Rezultaty skanu uzupełniającego Farbar Recovery Scan Tool (x64) Wersja: 07-12-2016 Uruchomiony przez Administrator (09-12-2016 09:14:47) Uruchomiony z C:\Users\Administrator\Downloads Windows 7 Professional Service Pack 1 (X64) (2015-06-24 10:25:54) Tryb startu: Normal ========================================================== ==================== Konta użytkowników: ============================= Administrator (S-1-5-21-2535924014-3120798370-1912081755-500 - Administrator - Enabled) => C:\Users\Administrator Gość (S-1-5-21-2535924014-3120798370-1912081755-501 - Limited - Disabled) User (S-1-5-21-2535924014-3120798370-1912081755-1000 - Administrator - Enabled) => C:\Users\User ==================== Centrum zabezpieczeń ======================== (Załączenie wejścia w fixlist spowoduje jego usunięcie.) AV: ESET Endpoint Antivirus 5.0 (Enabled - Up to date) {19259FAE-8396-A113-46DB-15B0E7DFA289} AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: ESET Endpoint Antivirus 5.0 (Enabled - Up to date) {A2447E4A-A5AC-AE9D-7C6B-2EC29C58E834} ==================== Zainstalowane programy ====================== (W fixlist dozwolone tylko załączanie programów adware z flagą "Hidden" w celu ich uwidocznienia. Programy adware powinny zostać w poprawny sposób odinstalowane.) Adobe Acrobat Reader DC - Polish (HKLM-x32\...\{AC76BA86-7AD7-1045-7B44-AC0F074E4100}) (Version: 15.020.20042 - Adobe Systems Incorporated) Adobe Flash Player 23 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 23.0.0.185 - Adobe Systems Incorporated) Adobe Flash Player 23 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 23.0.0.205 - Adobe Systems Incorporated) BDE Information Utility (HKLM-x32\...\BDE Information Utility) (Version: - InterBase Installation Info (and BDE Information Utility)) EaseUS Partition Master 10.5 (HKLM-x32\...\EaseUS Partition Master_is1) (Version: - EaseUS) ESET Endpoint Antivirus (HKLM\...\{01F51F16-2AE4-488E-8660-AFD523051523}) (Version: 5.0.2237.2 - ESET, spol. s r.o.) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 54.0.2840.99 - Google Inc.) Google Update Helper (x32 Version: 1.3.31.5 - Google Inc.) Hidden Grafik 2.50 (HKLM-x32\...\Grafik_is1) (Version: 2.50 - © Grzegorz Wisowski) HP LaserJet Professional M1130-M1210 MFP Series (HKLM\...\HP LaserJet Professional M1130-M1210 MFP Series) (Version: - ) HP Support Solutions Framework (HKLM-x32\...\{CF153513-D2C7-4652-8464-31FDAD2891E9}) (Version: 12.0.30.81 - Hewlett-Packard Company) Java 8 Update 111 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180111F0}) (Version: 8.0.1110.14 - Oracle Corporation) JiveX [rv] 4.2.2 (HKLM-x32\...\JiveX [rv] 4.2.2) (Version: - ) Microsoft .NET Framework 4.6.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.6.01055 - Microsoft Corporation) Microsoft .NET Framework 4.6.1 (Polski) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1045) (Version: 4.6.01055 - Microsoft Corporation) Microsoft Office XP Professional (HKLM-x32\...\{90110415-6000-11D3-8CFE-0050048383C9}) (Version: 10.0.6626.0 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50901.0 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.21022 (HKLM\...\{350AA351-21FA-3270-8B7A-835434E766AD}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Mozilla Firefox 50.0.2 (x86 pl) (HKLM-x32\...\Mozilla Firefox 50.0.2 (x86 pl)) (Version: 50.0.2 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 50.0.2.6177 - Mozilla) MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation) MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation) OpenOffice 4.1.1 (HKLM-x32\...\{B5373BA3-BAD7-4EAC-A9D2-B66B41B82C57}) (Version: 4.11.9775 - Apache Software Foundation) Pakiet sterowników systemu Windows - Intel (e1kexpress) Net (09/23/2009 11.2.19.0) (HKLM\...\F95A1E680BCDF47F618C34BE61F0765719312BC3) (Version: 09/23/2009 11.2.19.0 - Intel) Pakiet sterowników systemu Windows - Intel (HECIx64) System (06/23/2009 5.2.0.1008) (HKLM\...\4CF241D8BEE94EE801F312E8B49B8E5BAA90F29A) (Version: 06/23/2009 5.2.0.1008 - Intel) Pakiet sterowników systemu Windows - Intel (Serial) Ports (07/06/2009 5.5.1.1012) (HKLM\...\49AA6E0E36A92D25AFC2479DC7BCB705AE01CE1F) (Version: 07/06/2009 5.5.1.1012 - Intel) Pakiet sterowników systemu Windows - Intel System (11/07/2008 7.0.1.1011) (HKLM\...\019BA247F4BF373BFF125045DCD742221AF9A191) (Version: 11/07/2008 7.0.1.1011 - Intel) Scan To (HKLM\...\{E8A34AC8-0137-4515-A94B-0A0946DDC251}) (Version: 2.0.1 - HP) Total Commander PowerPack 2.0 beta (HKLM-x32\...\TC PowerPack 2) (Version: 2.0 beta - bukox.net Adam Bukowiński) VNC Server 5.2.3 (HKLM\...\{E248D9BE-834C-4BE3-BBE3-E66B2AE39886}) (Version: 5.2.3 - RealVNC Ltd) VNC Viewer 5.2.3 (HKLM\...\{18B1E36F-0DA3-4FDA-BC57-DD815B0DF3B2}) (Version: 5.2.3 - RealVNC Ltd) WinRAR 5.21 (64-bitowy) (HKLM\...\WinRAR archiver) (Version: 5.21.0 - win.rar GmbH) XRAYLINE Workstation 2.0 (HKLM-x32\...\XRAYLINE Workstation Shred Host Service) (Version: 2.0 - Claritynet Inc.) XRAYLINE Workstation 2.0 (HKLM-x32\...\XRAYLINE Workstation) (Version: 2.0 - Claritynet inc) ==================== Niestandardowe rejestracje CLSID (filtrowane): ========================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) ==================== Zaplanowane zadania (filtrowane) ============= (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) Task: {0D55C81B-A983-4FB1-83EC-41E4F76066C6} - System32\Tasks\GoogleUpdateTaskMachineUA1d15b60b25b740b => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-06-25] (Google Inc.) Task: {0F1F01A9-177F-441A-B00A-7C8A4847FD9C} - System32\Tasks\GoogleUpdateTaskMachineUA1d1aaff9c86932e => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-06-25] (Google Inc.) Task: {14156B6D-1C5F-4315-9C27-753C23C3E993} - System32\Tasks\GoogleUpdateTaskMachineCore1d12e41a990f1ee => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-06-25] (Google Inc.) Task: {20BCA4C9-C7A8-4672-8BBE-82346F2DE149} - \Microsoft\Windows\Windows Activation Technologies\ValidationTask -> Brak pliku <==== UWAGA Task: {20FA6ED8-6FA0-4692-B49B-C8722B083D64} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-06-25] (Google Inc.) Task: {2B10E118-CCD2-4E27-8FA8-2CD162B7D3D5} - System32\Tasks\GoogleUpdateTaskMachineUA1d0f0c48aed8c9b => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-06-25] (Google Inc.) Task: {2B12CCC2-7E7E-47A3-81AE-0B98FB8C17DC} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2016-10-21] (Adobe Systems Incorporated) Task: {2F57269B-1E09-4E2D-AB1E-B0FDAC7D279C} - \Microsoft\Windows\WindowsBackup\ConfigNotification -> Brak pliku <==== UWAGA Task: {4525D41F-318A-4CF2-91A9-FFBBE8D2B85C} - System32\Tasks\GoogleUpdateTaskMachineUA1d12e41aa117c3d => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-06-25] (Google Inc.) Task: {4D117D7C-5E62-46A2-8C9D-A6D973EE2755} - System32\Tasks\GoogleUpdateTaskMachineUA1d0e136479f99bc => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-06-25] (Google Inc.) Task: {4FE21815-AC2C-4D45-9D24-35989F83B706} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-06-25] (Google Inc.) Task: {62AFDA56-F2DE-4B73-A042-418C31AC7959} - System32\Tasks\GoogleUpdateTaskMachineCore1d0af267aa4357c => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-06-25] (Google Inc.) Task: {6A336019-12B0-41C5-A779-90A2BADC82EE} - System32\Tasks\GoogleUpdateTaskMachineCore1d1e91468ceccb3 => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-06-25] (Google Inc.) Task: {7782CDBC-BC46-4A7A-A350-840F164F67FB} - System32\Tasks\GoogleUpdateTaskMachineCore1d0e1364723d22d => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-06-25] (Google Inc.) Task: {779C6CC7-2D53-4630-A80F-091A427A8345} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-11-03] (Adobe Systems Incorporated) Task: {85657D84-C778-4C86-9E20-1A6F5FD4DFC6} - System32\Tasks\{177B44F8-E178-23BE-9C0A-53E3F6FDB585} => C:\Users\User\AppData\Roaming\PRICEF~1\SYNCVE~1.EXE <==== UWAGA Task: {9491FDED-96EA-43DA-B968-4941A43AAD3F} - System32\Tasks\GoogleUpdateTaskMachineUA1d1e9146951b862 => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-06-25] (Google Inc.) Task: {A79ED7D5-C403-49EB-AB58-657A0669DF17} - System32\Tasks\GoogleUpdateTaskMachineCore1d163b0e7c24110 => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-06-25] (Google Inc.) Task: {AC4E5ACF-89F7-4220-BA21-81EE183975E2} - \Microsoft\Windows\Application Experience\AitAgent -> Brak pliku <==== UWAGA Task: {C437D990-33D5-470B-B153-439194CF4489} - System32\Tasks\GoogleUpdateTaskMachineCore1d15b60b1ca401a => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-06-25] (Google Inc.) Task: {C9B56F64-23D1-4011-922D-D0CDF8779721} - System32\Tasks\GoogleUpdateTaskMachineCore1d0f0c48a5eba0b => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-06-25] (Google Inc.) Task: {CEE64558-E1A7-4D9D-80A7-2001912BE5B5} - \Microsoft\Windows\MemoryDiagnostic\CorruptionDetector -> Brak pliku <==== UWAGA Task: {F214A786-06F0-4BF6-8316-4BE208C11014} - System32\Tasks\UserSegregateUntypicalV2 => Rundll32.exe ErodibleSpadeful.dll,main 7 1 <==== UWAGA Task: {F99C69DF-2AD9-4D4E-B7A9-FE1A1FA9BCB2} - \Microsoft\Windows\Windows Activation Technologies\ValidationTaskDeadline -> Brak pliku <==== UWAGA Task: {FA2BC0A6-8D4B-458A-85C8-2B8C72487513} - \Microsoft\Windows\MemoryDiagnostic\DecompressionFailureDetector -> Brak pliku <==== UWAGA Task: {FB1C46E3-8C44-4496-839C-26684967D55F} - System32\Tasks\GoogleUpdateTaskMachineCore1d1aaff9c275c23 => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-06-25] (Google Inc.) (Załączenie wejścia w fixlist spowoduje przesunięcie pliku zadania (.job). Plik uruchamiany docelowo przez zadanie nie zostanie przeniesiony.) Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore1d0af267aa4357c.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore1d0e1364723d22d.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore1d0f0c48a5eba0b.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore1d12e41a990f1ee.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore1d15b60b1ca401a.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore1d163b0e7c24110.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore1d1aaff9c275c23.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore1d1e91468ceccb3.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA1d0e136479f99bc.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA1d0f0c48aed8c9b.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA1d12e41aa117c3d.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA1d15b60b25b740b.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA1d1aaff9c86932e.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA1d1e9146951b862.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\{177B44F8-E178-23BE-9C0A-53E3F6FDB585}.job => C:\Users\User\AppData\Roaming\PRICEF~1\SYNCVE~1.EXE <==== UWAGA ==================== Skróty ============================= (Wybrane wejścia mogą zostać załączone w celu ich zresetowania lub usunięcia.) ==================== Załadowane moduły (filtrowane) ============== 2015-08-26 13:04 - 2012-09-29 12:25 - 00409088 _____ () C:\Windows\System32\HPM1210LM.DLL 2015-08-26 13:06 - 2012-09-29 12:25 - 00074240 _____ () C:\Windows\system32\spool\PRTPROCS\x64\HPM1210PP.dll 2015-08-26 13:04 - 2012-09-29 12:26 - 03120128 _____ () C:\Windows\system32\spool\DRIVERS\x64\3\hpm1210su.dll 2015-08-26 13:04 - 2012-09-29 12:53 - 01038336 _____ () C:\Windows\system32\spool\DRIVERS\x64\3\HPM1210GC.dll 2010-05-06 23:08 - 2010-05-06 23:08 - 00058880 _____ () C:\Program Files\XRAYLINE\XRAYLINE Workstation\plugins\ClearCanvas.Desktop.Configuration.dll 2010-05-06 23:09 - 2010-05-06 23:09 - 00019968 _____ () C:\Program Files\XRAYLINE\XRAYLINE Workstation\plugins\ClearCanvas.Desktop.Configuration.View.WinForms.dll 2010-05-06 23:08 - 2010-05-06 23:08 - 00418816 _____ () C:\Program Files\XRAYLINE\XRAYLINE Workstation\plugins\ClearCanvas.Desktop.View.WinForms.dll 2010-03-05 00:15 - 2010-03-05 00:15 - 00689664 _____ () C:\Program Files\XRAYLINE\XRAYLINE Workstation\plugins\ClearCanvas.Dicom.Codec.Jpeg.dll 2010-05-06 23:08 - 2010-05-06 23:08 - 00040960 _____ () C:\Program Files\XRAYLINE\XRAYLINE Workstation\plugins\ClearCanvas.ImageViewer.DesktopServices.dll 2010-05-06 23:08 - 2010-05-06 23:08 - 00075264 _____ () C:\Program Files\XRAYLINE\XRAYLINE Workstation\plugins\ClearCanvas.ImageViewer.Explorer.Dicom.dll 2010-05-06 23:09 - 2010-05-06 23:09 - 00031232 _____ () C:\Program Files\XRAYLINE\XRAYLINE Workstation\plugins\ClearCanvas.ImageViewer.Explorer.Dicom.View.WinForms.dll 2010-05-06 23:09 - 2010-05-06 23:09 - 00100864 _____ () C:\Program Files\XRAYLINE\XRAYLINE Workstation\plugins\ClearCanvas.ImageViewer.Explorer.Local.View.WinForms.dll 2010-05-06 23:08 - 2010-05-06 23:08 - 00100864 _____ () C:\Program Files\XRAYLINE\XRAYLINE Workstation\plugins\ClearCanvas.ImageViewer.Services.dll 2010-05-06 23:09 - 2010-05-06 23:09 - 00172544 _____ () C:\Program Files\XRAYLINE\XRAYLINE Workstation\plugins\ClearCanvas.ImageViewer.Services.Tools.dll 2010-05-06 23:09 - 2010-05-06 23:09 - 00033280 _____ () C:\Program Files\XRAYLINE\XRAYLINE Workstation\plugins\ClearCanvas.ImageViewer.Services.Tools.View.WinForms.dll 2010-05-06 23:09 - 2010-05-06 23:09 - 00165888 _____ () C:\Program Files\XRAYLINE\XRAYLINE Workstation\plugins\ClearCanvas.ImageViewer.Shreds.dll 2010-05-06 23:09 - 2010-05-06 23:09 - 00061440 _____ () C:\Program Files\XRAYLINE\XRAYLINE Workstation\plugins\ClearCanvas.Controls.WinForms.dll ==================== Alternate Data Streams (filtrowane) ========= (Załączenie wejścia w fixlist spowoduje usunięcie strumienia ADS.) ==================== Tryb awaryjny (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Wartość "AlternateShell" zostanie przywrócona.) ==================== Powiązania plików (filtrowane) =============== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci.) ==================== Internet Explorer - Witryny zaufane i z ograniczeniami =============== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru.) ==================== Hosts - zawartość: =============================== (Użycie dyrektywy Hosts: w fixlist spowoduje reset pliku Hosts.) 2009-07-14 03:34 - 2016-07-21 06:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Inne obszary ============================ (Obecnie brak automatycznej naprawy dla tej sekcji.) HKU\S-1-5-21-2535924014-3120798370-1912081755-500\Control Panel\Desktop\\Wallpaper -> DNS Servers: 8.8.8.8 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 0) Zapora systemu Windows [funkcja włączona] ==================== MSCONFIG/TASK MANAGER - Wyłączone elementy == ==================== Reguły Zapory systemu Windows (filtrowane) =============== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) FirewallRules: [SPPSVC-In-TCP] => %SystemRoot%\system32\sppsvc.exe FirewallRules: [SPPSVC-In-TCP-NoScope] => %SystemRoot%\system32\sppsvc.exe FirewallRules: [{C2B18F37-A1F3-45E2-BDC5-8FF94A1A4A54}] => C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{4AAD7880-075D-40B0-AEA6-275766E14741}] => C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{587F1256-13C9-494D-B793-8E11641F33FD}] => C:\Program Files\RealVNC\VNC Server\vncserver.exe FirewallRules: [{7869B108-C099-4CE4-953C-09380E2456E1}] => C:\Program Files\RealVNC\VNC Server\vncserver.exe FirewallRules: [{01B9C40C-1806-42EE-9C08-682BE10CB434}] => %SystemRoot%\system32\sppsvc.exe FirewallRules: [TCP Query User{2FBAF02A-3F62-4E77-B4D1-60705E727979}D:\temp\orainstall2015-06-26_08-19-31am\jdk\jre\bin\javaw.exe] => D:\temp\orainstall2015-06-26_08-19-31am\jdk\jre\bin\javaw.exe FirewallRules: [UDP Query User{7F8E6DF1-6482-47F6-A614-4D4CC2536FDA}D:\temp\orainstall2015-06-26_08-19-31am\jdk\jre\bin\javaw.exe] => D:\temp\orainstall2015-06-26_08-19-31am\jdk\jre\bin\javaw.exe FirewallRules: [TCP Query User{917CD0D5-776D-4FB7-9734-4E2058943DB7}D:\temp\orainstall2015-07-02_10-26-35am\jre\1.4.2\bin\javaw.exe] => D:\temp\orainstall2015-07-02_10-26-35am\jre\1.4.2\bin\javaw.exe FirewallRules: [UDP Query User{79367EB3-439C-4BC6-B95B-2688C5DDB02D}D:\temp\orainstall2015-07-02_10-26-35am\jre\1.4.2\bin\javaw.exe] => D:\temp\orainstall2015-07-02_10-26-35am\jre\1.4.2\bin\javaw.exe FirewallRules: [{CFF8EFD5-C74E-47C7-9CE2-8D249571E8A9}] => LPort=1521 FirewallRules: [{7105B7A4-DBFB-49DC-9644-C46A7D369376}] => LPort=1521 FirewallRules: [TCP Query User{75376676-9601-467F-909C-E0BB1AA20325}D:\app\user\product\11.2.0\client_1\jdk\jre\bin\java.exe] => D:\app\user\product\11.2.0\client_1\jdk\jre\bin\java.exe FirewallRules: [UDP Query User{AC11134A-F4DC-4660-9C8D-75DFBA26F19E}D:\app\user\product\11.2.0\client_1\jdk\jre\bin\java.exe] => D:\app\user\product\11.2.0\client_1\jdk\jre\bin\java.exe FirewallRules: [TCP Query User{5B2A9C9A-186E-4397-BF74-C5BDC395C50E}\\192.168.1.243\samba\start\rch\oddz.exe] => \\192.168.1.243\samba\start\rch\oddz.exe FirewallRules: [UDP Query User{0B27150C-2461-44F3-B081-56B17AE451E6}\\192.168.1.243\samba\start\rch\oddz.exe] => \\192.168.1.243\samba\start\rch\oddz.exe FirewallRules: [TCP Query User{8F7FCCC9-61F5-4DD5-90F1-62C09728ABC6}\\192.168.1.243\samba\start\rch\ip.exe] => \\192.168.1.243\samba\start\rch\ip.exe FirewallRules: [UDP Query User{5619DEC8-1C33-4C92-8A98-987219486D52}\\192.168.1.243\samba\start\rch\ip.exe] => \\192.168.1.243\samba\start\rch\ip.exe FirewallRules: [TCP Query User{26744C5E-0054-465B-869C-314F93E19892}\\192.168.1.243\samba\start\admin\adm.exe] => \\192.168.1.243\samba\start\admin\adm.exe FirewallRules: [UDP Query User{60083F80-512D-49DB-A8D5-E745F7D4A4D2}\\192.168.1.243\samba\start\admin\adm.exe] => \\192.168.1.243\samba\start\admin\adm.exe FirewallRules: [TCP Query User{07475A3F-487F-4F7B-90B7-F89AACCB162A}C:\program files (x86)\jivexrv\jre\bin\jivex[rv]] => C:\program files (x86)\jivexrv\jre\bin\jivex[rv] FirewallRules: [UDP Query User{AA2D1B2B-086B-46E8-B700-B39EB6D5CB85}C:\program files (x86)\jivexrv\jre\bin\jivex[rv]] => C:\program files (x86)\jivexrv\jre\bin\jivex[rv] FirewallRules: [TCP Query User{C6E54C0E-1CDF-404E-8D9A-60B94D3A47A8}\\192.168.0.100\infomedica\lo\recepcja.exe] => \\192.168.0.100\infomedica\lo\recepcja.exe FirewallRules: [UDP Query User{DCCD23B8-0742-4CE2-9FAF-6BBF13433E39}\\192.168.0.100\infomedica\lo\recepcja.exe] => \\192.168.0.100\infomedica\lo\recepcja.exe FirewallRules: [TCP Query User{6CCC500B-83AA-42A4-A525-E1D9659EC9DB}C:\program files (x86)\java\jre1.8.0_45\bin\javaw.exe] => C:\program files (x86)\java\jre1.8.0_45\bin\javaw.exe FirewallRules: [UDP Query User{25819968-672A-46E7-ADA7-8929765F33FF}C:\program files (x86)\java\jre1.8.0_45\bin\javaw.exe] => C:\program files (x86)\java\jre1.8.0_45\bin\javaw.exe FirewallRules: [TCP Query User{1D9F287B-37B5-42DD-B882-7ADC9B91DB08}C:\program files (x86)\java\jre6\bin\javaw.exe] => C:\program files (x86)\java\jre6\bin\javaw.exe FirewallRules: [UDP Query User{82AA5D98-3A6C-4135-BF5B-60F478A58CD5}C:\program files (x86)\java\jre6\bin\javaw.exe] => C:\program files (x86)\java\jre6\bin\javaw.exe FirewallRules: [TCP Query User{32476734-3E06-4D50-A728-1342B2675745}\\192.168.0.100\infomedica\apt\apteczka.exe] => \\192.168.0.100\infomedica\apt\apteczka.exe FirewallRules: [UDP Query User{E5FD96D2-0630-445D-A393-680CA2A20292}\\192.168.0.100\infomedica\apt\apteczka.exe] => \\192.168.0.100\infomedica\apt\apteczka.exe FirewallRules: [TCP Query User{A0974B15-82B9-489E-9E6A-CEEC0F286E8C}C:\program files (x86)\java\jre1.8.0_45\bin\jp2launcher.exe] => C:\program files (x86)\java\jre1.8.0_45\bin\jp2launcher.exe FirewallRules: [UDP Query User{9B2AB7AC-6552-4145-B44F-0A1313AEA6FA}C:\program files (x86)\java\jre1.8.0_45\bin\jp2launcher.exe] => C:\program files (x86)\java\jre1.8.0_45\bin\jp2launcher.exe FirewallRules: [TCP Query User{9827A672-D12C-44CE-B3AE-CA4B8844CDFA}C:\program files (x86)\java\jre1.8.0_65\bin\jp2launcher.exe] => C:\program files (x86)\java\jre1.8.0_65\bin\jp2launcher.exe FirewallRules: [UDP Query User{D19747C1-6C1C-4BDF-80E6-5BFC34C7733D}C:\program files (x86)\java\jre1.8.0_65\bin\jp2launcher.exe] => C:\program files (x86)\java\jre1.8.0_65\bin\jp2launcher.exe FirewallRules: [{FC12387F-941C-49B6-A257-09BC1C073CAC}] => C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{EF738FCD-F2CE-4614-848F-0F8C35D5ECB4}] => C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [TCP Query User{25D6611A-842A-49AE-9153-17691907A542}C:\program files (x86)\java\jre1.8.0_71\bin\jp2launcher.exe] => C:\program files (x86)\java\jre1.8.0_71\bin\jp2launcher.exe FirewallRules: [UDP Query User{42A7F630-7AF9-468C-9835-B2A6A457AB75}C:\program files (x86)\java\jre1.8.0_71\bin\jp2launcher.exe] => C:\program files (x86)\java\jre1.8.0_71\bin\jp2launcher.exe FirewallRules: [TCP Query User{D9780900-5138-4D7E-8C26-7752ED8F03EC}\\10.2.11.4\infomedica\apt\apteczka.exe] => \\10.2.11.4\infomedica\apt\apteczka.exe FirewallRules: [UDP Query User{29400A2A-C103-4F81-9DC5-3DB43C8FA8E1}\\10.2.11.4\infomedica\apt\apteczka.exe] => \\10.2.11.4\infomedica\apt\apteczka.exe FirewallRules: [TCP Query User{BBBFBA3B-9397-4919-A87C-352E3433AA66}\\10.2.11.4\infomedica\lo\recepcja.exe] => \\10.2.11.4\infomedica\lo\recepcja.exe FirewallRules: [UDP Query User{3AE1ED2A-AAF9-4076-8344-3CE03666D685}\\10.2.11.4\infomedica\lo\recepcja.exe] => \\10.2.11.4\infomedica\lo\recepcja.exe FirewallRules: [TCP Query User{B84A0927-6C88-4162-8592-AEAB6355C1B9}C:\program files (x86)\java\jre1.8.0_73\bin\jp2launcher.exe] => C:\program files (x86)\java\jre1.8.0_73\bin\jp2launcher.exe FirewallRules: [UDP Query User{77BAB135-E6D0-45FF-9A79-677461320C75}C:\program files (x86)\java\jre1.8.0_73\bin\jp2launcher.exe] => C:\program files (x86)\java\jre1.8.0_73\bin\jp2launcher.exe FirewallRules: [TCP Query User{9B323DA0-CA18-4D61-8D43-66C29D3B9095}C:\program files (x86)\java\jre1.8.0_77\bin\jp2launcher.exe] => C:\program files (x86)\java\jre1.8.0_77\bin\jp2launcher.exe FirewallRules: [UDP Query User{40A0D83C-0C63-486B-9C0F-1ED9308FA7C9}C:\program files (x86)\java\jre1.8.0_77\bin\jp2launcher.exe] => C:\program files (x86)\java\jre1.8.0_77\bin\jp2launcher.exe FirewallRules: [TCP Query User{6798F533-5CBC-4CFF-A386-DA544448595C}C:\program files (x86)\java\jre1.8.0_91\bin\jp2launcher.exe] => C:\program files (x86)\java\jre1.8.0_91\bin\jp2launcher.exe FirewallRules: [UDP Query User{031BFBA3-7067-4F50-835C-258C525767D4}C:\program files (x86)\java\jre1.8.0_91\bin\jp2launcher.exe] => C:\program files (x86)\java\jre1.8.0_91\bin\jp2launcher.exe FirewallRules: [TCP Query User{086FE46E-7B56-485B-9032-ACAF8E306B6C}C:\program files (x86)\java\jre1.8.0_101\bin\jp2launcher.exe] => C:\program files (x86)\java\jre1.8.0_101\bin\jp2launcher.exe FirewallRules: [UDP Query User{D9D9B9B3-E287-49D9-B752-D0B0D61123D0}C:\program files (x86)\java\jre1.8.0_101\bin\jp2launcher.exe] => C:\program files (x86)\java\jre1.8.0_101\bin\jp2launcher.exe FirewallRules: [TCP Query User{49C96D1B-3B08-4B44-A72F-348282CA96D4}C:\program files (x86)\java\jre1.8.0_111\bin\jp2launcher.exe] => C:\program files (x86)\java\jre1.8.0_111\bin\jp2launcher.exe FirewallRules: [UDP Query User{A7B55822-67AF-4D07-8402-3EB5AC0A3621}C:\program files (x86)\java\jre1.8.0_111\bin\jp2launcher.exe] => C:\program files (x86)\java\jre1.8.0_111\bin\jp2launcher.exe FirewallRules: [{FCD58A9A-B592-4C7E-8E3B-9364F21F4696}] => C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Punkty Przywracania systemu ========================= 29-11-2016 21:07:35 Zaplanowany punkt kontrolny 29-11-2016 21:58:31 Windows Update 06-12-2016 20:50:44 Windows Update ==================== Wadliwe urządzenia w Menedżerze urządzeń ============= ==================== Błędy w Dzienniku zdarzeń: ========================= Dziennik Aplikacja: ================== Error: (12/09/2016 09:11:31 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected. Error: (12/08/2016 05:52:53 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected. Error: (12/07/2016 09:31:09 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected. Error: (12/07/2016 05:59:07 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected. Error: (12/07/2016 03:56:17 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected. Error: (12/06/2016 08:15:18 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected. Error: (12/06/2016 05:45:54 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected. Error: (12/05/2016 05:26:45 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected. Error: (12/02/2016 06:00:38 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected. Error: (12/02/2016 06:25:05 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected. Dziennik System: ============= Error: (12/07/2016 03:54:32 AM) (Source: EventLog) (EventID: 6008) (User: ) Description: Poprzednie zamknięcie systemu przy 03:51:40 na ‎2016-‎12-‎07 było nieoczekiwane. Error: (12/02/2016 06:23:19 AM) (Source: EventLog) (EventID: 6008) (User: ) Description: Poprzednie zamknięcie systemu przy 06:21:38 na ‎2016-‎12-‎02 było nieoczekiwane. Error: (11/23/2016 07:46:25 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi Host urządzenia UPnP z powodu następującego błędu: Usługa nie została uruchomiona z powodu nieudanego logowania. Error: (11/23/2016 07:46:25 AM) (Source: Service Control Manager) (EventID: 7038) (User: ) Description: Usługa upnphost nie może zalogować się jako NT AUTHORITY\LocalService za pomocą obecnie skonfigurowanego hasła z powodu następującego błędu: Menedżer kont zabezpieczeń (SAM) lub lokalny serwer urzędu zabezpieczeń (LSA) był w niewłaściwym stanie do wykonania operacji zabezpieczania. Aby upewnić się, że usługa jest skonfigurowana prawidłowo, użyj przystawki Usługi w programie Microsoft Management Console (MMC). Error: (11/23/2016 07:46:25 AM) (Source: DCOM) (EventID: 10005) (User: ) Description: Model DCOM odebrał błąd 1069 podczas próby uruchomienia usługi upnphost z argumentami w celu uruchomienia serwera: {204810B9-73B2-11D4-BF42-00B0D0118B56} Error: (11/15/2016 12:25:38 AM) (Source: EventLog) (EventID: 6008) (User: ) Description: Poprzednie zamknięcie systemu przy 00:13:31 na ‎2016-‎11-‎15 było nieoczekiwane. Error: (11/12/2016 12:06:50 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi Host urządzenia UPnP z powodu następującego błędu: Usługa nie została uruchomiona z powodu nieudanego logowania. Error: (11/12/2016 12:06:50 AM) (Source: Service Control Manager) (EventID: 7038) (User: ) Description: Usługa upnphost nie może zalogować się jako NT AUTHORITY\LocalService za pomocą obecnie skonfigurowanego hasła z powodu następującego błędu: Żądanie nie jest obsługiwane. Aby upewnić się, że usługa jest skonfigurowana prawidłowo, użyj przystawki Usługi w programie Microsoft Management Console (MMC). Error: (11/12/2016 12:06:50 AM) (Source: DCOM) (EventID: 10005) (User: ) Description: Model DCOM odebrał błąd 1069 podczas próby uruchomienia usługi upnphost z argumentami w celu uruchomienia serwera: {204810B9-73B2-11D4-BF42-00B0D0118B56} Error: (11/11/2016 11:32:44 PM) (Source: EventLog) (EventID: 6008) (User: ) Description: Poprzednie zamknięcie systemu przy 23:27:19 na ‎2016-‎11-‎11 było nieoczekiwane. ==================== Statystyki pamięci =========================== Procesor: Intel(R) Core(TM)2 Duo CPU E8400 @ 3.00GHz Procent pamięci w użyciu: 46% Całkowita pamięć fizyczna: 3931.61 MB Dostępna pamięć fizyczna: 2108.54 MB Całkowita pamięć wirtualna: 7861.4 MB Dostępna pamięć wirtualna: 6028.79 MB ==================== Dyski ================================ Drive c: (Windows) (Fixed) (Total:71.22 GB) (Free:36.05 GB) NTFS Drive d: () (Fixed) (Total:72.76 GB) (Free:65.75 GB) NTFS ==================== MBR & Tablica partycji ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 232.8 GB) (Disk ID: A4F37E41) Partition 1: (Active) - (Size=4.6 GB) - (Type=27) Partition 2: (Not Active) - (Size=71.2 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=449 MB) - (Type=27) Partition 4: (Not Active) - (Size=72.8 GB) - (Type=OF Extended) ==================== Koniec Addition.txt ============================