporated) Dodatek Zapisywanie jako PDF firmy Microsoft dla programów pakietu Microsoft Office 2007 (HKLM-x32\...\{90120000-00B0-0415-0000-0000000FF1CE}) (Version: 12.0.4518.1020 - Microsoft Corporation) doPDF 7.2 printer (HKLM\...\doPDF 7 printer_is1) (Version: - Softland) Dropbox (HKU\S-1-5-21-1322809636-3719341389-1593366197-1000\...\Dropbox) (Version: 6.4.14 - Dropbox, Inc.) DW WLAN Card Utility (HKLM\...\DW WLAN Card Utility) (Version: 6.30.223.99 - Dell Inc.) EaseUS Data Recovery Wizard 8.5 (HKLM\...\EaseUS Data Recovery Wizard 8.5_is1) (Version: - EaseUS) e-Deklaracje Desktop (HKLM-x32\...\e-Deklaracje.A1909296681C7ACEFE45687D3A64758C8659BF46.1) (Version: 8.0.7 - Ministerstwo Finansow) e-Deklaracje Desktop (x32 Version: 8.0.7 - Ministerstwo Finansow) Hidden eM Client (HKLM-x32\...\{7B35918E-43E4-45AF-8F1B-C15D86CA919D}) (Version: 6.0.24928.0 - eM Client Inc.) Faktury Express 7 (HKLM-x32\...\Faktury Express 7_is1) (Version: - Polpress) FileZilla Client 3.15.0.2 (HKU\S-1-5-21-1322809636-3719341389-1593366197-1000\...\FileZilla Client) (Version: 3.15.0.2 - Tim Kosse) Firebird 2.0.7.13318 (win32) (HKLM-x32\...\FBDBServer_2_0_is1) (Version: 2.0.7.13318 - Firebird Project) FreeCommander XE (HKLM-x32\...\FreeCommander XE_is1) (Version: - Marek Jasinski) Freemake Video Converter wersja 4.1.9 (HKLM-x32\...\Freemake Video Converter_is1) (Version: 4.1.9 - Ellora Assets Corporation) Galeria fotografii (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden GlassWire 1.2 (remove only) (HKLM-x32\...\GlassWire 1.2) (Version: 1.2.71 - SecureMix LLC) Google Update Helper (x32 Version: 1.3.26.9 - Google Inc.) Hidden HP LaserJet Professional CP1020 Series (HKLM-x32\...\{F2918DE9-8F79-44c8-85D8-CAD1245B95D3}) (Version: - Hewlett-Packard) HP Update (HKLM-x32\...\{B0069CFA-5BB9-4C03-B1C6-89CE290E5AFE}) (Version: 5.002.006.003 - Hewlett-Packard) HPLJProCP1020 (x32 Version: 1.00.0000 - Hewlett-Packard) Hidden HPLJUT (x32 Version: 1.00.0012 - HP) Hidden hppCP1020LaserJetService (x32 Version: 001.008.00477 - Hewlett-Packard) Hidden hppLaserJetService (x32 Version: 002.015.00599 - Hewlett-Packard) Hidden Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 9.5.23.1766 - Intel Corporation) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.10.3431 - Intel Corporation) Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 12.8.2.1000 - Intel Corporation) Intel(R) USB 3.0 eXtensible Host Controller Driver (HKLM-x32\...\{240C3DDD-C5E9-4029-9DF7-95650D040CF2}) (Version: 2.5.3.34 - Intel Corporation) IrfanView (remove only) (HKLM-x32\...\IrfanView) (Version: 4.38 - Irfan Skiljan) Java 8 Update 91 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218091F0}) (Version: 8.0.910.15 - Oracle Corporation) Kaspersky Security Scan (HKLM-x32\...\InstallWIX_{D1282694-0693-41A8-ABC1-6D1FFC1F65C5}) (Version: 16.0.0.1344 - Kaspersky Lab) Kaspersky Security Scan (x32 Version: 16.0.0.1344 - Kaspersky Lab) Hidden Kaspersky Software Updater Beta (HKLM-x32\...\InstallWIX_{94C8D443-1D07-4E6D-A9EB-FDBA45A839D8}) (Version: 1.5.2.228 - Kaspersky Lab) Kaspersky Software Updater Beta (x32 Version: 1.5.2.228 - Kaspersky Lab) Hidden KeyTweak - Keyboard Remapper (remove only) (HKLM-x32\...\KeyTweak) (Version: - ) KONICA MINOLTA magicolor 2530DL (HKLM\...\KONICA MINOLTA magicolor 2530DL) (Version: - ) Malwarebytes Anti-Malware wersja 2.2.1.1043 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.2.1.1043 - Malwarebytes) Master Person Analysis 3.7.19 (HKLM-x32\...\{55B2265F-E65E-4295-B8F9-0815D9B2550F}) (Version: 3.7.19 - Master Management International) METIS Windows Client (HKU\S-1-5-21-1322809636-3719341389-1593366197-1000\...\d74a45566b6afda9) (Version: 10.0.15758.0 - Master International) Microsoft ASP.NET MVC 4 Runtime (HKLM-x32\...\{3FE312D5-B862-40CE-8E4E-A6D8ABF62736}) (Version: 4.0.40804.0 - Microsoft Corporation) Microsoft Office Enterprise 2007 (HKLM-x32\...\ENTERPRISE) (Version: 12.0.6612.1000 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.41212.0 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Movie Maker (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden MozBackup 1.5.1 (HKLM-x32\...\MozBackup) (Version: - Pavel Cvrcek) Mozilla Firefox 47.0.1 (x86 pl) (HKLM-x32\...\Mozilla Firefox 47.0.1 (x86 pl)) (Version: 47.0.1 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 47.0.1.6018 - Mozilla) Mozilla Thunderbird 31.3.0 (x86 pl) (HKLM-x32\...\Mozilla Thunderbird 31.3.0 (x86 pl)) (Version: 31.3.0 - Mozilla) Mozilla Thunderbird 38.5.0 (x86 pl) (HKU\S-1-5-21-1322809636-3719341389-1593366197-1000\...\Mozilla Thunderbird 38.5.0 (x86 pl)) (Version: 38.5.0 - Mozilla) MPC-BE x64 1.4.2.4752 (HKLM\...\{FE09AF6D-78B2-4093-B012-FCDAF78693CE}_is1) (Version: 1.4.2.4752 - MPC-BE Team) My Dell (HKLM\...\PC-Doctor for Windows) (Version: 3.5.6426.22 - PC-Doctor, Inc.) MyFreeCodec (HKU\S-1-5-21-1322809636-3719341389-1593366197-1000\...\MyFreeCodec) (Version: - ) MyPhoneExplorer (HKLM-x32\...\MPE) (Version: 1.8.7 - F.J. Wechselberger) NexusFile (5.3.3.5532) (HKLM-x32\...\{ED0FB0C1-CD06-4C29-B903-8A91D4BF5B61}_is1) (Version: - xiles) Notepad++ (HKLM-x32\...\Notepad++) (Version: 6.7.5 - Notepad++ Team) NVIDIA GeForce Experience 2.1.4 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.1.4 - NVIDIA Corporation) NVIDIA Oprogramowanie systemu PhysX 9.14.0702 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.14.0702 - NVIDIA Corporation) NVIDIA Sterownik 3D Vision 344.75 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 344.75 - NVIDIA Corporation) NVIDIA Sterownik graficzny 344.75 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 344.75 - NVIDIA Corporation) OCS Inventory NG Agent 2.1.0.1 (HKLM-x32\...\OCS Inventory NG Agent) (Version: 2.1.0.1 - OCS Inventory NG Team) Origin (HKLM-x32\...\Origin) (Version: 9.4.11.2806 - Electronic Arts, Inc.) Pakiet sterowników systemu Windows - ACS (A38CCID) SmartCardReader (12/16/2009 1.1.6.5) (HKLM\...\F02CC611741E33C64CDEAEEE2C7A46E41719B2CC) (Version: 12/16/2009 1.1.6.5 - ACS) Pakiet sterowników systemu Windows - ACS (ACR122U) SmartCardReader (12/16/2009 1.1.6.3) (HKLM\...\A9B944A9EADA685F103858C6923BF5DD8E127C2C) (Version: 12/16/2009 1.1.6.3 - ACS) Pakiet sterowników systemu Windows - ACS (ACSSCR) SmartCardReader (09/18/2012 1.1.6.3) (HKLM\...\B3AA751CA8C52015C434B2790E0A934C2585A3C6) (Version: 09/18/2012 1.1.6.3 - ACS) Panel sterowania NVIDIA 353.62 (Version: 353.62 - NVIDIA Corporation) Hidden PDF Split And Merge Basic (HKLM\...\{9A40D2F8-9458-458B-95E3-B57797C574E1}) (Version: 2.2.3 - Andrea Vacondio) PhotoScape (HKLM-x32\...\PhotoScape) (Version: - ) Picasa 3 (HKLM-x32\...\Picasa 3) (Version: 3.9.141.259 - Google, Inc.) Podstawowe programy Windows Live (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3528.0331 - Microsoft Corporation) Podstawowe programy Windows Live (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden PrimoPDF -- brought to you by Nitro PDF Software (HKLM-x32\...\PrimoPDF) (Version: 5 - Nitro PDF Software) proCertum CardManager (HKLM-x32\...\{B96A7F3B-AF29-489A-AE84-1DDF5942971C}) (Version: 3.2.0.134 - Unizeto) proCertum SmartSign (HKLM-x32\...\{E80B3FB7-DAB0-40E9-B256-98D8FF8C1EA9}) (Version: 7.0.0.2158 - Unizeto) Quake II (HKLM-x32\...\Quake2UninstallKey) (Version: - ) Quickset64 (HKLM\...\{87CF757E-C1F1-4D22-865C-00C6950B5258}) (Version: 11.1.18 - Dell Inc.) Realtek Card Reader (HKLM-x32\...\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}) (Version: 6.2.9600.39054 - Realtek Semiconductor Corp.) Realtek Ethernet Controller All-In-One Windows Driver (HKLM-x32\...\{F7E7F0CB-AA41-4D5A-B6F2-8E6738EB063F}) (Version: 7.88.617.2014 - Realtek) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7544 - Realtek Semiconductor Corp.) Replace Text (HKLM-x32\...\{E9DD578F-85DD-4FA4-B861-7752F75F6324}) (Version: 2.2 - Ecobyte) Samsung Kies3 (HKLM-x32\...\InstallShield_{88547073-C566-4895-9005-EBE98EA3F7C7}) (Version: 3.2.15041.2 - Samsung Electronics Co., Ltd.) Samsung Kies3 (x32 Version: 3.2.15041.2 - Samsung Electronics Co., Ltd.) Hidden SAMSUNG USB Driver for Mobile Phones (HKLM\...\{D0795B21-0CDA-4a92-AB9E-6E92D8111E44}) (Version: 1.5.49.0 - SAMSUNG Electronics Co., Ltd.) SHIELD Streaming (Version: 3.1.2000 - NVIDIA Corporation) Hidden SHIELD Wireless Controller Driver (Version: 16.13.65 - NVIDIA Corporation) Hidden Skype™ 7.24 (HKLM-x32\...\{FC965A47-4839-40CA-B618-18F486F042C6}) (Version: 7.24.104 - Skype Technologies S.A.) Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation) Team Fortress 2 (HKLM-x32\...\Steam App 440) (Version: - Valve) The Sims™ 4 (HKLM-x32\...\{48EBEBBF-B9F8-4520-A3CF-89A730721917}) (Version: 1.20.60.1020 - Electronic Arts Inc.) Total Commander 64-bit (Remove or Repair) (HKLM\...\Totalcmd64) (Version: 8.51a - Ghisler Software GmbH) Trend Micro Maximum Security (HKLM\...\{ABBD4BA8-6703-40D2-AB1E-5BB1F7DB49A4}) (Version: 10.0 - Trend Micro Inc.) Trend Micro Password Manager (HKLM\...\3A0FB4E3-2C0D-4572-A24D-67F1CAABDDP35_is1) (Version: 3.6.0.1076 - Trend Micro Inc.) Trend Micro Titanium (Version: 10.0 - Trend Micro Inc.) Hidden Unity Web Player (HKU\S-1-5-21-1322809636-3719341389-1593366197-1000\...\UnityWebPlayer) (Version: 4.6.1f1 - Unity Technologies ApS) Update for 2007 Microsoft Office System (KB967642) (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version: - Microsoft) VLC media player (HKLM-x32\...\VLC media player) (Version: 2.1.5 - VideoLAN) WIDCOMM Bluetooth Software (HKLM\...\{A1439D4F-FD46-47F2-A1D3-FEE097C29A09}) (Version: 6.5.1.4800 - Broadcom Corporation) WinRAR 5.11 (32-bitowy) (HKLM-x32\...\WinRAR archiver) (Version: 5.11.0 - win.rar GmbH) WinRAR 5.11 (64-bitowy) (HKLM\...\WinRAR archiver) (Version: 5.11.0 - win.rar GmbH) World of Tanks (HKU\S-1-5-21-1322809636-3719341389-1593366197-1000\...\{1EAC1D02-C6AC-4FA6-9A44-96258C37C812eu}_is1) (Version: - Wargaming.net) Wtyczka e-Deklaracje (HKLM-x32\...\{81BF6353-3C5B-4E6E-A566-7E162A00BF72}_is1) (Version: 4.1.0 - Ministerstwo Finansów) Youtube Downloader HD v. 2.9.9.27 (HKLM-x32\...\Youtube Downloader HD_is1) (Version: - YoutubeDownloaderHD.com) ZoneAlarm Antivirus (x32 Version: 14.2.255.000 - Check Point Software Technologies Ltd.) Hidden Zune (HKLM\...\Zune) (Version: 04.08.2345.00 - Microsoft Corporation) ==================== Niestandardowe rejestracje CLSID (filtrowane): ========================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) CustomCLSID: HKU\S-1-5-21-1322809636-3719341389-1593366197-1000_Classes\CLSID\{005A3A96-BAC4-4B0A-94EA-C0CE100EA736}\localserver32 -> C:\Users\USER1\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-1322809636-3719341389-1593366197-1000_Classes\CLSID\{71DCE5D6-4B57-496B-AC21-CD5B54EB93FD}\localserver32 -> C:\Users\USER1\AppData\Local\Microsoft\OneDrive\17.3.6390.0509\FileCoAuth.exe (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-1322809636-3719341389-1593366197-1000_Classes\CLSID\{ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C}\InprocServer32 -> C:\Users\USER1\AppData\Roaming\Dropbox\bin\DropboxExt64.34.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-1322809636-3719341389-1593366197-1000_Classes\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\USER1\AppData\Roaming\Dropbox\bin\DropboxExt64.34.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-1322809636-3719341389-1593366197-1000_Classes\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\USER1\AppData\Roaming\Dropbox\bin\DropboxExt64.34.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-1322809636-3719341389-1593366197-1000_Classes\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\USER1\AppData\Roaming\Dropbox\bin\DropboxExt64.34.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-1322809636-3719341389-1593366197-1000_Classes\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\USER1\AppData\Roaming\Dropbox\bin\DropboxExt64.34.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-1322809636-3719341389-1593366197-1000_Classes\CLSID\{FB314EDD-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\USER1\AppData\Roaming\Dropbox\bin\DropboxExt64.34.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-1322809636-3719341389-1593366197-1000_Classes\CLSID\{FB314EDE-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\USER1\AppData\Roaming\Dropbox\bin\DropboxExt64.34.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-1322809636-3719341389-1593366197-1000_Classes\CLSID\{FB314EDF-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\USER1\AppData\Roaming\Dropbox\bin\DropboxExt64.34.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-1322809636-3719341389-1593366197-1000_Classes\CLSID\{FB314EE0-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\USER1\AppData\Roaming\Dropbox\bin\DropboxExt64.34.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-1322809636-3719341389-1593366197-1000_Classes\CLSID\{FBC9D74C-AF55-4309-9FB2-C426E071637F}\InprocServer32 -> C:\Users\USER1\AppData\Roaming\Dropbox\bin\DropboxExt64.34.dll (Dropbox, Inc.) ==================== Zaplanowane zadania (filtrowane) ============= (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) Task: {05906CF1-1D46-4CFE-B90F-7C179FFD1366} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate => C:\Windows\ehome\mcupdate.exe Task: {05CF6E1A-9DC8-4BC2-9594-E91EB1BED40F} - System32\Tasks\CreateChoiceProcessTask => C:\Windows\System32\browserchoice.exe Task: {09406921-7151-4FF2-B98C-69F57973AA1F} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2016-03-11] (Piriform Ltd) Task: {0C097C32-AF0D-45E7-B562-AF1B9EC87EAF} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate_scheduled => C:\Windows\ehome\mcupdate.exe Task: {2F3B95D3-3655-4259-8FD1-BF6211E13C73} - System32\Tasks\Microsoft\Windows\Media Center\PvrScheduleTask => C:\Windows\ehome\mcupdate.exe Task: {2FD43D47-D340-4304-80D6-50BDDC58F2E7} - System32\Tasks\Microsoft\Windows\Media Center\StartRecording => C:\Windows\ehome\ehrec.exe Task: {34603196-FA3F-4943-9934-FEA8EE087176} - System32\Tasks\Microsoft\Windows\Media Center\SqlLiteRecoveryTask => C:\Windows\ehome\mcupdate.exe Task: {40056309-EE93-43E2-B46E-CE000F04B6A2} - System32\Tasks\Adobe Flash Player PPAPI Notifier => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_21_0_0_197_pepper.exe [2016-04-07] (Adobe Systems Incorporated) Task: {4011FD5C-4601-456C-8F83-D557389F1B9D} - System32\Tasks\Microsoft\Windows\Media Center\RegisterSearch => C:\Windows\ehome\ehPrivJob.exe Task: {47E7572D-118F-4E1F-90F0-8F2CAC4043CA} - System32\Tasks\HPLJCustParticipation => C:\Program Files (x86)\HP\HPLJUT\HPLJUTSCH.exe [2010-09-22] (Hewlett Packard) Task: {48AD75A2-780A-4970-836A-C45E993C2A66} - System32\Tasks\Microsoft\Windows\Media Center\MediaCenterRecoveryTask => C:\Windows\ehome\mcupdate.exe Task: {5C590155-A6AC-49A6-B010-FC16FFB36AC7} - System32\Tasks\Microsoft\Windows\Media Center\InstallPlayReady => C:\Windows\ehome\ehPrivJob.exe Task: {5FDB624F-8D6A-48CB-A1D7-E1FECC08D994} - System32\Tasks\DropboxUpdateTaskUserS-1-5-21-1322809636-3719341389-1593366197-1000Core => C:\Users\USER1\AppData\Local\Dropbox\Update\DropboxUpdate.exe [2015-06-17] (Dropbox, Inc.) Task: {62DDA6DD-0241-495D-945D-827E35863ABF} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-02-08] (Google Inc.) Task: {720FA242-3D85-4FF9-820F-6C9F47E70C6B} - System32\Tasks\Microsoft\Windows\Media Center\OCURDiscovery => C:\Windows\ehome\ehPrivJob.exe Task: {74CA2B9B-1742-4708-8418-98270B4CE557} - System32\Tasks\Microsoft\Windows\Media Center\ActivateWindowsSearch => C:\Windows\ehome\ehPrivJob.exe Task: {75006CB1-EB61-4CF8-BEBB-FC7AD426A8E3} - System32\Tasks\Microsoft\Windows\Media Center\ConfigureInternetTimeService => C:\Windows\ehome\ehPrivJob.exe Task: {88DA89A8-BC90-4BB9-A3BE-6287ECE25F1C} - System32\Tasks\Microsoft\Windows\Media Center\PvrRecoveryTask => C:\Windows\ehome\mcupdate.exe Task: {8FFD56C3-C457-43CA-A4F4-E107FEDE243E} - System32\Tasks\DropboxUpdateTaskUserS-1-5-21-1322809636-3719341389-1593366197-1000UA => C:\Users\USER1\AppData\Local\Dropbox\Update\DropboxUpdate.exe [2015-06-17] (Dropbox, Inc.) Task: {923187E1-45CF-4069-8D81-B426C8C35509} - System32\Tasks\Microsoft\Windows\Media Center\OCURActivate => C:\Windows\ehome\ehPrivJob.exe Task: {AFD05202-286A-425F-8679-341035347953} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscovery => C:\Windows\ehome\ehPrivJob.exe Task: {B09BB8B2-873D-4E69-93D0-F75E956A7F00} - System32\Tasks\Microsoft\Windows\Media Center\DispatchRecoveryTasks => C:\Windows\ehome\ehPrivJob.exe Task: {BDEC0A04-3AE2-494A-AC9B-148B328A53AC} - System32\Tasks\Microsoft\Windows\Media Center\ObjectStoreRecoveryTask => C:\Windows\ehome\mcupdate.exe Task: {BDF621DD-B7EC-43D2-B362-8DC09D66C3EA} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2016-06-25] (Adobe Systems Incorporated) Task: {C84A0CA3-D781-43FD-954C-21419FA993F7} - System32\Tasks\Microsoft\Windows\Media Center\UpdateRecordPath => C:\Windows\ehome\ehPrivJob.exe Task: {C9A87FFB-98D1-45AD-BF63-5E55E4650A5B} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW2 => C:\Windows\ehome\ehPrivJob.exe Task: {C9AA7CCD-F47A-45EB-83FC-5703B892BC0E} - System32\Tasks\Microsoft\Windows\Media Center\ReindexSearchRoot => C:\Windows\ehome\ehPrivJob.exe Task: {EE22889A-51EA-419C-BD7C-4A10D7CE028F} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW1 => C:\Windows\ehome\ehPrivJob.exe Task: {F027B635-D954-48BB-BAA2-68CAD1DDB01B} - System32\Tasks\Microsoft\Windows\Media Center\PeriodicScanRetry => C:\Windows\ehome\MCUpdate.exe Task: {F177E0B5-525B-4D56-8CF0-B9B0A01CFAB2} - System32\Tasks\Microsoft\Windows\Media Center\ehDRMInit => C:\Windows\ehome\ehPrivJob.exe Task: {FBC6677B-C6E0-44AD-97E9-BB7799A35272} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-02-08] (Google Inc.) Task: {FF10316E-34A0-4555-81AA-67A1471B6EAA} - System32\Tasks\Microsoft\Windows\Media Center\RecordingRestart => C:\Windows\ehome\ehrec.exe (Załączenie wejścia w fixlist spowoduje przesunięcie pliku zadania (.job). Plik uruchamiany docelowo przez zadanie nie zostanie przeniesiony.) Task: C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job => C:\WINDOWS\explorer.exe ==================== Skróty ============================= (Wybrane wejścia mogą zostać załączone w celu ich zresetowania lub usunięcia.) ==================== Załadowane moduły (filtrowane) ============== 2015-10-30 09:18 - 2015-10-30 09:18 - 00185856 _____ () C:\WINDOWS\SYSTEM32\ism32k.dll 2016-05-31 16:51 - 2015-07-23 03:10 - 00116552 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll 2016-01-06 20:13 - 2016-01-06 20:13 - 00137712 _____ () C:\WINDOWS\System32\HPCP1020LM.DLL 2015-02-06 01:14 - 2011-03-01 00:37 - 00095008 _____ () C:\WINDOWS\System32\Primomonnt.dll 2011-06-22 11:44 - 2011-06-22 11:44 - 00034304 _____ () C:\WINDOWS\System32\sst2cl6.dll 2016-07-14 00:18 - 2015-03-31 13:08 - 00058320 _____ () C:\Program Files\Trend Micro\AMSP\boost_date_time-vc110-mt-1_57.dll 2016-07-14 00:18 - 2015-03-31 13:08 - 00026408 _____ () C:\Program Files\Trend Micro\AMSP\boost_system-vc110-mt-1_57.dll 2016-07-14 00:18 - 2015-03-31 13:09 - 00686608 _____ () C:\Program Files\Trend Micro\AMSP\sqlite3.dll 2016-07-14 00:18 - 2015-03-31 13:08 - 00110320 _____ () C:\Program Files\Trend Micro\AMSP\boost_thread-vc110-mt-1_57.dll 2016-07-14 00:18 - 2015-03-31 13:08 - 00036160 _____ () C:\Program Files\Trend Micro\AMSP\boost_chrono-vc110-mt-1_57.dll 2016-07-14 00:18 - 2015-03-31 13:09 - 01314920 _____ () C:\Program Files\Trend Micro\AMSP\libprotobuf.dll 2016-07-14 00:07 - 2015-07-16 20:31 - 00168544 _____ () C:\Program Files\Trend Micro\UniClient\plugins\LUADLL.dll 2016-07-14 00:17 - 2014-08-01 20:17 - 00048128 _____ () C:\Program Files\Trend Micro\TMIDS\boost_date_time-vc110-mt-1_49.dll 2016-07-14 00:21 - 2015-07-16 20:31 - 00049664 _____ () C:\Program Files\Trend Micro\Titanium\plugin\Pt\boost_date_time-vc110-mt-1_52.dll 2016-07-14 00:21 - 2015-07-16 20:31 - 00089088 _____ () C:\Program Files\Trend Micro\Titanium\plugin\Pt\boost_thread-vc110-mt-1_52.dll 2016-07-14 00:21 - 2015-07-16 20:31 - 00018944 _____ () C:\Program Files\Trend Micro\Titanium\plugin\Pt\boost_system-vc110-mt-1_52.dll 2016-07-14 00:21 - 2015-07-16 20:31 - 00761856 _____ () C:\Program Files\Trend Micro\Titanium\plugin\Pt\boost_regex-vc110-mt-1_52.dll 2016-05-31 17:42 - 2016-05-31 17:42 - 02656952 _____ () C:\WINDOWS\system32\CoreUIComponents.dll 2016-05-31 17:42 - 2016-05-31 17:42 - 02656952 _____ () C:\WINDOWS\System32\CoreUIComponents.dll 2016-05-31 17:25 - 2016-05-31 17:25 - 00959168 _____ () C:\Users\USER1\AppData\Local\Microsoft\OneDrive\17.3.6390.0509\amd64\ClientTelemetry.dll 2016-02-10 21:45 - 2016-02-10 21:45 - 00052912 _____ () C:\Program Files\FileZilla FTP Client\fzshellext_64.dll 2016-07-14 00:18 - 2016-04-21 18:00 - 40970752 _____ () C:\Program Files\Trend Micro\TMIDS\tower\PwmTower.exe 2016-02-13 19:32 - 2016-02-13 19:32 - 00093696 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\Windows.UI.Shell.SharedUtilities.dll 2016-05-31 17:42 - 2016-05-31 17:42 - 00472064 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\QuickActions.dll 2016-06-20 19:34 - 2016-05-28 05:59 - 07992832 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll 2016-06-20 19:34 - 2016-05-28 05:53 - 00591360 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll 2016-06-20 19:34 - 2016-05-28 05:54 - 02483200 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll 2016-06-20 19:34 - 2016-05-28 05:56 - 04089856 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll 2016-07-14 00:07 - 2015-07-16 20:31 - 00065520 _____ () C:\Program Files\Trend Micro\Titanium\plugin\fcMsgDispatcher.dll 2013-03-06 17:51 - 2013-03-06 17:51 - 00067584 _____ () C:\Program Files (x86)\OCS Inventory Agent\zlib1.dll 2015-12-15 13:38 - 2015-12-15 13:38 - 00326112 _____ () C:\Program Files (x86)\Kaspersky Lab\Kaspersky Security Scan\dblite.dll 2015-10-27 16:44 - 2015-10-27 16:44 - 00404952 _____ () C:\Program Files (x86)\Kaspersky Lab\Kaspersky Security Scan\ipm_service.dll 2015-12-12 14:57 - 2016-06-07 03:58 - 00034768 _____ () C:\Users\USER1\AppData\Roaming\Dropbox\bin\_multiprocessing.pyd 2016-07-12 10:09 - 2016-06-07 03:58 - 00134088 _____ () C:\Users\USER1\AppData\Roaming\Dropbox\bin\pyexpat.pyd 2016-07-12 10:09 - 2016-06-07 03:59 - 00019408 _____ () C:\Users\USER1\AppData\Roaming\Dropbox\bin\faulthandler.pyd 2016-07-12 10:09 - 2016-06-07 03:58 - 00116688 _____ () C:\Users\USER1\AppData\Roaming\Dropbox\bin\pywintypes27.dll 2015-12-12 14:57 - 2016-06-07 03:58 - 00093640 _____ () C:\Users\USER1\AppData\Roaming\Dropbox\bin\_ctypes.pyd 2015-12-12 14:57 - 2016-06-07 03:58 - 00018376 _____ () C:\Users\USER1\AppData\Roaming\Dropbox\bin\select.pyd 2015-12-12 14:57 - 2016-07-05 20:00 - 00019760 _____ () C:\Users\USER1\AppData\Roaming\Dropbox\bin\tornado.speedups.pyd 2015-12-12 14:57 - 2016-06-07 04:00 - 00105928 _____ () C:\Users\USER1\AppData\Roaming\Dropbox\bin\win32api.pyd 2016-07-12 10:09 - 2016-06-07 03:58 - 00392144 _____ () C:\Users\USER1\AppData\Roaming\Dropbox\bin\pythoncom27.dll 2015-12-12 14:57 - 2016-07-05 20:00 - 00381752 _____ () C:\Users\USER1\AppData\Roaming\Dropbox\bin\win32com.shell.shell.pyd 2015-12-12 14:57 - 2016-06-07 03:58 - 00692688 _____ () C:\Users\USER1\AppData\Roaming\Dropbox\bin\unicodedata.pyd 2016-07-12 10:09 - 2016-07-05 19:59 - 00020816 _____ () C:\Users\USER1\AppData\Roaming\Dropbox\bin\cryptography.hazmat.bindings._constant_time.pyd 2015-12-12 14:57 - 2016-06-07 03:59 - 00123856 _____ () C:\Users\USER1\AppData\Roaming\Dropbox\bin\_cffi_backend.pyd 2016-07-12 10:09 - 2016-07-05 19:59 - 01682760 _____ () C:\Users\USER1\AppData\Roaming\Dropbox\bin\cryptography.hazmat.bindings._openssl.pyd 2016-07-12 10:09 - 2016-07-05 19:59 - 00020808 _____ () C:\Users\USER1\AppData\Roaming\Dropbox\bin\cryptography.hazmat.bindings._padding.pyd 2015-12-12 14:57 - 2016-07-05 20:00 - 00021840 _____ () C:\Users\USER1\AppData\Roaming\Dropbox\bin\_cffi_unicode_environ_win32_x8bf8e68bx9968e850.pyd 2016-07-12 10:09 - 2016-07-05 20:00 - 00052024 _____ () C:\Users\USER1\AppData\Roaming\Dropbox\bin\psutil._psutil_windows.pyd 2016-07-12 10:09 - 2016-07-05 20:00 - 00038696 _____ () C:\Users\USER1\AppData\Roaming\Dropbox\bin\fastpath.pyd 2016-07-12 10:09 - 2016-06-07 04:00 - 00020936 _____ () C:\Users\USER1\AppData\Roaming\Dropbox\bin\mmapfile.pyd 2015-12-12 14:57 - 2016-06-07 04:00 - 00024528 _____ () C:\Users\USER1\AppData\Roaming\Dropbox\bin\win32event.pyd 2015-12-12 14:57 - 2016-06-07 04:00 - 00114640 _____ () C:\Users\USER1\AppData\Roaming\Dropbox\bin\win32security.pyd 2015-12-12 14:57 - 2016-06-07 04:00 - 00124880 _____ () C:\Users\USER1\AppData\Roaming\Dropbox\bin\win32file.pyd 2016-02-11 23:28 - 2016-07-05 20:00 - 00021832 _____ () C:\Users\USER1\AppData\Roaming\Dropbox\bin\_cffi_pywin_kernel32_x64d8f881xc8c369be.pyd 2015-12-12 14:57 - 2016-06-07 04:00 - 00024016 _____ () C:\Users\USER1\AppData\Roaming\Dropbox\bin\win32clipboard.pyd 2015-12-12 14:57 - 2016-06-07 04:00 - 00175560 _____ () C:\Users\USER1\AppData\Roaming\Dropbox\bin\win32gui.pyd 2015-12-12 14:57 - 2016-06-07 04:00 - 00030160 _____ () C:\Users\USER1\AppData\Roaming\Dropbox\bin\win32pipe.pyd 2015-12-12 14:57 - 2016-06-07 04:00 - 00043472 _____ () C:\Users\USER1\AppData\Roaming\Dropbox\bin\win32process.pyd 2015-12-12 14:57 - 2016-06-07 04:00 - 00048592 _____ () C:\Users\USER1\AppData\Roaming\Dropbox\bin\win32service.pyd 2016-02-11 23:28 - 2016-07-05 20:00 - 00023872 _____ () C:\Users\USER1\AppData\Roaming\Dropbox\bin\winffi.kernel32._winffi_kernel32.pyd 2016-07-12 10:09 - 2016-07-05 20:00 - 00026456 _____ () C:\Users\USER1\AppData\Roaming\Dropbox\bin\dropbox.infinite.win.compiled._driverinstallation.pyd 2015-12-12 14:57 - 2016-06-07 04:00 - 00057808 _____ () C:\Users\USER1\AppData\Roaming\Dropbox\bin\win32evtlog.pyd 2015-12-12 14:57 - 2016-06-07 04:00 - 00024016 _____ () C:\Users\USER1\AppData\Roaming\Dropbox\bin\win32profile.pyd 2016-07-12 10:09 - 2016-07-05 19:59 - 00246592 _____ () C:\Users\USER1\AppData\Roaming\Dropbox\bin\breakpad.client.windows.handler.pyd 2015-12-12 14:57 - 2016-06-07 04:00 - 00028616 _____ () C:\Users\USER1\AppData\Roaming\Dropbox\bin\win32ts.pyd 2016-02-11 23:28 - 2016-07-05 20:00 - 00020800 _____ () C:\Users\USER1\AppData\Roaming\Dropbox\bin\winffi.iphlpapi._winffi_iphlpapi.pyd 2016-02-11 23:28 - 2016-07-05 20:00 - 00019776 _____ () C:\Users\USER1\AppData\Roaming\Dropbox\bin\winffi.winerror._winffi_winerror.pyd 2016-02-11 23:28 - 2016-07-05 20:00 - 00020800 _____ () C:\Users\USER1\AppData\Roaming\Dropbox\bin\winffi.wininet._winffi_wininet.pyd 2015-12-12 14:57 - 2016-06-07 03:58 - 00134608 _____ () C:\Users\USER1\AppData\Roaming\Dropbox\bin\_elementtree.pyd 2016-07-12 10:09 - 2016-06-07 03:59 - 00240584 _____ () C:\Users\USER1\AppData\Roaming\Dropbox\bin\jpegtran.pyd 2016-07-12 10:09 - 2016-07-05 19:59 - 00020280 _____ () C:\Users\USER1\AppData\Roaming\Dropbox\bin\cpuid.compiled._cpuid.pyd 2015-12-12 14:57 - 2016-07-05 20:00 - 00023376 _____ () C:\Users\USER1\AppData\Roaming\Dropbox\bin\winscreenshot.compiled._CaptureScreenshot.pyd 2015-12-12 14:57 - 2016-06-07 04:00 - 00350152 _____ () C:\Users\USER1\AppData\Roaming\Dropbox\bin\winxpgui.pyd 2016-02-11 23:28 - 2016-07-05 20:00 - 00022352 _____ () C:\Users\USER1\AppData\Roaming\Dropbox\bin\winverifysignature.compiled._VerifySignature.pyd 2016-07-12 10:09 - 2016-07-05 20:00 - 00024392 _____ () C:\Users\USER1\AppData\Roaming\Dropbox\bin\librsyncffi.compiled._librsyncffi.pyd 2016-07-12 10:09 - 2016-06-07 04:01 - 00036296 _____ () C:\Users\USER1\AppData\Roaming\Dropbox\bin\librsync.dll 2016-07-12 10:09 - 2016-07-05 20:00 - 00031568 _____ () C:\Users\USER1\AppData\Roaming\Dropbox\bin\enterprise_data.compiled._enterprise_data.pyd 2016-07-12 10:09 - 2016-03-12 02:46 - 00293392 _____ () C:\Users\USER1\AppData\Roaming\Dropbox\bin\EnterpriseDataAdapter.dll 2016-07-12 10:09 - 2016-07-05 20:00 - 00084280 _____ () C:\Users\USER1\AppData\Roaming\Dropbox\bin\dropbox_sqlite_ext.DLL 2016-07-12 10:09 - 2016-07-05 20:00 - 01826096 _____ () C:\Users\USER1\AppData\Roaming\Dropbox\bin\PyQt5.QtCore.pyd 2015-12-12 14:57 - 2016-06-07 03:59 - 00083912 _____ () C:\Users\USER1\AppData\Roaming\Dropbox\bin\sip.pyd 2016-07-12 10:09 - 2016-07-05 20:00 - 03928880 _____ () C:\Users\USER1\AppData\Roaming\Dropbox\bin\PyQt5.QtWidgets.pyd 2016-07-12 10:09 - 2016-07-05 20:00 - 01971504 _____ () C:\Users\USER1\AppData\Roaming\Dropbox\bin\PyQt5.QtGui.pyd 2016-07-12 10:09 - 2016-07-05 20:00 - 00531248 _____ () C:\Users\USER1\AppData\Roaming\Dropbox\bin\PyQt5.QtNetwork.pyd 2016-07-12 10:09 - 2016-07-05 20:00 - 00132912 _____ () C:\Users\USER1\AppData\Roaming\Dropbox\bin\PyQt5.QtWebKit.pyd 2016-07-12 10:09 - 2016-07-05 20:00 - 00223544 _____ () C:\Users\USER1\AppData\Roaming\Dropbox\bin\PyQt5.QtWebKitWidgets.pyd 2016-07-12 10:09 - 2016-07-05 20:00 - 00207672 _____ () C:\Users\USER1\AppData\Roaming\Dropbox\bin\PyQt5.QtPrintSupport.pyd 2015-12-12 14:57 - 2016-06-07 04:00 - 00060880 _____ () C:\Users\USER1\AppData\Roaming\Dropbox\bin\win32print.pyd 2016-04-14 02:06 - 2016-07-05 20:00 - 00025928 _____ () C:\Users\USER1\AppData\Roaming\Dropbox\bin\windisplaytoast.compiled._DisplayToast.pyd 2015-12-12 14:57 - 2016-07-05 20:00 - 00024904 _____ () C:\Users\USER1\AppData\Roaming\Dropbox\bin\_cffi_wpad_proxy_win_x752e3d61xdcfdcc84.pyd 2016-07-12 10:09 - 2016-07-05 20:00 - 00546096 _____ () C:\Users\USER1\AppData\Roaming\Dropbox\bin\PyQt5.QtQuick.pyd 2016-07-12 10:09 - 2016-07-05 20:00 - 00357680 _____ () C:\Users\USER1\AppData\Roaming\Dropbox\bin\PyQt5.QtQml.pyd 2016-06-02 18:06 - 2016-06-02 18:06 - 45077376 _____ () C:\Program Files (x86)\Kaspersky Lab\Kaspersky Security Scan\libcef.dll 2016-06-02 18:06 - 2016-06-02 18:06 - 01650560 _____ () C:\Program Files (x86)\Kaspersky Lab\Kaspersky Security Scan\libglesv2.dll 2016-06-02 18:06 - 2016-06-02 18:06 - 00082304 _____ () C:\Program Files (x86)\Kaspersky Lab\Kaspersky Security Scan\libegl.dll 2014-01-14 00:03 - 2014-01-14 00:03 - 00110088 _____ () C:\Program Files (x86)\Dell Digital Delivery\ServiceTagPlusPlus.dll 2016-05-31 17:25 - 2016-05-31 17:25 - 00679624 _____ () C:\Users\USER1\AppData\Local\Microsoft\OneDrive\17.3.6390.0509\ClientTelemetry.dll ==================== Alternate Data Streams (filtrowane) ========= (Załączenie wejścia w fixlist spowoduje usunięcie strumienia ADS.) ==================== Tryb awaryjny (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Wartość "AlternateShell" zostanie przywrócona.) ==================== Powiązania plików (filtrowane) =============== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci.) ==================== Internet Explorer - Witryny zaufane i z ograniczeniami =============== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru.) IE trusted site: HKU\S-1-5-21-1322809636-3719341389-1593366197-1000\...\dell.com -> dell.com IE trusted site: HKU\S-1-5-21-1322809636-3719341389-1593366197-1000\...\trendmicro.com -> hxxps://pwm.trendmicro.com ==================== Hosts - zawartość: =============================== (Użycie dyrektywy Hosts: w fixlist spowoduje reset pliku Hosts.) 2009-07-14 04:34 - 2009-06-10 23:00 - 00000824 ____A C:\WINDOWS\system32\Drivers\etc\hosts ==================== Inne obszary ============================ (Obecnie brak automatycznej naprawy dla tej sekcji.) HKU\S-1-5-21-1322809636-3719341389-1593366197-1000\Control Panel\Desktop\\Wallpaper -> DNS Servers: 192.168.1.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 1) (EnableLUA: 1) Zapora systemu Windows [funkcja włączona] ==================== MSCONFIG/TASK MANAGER - Wyłączone elementy == (Obecnie brak automatycznej naprawy dla tej sekcji.) MSCONFIG\startupreg: Adobe Speed Launcher => 1421414929 MSCONFIG\startupreg: AutoRegisterCerts => "C:\Program Files (x86)\Unizeto\proCertum CardManager\cryptoCertumScanner.exe" /AUTORUN MSCONFIG\startupreg: CCleaner Monitoring => "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR MSCONFIG\startupreg: DellSystemDetect => C:\Users\USER1\AppData\Local\Apps\2.0\NOCBO8PX.OC0\878V5B42.CVO\dell..tion_e30b47f5d4a30e9e_0005.000c_1df9a4898fae00de\DellSystemDetect.exe MSCONFIG\startupreg: Dropbox Update => "C:\Users\USER1\AppData\Local\Dropbox\Update\DropboxUpdate.exe" /c MSCONFIG\startupreg: IAStorIcon => "C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe" "C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe" 60 MSCONFIG\startupreg: ProductUpdater => C:\Program Files (x86)\Common Files\Freemake Shared\ProductUpdater\ProductUpdater.exe MSCONFIG\startupreg: QuickSet => C:\Program Files\Dell\QuickSet\QuickSet.exe MSCONFIG\startupreg: SynTPEnh => %ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe MSCONFIG\startupreg: USB3MON => "C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe" HKLM\...\StartupApproved\Run: => "RTHDVCPL" HKLM\...\StartupApproved\Run: => "RtHDVBg" HKLM\...\StartupApproved\Run: => "SynTPEnh" HKLM\...\StartupApproved\Run32: => "hshhsaaaws" ==================== Reguły Zapory systemu Windows (filtrowane) =============== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139 FirewallRules: [MSMQ-In-TCP] => (Allow) %systemroot%\system32\mqsvc.exe FirewallRules: [MSMQ-Out-TCP] => (Allow) %systemroot%\system32\mqsvc.exe FirewallRules: [MSMQ-In-UDP] => (Allow) %systemroot%\system32\mqsvc.exe FirewallRules: [MSMQ-Out-UDP] => (Allow) %systemroot%\system32\mqsvc.exe FirewallRules: [WCF-NetTcpActivator-In-TCP-64bit] => (Allow) LPort=808 FirewallRules: [{15EA3154-88F2-4776-96BC-D6E11ADF7ED2}] => (Block) C:\Users\USER1\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{67C87145-45E9-482C-8481-1634D29EC572}] => (Allow) C:\Users\USER1\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{BD5D2019-B795-442A-A7AD-55BC8963C3A2}] => (Allow) C:\Users\USER1\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{189D2B91-2810-4771-B00F-7F030A2037B8}] => (Allow) C:\Users\USER1\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{9A75480C-66A4-479D-8742-DD03CE4D9D8C}] => (Block) C:\Users\USER1\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{85123E97-5D67-4963-93A1-53C13215F1EF}] => (Allow) C:\Users\USER1\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [UDP Query User{B4BFDB8C-48F0-4E00-A293-8525B386932A}C:\program files (x86)\myphoneexplorer\myphoneexplorer.exe] => (Allow) C:\program files (x86)\myphoneexplorer\myphoneexplorer.exe FirewallRules: [TCP Query User{9795AA03-8A8A-44BA-A399-229AD9F9E366}C:\program files (x86)\myphoneexplorer\myphoneexplorer.exe] => (Allow) C:\program files (x86)\myphoneexplorer\myphoneexplorer.exe FirewallRules: [UDP Query User{3ADC55BE-9153-477A-A8B3-A4D6EAED6609}C:\program files (x86)\java\jre1.8.0_66\bin\javaw.exe] => (Allow) C:\program files (x86)\java\jre1.8.0_66\bin\javaw.exe FirewallRules: [TCP Query User{F3707FD0-00C3-44B4-86E3-49559721F121}C:\program files (x86)\java\jre1.8.0_66\bin\javaw.exe] => (Allow) C:\program files (x86)\java\jre1.8.0_66\bin\javaw.exe FirewallRules: [UDP Query User{2AE19672-75C4-4153-AA46-3F9B3430523C}C:\program files (x86)\mozilla firefox\plugin-container.exe] => (Block) C:\program files (x86)\mozilla firefox\plugin-container.exe FirewallRules: [TCP Query User{5E677953-BD67-474B-BA72-925296DC2741}C:\program files (x86)\mozilla firefox\plugin-container.exe] => (Block) C:\program files (x86)\mozilla firefox\plugin-container.exe FirewallRules: [{BD2DA670-1160-4F6D-B8F2-C04C7FFD09E9}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{6745E8D7-4278-4E85-9353-8978E4BB33EE}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{A9BC1AB1-B355-4087-91DD-F74A2332F2F5}] => (Allow) LPort=1900 FirewallRules: [{7C849CE7-E5A7-47F3-9ECE-35AEC5F876C7}] => (Allow) LPort=2869 FirewallRules: [{40AFCC15-9EB2-4CE1-802C-DDA52178C26C}] => (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe FirewallRules: [{C9D91622-4350-42E0-8C40-C0C4CE371DBF}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Team Fortress 2\hl2.exe FirewallRules: [{13BA9273-A67E-4711-B4CE-F723EC0D234C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Team Fortress 2\hl2.exe FirewallRules: [{06D5967C-3351-4DDA-8C1B-AB0E2363C2AD}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe FirewallRules: [{A09765CA-ADED-4633-9A79-FDB97ABD3142}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe FirewallRules: [{A9586685-1335-4994-81A0-53934607DBDC}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{4277F591-56DB-42D3-B043-E93EF8CCB3DA}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [UDP Query User{A402AE45-7BFE-4058-8C99-4DA79D0BF54C}C:\games\world_of_tanks\worldoftanks.exe] => (Allow) C:\games\world_of_tanks\worldoftanks.exe FirewallRules: [TCP Query User{23E3CC4E-4566-4DA0-9DD1-A61109E0193A}C:\games\world_of_tanks\worldoftanks.exe] => (Allow) C:\games\world_of_tanks\worldoftanks.exe FirewallRules: [UDP Query User{880631A4-2BB9-4886-A7D5-CBEB3EE4B1D4}C:\games\world_of_tanks\wotlauncher.exe] => (Allow) C:\games\world_of_tanks\wotlauncher.exe FirewallRules: [TCP Query User{1089D844-314D-4420-92EA-FF475E2C39CA}C:\games\world_of_tanks\wotlauncher.exe] => (Allow) C:\games\world_of_tanks\wotlauncher.exe FirewallRules: [{418E5259-46AE-4823-8ED3-C5791C2F2D03}] => (Allow) %ProgramFiles%\Zune\ZuneNSS.exe FirewallRules: [{3A206D1B-3CC3-4F8C-8193-5C3161757F5C}] => (Allow) %ProgramFiles%\Zune\ZuneNSS.exe FirewallRules: [{2E323BEA-F105-4C17-B929-CE433E678DA1}] => (Allow) %ProgramFiles%\Zune\ZuneNSS.exe FirewallRules: [{8474075F-C762-47B0-A02B-8B8C48EC3283}] => (Allow) %ProgramFiles%\Zune\ZuneNSS.exe FirewallRules: [{FB9095E4-9D9C-4570-8268-806B1ED61499}] => (Allow) %ProgramFiles%\Zune\ZuneNSS.exe FirewallRules: [{1EA680BF-D920-4521-ABD8-4C2D167ACEEE}] => (Allow) %ProgramFiles%\Zune\ZuneNSS.exe FirewallRules: [{504F7D91-F007-46AA-8485-2A55899B845E}] => (Allow) %ProgramFiles%\Zune\ZuneNSS.exe FirewallRules: [{D037D70B-294D-4112-8865-AB3918A841CD}] => (Allow) %ProgramFiles%\Zune\ZuneNSS.exe FirewallRules: [{3ADF751C-CD40-43B9-8DC8-871FE4135FEB}] => (Allow) %ProgramFiles%\Zune\Zune.exe FirewallRules: [UDP Query User{A16AF258-73A9-4021-8212-4A7518241CBB}C:\program files (x86)\mozilla firefox\firefox.exe] => (Block) C:\program files (x86)\mozilla firefox\firefox.exe FirewallRules: [TCP Query User{8E8B497B-962C-4D76-BD5B-9A3CB2FE155C}C:\program files (x86)\mozilla firefox\firefox.exe] => (Block) C:\program files (x86)\mozilla firefox\firefox.exe FirewallRules: [{04A3485B-45F9-47ED-B574-2A173531FC45}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{3B1037B6-21E8-4D9A-95E4-B35E1A71E494}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{12C8E0E4-E8A4-4642-B7EA-27A387F87002}] => (Allow) C:\Program Files (x86)\360\Total Security\LiveUpdate360.exe FirewallRules: [{E8933ED7-1F3A-41AB-AF05-6C2C725AEF4A}] => (Allow) C:\Program Files (x86)\360\Total Security\LiveUpdate360.exe FirewallRules: [{0FCBA0CA-048E-4B2F-B66A-58143CFD8EA0}] => (Allow) C:\Windows\SysWOW64\muzapp.exe FirewallRules: [{790D3BEF-1C58-43C5-9868-1A693C86EB0A}] => (Allow) C:\Windows\SysWOW64\muzapp.exe FirewallRules: [{1432D051-6BE7-415F-B9C3-BD8A5DF853CE}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe FirewallRules: [UDP Query User{B2066E2E-10A9-47F7-8031-9EC1FE020AA6}C:\users\user1\appdata\roaming\dropbox\bin\dropbox.exe] => (Allow) C:\users\user1\appdata\roaming\dropbox\bin\dropbox.exe FirewallRules: [TCP Query User{FC543C8C-8EB3-48D0-AD2C-21AC42334C99}C:\users\user1\appdata\roaming\dropbox\bin\dropbox.exe] => (Allow) C:\users\user1\appdata\roaming\dropbox\bin\dropbox.exe FirewallRules: [{3E10B07B-2C2A-4CC8-B06B-AB80790E5B1C}] => (Allow) C:\Users\USER1\AppData\Roaming\Dropbox\bin\Dropbox.exe FirewallRules: [{63226627-CCDA-45B0-9D04-9397D4EEAE84}] => (Allow) C:\Users\USER1\AppData\Roaming\Dropbox\bin\Dropbox.exe FirewallRules: [{446FA451-A39F-4433-B7EB-6566F8F35A54}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{1B1B5CB8-F143-4142-88D7-D58058664B20}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{275F8846-2940-47AF-9813-B9DCE9ED995A}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe FirewallRules: [{6F160AF7-7E0C-4CDD-91F2-D32BE7FBE839}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe FirewallRules: [{654EFB2B-1748-43D0-BC56-4F1BF4BE222D}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe FirewallRules: [{E5E0AA35-CA89-4481-A98C-A1718C0A21F5}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe FirewallRules: [{62BD74B2-635B-4691-84C7-C1CA3E25BBA4}] => (Allow) C:\Program Files (x86)\Origin Games\The Sims 4\Game\Bin\TS4.exe FirewallRules: [{A31D5C48-3B62-4E2A-9060-0F1DBC5574A8}] => (Allow) C:\Program Files (x86)\Origin Games\The Sims 4\Game\Bin\TS4.exe FirewallRules: [{DD8FABD3-8852-4A6F-BC2D-055B1DA74180}] => (Allow) C:\Program Files (x86)\Origin Games\The Sims 4\Game\Bin\TS4_x64.exe FirewallRules: [{E728405F-5F00-4962-B4EE-6F7EB20CFF65}] => (Allow) C:\Program Files (x86)\Origin Games\The Sims 4\Game\Bin\TS4_x64.exe FirewallRules: [TCP Query User{4668A00E-C284-455E-BEE3-91FEC4C3FE6A}C:\program files (x86)\airdroid\airdroid.exe] => (Allow) C:\program files (x86)\airdroid\airdroid.exe FirewallRules: [UDP Query User{A76DF6DB-F0F2-463C-8A22-FD28817A1910}C:\program files (x86)\airdroid\airdroid.exe] => (Allow) C:\program files (x86)\airdroid\airdroid.exe FirewallRules: [{ED0A9AE3-433F-4146-8F1C-39A51D265A78}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{4E7F8D68-D63E-4A56-811C-C19CA737FFEB}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{D500526F-BDAD-463A-ABE1-67D0E3C90DFB}] => (Allow) C:\Program Files (x86)\360\Total Security\safemon\QHSafeTray.exe FirewallRules: [{ADD6FA21-A251-4D8F-A88E-B539DF360D19}] => (Allow) C:\Program Files (x86)\360\Total Security\safemon\QHSafeTray.exe FirewallRules: [{5E8D8E58-DC22-414D-B7D9-D0CB00799A35}] => (Allow) C:\Program Files (x86)\CheckPoint\ZoneAlarm\vsmon.exe FirewallRules: [{C9A98169-EFE0-4026-ABD4-380A49999627}] => (Allow) C:\Program Files (x86)\CheckPoint\ZoneAlarm\vsmon.exe FirewallRules: [{55438055-F9DF-4AC8-BDA8-B16A2F177A30}] => (Allow) C:\Program Files (x86)\CheckPoint\ZoneAlarm\vsmon.exe FirewallRules: [{3CF797B6-0305-4522-BEDB-2C45E3960C49}] => (Allow) C:\Program Files (x86)\CheckPoint\ZoneAlarm\vsmon.exe FirewallRules: [{7E0B4CE3-4C68-42FD-81E4-58A3B7842288}] => (Allow) C:\Program Files (x86)\GlassWire\GWCtlSrv.exe FirewallRules: [{0F179280-19E0-44DB-B6EA-D2EBC29C14E0}] => (Allow) C:\Program Files (x86)\GlassWire\GWCtlSrv.exe FirewallRules: [{E9561A54-9DB4-4EE3-8F45-9E98062DCCC5}] => (Block) c:\program files (x86)\bonjour\mdnsresponder.exe FirewallRules: [{3B31AA91-A357-408C-833E-8C3602768357}] => (Block) c:\program files (x86)\bonjour\mdnsresponder.exe FirewallRules: [{3BE4CA4E-8AB6-49BA-9506-0EF28B8AA9D0}] => (Block) c:\program files\windowsapps\microsoft.zunevideo_3.6.21441.0_x64__8wekyb3d8bbwe\video.ui.exe FirewallRules: [{29815850-66D8-412E-920E-1BBA80E7CE2A}] => (Block) c:\program files\windowsapps\microsoft.zunevideo_3.6.21441.0_x64__8wekyb3d8bbwe\video.ui.exe FirewallRules: [{8320F040-F67C-47AF-B2AA-CC02E769B00E}] => (Block) c:\program files\nvidia corporation\nvstreamsrv\nvstreamsvc.exe FirewallRules: [{9C505EEA-4213-462C-8674-D20F6828D96B}] => (Block) c:\program files\nvidia corporation\nvstreamsrv\nvstreamsvc.exe FirewallRules: [{F1730958-4CE6-46D6-8B93-38221EE092D7}] => (Block) c:\windows\system32\dashost.exe FirewallRules: [{E0D66CD8-6428-4602-81B5-66752DFCF48F}] => (Block) c:\windows\system32\dashost.exe FirewallRules: [{43C25EC5-2F35-4858-A039-AA3704112346}] => (Block) c:\program files (x86)\dell digital delivery\deliveryservice.exe FirewallRules: [{60E56561-01F2-418B-AC76-BA68524E9ABA}] => (Block) c:\program files (x86)\dell digital delivery\deliveryservice.exe FirewallRules: [{E127237D-C263-4BD5-9D2F-DC4342A40A40}] => (Block) c:\trener\downlod\reimagerepair.exe FirewallRules: [{1ED88B02-BBC1-4E37-BC04-9D9C797D1F09}] => (Block) c:\trener\downlod\reimagerepair.exe FirewallRules: [{AB93E5B3-DA25-4F10-B41D-838935F8FB25}] => (Block) c:\users\user1\appdata\local\temp\nsebb0.tmp\protectorupdater.exe FirewallRules: [{DD1DBB4C-0CCA-4D0E-A331-F651A47393EE}] => (Block) c:\users\user1\appdata\local\temp\nsebb0.tmp\protectorupdater.exe FirewallRules: [{C9D3433C-99FE-4FD9-AE61-FF4A4723AC23}] => (Block) c:\program files\reimage\reimage repair\reimage.exe FirewallRules: [{4644EA99-139A-4D4D-B9CB-D5757D0C7AF1}] => (Block) c:\program files\reimage\reimage repair\reimage.exe FirewallRules: [{9B73A346-7766-49CF-9441-FC16AD0F8329}] => (Block) c:\program files\reimage\reimage protector\reisystem.exe FirewallRules: [{9DDEF9C6-F4C5-4B0B-B93D-87EBD74D474D}] => (Block) c:\program files\reimage\reimage protector\reisystem.exe FirewallRules: [{98AF7C5A-E72B-4A4B-A1B8-B83FC047DBAC}] => (Block) c:\users\user1\appdata\local\temp\reimagepackage.exe FirewallRules: [{311DF921-B59E-4EE3-9A14-AFBE5F68AD1A}] => (Block) c:\users\user1\appdata\local\temp\reimagepackage.exe FirewallRules: [{BB7DEC8C-C263-4A60-ADC3-00C62CE52DAC}] => (Block) c:\program files\reimage\reimage protector\reiguard.exe FirewallRules: [{9FAA2C9A-8A03-49B0-9022-93247B8B70F2}] => (Block) c:\program files\reimage\reimage protector\reiguard.exe FirewallRules: [{432A994A-9259-49F1-8C0F-24361E036006}] => (Block) c:\users\user1\appdata\local\temp\uniprotectorpackage.exe FirewallRules: [{E31026DF-8942-415F-88C2-B196BAA6F758}] => (Block) c:\users\user1\appdata\local\temp\uniprotectorpackage.exe FirewallRules: [{C51B6D4C-2CEF-44BA-9BCA-A529AF347E53}] => (Block) c:\program files (x86)\hisuite\hisuite.exe FirewallRules: [{71289B6B-C969-4AD2-8CAA-0A594962E677}] => (Block) c:\program files (x86)\hisuite\hisuite.exe FirewallRules: [{79AF89F7-0275-4958-B49C-79D6DA07CF9D}] => (Block) c:\windows\systemapps\microsoft.windows.cortana_cw5n1h2txyewy\searchui.exe FirewallRules: [{57A0469A-A165-4DBD-89D9-135CAFFFBE9A}] => (Block) c:\windows\systemapps\microsoft.windows.cortana_cw5n1h2txyewy\searchui.exe FirewallRules: [{4E7626DB-3062-4B13-931C-69288DD515DC}] => (Block) c:\program files\trend micro\titanium\plugin\pt\ptsvchost.exe FirewallRules: [{DA832996-4BF9-4EA1-BEF6-D69004BEE060}] => (Block) c:\program files\trend micro\titanium\plugin\pt\ptsvchost.exe FirewallRules: [{695C5331-9EA2-4542-976E-272D49BB0FEF}] => (Block) c:\program files (x86)\ocs inventory agent\ocsinventory.exe FirewallRules: [{EC9D262A-9075-4FB2-A549-51240AAFE8D7}] => (Block) c:\program files (x86)\ocs inventory agent\ocsinventory.exe ==================== Punkty Przywracania systemu ========================= 13-07-2016 23:30:36 JRT Pre-Junkware Removal ==================== Wadliwe urządzenia w Menedżerze urządzeń ============= ==================== Błędy w Dzienniku zdarzeń: ========================= Dziennik Aplikacja: ================== Error: (07/15/2016 01:37:12 PM) (Source: OCS Inventory Service) (EventID: 20) (User: ) Description: Service encounter error Failed to talk with Communication Server)>. Error: (07/15/2016 11:52:39 AM) (Source: OCS Inventory Service) (EventID: 20) (User: ) Description: Service encounter error Failed to talk with Communication Server)>. Error: (07/15/2016 11:41:21 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: plugin-container.exe, wersja: 47.0.1.6018, sygnatura czasowa: 0x576c9637 Nazwa modułu powodującego błąd: mozglue.dll, wersja: 47.0.1.6018, sygnatura czasowa: 0x576c85ba Kod wyjątku: 0x80000003 Przesunięcie błędu: 0x0000f02b Identyfikator procesu powodującego błąd: 0x734 Godzina uruchomienia aplikacji powodującej błąd: 0xplugin-container.exe0 Ścieżka aplikacji powodującej błąd: plugin-container.exe1 Ścieżka modułu powodującego błąd: plugin-container.exe2 Identyfikator raportu: plugin-container.exe3 Pełna nazwa pakietu powodującego błąd: plugin-container.exe4 Identyfikator aplikacji względem pakietu powodującego błąd: plugin-container.exe5 Error: (07/15/2016 11:07:15 AM) (Source: OCS Inventory Service) (EventID: 20) (User: ) Description: Service encounter error Failed to talk with Communication Server)>. Error: (07/15/2016 10:57:17 AM) (Source: OCS Inventory Service) (EventID: 20) (User: ) Description: Service encounter error Failed to talk with Communication Server)>. Error: (07/15/2016 10:41:34 AM) (Source: OCS Inventory Service) (EventID: 20) (User: ) Description: Service encounter error Failed to talk with Communication Server)>. Error: (07/15/2016 10:33:48 AM) (Source: OCS Inventory Service) (EventID: 20) (User: ) Description: Service encounter error Failed to talk with Communication Server)>. Error: (07/15/2016 10:30:23 AM) (Source: OCS Inventory Service) (EventID: 20) (User: ) Description: Service encounter error Failed to talk with Communication Server)>. Error: (07/15/2016 10:29:24 AM) (Source: OCS Inventory Service) (EventID: 20) (User: ) Description: Service encounter error Failed to talk with Communication Server)>. Error: (07/15/2016 01:51:25 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: USER1-PC) Description: Aktywacja aplikacji windows.immersivecontrolpanel_6.2.0.0_neutral_neutral_cw5n1h2txyewy:microsoft.windows.immersivecontrolpanel nie powiodła się. Błąd: -2144927149. Więcej informacji można znaleźć w dzienniku Microsoft-Windows-TWinUI/Działa. Dziennik System: ============= Error: (07/15/2016 02:51:30 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi NetPipeActivator z powodu następującego błędu: %%1053 = Usługa nie odpowiada na sygnał uruchomienia lub sygnał sterujący w oczekiwanym czasie. Error: (07/15/2016 02:51:30 PM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: Upłynął limit czasu (30000 ms) podczas oczekiwania na połączenie się z usługą NetPipeActivator. Error: (07/15/2016 02:50:54 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: Usługa NetTcpActivator zależy od usługi NetTcpPortSharing, której nie można uruchomić z powodu następującego błędu: %%1058 = Nie można uruchomić określonej usługi, ponieważ jest ona wyłączona lub ponieważ nie są włączone skojarzone z nią urządzenia. Error: (07/15/2016 02:50:40 PM) (Source: Microsoft-Windows-Directory-Services-SAM) (EventID: 16953) (User: ZARZĄDZANIE NT) Description: Nie można załadować biblioteki DLL powiadamiania o haśle C:\Program Files\WIDCOMM\Bluetooth Software\BtwProximityCP.dll. Błąd: 126. Upewnij się, że biblioteka DLL powiadamiania zdefiniowana w rejestrze (HKLM\System\CurrentControlSet\Control\Lsa\Notification Packages) odwołuje się do poprawnej ścieżki bezwzględnej (:\<ścieżka>\.), a nie do ścieżki względnej lub nieprawidłowej ścieżki. Jeśli ścieżka biblioteki DLL jest poprawna, sprawdź, czy w tym samym katalogu znajdują się pliki pomocnicze oraz czy konto systemowe ma dostęp odczytu do ścieżki biblioteki DLL i plików pomocniczych. Aby uzyskać dodatkową pomoc, skontaktuj się z dostawcą biblioteki DLL powiadamiania o haśle. Więcej informacji można znaleźć w sieci Web na stronie http://go.microsoft.com/fwlink/?LinkId=245898. Error: (07/15/2016 02:49:56 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Usługa Synchronizuj hosta_3aa70 niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 10000 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie. Error: (07/15/2016 09:24:46 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi NetMsmqActivator z powodu następującego błędu: %%1053 = Usługa nie odpowiada na sygnał uruchomienia lub sygnał sterujący w oczekiwanym czasie. Error: (07/15/2016 09:24:46 AM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: Upłynął limit czasu (30000 ms) podczas oczekiwania na połączenie się z usługą NetMsmqActivator. Error: (07/15/2016 09:24:46 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi NetPipeActivator z powodu następującego błędu: %%1053 = Usługa nie odpowiada na sygnał uruchomienia lub sygnał sterujący w oczekiwanym czasie. Error: (07/15/2016 09:24:46 AM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: Upłynął limit czasu (30000 ms) podczas oczekiwania na połączenie się z usługą NetPipeActivator. Error: (07/15/2016 09:24:41 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi GlassWire z powodu następującego błędu: %%1053 = Usługa nie odpowiada na sygnał uruchomienia lub sygnał sterujący w oczekiwanym czasie. CodeIntegrity: =================================== Date: 2016-07-14 20:03:17.151 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system. Date: 2016-07-14 12:58:32.420 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2016-07-14 12:58:32.294 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2016-07-14 12:58:32.246 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2016-07-14 12:58:32.135 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2016-07-14 12:58:32.093 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2016-07-14 12:58:31.269 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2016-07-14 12:58:30.751 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2016-07-14 12:58:30.715 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2016-07-14 12:58:30.689 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. ==================== Statystyki pamięci =========================== Procesor: Intel(R) Core(TM) i7-4510U CPU @ 2.00GHz Procent pamięci w użyciu: 28% Całkowita pamięć fizyczna: 8095.83 MB Dostępna pamięć fizyczna: 5767.7 MB Całkowita pamięć wirtualna: 16287.83 MB Dostępna pamięć wirtualna: 13970.75 MB ==================== Dyski ================================ Drive c: () (Fixed) (Total:930.96 GB) (Free:766.46 GB) NTFS Drive f: (PENIK) (Removable) (Total:3.76 GB) (Free:3.35 GB) FAT32 ==================== MBR & Tablica partycji ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: CC191FA7) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=931 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=465 MB) - (Type=27) ======================================================== Disk: 1 (Size: 3.8 GB) (Disk ID: 500A0DFF) No partition Table on disk 1. ==================== Koniec Addition.txt ============================