MatNed Opublikowano 5 Stycznia 2018 Zgłoś Udostępnij Opublikowano 5 Stycznia 2018 Cześć. Przyznam, że zarejestrowałem się tutaj głównie w celu odnalezienia rozwiązania problemu, który nastąpił dziś rano. Wczoraj wieczorem dokonałem aktualizacji Windows 7 na swoim laptopie. Niestety jeden z programów niezbędnych do pracy z domu przestał działać toteż postanowiłem przywrócić system do ustawień sprzed aktualizacji. Po restarcie widzę blue screen z błędem wymienionym w temacie. Próbowałem już kilku rzeczy w tym przywracanie do innych dat, ale nic z tego. Pojawia się komunikat, o uszkodzonych plikach itd. Przed chwilą zrobiłem skan programem FRST, Poniżej log - dacie radę mi pomóc? Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 02.01.2018 Ran by SYSTEM on MININT-MKQT3OQ (05-01-2018 13:00:58) Running from f:\ Platform: Windows 7 Home Premium Service Pack 1 (X64) Language: English (United States) Internet Explorer Version 9 Boot Mode: Recovery Default: ControlSet001 ATTENTION!:=====> If the system is bootable FRST must be run from normal or Safe mode to create a complete log. Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Registry (Whitelisted) =========================== (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.) HKLM\...\Run: [RtHDVBg] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2226280 2011-05-16] (Realtek Semiconductor) HKLM\...\Run: [synTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2785064 2011-05-05] (Synaptics Incorporated) HKLM\...\Run: [synAsusAcpi] => C:\Program Files\Synaptics\SynTP\SynAsusAcpi.exe [97064 2011-05-05] (Synaptics Incorporated) HKLM\...\Run: [Logitech Download Assistant] => C:\Windows\system32\rundll32.exe C:\Windows\System32\LogiLDA.dll,LogiFetch HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [253344 2017-11-16] (AVAST Software) HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [446392 2012-04-03] (Adobe Systems Incorporated) HKLM-x32\...\Run: [ATKOSD2] => C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe [5732992 2010-08-17] (ASUS) HKLM-x32\...\Run: [bCSSync] => C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe [91520 2010-03-13] (Microsoft Corporation) HKLM-x32\...\Run: [switchBoard] => C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated) HKLM-x32\...\Run: [AdobeCS6ServiceManager] => C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe [1073312 2012-03-09] (Adobe Systems Incorporated) HKLM\...\RunOnce: [*Restore] => C:\Windows\system32\rstrui.exe [296960 2010-11-20] (Microsoft Corporation) Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation) HKU\Default\...\Run: [sidebar] => %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun HKU\Default User\...\Run: [sidebar] => %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun HKU\Gość\...\Run: [sidebar] => C:\Program Files\Windows Sidebar\sidebar.exe /autoRun HKU\Małgo\...\Run: [Google Update] => C:\Users\Małgo\AppData\Local\Google\Update\1.3.33.7\GoogleUpdateCore.exe [601680 2017-11-17] (Google Inc.) HKU\Małgo\...\Run: [AdobeBridge] => [X] HKU\MSSQL$SQLEXPRESS\...\Run: [sidebar] => %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun HKU\UpdatusUser\...\Run: [sidebar] => %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun HKU\UpdatusUser\...\Run: [iSUSPM] => C:\ProgramData\FLEXnet\Connect\11\ISUSPM.exe -scheduler AppInit_DLLs: C:\Windows\system32\nvinitx.dll => C:\Windows\system32\nvinitx.dll [247144 2012-10-08] (NVIDIA Corporation) AppInit_DLLs-x32: c:\windows\syswow64\nvinit.dll => c:\windows\syswow64\nvinit.dll [202600 2012-10-08] (NVIDIA Corporation) ==================== Services (Whitelisted) ==================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) S2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [77104 2015-10-07] (Apple Inc.) S3 aswbIDSAgent; C:\Program Files\AVAST Software\Avast\x64\aswidsagenta.exe [7549928 2017-11-16] (AVAST Software) S2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [281416 2017-11-16] (AVAST Software) S2 MySQL56; C:\ProgramData\MySQL\MySQL Server 5.6\my.ini [14232 2017-12-18] () S4 OracleJobSchedulerXE; c:\oraclexe\app\oracle\product\11.2.0\server\Bin\extjob.exe [45568 2014-05-29] () S3 OracleMTSRecoveryService; C:\oraclexe\app\oracle\product\11.2.0\server\BIN\omtsreco.exe [81408 2014-05-29] (Oracle Corporation) S2 OracleServiceXE; c:\oraclexe\app\oracle\product\11.2.0\server\bin\ORACLE.EXE [147110912 2014-05-29] (Oracle Corporation) S3 OracleXEClrAgent; C:\oraclexe\app\oracle\product\11.2.0\server\bin\OraClrAgnt.exe [83968 2014-05-29] (Oracle Corporation) S2 OracleXETNSListener; C:\oraclexe\app\oracle\product\11.2.0\server\BIN\tnslsnr.exe [522240 2014-05-29] (Oracle Corporation) S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2009-07-13] (Microsoft Corporation) S2 BrowserDefendert; C:\ProgramData\BrowserDefender\2.6.1519.190\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BrowserDefender.exe [X] ===================== Drivers (Whitelisted) ====================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) S1 aswArPot; C:\Windows\System32\drivers\aswArPot.sys [183584 2017-11-16] (AVAST Software) S1 aswbidsdriver; C:\Windows\System32\drivers\aswbidsdrivera.sys [321032 2017-11-16] (AVAST Software s.r.o.) S0 aswbidsh; C:\Windows\System32\drivers\aswbidsha.sys [198968 2017-11-16] (AVAST Software s.r.o.) S0 aswblog; C:\Windows\System32\drivers\aswbloga.sys [343288 2017-11-16] (AVAST Software s.r.o.) S0 aswbuniv; C:\Windows\System32\drivers\aswbuniva.sys [57728 2017-11-16] (AVAST Software s.r.o.) S3 aswHwid; C:\Windows\System32\drivers\aswHwid.sys [47008 2017-11-16] (AVAST Software) S1 aswKbd; C:\Windows\system32\drivers\aswKbd.sys [41832 2017-09-07] (AVAST Software) S2 aswMonFlt; C:\Windows\System32\drivers\aswMonFlt.sys [148288 2017-11-16] (AVAST Software) S1 aswRdr; C:\Windows\System32\drivers\aswRdr2.sys [110376 2017-11-16] (AVAST Software) S0 aswRvrt; C:\Windows\System32\drivers\aswRvrt.sys [84416 2017-11-16] (AVAST Software) S1 aswSnx; C:\Windows\System32\drivers\aswSnx.sys [1026232 2017-11-16] (AVAST Software) S1 aswSP; C:\Windows\System32\drivers\aswSP.sys [455376 2017-11-16] (AVAST Software) S2 aswStm; C:\Windows\System32\drivers\aswStm.sys [203976 2017-11-16] (AVAST Software) S0 aswVmm; C:\Windows\System32\drivers\aswVmm.sys [364464 2017-11-16] (AVAST Software) S1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283200 2012-03-11] (DT Soft Ltd) S3 kbfiltr; C:\Windows\System32\DRIVERS\kbfiltr.sys [15416 2009-07-20] ( ) S3 qcusbnet; C:\Windows\System32\DRIVERS\qcusbnet.sys [428600 2017-03-14] (QUALCOMM Incorporated) S3 qcusbser; C:\Windows\System32\DRIVERS\qcusbser.sys [254520 2017-03-14] (QUALCOMM Incorporated) S3 RimUsb; C:\Windows\System32\Drivers\RimUsb_AMD64.sys [28416 2008-04-16] (Research In Motion Limited) S3 AthBTPort; system32\DRIVERS\btath_flt.sys [X] S3 BTATH_A2DP; system32\drivers\btath_a2dp.sys [X] S3 BTATH_BUS; system32\DRIVERS\btath_bus.sys [X] S3 BTATH_HCRP; system32\DRIVERS\btath_hcrp.sys [X] S3 BTATH_LWFLT; system32\DRIVERS\btath_lwflt.sys [X] S3 BTATH_RCP; system32\DRIVERS\btath_rcp.sys [X] S3 BtFilter; system32\DRIVERS\btfilter.sys [X] S3 MBAMSwissArmy; \??\C:\Windows\system32\drivers\MBAMSwissArmy.sys [X] S3 WinRing0_1_2_0; \??\C:\Program Files (x86)\IObit\Game Booster 3\Driver\WinRing0x64.sys [X] ==================== NetSvcs (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) ==================== One Month Created files and folders ======== (If an entry is included in the fixlist, the file/folder will be moved.) 2018-01-05 13:00 - 2018-01-05 13:00 - 000000000 ____D C:\FRST 2018-01-04 23:31 - 2018-01-04 23:31 - 000000000 ____D C:\Users\Małgo\AppData\Roaming\Juniper Networks 2018-01-04 20:19 - 2018-01-05 00:35 - 000000000 ___SD C:\Windows\System32\CompatTel 2018-01-04 20:19 - 2018-01-05 00:35 - 000000000 ____D C:\Windows\System32\appraiser 2018-01-04 12:00 - 2018-01-04 12:00 - 000000000 ____D C:\Windows\System32\MRT 2018-01-04 11:26 - 2009-07-13 17:41 - 001393152 _____ (Microsoft Corporation) C:\Windows\System32\WMALFXGFXDSP.dll 2018-01-02 07:42 - 2018-01-02 07:42 - 000210056 _____ C:\Users\Małgo\Desktop\Formularz-rekrutacyjny.pdf 2017-12-28 14:52 - 2017-12-28 15:09 - 271106338 _____ C:\Users\Małgo\Downloads\CameraRaw_9_1_1.zip 2017-12-27 09:42 - 2017-12-27 09:42 - 002219562 _____ C:\Users\Małgo\Downloads\Astrofotografia dla początkującego.pdf 2017-12-27 09:42 - 2017-12-27 09:42 - 001682907 _____ C:\Users\Małgo\Downloads\Łączenie.pdf 2017-12-27 05:26 - 2017-12-27 05:27 - 000127284 _____ C:\Users\Małgo\Downloads\GradientXTerminatorWin64.zip 2017-12-27 03:28 - 2017-12-27 03:28 - 003540049 _____ C:\Users\Małgo\Downloads\Obróbka DSS w PS5.pdf 2017-12-27 03:26 - 2017-12-27 03:27 - 002814685 _____ C:\Users\Małgo\Downloads\PS w obróbce DSS.pdf 2017-12-27 01:48 - 2018-01-03 06:53 - 000003496 _____ C:\Windows\System32\Tasks\AdobeAAMUpdater-1.0-GOSIA-Małgo 2017-12-27 01:41 - 2017-12-27 01:41 - 000000000 ____D C:\ProgramData\regid.1986-12.com.adobe 2017-12-27 01:38 - 2017-12-27 01:42 - 000000000 ____D C:\Program Files\Adobe 2017-12-27 01:33 - 2017-12-27 01:41 - 000000000 ____D C:\Program Files\Common Files\Adobe 2017-12-26 13:26 - 2017-12-26 13:27 - 000566792 _____ C:\Users\Małgo\Downloads\Deep_Sky_Stacker_-_opis.pdf 2017-12-26 13:26 - 2017-12-26 13:27 - 000504296 _____ C:\Users\Małgo\Downloads\Kalibracja i stackowanie w DeepSkyStacker.pdf 2017-12-26 12:32 - 2017-12-26 12:32 - 000002591 _____ C:\Users\Public\Desktop\DeepSkyStacker.lnk 2017-12-26 12:32 - 2017-12-26 12:32 - 000000000 ____D C:\Users\Małgo\Downloads\DeepSkyStacker 2017-12-26 12:32 - 2017-12-26 12:32 - 000000000 ____D C:\Program Files (x86)\DeepSkyStacker 2017-12-26 12:24 - 2017-12-26 12:25 - 010754751 _____ C:\Users\Małgo\Downloads\DeepSkyStacker.zip 2017-12-21 23:51 - 2017-12-22 02:05 - 000000000 ____D C:\Users\Małgo\Desktop\My Cpp 2017-12-19 03:50 - 2017-12-19 03:50 - 000000445 _____ C:\Users\Małgo\Desktop\carrot.cpp 2017-12-18 09:06 - 2017-12-18 09:07 - 000000000 ____D C:\Program Files (x86)\CodeBlocks 2017-12-18 09:06 - 2017-12-18 09:06 - 000001097 _____ C:\Users\Małgo\Desktop\CodeBlocks.lnk 2017-12-18 09:03 - 2017-12-18 09:04 - 083783938 _____ (The Code::Blocks Team) C:\Users\Małgo\Downloads\codeblocks-16.01mingw-setup.exe 2017-12-18 08:35 - 2017-12-26 13:13 - 000000000 ____D C:\Users\Małgo\AppData\Roaming\CodeBlocks 2017-12-18 08:34 - 2017-12-18 08:34 - 034486727 _____ (The Code::Blocks Team) C:\Users\Małgo\Downloads\codeblocks-16.01-setup.exe 2017-12-18 08:17 - 2017-12-18 08:17 - 008075834 _____ C:\Users\Małgo\Desktop\Cpp_Primer_Plus_6th_Edition.pdf 2017-12-18 06:47 - 2017-12-18 06:47 - 002193834 _____ C:\Users\Małgo\Downloads\flyer.pdf 2017-12-18 01:49 - 2017-12-18 01:49 - 000279583 _____ C:\Users\Małgo\Downloads\CV_Malgorzata Dobosz_eng 2017-2.pdf 2017-12-18 01:32 - 2017-12-18 07:02 - 000001424 _____ C:\Users\Małgo\Downloads\MrBuggy.cfg 2017-12-18 01:24 - 2017-12-18 01:24 - 000000000 ____D C:\Program Files\MySQL 2017-12-18 01:20 - 2017-12-18 01:24 - 000000000 ____D C:\Program Files (x86)\MySQL 2017-12-18 01:13 - 2017-12-18 01:14 - 188518400 _____ C:\Users\Małgo\Downloads\mysql-installer-community-5.6.12.0.msi 2017-12-18 01:13 - 2017-12-18 01:13 - 001638912 _____ (21CN) C:\Users\Małgo\Downloads\MrBuggy.exe 2017-12-15 13:41 - 2017-12-15 13:41 - 000000004 _____ C:\Users\Małgo\Desktop\karta edenred.txt 2017-12-06 22:56 - 2017-12-06 22:56 - 000000000 ____D C:\Program Files\Common Files\Avast Software ==================== One Month Modified files and folders ======== (If an entry is included in the fixlist, the file/folder will be moved.) 2018-01-05 12:48 - 2009-07-13 23:45 - 000000000 ____D C:\Program Files\Windows Journal 2018-01-05 02:47 - 2017-09-10 11:04 - 000535442 _____ C:\Windows\ntbtlog.txt 2018-01-05 00:46 - 2016-04-07 12:41 - 000000000 ____D C:\users\MSSQL$SQLEXPRESS 2018-01-05 00:46 - 2015-05-25 06:57 - 000000000 ____D C:\users\Gość 2018-01-05 00:46 - 2012-03-09 04:11 - 000000000 ____D C:\users\Małgo 2018-01-05 00:46 - 2011-11-11 11:34 - 000000000 ____D C:\users\UpdatusUser 2018-01-05 00:46 - 2009-07-13 23:45 - 000000000 ____D C:\Windows\ShellNew 2018-01-05 00:46 - 2009-07-13 21:32 - 000000000 ____D C:\Windows\Offline Web Pages 2018-01-05 00:46 - 2009-07-13 21:32 - 000000000 ____D C:\Windows\Downloaded Program Files 2018-01-05 00:46 - 2009-07-13 21:32 - 000000000 ____D C:\Program Files\Windows Defender 2018-01-05 00:46 - 2009-07-13 21:32 - 000000000 ____D C:\Program Files\DVD Maker 2018-01-05 00:46 - 2009-07-13 21:32 - 000000000 ____D C:\Program Files (x86)\Windows Defender 2018-01-05 00:46 - 2009-07-13 19:20 - 000000000 ____D C:\Windows\SysWOW64\Setup 2018-01-05 00:46 - 2009-07-13 19:20 - 000000000 ____D C:\Windows\SysWOW64\migwiz 2018-01-05 00:46 - 2009-07-13 19:20 - 000000000 ____D C:\Windows\SysWOW64\lv-LV 2018-01-05 00:46 - 2009-07-13 19:20 - 000000000 ____D C:\Windows\SysWOW64\lt-LT 2018-01-05 00:46 - 2009-07-13 19:20 - 000000000 ____D C:\Windows\SysWOW64\et-EE 2018-01-05 00:46 - 2009-07-13 19:20 - 000000000 ____D C:\Windows\SysWOW64\Dism 2018-01-05 00:46 - 2009-07-13 19:20 - 000000000 ____D C:\Windows\System32\Setup 2018-01-05 00:46 - 2009-07-13 19:20 - 000000000 ____D C:\Windows\System32\migwiz 2018-01-05 00:46 - 2009-07-13 19:20 - 000000000 ____D C:\Windows\System32\lv-LV 2018-01-05 00:46 - 2009-07-13 19:20 - 000000000 ____D C:\Windows\System32\lt-LT 2018-01-05 00:46 - 2009-07-13 19:20 - 000000000 ____D C:\Windows\System32\et-EE 2018-01-05 00:46 - 2009-07-13 19:20 - 000000000 ____D C:\Windows\System32\Dism 2018-01-05 00:46 - 2009-07-13 19:20 - 000000000 ____D C:\Windows\System32\AdvancedInstallers 2018-01-05 00:46 - 2009-07-13 19:20 - 000000000 ____D C:\Windows\rescache 2018-01-05 00:46 - 2009-07-13 19:20 - 000000000 ____D C:\Windows\PolicyDefinitions 2018-01-05 00:46 - 2009-07-13 19:20 - 000000000 ____D C:\Windows\L2Schemas 2018-01-05 00:46 - 2009-07-13 19:20 - 000000000 ____D C:\Windows\inf 2018-01-05 00:44 - 2015-07-29 09:42 - 000000000 ____D C:\Windows\System32\Tasks\AVAST Software 2018-01-05 00:44 - 2011-02-18 21:30 - 000000000 ____D C:\Windows\SysWOW64\XPSViewer 2018-01-05 00:44 - 2009-07-13 19:20 - 000000000 ____D C:\Windows\tracing 2018-01-05 00:44 - 2009-07-13 19:20 - 000000000 ____D C:\Windows\SysWOW64\MUI 2018-01-05 00:44 - 2009-07-13 19:20 - 000000000 ____D C:\Windows\System32\MUI 2018-01-05 00:44 - 2009-07-13 19:20 - 000000000 ____D C:\Windows\servicing 2018-01-05 00:44 - 2009-07-13 19:20 - 000000000 ____D C:\Windows\schemas 2018-01-05 00:41 - 2017-10-04 10:36 - 000000000 ___RD C:\Users\Małgo\Virtual Machines 2018-01-05 00:41 - 2017-08-12 09:01 - 000000000 ____D C:\Program Files\Java 2018-01-05 00:41 - 2017-05-24 23:30 - 000000000 ____D C:\Users\Małgo\AppData\Roaming\ICAClient 2018-01-05 00:41 - 2013-03-13 00:49 - 000000000 ____D C:\Program Files\Microsoft Silverlight 2018-01-05 00:41 - 2011-11-11 11:43 - 000000000 ____D C:\ProgramData\P4G 2018-01-05 00:41 - 2009-07-13 19:20 - 000000000 ____D C:\Program Files\Common Files\Microsoft Shared 2018-01-05 00:40 - 2017-05-24 23:28 - 000000000 ____D C:\Program Files (x86)\Citrix 2018-01-05 00:40 - 2013-03-13 00:49 - 000000000 ____D C:\Program Files (x86)\Microsoft Silverlight 2018-01-05 00:40 - 2012-03-18 04:29 - 000000000 ____D C:\Program Files (x86)\Java 2018-01-05 00:38 - 2009-07-13 23:44 - 000000000 ___RD C:\Users\Public\Recorded TV 2018-01-05 00:26 - 2009-07-13 19:20 - 000000000 ____D C:\Windows\registration 2018-01-05 00:16 - 2009-07-13 19:20 - 000000000 ____D C:\Windows\AppCompat 2018-01-05 00:05 - 2009-07-13 20:45 - 000009920 ____H C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2018-01-05 00:05 - 2009-07-13 20:45 - 000009920 ____H C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2018-01-04 23:50 - 2016-08-10 01:14 - 000000000 ____D C:\Users\Małgo\.oracle_jre_usage 2018-01-04 23:32 - 2012-03-09 04:11 - 000000000 ____D C:\Users\Małgo\AppData\Local\VirtualStore 2018-01-04 20:50 - 2009-07-28 22:03 - 000000000 ____D C:\Windows\Panther 2018-01-04 07:04 - 2013-07-08 11:04 - 000000288 _____ C:\Windows\Tasks\DSite.job 2018-01-04 00:40 - 2012-03-09 04:45 - 000001006 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1853744613-2716420291-1059564960-1001Core.job 2018-01-04 00:24 - 2012-04-16 07:42 - 000000000 ____D C:\Users\Małgo\AppData\Local\Adobe 2018-01-03 06:53 - 2017-08-01 01:07 - 000003154 _____ C:\Windows\System32\Tasks\{6CA1A2D6-4D75-49D0-B0F7-5AC62CF71E90} 2018-01-03 06:53 - 2017-07-07 05:22 - 000003944 _____ C:\Windows\System32\Tasks\SafeZone scheduled Autoupdate 1468514181 2018-01-03 06:53 - 2016-08-16 05:27 - 000004476 _____ C:\Windows\System32\Tasks\Adobe Acrobat Update Task 2018-01-03 06:53 - 2015-12-21 09:20 - 000004412 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater 2018-01-03 06:53 - 2015-08-29 12:53 - 000003386 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1853744613-2716420291-1059564960-1001Core1d0bf89ddf8de40 2018-01-03 06:53 - 2013-12-17 14:31 - 000002772 _____ C:\Windows\System32\Tasks\CCleanerSkipUAC 2018-01-03 06:53 - 2013-07-08 11:04 - 000003222 _____ C:\Windows\System32\Tasks\DSite 2018-01-03 06:53 - 2013-03-16 04:34 - 000003160 _____ C:\Windows\System32\Tasks\Game_Booster_AutoUpdate 2018-01-03 06:53 - 2013-01-30 10:56 - 000003480 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA 2018-01-03 06:53 - 2013-01-30 10:56 - 000003352 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore 2018-01-03 06:53 - 2012-03-18 03:15 - 000003170 _____ C:\Windows\System32\Tasks\{4F0D66D6-DA8E-4B9A-A0F5-D3E3790E0EA9} 2018-01-03 06:53 - 2012-03-18 03:15 - 000003170 _____ C:\Windows\System32\Tasks\{2A247AC1-279A-4D6B-B03C-E93E28C307FF} 2018-01-03 06:53 - 2012-03-11 01:06 - 000003018 _____ C:\Windows\System32\Tasks\ASUS Live Update 2018-01-03 06:53 - 2012-03-09 04:45 - 000003658 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1853744613-2716420291-1059564960-1001UA 2018-01-03 06:53 - 2012-03-09 04:45 - 000003642 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1853744613-2716420291-1059564960-1001Core 2018-01-03 06:53 - 2011-11-11 11:43 - 000003148 _____ C:\Windows\System32\Tasks\SidebarExecute 2018-01-01 13:20 - 2011-02-18 21:31 - 000753644 _____ C:\Windows\System32\perfh015.dat 2018-01-01 13:20 - 2011-02-18 21:31 - 000160164 _____ C:\Windows\System32\perfc015.dat 2018-01-01 13:20 - 2009-07-13 21:13 - 001701542 _____ C:\Windows\System32\PerfStringBackup.INI 2018-01-01 06:34 - 2013-02-02 02:45 - 000065536 _____ C:\Windows\System32\Ikeext.etl 2018-01-01 06:34 - 2011-11-11 11:47 - 000045056 _____ C:\Windows\System32\acovcnt.exe 2018-01-01 06:34 - 2009-07-13 21:08 - 000000006 ____H C:\Windows\Tasks\SA.DAT 2017-12-31 07:55 - 2017-03-08 13:51 - 000004172 _____ C:\Windows\System32\Tasks\Avast Emergency Update 2017-12-29 13:49 - 2009-07-13 19:20 - 000000000 ____D C:\Windows\System32\NDF 2017-12-29 10:11 - 2016-08-26 09:01 - 000000000 _____ C:\Windows\SysWOW64\last.dump 2017-12-29 10:09 - 2011-11-11 11:47 - 000002816 _____ C:\Windows\System32\AutoRunFilter.ini 2017-12-29 10:08 - 2009-07-13 20:45 - 005042464 _____ C:\Windows\System32\FNTCACHE.DAT 2017-12-28 15:06 - 2012-03-09 04:43 - 000000000 ____D C:\Users\Małgo\AppData\Roaming\Adobe 2017-12-28 14:35 - 2012-03-18 14:45 - 000000000 ____D C:\Users\Małgo\AppData\Local\CrashDumps 2017-12-27 09:02 - 2012-04-16 07:40 - 000000000 ____D C:\ProgramData\Adobe 2017-12-27 01:47 - 2015-11-07 11:01 - 000000000 ____D C:\Users\Małgo\AppData\Roaming\NVIDIA 2017-12-27 01:44 - 2012-03-09 04:11 - 000110880 _____ C:\Users\Małgo\AppData\Local\GDIPFONTCACHEV1.DAT 2017-12-27 01:42 - 2012-04-16 07:42 - 000000000 ____D C:\Program Files (x86)\Adobe 2017-12-27 01:27 - 2012-03-09 05:35 - 000000000 ____D C:\Users\Małgo\AppData\Roaming\uTorrent 2017-12-26 13:16 - 2016-08-15 10:12 - 000000000 ____D C:\Users\Małgo\Downloads\TORRENTS 2017-12-18 01:24 - 2016-11-22 09:02 - 000000000 ____D C:\ProgramData\MySQL 2017-12-18 01:24 - 2014-06-29 07:35 - 001730104 _____ C:\Windows\SysWOW64\PerfStringBackup.INI 2017-12-18 01:04 - 2012-08-01 08:23 - 000000000 ____D C:\Users\Małgo\AppData\Local\ElevatedDiagnostics 2017-12-12 23:32 - 2015-12-21 09:20 - 000803328 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2017-12-12 23:32 - 2015-12-21 09:20 - 000144896 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2017-12-12 23:32 - 2015-12-21 09:20 - 000000000 ____D C:\Windows\System32\Macromed 2017-12-12 23:32 - 2011-04-01 01:19 - 000000000 ____D C:\Windows\SysWOW64\Macromed Some files in TEMP: ==================== 2017-09-10 10:45 - 2016-07-21 10:14 - 006913648 _____ (Spotify Ltd) C:\Users\Małgo\AppData\Local\Temp\SpotifyUninstall.exe ==================== Known DLLs (Whitelisted) ========================= ==================== Bamital & volsnap ====================== (There is no automatic fix for files that do not pass verification.) C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\SysWOW64\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\rpcss.dll => MD5 is legit C:\Windows\System32\dnsapi.dll => MD5 is legit C:\Windows\SysWOW64\dnsapi.dll => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit ==================== Association (Whitelisted) ============= ==================== Restore Points ========================= ==================== Memory info =========================== Percentage of memory in use: 14% Total physical RAM: 4006.7 MB Available physical RAM: 3418.41 MB Total Virtual: 4004.85 MB Available Virtual: 3411.5 MB ==================== Drives ================================ Drive c: (OS) (Fixed) (Total:186.3 GB) (Free:44.24 GB) NTFS ==>[system with boot components (obtained from drive)] Drive d: (DATA) (Fixed) (Total:254.46 GB) (Free:72.06 GB) NTFS Drive f: (INTENSO) (Removable) (Total:7.83 GB) (Free:5.22 GB) exFAT Drive x: (Boot) (Fixed) (Total:0.03 GB) (Free:0.03 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: 496B9619) Partition 1: (Not Active) - (Size=25 GB) - (Type=1C) Partition 2: (Active) - (Size=186.3 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=254.5 GB) - (Type=07 NTFS) ======================================================== Disk: 1 (Size: 7.8 GB) (Disk ID: 00000000) Partition: GPT. LastRegBack: 2017-12-29 08:08 ==================== End of FRST.txt ============================ Odnośnik do komentarza
Groszexxx Opublikowano 6 Stycznia 2018 Zgłoś Udostępnij Opublikowano 6 Stycznia 2018 Pokpiłeś sprawę, tutaj jeszcze zabytkowy IE 9. Na początek raczej standardowa procedura - sprawdzić smart dysku programem GsmartControl, potem chkdsk, a następnie sfc /scannow wg tego poradnika: No i warto sprawdzić czy system odpali się w trybie awaryjnym. Jeśli wywala BSOD - to zobacz czy są jakieś zrzuty pamięci, które mógłbyś załączyć do analizy. Odnośnik do komentarza
Rekomendowane odpowiedzi
Jeśli chcesz dodać odpowiedź, zaloguj się lub zarejestruj nowe konto
Jedynie zarejestrowani użytkownicy mogą komentować zawartość tej strony.
Zarejestruj nowe konto
Załóż nowe konto. To bardzo proste!
Zarejestruj sięZaloguj się
Posiadasz już konto? Zaloguj się poniżej.
Zaloguj się