Rezultaty skanu uzupełniającego Farbar Recovery Scan Tool (x64) Wersja: 23-02-2017 01 Uruchomiony przez AZE (24-02-2017 09:39:06) Uruchomiony z C:\Users\AZE\Downloads Windows 7 Home Premium Service Pack 1 (X64) (2015-03-06 21:11:33) Tryb startu: Normal ========================================================== ==================== Konta użytkowników: ============================= Administrator (S-1-5-21-3681985802-1371551307-987329215-500 - Administrator - Enabled) => C:\Users\Administrator AZE (S-1-5-21-3681985802-1371551307-987329215-1001 - Administrator - Enabled) => C:\Users\AZE Gość (S-1-5-21-3681985802-1371551307-987329215-501 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-3681985802-1371551307-987329215-1002 - Limited - Enabled) ==================== Centrum zabezpieczeń ======================== (Załączenie wejścia w fixlist spowoduje jego usunięcie.) AV: COMODO Antivirus (Enabled - Up to date) {D0CC7563-ABD2-DEBE-138E-FDD553335AF2} AV: Malwarebytes (Enabled - Up to date) {23007AD3-69FE-687C-2629-D584AFFAF72B} AS: Comodo Defense+ (Enabled - Up to date) {6BAD9487-8DE8-D130-293E-C6A728B4104F} AS: Malwarebytes (Enabled - Up to date) {98619B37-4FC4-67F2-1C99-EEF6D47DBD96} AS: Windows Defender (Disabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} FW: COMODO Firewall (Enabled) {E8F7F446-E1BD-DFE6-38D1-54E0ADE01D89} ==================== Zainstalowane programy ====================== (W fixlist dozwolone tylko załączanie programów adware z flagą "Hidden" w celu ich uwidocznienia. Programy adware powinny zostać w poprawny sposób odinstalowane.) Adobe Anchor Service x64 CS4 (Version: 2.0 - Adobe Systems Incorporated) Hidden Adobe CMaps x64 CS4 (Version: 2.0 - Adobe Systems Incorporated) Hidden Adobe Creative Suite 4 Master Collection (HKLM-x32\...\Adobe_b2d6abde968e6f277ddbfd501383e02) (Version: 4.0 - Adobe Systems Incorporated) Adobe CSI CS4 x64 (Version: 1 - Adobe Systems Incorporated) Hidden Adobe Drive CS4 x64 (Version: 1 - Adobe Systems Incorporated) Hidden Adobe Flash Player 24 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 24.0.0.221 - Adobe Systems Incorporated) Adobe Flash Player 24 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 24.0.0.221 - Adobe Systems Incorporated) Adobe Fonts All x64 (Version: 2.0 - Adobe Systems Incorporated) Hidden Adobe Linguistics CS4 x64 (Version: 4.0.0 - Adobe Systems Incorporated) Hidden Adobe Media Player (HKLM-x32\...\com.adobe.amp.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1) (Version: 1.1 - Adobe Systems Incorporated) Adobe PDF Library Files x64 CS4 (Version: 9.0 - Adobe Systems Incorporated) Hidden Adobe Photoshop CS4 (64 Bit) (Version: 11.0 - Adobe Systems Incorporated) Hidden Adobe Type Support x64 CS4 (Version: 9.0 - Adobe Systems Incorporated) Hidden Adobe WinSoft Linguistics Plugin x64 (Version: 1.1 - Adobe Systems Incorporated) Hidden Brother MFL-Pro Suite DCP-J140W (HKLM-x32\...\{2FF959E3-FFE4-46C4-96DA-03F26BCFEFCC}) (Version: 1.1.5.0 - Brother Industries, Ltd.) CCleaner (HKLM\...\CCleaner) (Version: 5.02 - Piriform) COMODO Internet Security Premium (HKLM\...\{EC925096-5689-4BE3-B675-D16D0394B4A0}) (Version: 8.4.0.5076 - COMODO Security Solutions Inc.) Connect (x32 Version: 1.0.0.1 - Adobe Systems Incorporated) Hidden ConvertHelper 3.1.1 (HKLM\...\{27CC6AB1-E72B-4179-AF1A-EAE507EBAF52}}_is1) (Version: - DownloadHelper) D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden Freemake Video Converter wersja 4.1.9 (HKLM-x32\...\Freemake Video Converter_is1) (Version: 4.1.9 - Ellora Assets Corporation) Galeria fotografii (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Google Chrome (HKLM-x32\...\Google Chrome) (Version: 56.0.2924.87 - Google Inc.) Google Talk Plugin (HKLM-x32\...\{F9B579C2-D854-300A-BE62-A09EB9D722E4}) (Version: 5.41.3.0 - Google) Google Update Helper (x32 Version: 1.3.21.169 - Google Inc.) Hidden Google Update Helper (x32 Version: 1.3.32.7 - Google Inc.) Hidden kuler (x32 Version: 2.0 - Adobe Systems Incorporated) Hidden Malwarebytes (wersja 3.0.6.1469) (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 3.0.6.1469 - Malwarebytes) Microsoft .NET Framework 4.6.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.6.01055 - Microsoft Corporation) Microsoft .NET Framework 4.6.1 (Polski) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1045) (Version: 4.6.01055 - Microsoft Corporation) Microsoft Silverlight (HKLM-x32\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Movie Maker (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Mozilla Firefox 51.0.1 (x86 pl) (HKLM-x32\...\Mozilla Firefox 51.0.1 (x86 pl)) (Version: 51.0.1 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 51.0.1.6234 - Mozilla) Mozilla Thunderbird 38.5.0 (x86 pl) (HKLM-x32\...\Mozilla Thunderbird 38.5.0 (x86 pl)) (Version: 38.5.0 - Mozilla) NVIDIA nView 140.62 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NView) (Version: 140.62 - NVIDIA Corporation) NVIDIA Sterownik 3D Vision 327.02 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 327.02 - NVIDIA Corporation) NVIDIA Sterownik graficzny 327.02 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 327.02 - NVIDIA Corporation) NVIDIA WMI 2.14.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVWMI) (Version: 2.14.0 - NVIDIA Corporation) OpenOffice 4.1.1 (HKLM-x32\...\{B5373BA3-BAD7-4EAC-A9D2-B66B41B82C57}) (Version: 4.11.9775 - Apache Software Foundation) Oprogramowanie Intel(R) PROSet/Wireless WiFi (HKLM\...\{8B45608A-DC45-4F3B-921F-61CDA22C9A83}) (Version: 13.00.0000 - Intel Corporation) Oprogramowanie Intel(R) PROSet/Wireless WiFi (HKLM\...\{98AAE759-09CD-4428-BE93-1AFA79D9F7CA}) (Version: 13.00.0000 - Intel Corporation) Panel sterowania NVIDIA 327.02 (Version: 327.02 - NVIDIA Corporation) Hidden PDF Settings CS4 (x32 Version: 9.0 - Adobe Systems Incorporated) Hidden Photoshop Camera Raw (x32 Version: 5.0 - Adobe Systems Incorporated) Hidden Photoshop Camera Raw_x64 (Version: 5.0 - Adobe Systems Incorporated) Hidden Podstawowe programy Windows Live (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3528.0331 - Microsoft Corporation) Podstawowe programy Windows Live (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Poedit (HKLM-x32\...\{68EB2C37-083A-4303-B5D8-41FA67E50B8F}_is1) (Version: 1.8.1 - Vaclav Slavik) Skype Click to Call (HKLM-x32\...\{873F8E7C-10E6-449F-BD7E-5FBA7C8E1C9B}) (Version: 8.5.0.9167 - Microsoft Corporation) Skype™ 7.31 (HKLM-x32\...\{FC965A47-4839-40CA-B618-18F486F042C6}) (Version: 7.31.104 - Skype Technologies S.A.) Suite Shared Configuration CS4 (x32 Version: 1.0 - Adobe Systems Incorporated) Hidden Total Commander 64-bit (Remove or Repair) (HKLM\...\Totalcmd64) (Version: 8.51a - Ghisler Software GmbH) Trust WB-3400T Webcam (HKLM-x32\...\InstallShield_{BD9A4DF3-727C-4F69-807A-B82566A36714}) (Version: 1.0.2.13 - Nazwa firmy) Trust WB-3400T Webcam (x32 Version: 1.0.2.13 - Nazwa firmy) Hidden ==================== Niestandardowe rejestracje CLSID (filtrowane): ========================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) CustomCLSID: HKU\S-1-5-21-3681985802-1371551307-987329215-1001_Classes\CLSID\{CB492AF1-2CEF-4E58-BE47-471C77D0C8BA}\InprocServer32 -> C:\Users\AZE\AppData\Local\Google\Update\1.3.32.7\psuser_64.dll (Google Inc.) CustomCLSID: HKU\S-1-5-21-3681985802-1371551307-987329215-1001_Classes\CLSID\{E8CF3E55-F919-49D9-ABC0-948E6CB34B9F}\InprocServer32 -> C:\Users\AZE\AppData\Local\Google\Update\1.3.32.7\psuser_64.dll (Google Inc.) ==================== Zaplanowane zadania (filtrowane) ============= (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) Task: {36DE0025-F945-4209-9767-8335E3F6B0F1} - System32\Tasks\COMODO\COMODO Cache Builder {0FB77674-7905-4F34-A362-C5A9A26F8CF9} => C:\Program Files\COMODO\COMODO Internet Security\cfpconfg.exe [2016-10-05] (COMODO) Task: {375F05EB-B512-4387-9895-3032CC0DA993} - System32\Tasks\COMODO\COMODO Signature Update {B9D5C6F9-17D2-4917-8BD0-614BAA1C6A59} => C:\Program Files\COMODO\COMODO Internet Security\cfpconfg.exe [2016-10-05] (COMODO) Task: {5252626D-FD2D-4DD9-8CD2-2B085AE8C85D} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-3681985802-1371551307-987329215-1001UA => C:\Users\AZE\AppData\Local\Google\Update\GoogleUpdate.exe [2015-03-17] (Google Inc.) Task: {65D9F9F0-B85B-43A0-9983-F0CB19BDBFC9} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-29] (Google Inc.) Task: {74B0AD4D-14C1-4223-B030-1873D1D6BED4} - System32\Tasks\COMODO\COMODO Scan {F140D794-60B6-4F00-9235-D6457AA25B22} => C:\Program Files\COMODO\COMODO Internet Security\cfpconfg.exe [2016-10-05] (COMODO) Task: {7A0E4779-51A6-4C60-A0DB-B9EF4E22AE9D} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-3681985802-1371551307-987329215-1001Core => C:\Users\AZE\AppData\Local\Google\Update\GoogleUpdate.exe [2015-03-17] (Google Inc.) Task: {7F698710-285B-4F66-903E-FAF3591438FF} - System32\Tasks\{7CC47024-C159-4CD8-ACFB-346DB847D98E} => pcalua.exe -a C:\Users\AZE\Downloads\HijackThis\HijackThis.exe -d C:\Users\AZE\Downloads\HijackThis Task: {8E01DEBB-5A57-4E80-969E-FC45493CB824} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2017-02-15] (Adobe Systems Incorporated) Task: {A3CD3201-36A9-4468-8A34-6E6F1AE04DE4} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-29] (Google Inc.) Task: {A6917FFB-FD75-45FD-9574-EC01E533EF17} - System32\Tasks\COMODO\COMODO Autostart {D5EFF3B3-E126-4AF6-BCE9-852A72129E10} => C:\Program Files\COMODO\COMODO Internet Security\cistray.exe [2016-10-05] (COMODO) Task: {A9245142-7F4C-458A-9A25-2716C72DA086} - System32\Tasks\COMODO\COMODO Update {A6D52E4F-569B-4756-B3D8-DF217313DA85} => C:\Program Files\COMODO\COMODO Internet Security\cfpconfg.exe [2016-10-05] (COMODO) Task: {D31FD35B-8F65-4D98-9DF8-021BB65F3CE0} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2015-01-20] (Piriform Ltd) Task: {D51A8F1B-BA06-4C7D-81DC-EA5EF56D2725} - System32\Tasks\{BA693922-6968-413B-8D8A-0C2F13749981} => pcalua.exe -a C:\Users\AZE\AppData\Local\Temp\Temp1_HijackThis.zip\HijackThis.exe <==== UWAGA Task: {D6E0CC47-4519-4A3B-B2C8-717EE2E089EA} - System32\Tasks\AVAST Software\Avast settings backup => C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe [2017-01-27] (AVAST Software) (Załączenie wejścia w fixlist spowoduje przesunięcie pliku zadania (.job). Plik uruchamiany docelowo przez zadanie nie zostanie przeniesiony.) Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe ==================== Skróty ============================= (Wybrane wejścia mogą zostać załączone w celu ich zresetowania lub usunięcia.) ==================== Załadowane moduły (filtrowane) ============== 2009-09-21 14:04 - 2009-09-21 14:04 - 01501696 _____ () C:\Program Files\Common Files\Intel\WirelessCommon\Libeay32.dll 2017-02-23 00:27 - 2017-02-23 00:27 - 02264352 _____ () C:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\PoliciesControllerImpl.dll 2017-02-23 00:28 - 2017-02-23 00:28 - 02829776 _____ () C:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\arwlib.dll 2017-02-23 00:28 - 2017-02-23 00:28 - 02254800 _____ () C:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\MwacLib.dll 2015-01-21 03:06 - 2015-01-21 03:06 - 00057344 _____ () C:\Program Files\CCleaner\lang\lang-1045.dll 2016-03-16 10:25 - 2016-03-16 10:25 - 00073912 _____ () C:\Program Files\COMODO\COMODO Internet Security\scanners\smart.cav 2015-06-17 12:59 - 2009-02-27 15:38 - 00139264 ____R () C:\Program Files (x86)\Brother\BrUtilities\BrLogAPI.dll ==================== Alternate Data Streams (filtrowane) ========= (Załączenie wejścia w fixlist spowoduje usunięcie strumienia ADS.) AlternateDataStreams: C:\Windows\WLXPGSS.SCR:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\adtschema.dll:$CmdTcID [130] AlternateDataStreams: C:\Windows\system32\auditpol.exe:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\certcli.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\credssp.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\cryptbase.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\d3dx10_42.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\d3dx9_32.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\dxtmsft.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\dxtrans.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\ie4uinit.exe:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\ieapfltr.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\iedkcs32.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\ieetwcollector.exe:$CmdTcID [130] AlternateDataStreams: C:\Windows\system32\ieetwcollectorres.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\ieetwproxystub.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\ieframe.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\iernonce.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\iertutil.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\iesetup.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\ieui.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\ieUnatt.exe:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\inetcpl.cpl:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\inseng.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\JavaScriptCollectionAgent.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\jscript.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\jscript9.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\jscript9diag.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\jsproxy.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\kerberos.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\lsasrv.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\lsass.exe:$CmdTcID [130] AlternateDataStreams: C:\Windows\system32\msaudite.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\msfeeds.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\mshtml.dll:$CmdTcID [130] AlternateDataStreams: C:\Windows\system32\MshtmlDac.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\mshtmled.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\mshtmlmedia.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\msobjs.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\msrating.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\MsSpellCheckingFacility.exe:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\msv1_0.dll:$CmdTcID [130] AlternateDataStreams: C:\Windows\system32\ncrypt.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\occache.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\rpchttp.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\rpcrt4.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\schannel.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\secur32.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\sspicli.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\sspisrv.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\TSpkg.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\tzres.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\urlmon.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\vbscript.dll:$CmdTcID [130] AlternateDataStreams: C:\Windows\system32\wdigest.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\webcheck.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\wininet.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\adtschema.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\auditpol.exe:$CmdTcID [130] AlternateDataStreams: C:\Windows\SysWOW64\certcli.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\credssp.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\cryptbase.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\d3dx10_42.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\d3dx9_32.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\dxtmsft.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\dxtrans.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\FlashPlayerApp.exe:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\ieapfltr.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\iedkcs32.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\ieetwproxystub.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\ieframe.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\iernonce.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\iertutil.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\iesetup.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\ieui.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\ieUnatt.exe:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\inetcpl.cpl:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\inseng.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\jscript.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\jscript9.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\jscript9diag.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\jsproxy.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\kerberos.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\msaudite.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\msfeeds.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\mshtml.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\MshtmlDac.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\mshtmled.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\mshtmlmedia.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\msobjs.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\msrating.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\msv1_0.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\ncrypt.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\occache.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\rpchttp.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\rpcrt4.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\schannel.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\secur32.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\sspicli.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\TSpkg.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\tzres.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\urlmon.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\vbscript.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\wdigest.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\webcheck.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\wininet.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\Drivers\ksecdd.sys:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\Drivers\ksecpkg.sys:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\Drivers\mbae64.sys:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\Drivers\mrxsmb.sys:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\Drivers\mrxsmb10.sys:$CmdTcID [130] AlternateDataStreams: C:\Windows\system32\Drivers\mrxsmb20.sys:$CmdTcID [64] AlternateDataStreams: C:\Users\AZE\Desktop\Contract AZE Design.docx:$CmdZnID [26] AlternateDataStreams: C:\Users\AZE\Downloads\1(1).jpg:$CmdTcID [64] AlternateDataStreams: C:\Users\AZE\Downloads\1(1).jpg:$CmdZnID [26] AlternateDataStreams: C:\Users\AZE\Downloads\1401870403-29etno-design-tradycja-w-naszym-nowym-swiecie.doc:$CmdTcID [64] AlternateDataStreams: C:\Users\AZE\Downloads\1401870403-29etno-design-tradycja-w-naszym-nowym-swiecie.doc:$CmdZnID [26] AlternateDataStreams: C:\Users\AZE\Downloads\2016_08_15_ProjektAranżacjiPrzedszkola_Rostafińskich1_InstalacjeElektr.pdf:$CmdTcID [64] AlternateDataStreams: C:\Users\AZE\Downloads\2016_08_15_ProjektAranżacjiPrzedszkola_Rostafińskich1_InstalacjeElektr.pdf:$CmdZnID [26] AlternateDataStreams: C:\Users\AZE\Downloads\2016_08_15_ProjektAranżacjiPrzedszkola_Rostafińskich1_Instalacje_WodnoKa....pdf:$CmdTcID [64] AlternateDataStreams: C:\Users\AZE\Downloads\2016_08_15_ProjektAranżacjiPrzedszkola_Rostafińskich1_Instalacje_WodnoKa....pdf:$CmdZnID [26] AlternateDataStreams: C:\Users\AZE\Downloads\5.pdf:$CmdTcID [64] AlternateDataStreams: C:\Users\AZE\Downloads\5.pdf:$CmdZnID [26] AlternateDataStreams: C:\Users\AZE\Downloads\8d4272e2-ad03-407e-bf7b-5c0f5de164db.cdr:$CmdZnID [26] AlternateDataStreams: C:\Users\AZE\Downloads\adwcleaner_6.043.exe:$CmdTcID [64] AlternateDataStreams: C:\Users\AZE\Downloads\adwcleaner_6.043.exe:$CmdZnID [26] AlternateDataStreams: C:\Users\AZE\Downloads\Analiza:$CmdTcID [64] AlternateDataStreams: C:\Users\AZE\Downloads\Analiza:$CmdZnID [26] AlternateDataStreams: C:\Users\AZE\Downloads\Artur Puszkarewicz.docx:$CmdTcID [64] AlternateDataStreams: C:\Users\AZE\Downloads\Artur Puszkarewicz.docx:$CmdZnID [26] AlternateDataStreams: C:\Users\AZE\Downloads\AYU.zip:$CmdTcID [64] AlternateDataStreams: C:\Users\AZE\Downloads\AYU.zip:$CmdZnID [26] AlternateDataStreams: C:\Users\AZE\Downloads\badania-konsumentow-uslug-turystycznych-w-regionach.pdf:$CmdTcID [64] AlternateDataStreams: C:\Users\AZE\Downloads\badania-konsumentow-uslug-turystycznych-w-regionach.pdf:$CmdZnID [26] AlternateDataStreams: C:\Users\AZE\Downloads\brief produktowy.rtf:$CmdZnID [26] AlternateDataStreams: C:\Users\AZE\Downloads\BRIEF PROJEKTOWY_nowy fason_Porcelana Krzysztof.docx:$CmdTcID [64] AlternateDataStreams: C:\Users\AZE\Downloads\BRIEF PROJEKTOWY_nowy fason_Porcelana Krzysztof.docx:$CmdZnID [26] AlternateDataStreams: C:\Users\AZE\Downloads\czlowiek pikt.pdf:$CmdTcID [64] AlternateDataStreams: C:\Users\AZE\Downloads\czlowiek pikt.pdf:$CmdZnID [26] AlternateDataStreams: C:\Users\AZE\Downloads\DM 2017 - harmonogram.pdf:$CmdZnID [26] AlternateDataStreams: C:\Users\AZE\Downloads\DM zmiany 2018.xlsx:$CmdTcID [130] AlternateDataStreams: C:\Users\AZE\Downloads\DM zmiany 2018.xlsx:$CmdZnID [26] AlternateDataStreams: C:\Users\AZE\Downloads\Do wysyłki.rar:$CmdTcID [64] AlternateDataStreams: C:\Users\AZE\Downloads\Do wysyłki.rar:$CmdZnID [26] AlternateDataStreams: C:\Users\AZE\Downloads\FRST.exe:$CmdTcID [64] AlternateDataStreams: C:\Users\AZE\Downloads\FRST.exe:$CmdZnID [26] AlternateDataStreams: C:\Users\AZE\Downloads\FRST64.exe:$CmdTcID [64] AlternateDataStreams: C:\Users\AZE\Downloads\FRST64.exe:$CmdZnID [26] AlternateDataStreams: C:\Users\AZE\Downloads\godmorgon-szafka-pod-umywalke-z-szufladami__AA-1323526-2_pub.pdf:$CmdTcID [64] AlternateDataStreams: C:\Users\AZE\Downloads\godmorgon-szafka-pod-umywalke-z-szufladami__AA-1323526-2_pub.pdf:$CmdZnID [26] AlternateDataStreams: C:\Users\AZE\Downloads\godmorgon-szafka-pod-umywalke-z-szufladami__AA-339975-15_pub.pdf:$CmdZnID [26] AlternateDataStreams: C:\Users\AZE\Downloads\huxmvny2.exe:$CmdTcID [64] AlternateDataStreams: C:\Users\AZE\Downloads\huxmvny2.exe:$CmdZnID [26] AlternateDataStreams: C:\Users\AZE\Downloads\instrukcja etap I_zakres.pdf:$CmdTcID [64] AlternateDataStreams: C:\Users\AZE\Downloads\instrukcja etap I_zakres.pdf:$CmdZnID [26] AlternateDataStreams: C:\Users\AZE\Downloads\JURY 2017 - MAILE.xlsx:$CmdTcID [64] AlternateDataStreams: C:\Users\AZE\Downloads\JURY 2017 - MAILE.xlsx:$CmdZnID [26] AlternateDataStreams: C:\Users\AZE\Downloads\Katalog elementów_ver_PL.pdf:$CmdTcID [64] AlternateDataStreams: C:\Users\AZE\Downloads\Katalog elementów_ver_PL.pdf:$CmdZnID [26] AlternateDataStreams: C:\Users\AZE\Downloads\ksiazeczka KOMIKS defrans_fr.pdf:$CmdTcID [64] AlternateDataStreams: C:\Users\AZE\Downloads\ksiazeczka KOMIKS defrans_fr.pdf:$CmdZnID [26] AlternateDataStreams: C:\Users\AZE\Downloads\Kultura i Rozwój - 0.2015 - środek.pdf:$CmdTcID [64] AlternateDataStreams: C:\Users\AZE\Downloads\Kultura i Rozwój - 0.2015 - środek.pdf:$CmdZnID [26] AlternateDataStreams: C:\Users\AZE\Downloads\laczniki piktogramy.PDF:$CmdTcID [64] AlternateDataStreams: C:\Users\AZE\Downloads\laczniki piktogramy.PDF:$CmdZnID [26] AlternateDataStreams: C:\Users\AZE\Downloads\LP_1906.pdf.part:$CmdTcID [64] AlternateDataStreams: C:\Users\AZE\Downloads\MALIBU zestaw.pdf:$CmdZnID [26] AlternateDataStreams: C:\Users\AZE\Downloads\MALIBU zestaw.rtf:$CmdZnID [26] AlternateDataStreams: C:\Users\AZE\Downloads\mb3-setup-consumer-3.0.6.1469.exe:$CmdTcID [64] AlternateDataStreams: C:\Users\AZE\Downloads\mb3-setup-consumer-3.0.6.1469.exe:$CmdZnID [26] AlternateDataStreams: C:\Users\AZE\Downloads\METRO D60_0d2s.pdf:$CmdTcID [64] AlternateDataStreams: C:\Users\AZE\Downloads\METRO D60_0d2s.pdf:$CmdZnID [26] AlternateDataStreams: C:\Users\AZE\Downloads\na lakierze.jpg:$CmdTcID [64] AlternateDataStreams: C:\Users\AZE\Downloads\na lakierze.jpg:$CmdZnID [26] AlternateDataStreams: C:\Users\AZE\Downloads\na opakowaniu.jpg:$CmdTcID [64] AlternateDataStreams: C:\Users\AZE\Downloads\na opakowaniu.jpg:$CmdZnID [26] AlternateDataStreams: C:\Users\AZE\Downloads\obiekty referencyjne.zip:$CmdTcID [64] AlternateDataStreams: C:\Users\AZE\Downloads\obiekty referencyjne.zip:$CmdZnID [26] AlternateDataStreams: C:\Users\AZE\Downloads\OpisyDM2016.zip:$CmdZnID [26] AlternateDataStreams: C:\Users\AZE\Downloads\OŚWIADCZENIE ZLECENIOBIORCY.docx:$CmdTcID [130] AlternateDataStreams: C:\Users\AZE\Downloads\OŚWIADCZENIE ZLECENIOBIORCY.docx:$CmdZnID [26] AlternateDataStreams: C:\Users\AZE\Downloads\package_2017_01_09_16_36_39_profim.zip:$CmdTcID [64] AlternateDataStreams: C:\Users\AZE\Downloads\package_2017_01_09_16_36_39_profim.zip:$CmdZnID [26] AlternateDataStreams: C:\Users\AZE\Downloads\package_2017_01_09_16_40_18_profim.zip:$CmdTcID [64] AlternateDataStreams: C:\Users\AZE\Downloads\package_2017_01_09_16_40_18_profim.zip:$CmdZnID [26] AlternateDataStreams: C:\Users\AZE\Downloads\pikto_LAKIEROWANIE.pdf:$CmdTcID [64] AlternateDataStreams: C:\Users\AZE\Downloads\pikto_LAKIEROWANIE.pdf:$CmdZnID [26] AlternateDataStreams: C:\Users\AZE\Downloads\Produkty Aze Design na wystawie Logika lokalności 2.rtf:$CmdTcID [64] AlternateDataStreams: C:\Users\AZE\Downloads\Produkty Aze Design na wystawie Logika lokalności 2.rtf:$CmdZnID [26] AlternateDataStreams: C:\Users\AZE\Downloads\prognoza_2014_2050_powiaty.zip:$CmdTcID [64] AlternateDataStreams: C:\Users\AZE\Downloads\prognoza_2014_2050_powiaty.zip:$CmdZnID [26] AlternateDataStreams: C:\Users\AZE\Downloads\raginisa analiza zacienianie.zip:$CmdTcID [64] AlternateDataStreams: C:\Users\AZE\Downloads\raginisa analiza zacienianie.zip:$CmdZnID [26] AlternateDataStreams: C:\Users\AZE\Downloads\Raport_Najlepsze_dzialania_promo_polskich_miast_i_regionow_Raport_2015-2016.pdf:$CmdTcID [64] AlternateDataStreams: C:\Users\AZE\Downloads\Raport_Najlepsze_dzialania_promo_polskich_miast_i_regionow_Raport_2015-2016.pdf:$CmdZnID [26] AlternateDataStreams: C:\Users\AZE\Downloads\regionalne(1).pdf:$CmdTcID [64] AlternateDataStreams: C:\Users\AZE\Downloads\regionalne(1).pdf:$CmdZnID [26] AlternateDataStreams: C:\Users\AZE\Downloads\Ruch-turystyczny-w-regionie-Puszczy-Białowieskiej-w-okresie-majowym-sprawozdanie.doc:$CmdTcID [64] AlternateDataStreams: C:\Users\AZE\Downloads\Ruch-turystyczny-w-regionie-Puszczy-Białowieskiej-w-okresie-majowym-sprawozdanie.doc:$CmdZnID [26] AlternateDataStreams: C:\Users\AZE\Downloads\rysunki.PDF:$CmdTcID [64] AlternateDataStreams: C:\Users\AZE\Downloads\rysunki.PDF:$CmdZnID [26] AlternateDataStreams: C:\Users\AZE\Downloads\schemat wyznaczania punktowan.pdf:$CmdTcID [64] AlternateDataStreams: C:\Users\AZE\Downloads\schemat wyznaczania punktowan.pdf:$CmdZnID [26] AlternateDataStreams: C:\Users\AZE\Downloads\SPRADLING oferta EN - review.doc:$CmdTcID [64] AlternateDataStreams: C:\Users\AZE\Downloads\SPRADLING oferta EN - review.doc:$CmdZnID [26] AlternateDataStreams: C:\Users\AZE\Downloads\SPRADLING oferta EN(1).docx:$CmdTcID [130] AlternateDataStreams: C:\Users\AZE\Downloads\SPRADLING oferta EN(1).docx:$CmdZnID [26] AlternateDataStreams: C:\Users\AZE\Downloads\SPRADLING oferta EN.docx:$CmdTcID [64] AlternateDataStreams: C:\Users\AZE\Downloads\SPRADLING oferta EN.docx:$CmdZnID [26] AlternateDataStreams: C:\Users\AZE\Downloads\staze-dla-ok-300-studentow-uniwersytetu-w-bialymstoku.pdf:$CmdTcID [64] AlternateDataStreams: C:\Users\AZE\Downloads\staze-dla-ok-300-studentow-uniwersytetu-w-bialymstoku.pdf:$CmdZnID [26] AlternateDataStreams: C:\Users\AZE\Downloads\szpak mpzp.zip:$CmdTcID [64] AlternateDataStreams: C:\Users\AZE\Downloads\szpak mpzp.zip:$CmdZnID [26] AlternateDataStreams: C:\Users\AZE\Downloads\TETAURI_prezentacja komunikacja 09_2016.pdf:$CmdTcID [64] AlternateDataStreams: C:\Users\AZE\Downloads\TETAURI_prezentacja komunikacja 09_2016.pdf:$CmdZnID [26] AlternateDataStreams: C:\Users\AZE\Downloads\TnOPC_Szczegółowy program konferencji.pdf:$CmdTcID [64] AlternateDataStreams: C:\Users\AZE\Downloads\TnOPC_Szczegółowy program konferencji.pdf:$CmdZnID [26] AlternateDataStreams: C:\Users\AZE\Downloads\u12kom5p.exe:$CmdTcID [64] AlternateDataStreams: C:\Users\AZE\Downloads\u12kom5p.exe:$CmdZnID [26] AlternateDataStreams: C:\Users\AZE\Downloads\Umowa wolontariacka nr 8 - Artur Puszkarewicz.docx:$CmdTcID [130] AlternateDataStreams: C:\Users\AZE\Downloads\Umowa wolontariacka nr 8 - Artur Puszkarewicz.docx:$CmdZnID [26] AlternateDataStreams: C:\Users\AZE\Downloads\uwagi komunikacyjne_do instrukcji montażu.docx:$CmdTcID [64] AlternateDataStreams: C:\Users\AZE\Downloads\uwagi komunikacyjne_do instrukcji montażu.docx:$CmdZnID [26] AlternateDataStreams: C:\Users\AZE\Downloads\_fv00031.pdf:$CmdTcID [64] AlternateDataStreams: C:\Users\AZE\Downloads\_fv00031.pdf:$CmdZnID [26] AlternateDataStreams: C:\Users\AZE\Downloads\__regulamin-przyznawania-osobom-bezrobotnym-jednorazowo-srodkow.doc:$CmdTcID [64] AlternateDataStreams: C:\Users\AZE\Downloads\__regulamin-przyznawania-osobom-bezrobotnym-jednorazowo-srodkow.doc:$CmdZnID [26] AlternateDataStreams: C:\Users\AZE\Downloads\__wniosek-o-dofinansowanie-kosztow-zwiazanych-z-podjeciem-dzialalnosci-gospodarczej.doc:$CmdTcID [64] AlternateDataStreams: C:\Users\AZE\Downloads\__wniosek-o-dofinansowanie-kosztow-zwiazanych-z-podjeciem-dzialalnosci-gospodarczej.doc:$CmdZnID [26] ==================== Tryb awaryjny (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Wartość "AlternateShell" zostanie przywrócona.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service" ==================== Powiązania plików (filtrowane) =============== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci.) ==================== Internet Explorer - Witryny zaufane i z ograniczeniami =============== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru.) ==================== Hosts - zawartość: =============================== (Użycie dyrektywy Hosts: w fixlist spowoduje reset pliku Hosts.) 2009-07-14 03:34 - 2016-09-28 22:34 - 00000844 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Inne obszary ============================ (Obecnie brak automatycznej naprawy dla tej sekcji.) HKU\S-1-5-21-3681985802-1371551307-987329215-1001\Control Panel\Desktop\\Wallpaper -> DNS Servers: 192.168.1.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Zapora systemu Windows [funkcja wyłączona] ==================== MSCONFIG/TASK MANAGER - Wyłączone elementy == ==================== Reguły Zapory systemu Windows (filtrowane) =============== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) FirewallRules: [{990F77B1-1A59-48F7-A36B-2A1A01D8FBE8}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{74BA5EDF-1FC1-467A-A089-9A7691726AEF}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [TCP Query User{210908F8-017C-419F-85B9-2A36580ED089}C:\program files (x86)\mozilla firefox\firefox.exe] => (Allow) C:\program files (x86)\mozilla firefox\firefox.exe FirewallRules: [UDP Query User{574340E3-FECC-4BC4-BC27-11369A849B8B}C:\program files (x86)\mozilla firefox\firefox.exe] => (Allow) C:\program files (x86)\mozilla firefox\firefox.exe FirewallRules: [{12C37F7F-0426-4302-A246-4FE467883BC0}] => (Allow) LPort=5353 FirewallRules: [{AAF7A48D-F473-409A-BB72-240AAC3778EE}] => (Allow) C:\Program Files (x86)\Common Files\Adobe\CS4ServiceManager\CS4ServiceManager.exe FirewallRules: [{D0B5B8C4-A8BC-45BA-95EA-9DB8A93A350E}] => (Allow) C:\Program Files (x86)\Common Files\Adobe\CS4ServiceManager\CS4ServiceManager.exe FirewallRules: [TCP Query User{5403A0A7-FECA-4B2B-8074-E6D721349BC5}C:\program files (x86)\allplayer remote\allplayerremotecontrol.exe] => (Allow) C:\program files (x86)\allplayer remote\allplayerremotecontrol.exe FirewallRules: [UDP Query User{88C00C8A-D11A-4B8E-A04F-D0602BBB2248}C:\program files (x86)\allplayer remote\allplayerremotecontrol.exe] => (Allow) C:\program files (x86)\allplayer remote\allplayerremotecontrol.exe FirewallRules: [TCP Query User{0BEB6C7C-18F4-4CDA-8248-F19FDD7AE67F}C:\program files (x86)\allplayer remote\allplayerremotecontrol.exe] => (Block) C:\program files (x86)\allplayer remote\allplayerremotecontrol.exe FirewallRules: [UDP Query User{3C4A5DB7-8B8E-424E-B16D-CDA8342C5DE2}C:\program files (x86)\allplayer remote\allplayerremotecontrol.exe] => (Block) C:\program files (x86)\allplayer remote\allplayerremotecontrol.exe FirewallRules: [TCP Query User{0E4851D4-AB48-4E51-8815-190923708DF2}C:\totalcmd\totalcmd64.exe] => (Allow) C:\totalcmd\totalcmd64.exe FirewallRules: [UDP Query User{8253707D-98B4-495D-ACA6-4219CA1514F5}C:\totalcmd\totalcmd64.exe] => (Allow) C:\totalcmd\totalcmd64.exe FirewallRules: [{3CFE6209-2C02-453F-8E54-5CE2EDEA4EA4}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{C8F818C7-3FA6-45D0-BB61-18B00B0B37DE}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{B1864452-A30E-4756-8A50-E0874085AFA8}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe FirewallRules: [{A99D11DB-DB23-43E2-A840-C863FA3030C9}] => (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe FirewallRules: [{C28D98C1-C916-49F3-B3C3-5E627296533E}] => (Allow) LPort=2869 FirewallRules: [{E397639A-847E-4E05-9D6C-0772753887FA}] => (Allow) LPort=1900 FirewallRules: [{17505FF2-0BF5-47D7-9175-50A2817762D0}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Punkty Przywracania systemu ========================= ==================== Wadliwe urządzenia w Menedżerze urządzeń ============= Name: Teredo Tunneling Pseudo-Interface Description: Karta tunelowania Teredo firmy Microsoft Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318} Manufacturer: Microsoft Service: tunnel Problem: : This device cannot start. (Code10) Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device. On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard. Name: Broadcom USH Description: Broadcom USH Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. ==================== Błędy w Dzienniku zdarzeń: ========================= Dziennik Aplikacja: ================== Error: (02/23/2017 10:35:45 PM) (Source: Brother BrLog) (EventID: 1001) (User: ) Description: TWN BrtTWN: [2017/02/23 22:35:45.156]: [00002996]: Initialize TwdsMain Class failed! Error: (02/23/2017 10:35:45 PM) (Source: Brother BrLog) (EventID: 1001) (User: ) Description: TWN BrtTWN: [2017/02/23 22:35:45.053]: [00002996]: ##### Fatal ERROR!! Create STI-device failed! ##### Error: (02/23/2017 10:35:44 PM) (Source: Brother BrLog) (EventID: 1001) (User: ) Description: TWN BrtTWN: [2017/02/23 22:35:44.922]: [00002996]: BrStiIf: GetDeviceList Failed! pStiInfo = 0x0.. Error: (02/23/2017 10:11:23 PM) (Source: Brother BrLog) (EventID: 1001) (User: ) Description: TWN BrtTWN: [2017/02/23 22:11:23.668]: [00004152]: Initialize TwdsMain Class failed! Error: (02/23/2017 10:11:23 PM) (Source: Brother BrLog) (EventID: 1001) (User: ) Description: TWN BrtTWN: [2017/02/23 22:11:23.656]: [00004152]: ##### Fatal ERROR!! Create STI-device failed! ##### Error: (02/23/2017 10:11:23 PM) (Source: Brother BrLog) (EventID: 1001) (User: ) Description: TWN BrtTWN: [2017/02/23 22:11:23.649]: [00004152]: BrStiIf: GetDeviceList Failed! pStiInfo = 0x0.. Error: (02/23/2017 10:01:05 PM) (Source: Brother BrLog) (EventID: 1001) (User: ) Description: TWN BrtTWN: [2017/02/23 22:01:05.100]: [00003884]: Initialize TwdsMain Class failed! Error: (02/23/2017 10:01:05 PM) (Source: Brother BrLog) (EventID: 1001) (User: ) Description: TWN BrtTWN: [2017/02/23 22:01:05.098]: [00003884]: ##### Fatal ERROR!! Create STI-device failed! ##### Error: (02/23/2017 10:01:05 PM) (Source: Brother BrLog) (EventID: 1001) (User: ) Description: TWN BrtTWN: [2017/02/23 22:01:05.071]: [00003884]: BrStiIf: GetDeviceList Failed! pStiInfo = 0x0.. Error: (02/23/2017 09:54:36 PM) (Source: Windows Search Service) (EventID: 3100) (User: ) Description: Nie można zainicjować procesu hosta filtru. Kończenie. Szczegóły: Operacja została zwrócona, ponieważ przekroczono limit czasu. (HRESULT : 0x800705b4) (0x800705b4) Dziennik System: ============= Error: (02/24/2017 09:37:13 AM) (Source: volsnap) (EventID: 36) (User: ) Description: Wykonywanie kopii w tle woluminu C: zostało przerwane, ponieważ nie można powiększyć magazynu kopii w tle z powodu limitu wprowadzonego przez użytkownika. Error: (02/24/2017 07:19:28 AM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: Upłynął limit czasu (30000 ms) podczas oczekiwania na połączenie się z usługą Usługa raportowania błędów systemu Windows. Error: (02/24/2017 07:19:28 AM) (Source: SCardSvr) (EventID: 610) (User: ) Description: Czytnik kart inteligentnych „Broadcom Corp Contacted SmartCard 0” odrzucił żądanie IOCTL GET_STATE: Operacja We/Wy została przerwana z powodu zakończenia wątku lub żądania aplikacji.. Jeśli ten błąd będzie się powtarzać, może to oznaczać, że karta inteligentna lub czytnik nie działa poprawnie. Nagłówek polecenia: XX XX XX XX Error: (02/24/2017 07:18:40 AM) (Source: WudfUsbccidDriver) (EventID: 7) (User: ZARZĄDZANIE NT) Description: Event-ID 7 Error: (02/24/2017 07:18:40 AM) (Source: WudfUsbccidDriver) (EventID: 7) (User: ZARZĄDZANIE NT) Description: Event-ID 7 Error: (02/23/2017 10:35:29 PM) (Source: ipnathlp) (EventID: 31004) (User: ) Description: Agent proxy DNS nie może przydzielić 0 bajtów pamięci. Może to wskazywać, że w systemie brakuje pamięci wirtualnej lub że menedżer pamięci napotkał błąd wewnętrzny. Error: (02/23/2017 10:35:29 PM) (Source: ipnathlp) (EventID: 30013) (User: ) Description: Program przydzielania DHCP sam wyłączył się dla adresu IP 192.168.1.4, gdyż adres ten jest spoza zakresu 192.168.137.0/255.255.255.0, z którego są przydzielane adresy klientom DHCP. Aby włączyć program przydzielania DHCP dla tego adresu IP, zmień zakres, tak aby zawierał adres IP, albo zmień adres IP, tak aby mieścił się w zakresie. Error: (02/23/2017 10:35:29 PM) (Source: ipnathlp) (EventID: 1233) (User: ) Description: Usługa ICS_IPV6 nie mogła skonfigurować stosu IPv6. Error: (02/23/2017 10:35:25 PM) (Source: ipnathlp) (EventID: 31004) (User: ) Description: Agent proxy DNS nie może przydzielić 0 bajtów pamięci. Może to wskazywać, że w systemie brakuje pamięci wirtualnej lub że menedżer pamięci napotkał błąd wewnętrzny. Error: (02/23/2017 10:35:13 PM) (Source: EventLog) (EventID: 6008) (User: ) Description: Poprzednie zamknięcie systemu przy 22:34:42 na ‎2017-‎02-‎23 było nieoczekiwane. CodeIntegrity: =================================== Date: 2016-09-16 22:19:57.384 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\guard64.dll because the set of per-page image hashes could not be found on the system. Date: 2016-07-14 14:04:43.548 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\aswKbd.sys because the set of per-page image hashes could not be found on the system. Date: 2016-07-14 14:04:43.392 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\aswSnx.sys because the set of per-page image hashes could not be found on the system. Date: 2016-07-14 13:39:42.699 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\aswKbd.sys because the set of per-page image hashes could not be found on the system. Date: 2016-07-14 13:39:42.652 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\aswSnx.sys because the set of per-page image hashes could not be found on the system. Date: 2016-07-14 13:24:47.351 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\aswKbd.sys because the set of per-page image hashes could not be found on the system. Date: 2016-07-14 13:24:47.273 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\aswSnx.sys because the set of per-page image hashes could not be found on the system. Date: 2016-07-14 12:25:34.949 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\aswKbd.sys because the set of per-page image hashes could not be found on the system. Date: 2016-07-14 12:25:34.902 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\aswSnx.sys because the set of per-page image hashes could not be found on the system. Date: 2016-07-13 18:00:13.528 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\aswKbd.sys because the set of per-page image hashes could not be found on the system. ==================== Statystyki pamięci =========================== Procesor: Intel(R) Core(TM)2 Duo CPU P8400 @ 2.26GHz Procent pamięci w użyciu: 90% Całkowita pamięć fizyczna: 2035.92 MB Dostępna pamięć fizyczna: 202.92 MB Całkowita pamięć wirtualna: 4071.84 MB Dostępna pamięć wirtualna: 437.5 MB ==================== Dyski ================================ Drive c: () (Fixed) (Total:57.55 GB) (Free:13.73 GB) NTFS Drive e: (Dane) (Fixed) (Total:54.14 GB) (Free:50.09 GB) NTFS Drive h: () (Removable) (Total:3.74 GB) (Free:1.43 GB) FAT32 ==================== MBR & Tablica partycji ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 111.8 GB) (Disk ID: 6D95FB6B) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=57.6 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=54.1 GB) - (Type=07 NTFS) ======================================================== Disk: 1 (Size: 3.7 GB) (Disk ID: 00000000) Partition: GPT. ==================== Koniec Addition.txt ============================