Rezultaty skanu uzupełniającego Farbar Recovery Scan Tool (x64) Wersja: 13.01.2018 01 Uruchomiony przez Lea (13-01-2018 21:58:47) Uruchomiony z C:\Users\Lea\Downloads Windows 7 Ultimate Service Pack 1 (X64) (2012-06-06 19:50:27) Tryb startu: Normal ========================================================== ==================== Konta użytkowników: ============================= Administrator (S-1-5-21-296273819-3779705695-2377126671-500 - Administrator - Disabled) Gość (S-1-5-21-296273819-3779705695-2377126671-501 - Limited - Disabled) => C:\Users\Gość Lea (S-1-5-21-296273819-3779705695-2377126671-1000 - Administrator - Enabled) => C:\Users\Lea ==================== Centrum zabezpieczeń ======================== (Załączenie wejścia w fixlist spowoduje jego usunięcie.) AV: Avast Antivirus (Enabled - Up to date) {8EA8924E-BC81-DC44-8BB0-8BAE75D86EBF} AV: Malwarebytes (Enabled - Up to date) {23007AD3-69FE-687C-2629-D584AFFAF72B} AS: Malwarebytes (Enabled - Up to date) {98619B37-4FC4-67F2-1C99-EEF6D47DBD96} AS: Windows Defender (Disabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Avast Antivirus (Enabled - Up to date) {35C973AA-9ABB-D3CA-B100-B0DC0E5F2402} ==================== Zainstalowane programy ====================== (W fixlist dozwolone tylko załączanie programów adware z flagą "Hidden" w celu ich uwidocznienia. Programy adware powinny zostać w poprawny sposób odinstalowane.) µTorrent (HKU\S-1-5-21-296273819-3779705695-2377126671-1000\...\uTorrent) (Version: 3.5.1.44332 - BitTorrent Inc.) 7-Zip 9.20 (HKLM-x32\...\{23170F69-40C1-2701-0920-000001000000}) (Version: 9.20.00.0 - Igor Pavlov) Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 20.0.0.260 - Adobe Systems Incorporated) Adobe Flash Player 28 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 28.0.0.137 - Adobe Systems Incorporated) Adobe Flash Player 28 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 28.0.0.137 - Adobe Systems Incorporated) Aktualizacja produktu Microsoft Office Excel 2007 Help (KB963678) (HKLM-x32\...\{90120000-0016-0415-0000-0000000FF1CE}_ENTERPRISE_{04E205D6-88B1-4652-B162-42DF2C3B1228}) (Version: - Microsoft) Aktualizacja produktu Microsoft Office Powerpoint 2007 Help (KB963669) (HKLM-x32\...\{90120000-0018-0415-0000-0000000FF1CE}_ENTERPRISE_{442ECBCF-94A7-48CC-8CD9-D31FFFD5FA86}) (Version: - Microsoft) Aktualizacja produktu Microsoft Office Word 2007 Help (KB963665) (HKLM-x32\...\{90120000-001B-0415-0000-0000000FF1CE}_ENTERPRISE_{128A36ED-21BE-4547-9FFE-5B85AEC735DD}) (Version: - Microsoft) Avast Free Antivirus (HKLM-x32\...\Avast Antivirus) (Version: 17.9.2322 - AVAST Software) Detektor Winampa (HKU\S-1-5-21-296273819-3779705695-2377126671-1000\...\Winamp Detect) (Version: 1.0.0.1 - Nullsoft, Inc) DriverPack Solution Updater (HKU\S-1-5-21-296273819-3779705695-2377126671-1000\...\DRPSu Updater) (Version: 0.0.25 - DriverPack Solution) Foxit Reader (HKLM-x32\...\Foxit Reader_is1) (Version: 9.0.1.1049 - Foxit Software Inc.) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 63.0.3239.132 - Google Inc.) Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.33.7 - Google Inc.) Hidden Google Update Helper (HKLM-x32\...\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}) (Version: 1.3.25.11 - Google Inc.) Hidden HiSuite (HKLM-x32\...\Hi Suite) (Version: 1.0 - Huawei Technologies Co.,Ltd) HP Quick Launch Buttons (HKLM-x32\...\{34D2AB40-150D-475D-AE32-BD23FB5EE355}) (Version: 6.50.12.1 - Hewlett-Packard) IDT Audio (HKLM-x32\...\{E3A5A8AB-58F6-45FF-AFCB-C9AE18C05001}) (Version: 1.0.6225.0 - IDT) Intel® Matrix Storage Manager (HKLM\...\{9068B2BE-D93A-4C0A-861C-5E35E2C0E09E}) (Version: - Intel Corporation) IPTInstaller (HKLM-x32\...\{08208143-777D-4A06-BB54-71BF0AD1BB70}) (Version: 4.0.8 - HTC) Last.fm Scrobbler 2.1.35 (HKLM-x32\...\LastFM_is1) (Version: - Last.fm) Malwarebytes (wersja 3.3.1.2183) (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 3.3.1.2183 - Malwarebytes) Microsoft .NET Framework 4.6.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.6.01055 - Microsoft Corporation) Microsoft .NET Framework 4.6.1 (Polski) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1045) (Version: 4.6.01055 - Microsoft Corporation) Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version: - Microsoft) Microsoft Office Enterprise 2007 (HKLM-x32\...\ENTERPRISE) (Version: 12.0.6612.1000 - Microsoft Corporation) Microsoft Office File Validation Add-In (HKLM-x32\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50428.0 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Mozilla Firefox 57.0.4 (x64 pl) (HKLM\...\Mozilla Firefox 57.0.4 (x64 pl)) (Version: 57.0.4 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 57.0.4.6577 - Mozilla) MSXML 4.0 SP3 Parser (HKLM-x32\...\{196467F1-C11F-4F76-858B-5812ADC83B94}) (Version: 4.30.2100.0 - Microsoft Corporation) MSXML 4.0 SP3 Parser (KB2721691) (HKLM-x32\...\{355B5AC0-CEEE-42C5-AD4D-7F3CFD806C36}) (Version: 4.30.2114.0 - Microsoft Corporation) MSXML 4.0 SP3 Parser (KB2758694) (HKLM-x32\...\{1D95BA90-F4F8-47EC-A882-441C99D30C1E}) (Version: 4.30.2117.0 - Microsoft Corporation) MSXML 4.0 SP3 Parser (KB973685) (HKLM-x32\...\{859DFA95-E4A6-48CD-B88E-A3E483E89B44}) (Version: 4.30.2107.0 - Microsoft Corporation) MyPhoneExplorer (HKLM-x32\...\MPE) (Version: 1.8.5 - F.J. Wechselberger) NapiProjekt (2.1.0.2287) (HKLM-x32\...\NapiProjekt_is1) (Version: - ) Pakiet sterowników systemu Windows - ENE (enecir) HIDClass (09/04/2008 2.6.0.0) (HKLM\...\07B260955637F1FF7587ED2AA87459040DD09BF7) (Version: 09/04/2008 2.6.0.0 - ENE) Pakiet sterowników systemu Windows - Hewlett-Packard HP Mobile Data Protection Sensor (07/08/2009 4.0.2.1) (HKLM\...\DA1353C8F260F3E5D987942DD764C74BAA09E16E) (Version: 07/08/2009 4.0.2.1 - Hewlett-Packard) PLAY INTERNET (HKLM-x32\...\PLAY INTERNET) (Version: 23.015.05.05.264 - Huawei Technologies Co.,Ltd) QLBCASL (HKLM-x32\...\{F1D7AC58-554A-4A58-B784-B61558B1449A}) (Version: 6.40.17.2 - Hewlett-Packard) Hidden SafeZone Stable 4.58.2552.909 (HKLM-x32\...\SafeZone 4.58.2552.909) (Version: 4.58.2552.909 - Avast Software) Hidden Spotify (HKU\S-1-5-21-296273819-3779705695-2377126671-1000\...\Spotify) (Version: 1.0.66.478.g1296534d - Spotify AB) Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 15.2.4.4 - Synaptics Incorporated) Update for 2007 Microsoft Office System (KB967642) (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version: - Microsoft) Usługa Xperia Companion (HKLM\...\{86C9336F-6376-4E86-A09A-EA7177DEC3D5}) (Version: 1.7.2.0 - Sony) Hidden VLC media player (HKLM\...\VLC media player) (Version: 2.2.8 - VideoLAN) Widevine Media Optimizer Chrome 6.0.0 (HKU\.DEFAULT\...\optimizer_chrome) (Version: 6.0.0.12757 - Widevine Technologies) Winamp (HKLM-x32\...\Winamp) (Version: 5.63 - Nullsoft, Inc) WinRAR 5.00 (32-bit) (HKLM-x32\...\WinRAR archiver) (Version: 5.00.0 - win.rar GmbH) Xperia Companion (HKLM-x32\...\{058506CE-4E1C-4087-878E-61D8B5F8F47A}) (Version: 1.7.2.0 - Sony) Hidden Xperia Companion (HKLM-x32\...\{65415473-2761-4ee3-85c1-5fdf086444c6}) (Version: 1.7.2.0 - Sony) YoWindow (HKLM-x32\...\yowindow) (Version: 3 - RepkaSoft) ZAR X (HKLM\...\{85DA9B81-D7F9-4165-8E62-F776B57213F8}_is1) (Version: - www.z-a-recovery.com) Пакет обеспечения совместимости для выпуска 2007 системы Microsoft Office (HKLM-x32\...\{90120000-0020-0419-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) ==================== Niestandardowe rejestracje CLSID (filtrowane): ========================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2018-01-10] (AVAST Software) ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2018-01-10] (AVAST Software) ContextMenuHandlers1: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2018-01-10] (AVAST Software) ContextMenuHandlers1: [Foxit_ConvertToPDF_Reader] -> {A94757A0-0226-426F-B4F1-4DF381C630D3} => C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\ConvertToPDFShellExtension_x64.dll [2017-12-11] (Foxit Software Inc.) ContextMenuHandlers1-x32: [MyPhoneExplorer] -> {A372C6DF-7A85-41B1-B3B0-D1E24073DCBF} => D:\Lea\Programy\MyPhoneExplorer\DLL\ShellMgr.dll [2010-03-30] (F.J. Wechselberger) ContextMenuHandlers1-x32: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext64.dll [2013-09-02] (Alexander Roshal) ContextMenuHandlers1-x32-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext.dll [2013-09-02] (Alexander Roshal) ContextMenuHandlers3: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2018-01-10] (AVAST Software) ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2017-11-01] (Malwarebytes) ContextMenuHandlers6: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2018-01-10] (AVAST Software) ContextMenuHandlers6: [Foxit_ConvertToPDF_Reader] -> {A94757A0-0226-426F-B4F1-4DF381C630D3} => C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\ConvertToPDFShellExtension_x64.dll [2017-12-11] (Foxit Software Inc.) ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2017-11-01] (Malwarebytes) ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext64.dll [2013-09-02] (Alexander Roshal) ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext.dll [2013-09-02] (Alexander Roshal) ==================== Zaplanowane zadania (filtrowane) ============= (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) Task: {3AB41A81-7AD9-4948-A009-840AE83E697C} - System32\Tasks\{6269FD3B-FF7D-4018-B21B-DB726BC7019D} => C:\Windows\system32\pcalua.exe -a "C:\Users\Lea\Downloads\WinampPluginSetup_2.1.0.9 (2).exe" -d C:\Users\Lea\Downloads Task: {4B85B325-507A-45AB-8563-8C48421218A4} - System32\Tasks\Launch HTC Sync Loader => C:\Program Files (x86)\HTC\HTC Sync 3.0\htcUPCTLoader.exe Task: {59313B88-A3FD-4FE8-B90C-6E6395C76F20} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\avast software\overseer\overseer.exe [2018-01-06] (AVAST Software) Task: {5BD1D2A5-F68A-4B44-B38C-EC6BCC98E8D4} - System32\Tasks\Avast Emergency Update => C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [2018-01-10] (AVAST Software) Task: {64646EE6-A4AC-45F2-8522-14C7907F82B1} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2018-01-09] (Adobe Systems Incorporated) Task: {73607BAE-D62A-4C7F-B7BA-F0BB75DDA5F6} - System32\Tasks\{F455AB66-B753-49C0-AA21-EC731C558E0E} => C:\Windows\system32\pcalua.exe -a C:\Users\Lea\Downloads\Jedi\DirectX\dxsetup.exe -d C:\Users\Lea\Downloads\Jedi\DirectX Task: {7FC730FB-3FEC-4B2E-A7DE-30DD01C9AF47} - System32\Tasks\SafeZone scheduled Autoupdate 1462914232 => C:\Program Files\AVAST Software\SZBrowser\launcher.exe [2017-08-04] (Avast Software) Task: {7FD0F956-BA14-43A0-82F6-3012CFBF81A2} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate_scheduled => C:\Windows\ehome\mcupdate.exe Task: {DBE24299-BCB8-4E43-9594-493B63C5DF5B} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-29] (Google Inc.) Task: {E39B6A6C-3C14-47A0-BE79-BD9737D540EA} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-29] (Google Inc.) Task: {E65245CE-534C-4A73-B98D-185D0190B632} - System32\Tasks\AVAST Software\Avast settings backup => C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe Task: {E75D753B-5D16-4E55-9E39-2617FB03346B} - System32\Tasks\Microsoft\Windows\Media Center\StartRecording => C:\Windows\ehome\ehrec.exe Task: {F645553B-3802-4E77-9542-9CAD9C1C3187} - System32\Tasks\{7BD96014-44DA-4B59-A8C4-94C3BD490157} => C:\Windows\system32\pcalua.exe -a C:\Users\Lea\Downloads\Jedi\Bin\autorun.exe -d C:\Users\Lea\Downloads\Jedi\Bin (Załączenie wejścia w fixlist spowoduje przesunięcie pliku zadania (.job). Plik uruchamiany docelowo przez zadanie nie zostanie przeniesiony.) ==================== Skróty & WMI ======================== (Wybrane wejścia mogą zostać załączone w celu ich zresetowania lub usunięcia.) ==================== Załadowane moduły (filtrowane) ============== 2017-04-11 03:17 - 2017-04-11 03:17 - 000192200 _____ () C:\Program Files (x86)\HiSuite\HandSetService\HuaweiHiSuiteService64.exe 2013-07-02 23:17 - 2012-12-07 16:26 - 000167424 _____ () C:\Program Files (x86)\HTC\Internet Pass-Through\PassThruSvr.exe 2018-01-10 13:46 - 2018-01-10 13:46 - 000067920 _____ () c:\Program Files\AVAST Software\Avast\x64\module_lifetime.dll 2018-01-10 13:46 - 2018-01-10 13:46 - 000067984 _____ () C:\Program Files\AVAST Software\Avast\x64\dll_loader.dll 2018-01-10 13:46 - 2018-01-10 13:46 - 000236840 _____ () c:\Program Files\AVAST Software\Avast\x64\vaarclient.dll 2018-01-10 13:46 - 2018-01-10 13:46 - 000902824 _____ () C:\Program Files\AVAST Software\Avast\x64\ffl2.dll 2018-01-10 13:46 - 2018-01-10 13:46 - 000349568 _____ () c:\Program Files\AVAST Software\Avast\x64\StreamBack.dll 2015-04-25 20:18 - 2015-04-25 20:18 - 000515072 _____ () C:\Program Files (x86)\PLAY INTERNET\PLAY INTERNET.exe 2018-01-06 17:07 - 2018-01-03 10:20 - 004063064 _____ () C:\Program Files (x86)\Google\Chrome\Application\63.0.3239.132\libglesv2.dll 2018-01-06 17:07 - 2018-01-03 10:20 - 000099672 _____ () C:\Program Files (x86)\Google\Chrome\Application\63.0.3239.132\libegl.dll 2018-01-13 21:43 - 2017-11-29 09:11 - 002301384 _____ () C:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\SelfProtectionSdk.dll 2018-01-13 21:43 - 2017-11-29 09:11 - 002358728 _____ () C:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\MwacLib.dll 2018-01-10 13:46 - 2018-01-10 13:46 - 000058016 _____ () C:\Program Files\AVAST Software\Avast\module_lifetime.dll 2018-01-10 13:46 - 2018-01-10 13:46 - 000057504 _____ () C:\Program Files\AVAST Software\Avast\dll_loader.dll 2018-01-10 13:46 - 2018-01-10 13:46 - 000206152 _____ () C:\Program Files\AVAST Software\Avast\JsonRpcServer.dll 2018-01-10 13:46 - 2018-01-10 13:46 - 000289272 _____ () C:\Program Files\AVAST Software\Avast\tasks_core.dll 2018-01-10 13:46 - 2018-01-10 13:46 - 000196248 _____ () C:\Program Files\AVAST Software\Avast\network_notifications.dll 2018-01-13 18:31 - 2018-01-13 18:31 - 005768336 _____ () C:\Program Files\AVAST Software\Avast\defs\18011304\algo.dll 2018-01-10 13:46 - 2018-01-10 13:46 - 000745408 _____ () C:\Program Files\AVAST Software\Avast\ffl2.dll 2018-01-10 13:46 - 2018-01-10 13:46 - 000148936 _____ () C:\Program Files\AVAST Software\Avast\hns_tools.dll 2018-01-10 13:46 - 2018-01-10 13:46 - 000293944 _____ () C:\Program Files\AVAST Software\Avast\streamback.dll 2018-01-13 21:41 - 2018-01-13 21:41 - 005768336 _____ () C:\Program Files\AVAST Software\Avast\defs\18011306\algo.dll 2018-01-10 13:46 - 2018-01-10 13:46 - 067109376 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll 2018-01-10 13:46 - 2018-01-10 13:46 - 000282560 _____ () C:\Program Files\AVAST Software\Avast\gaming_mode_ui.dll 2015-04-25 20:18 - 2014-06-03 06:17 - 000562688 _____ () C:\Program Files (x86)\PLAY INTERNET\core.dll 2015-04-25 20:18 - 2014-02-28 03:45 - 000288768 _____ () C:\Program Files (x86)\PLAY INTERNET\sdk.dll 2015-04-25 20:18 - 2013-08-31 06:44 - 002417152 _____ () C:\Program Files (x86)\PLAY INTERNET\QtCore4.dll 2015-04-25 20:18 - 2009-01-10 19:32 - 000011362 _____ () C:\Program Files (x86)\PLAY INTERNET\mingwm10.dll 2015-04-25 20:18 - 2009-06-23 03:42 - 000043008 _____ () C:\Program Files (x86)\PLAY INTERNET\libgcc_s_dw2-1.dll 2015-04-25 20:18 - 2013-08-31 06:59 - 009559040 _____ () C:\Program Files (x86)\PLAY INTERNET\QtGui4.dll 2015-04-25 20:18 - 2013-08-31 23:11 - 015675904 _____ () C:\Program Files (x86)\PLAY INTERNET\QtWebKit4.DLL 2015-04-25 20:18 - 2013-08-31 06:46 - 001148416 _____ () C:\Program Files (x86)\PLAY INTERNET\QtNetwork4.dll 2015-04-25 20:18 - 2013-08-31 22:12 - 003962368 _____ () C:\Program Files (x86)\PLAY INTERNET\QtXmlPatterns4.dll 2015-04-25 20:18 - 2013-08-31 22:13 - 000306176 _____ () C:\Program Files (x86)\PLAY INTERNET\phonon4.dll 2015-04-25 20:18 - 2014-02-28 03:45 - 000407552 _____ () C:\Program Files (x86)\PLAY INTERNET\Proxy.DLL 2015-04-25 20:18 - 2014-02-28 03:45 - 000628224 _____ () C:\Program Files (x86)\PLAY INTERNET\Common.dll 2015-04-25 20:18 - 2014-02-28 03:45 - 000157696 _____ () C:\Program Files (x86)\PLAY INTERNET\Trace.dll 2015-04-25 20:18 - 2014-02-28 03:45 - 000583168 _____ () C:\Program Files (x86)\PLAY INTERNET\PluginContainer.dll 2015-04-25 20:18 - 2014-02-28 03:45 - 000646144 _____ () C:\Program Files (x86)\PLAY INTERNET\AtCodec.dll 2015-04-25 20:18 - 2014-02-28 03:45 - 000730112 _____ () C:\Program Files (x86)\PLAY INTERNET\DeviceSrvPlugin.dll 2015-04-25 20:18 - 2014-02-28 03:45 - 000195584 _____ () C:\Program Files (x86)\PLAY INTERNET\XCodec.dll 2015-04-25 20:18 - 2014-02-28 03:45 - 000253952 _____ () C:\Program Files (x86)\PLAY INTERNET\NetSrvPlugin.dll 2015-04-25 20:18 - 2014-02-28 03:45 - 000166912 _____ () C:\Program Files (x86)\PLAY INTERNET\OSDialup.dll 2015-04-25 20:18 - 2014-02-28 03:45 - 000155136 _____ () C:\Program Files (x86)\PLAY INTERNET\DataServicePlugin.dll 2015-04-25 20:18 - 2014-02-28 03:45 - 000672768 _____ () C:\Program Files (x86)\PLAY INTERNET\AddrBookSrvPlugin.dll 2015-04-25 20:18 - 2014-02-28 03:45 - 000220160 _____ () C:\Program Files (x86)\PLAY INTERNET\SmsSrvPlugin.dll 2015-04-25 20:18 - 2014-02-28 03:45 - 000142336 _____ () C:\Program Files (x86)\PLAY INTERNET\USSDSrvPlugin.dll 2015-04-25 20:18 - 2014-02-28 03:45 - 000157184 _____ () C:\Program Files (x86)\PLAY INTERNET\STKSrvPlugin.dll 2015-04-25 20:18 - 2014-02-28 03:45 - 000731136 _____ () C:\Program Files (x86)\PLAY INTERNET\DeviceAppPlugin.dll 2015-04-25 20:18 - 2014-02-28 03:45 - 000065536 _____ () C:\Program Files (x86)\PLAY INTERNET\OSPowerMgr.dll 2015-04-25 20:18 - 2013-09-25 01:50 - 000155648 _____ () C:\Program Files (x86)\PLAY INTERNET\Win7Support.dll 2015-04-25 20:18 - 2014-02-28 03:45 - 001124352 _____ () C:\Program Files (x86)\PLAY INTERNET\AddrBookPlugin.dll 2015-04-25 20:18 - 2014-02-28 03:45 - 000704000 _____ () C:\Program Files (x86)\PLAY INTERNET\SmsAppPlugin.dll 2015-04-25 20:18 - 2014-02-28 03:45 - 000158720 _____ () C:\Program Files (x86)\PLAY INTERNET\NetConnectSrvPlugin.dll 2015-04-25 20:18 - 2014-02-28 03:45 - 000236032 _____ () C:\Program Files (x86)\PLAY INTERNET\DialUpPlugin.dll 2015-04-25 20:18 - 2014-02-28 03:45 - 000102400 _____ () C:\Program Files (x86)\PLAY INTERNET\OSAdapt.dll 2015-04-25 20:18 - 2014-02-28 03:45 - 000201728 _____ () C:\Program Files (x86)\PLAY INTERNET\NDISPlugin.dll 2015-04-25 20:18 - 2014-02-28 03:45 - 000131584 _____ () C:\Program Files (x86)\PLAY INTERNET\OSNDIS.dll 2015-04-25 20:18 - 2013-10-26 02:41 - 001146880 _____ () C:\Program Files (x86)\PLAY INTERNET\NDISAPI.dll 2015-04-25 20:18 - 2014-02-28 03:45 - 000702464 _____ () C:\Program Files (x86)\PLAY INTERNET\NetInfoSrvPlugin.dll 2015-04-25 20:18 - 2014-02-28 03:46 - 000581120 _____ () C:\Program Files (x86)\PLAY INTERNET\DeviceMgrUIPlugin.dll 2015-04-25 20:18 - 2013-08-31 06:44 - 000398336 _____ () C:\Program Files (x86)\PLAY INTERNET\QtXml4.dll 2015-04-25 20:18 - 2014-06-05 08:03 - 000287744 _____ () C:\Program Files (x86)\PLAY INTERNET\XFramePlugin.dll 2015-04-25 20:18 - 2014-02-28 03:45 - 000168960 _____ () C:\Program Files (x86)\PLAY INTERNET\ATR2SMgr.dll 2015-04-25 20:18 - 2014-02-28 03:46 - 000323072 _____ () C:\Program Files (x86)\PLAY INTERNET\StatusBarMgrPlugin.dll 2015-04-25 20:18 - 2014-02-28 03:46 - 000394240 _____ () C:\Program Files (x86)\PLAY INTERNET\NetConnectPlugin.dll 2015-04-25 20:18 - 2014-07-14 08:35 - 000606208 _____ () C:\Program Files (x86)\PLAY INTERNET\DialupUIPlugin.dll 2015-04-25 20:18 - 2014-02-28 03:46 - 000097792 _____ () C:\Program Files (x86)\PLAY INTERNET\NotifyServicePlugin.dll 2015-04-25 20:18 - 2014-02-28 03:46 - 000117248 _____ () C:\Program Files (x86)\PLAY INTERNET\LayoutPlugin.dll 2015-04-25 20:18 - 2014-06-05 08:03 - 000103424 _____ () C:\Program Files (x86)\PLAY INTERNET\MainpagePlugin.dll 2015-04-25 20:18 - 2014-02-28 03:47 - 000119296 _____ () C:\Program Files (x86)\PLAY INTERNET\ConnectMgrUIPlugin.dll 2015-04-25 20:18 - 2014-06-03 06:18 - 000339456 _____ () C:\Program Files (x86)\PLAY INTERNET\MenuMgrPlugin.dll 2015-04-25 20:18 - 2014-02-28 03:46 - 000487424 _____ () C:\Program Files (x86)\PLAY INTERNET\USSDUIPlugin.dll 2015-04-25 20:18 - 2014-02-28 03:46 - 000303616 _____ () C:\Program Files (x86)\PLAY INTERNET\DiagnosisPlugin.dll 2015-04-25 20:18 - 2014-02-28 03:46 - 000493056 _____ () C:\Program Files (x86)\PLAY INTERNET\NetInfoUIExPlugin.dll 2015-04-25 20:18 - 2014-06-03 06:18 - 000855552 _____ () C:\Program Files (x86)\PLAY INTERNET\SMSUIPlugin.dll 2015-04-25 20:18 - 2014-02-28 03:46 - 000819712 _____ () C:\Program Files (x86)\PLAY INTERNET\AddrBookUIPlugin.dll 2015-04-25 20:18 - 2014-06-03 06:18 - 000224768 _____ () C:\Program Files (x86)\PLAY INTERNET\ToolBarMgrPlugin.dll 2015-04-25 20:18 - 2013-10-26 10:08 - 000692224 _____ () C:\Program Files (x86)\PLAY INTERNET\LiveUpdateInterface.DLL 2015-04-25 20:18 - 2013-09-25 01:49 - 000082944 _____ () C:\Program Files (x86)\PLAY INTERNET\plugins\imageformats\qgif4.dll 2015-04-25 20:18 - 2013-09-25 01:49 - 000081920 _____ () C:\Program Files (x86)\PLAY INTERNET\plugins\imageformats\qico4.dll 2015-04-25 20:18 - 2013-09-25 01:49 - 000192000 _____ () C:\Program Files (x86)\PLAY INTERNET\plugins\imageformats\qjpeg4.dll 2015-04-25 20:18 - 2013-09-25 01:49 - 000350720 _____ () C:\Program Files (x86)\PLAY INTERNET\plugins\imageformats\qmng4.dll 2015-04-25 20:18 - 2013-09-25 01:49 - 000370176 _____ () C:\Program Files (x86)\PLAY INTERNET\plugins\imageformats\qtiff4.dll ==================== Alternate Data Streams (filtrowane) ========= (Załączenie wejścia w fixlist spowoduje usunięcie strumienia ADS.) ==================== Tryb awaryjny (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Wartość "AlternateShell" zostanie przywrócona.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Wdf01000.sys => ""="Driver" ==================== Powiązania plików (filtrowane) =============== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci.) ==================== Internet Explorer - Witryny zaufane i z ograniczeniami =============== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru.) ==================== Hosts - zawartość: =============================== (Użycie dyrektywy Hosts: w fixlist spowoduje reset pliku Hosts.) 2009-07-14 03:34 - 2012-06-06 20:55 - 000000864 ____N C:\Windows\system32\Drivers\etc\hosts 127.0.0.1 validation.sls.microsoft.com ==================== Inne obszary ============================ (Obecnie brak automatycznej naprawy dla tej sekcji.) HKU\S-1-5-21-296273819-3779705695-2377126671-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\Lea\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg DNS Servers: 89.108.202.20 - 185.89.185.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Zapora systemu Windows [funkcja włączona] ==================== MSCONFIG/TASK MANAGER - Wyłączone elementy == MSCONFIG\Services: gupdate => 2 MSCONFIG\Services: gupdatem => 3 MSCONFIG\Services: MozillaMaintenance => 3 MSCONFIG\Services: XperiaCompanionService => 2 ==================== Reguły Zapory systemu Windows (filtrowane) =============== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) FirewallRules: [{BB880704-1FDC-46AF-AC8B-3E94B85E5D2F}] => (Allow) C:\Program Files (x86)\Opera\opera.exe FirewallRules: [{5C2D7800-BA3D-4D8A-9EF5-50AF690BFE5E}] => (Allow) C:\Program Files (x86)\Opera\opera.exe FirewallRules: [TCP Query User{4E7978D6-052E-46B3-B389-0121CDBB6FB8}C:\program files (x86)\utorrent\utorrent.exe] => (Allow) C:\program files (x86)\utorrent\utorrent.exe FirewallRules: [UDP Query User{89B8E368-AB4D-4820-AD5F-3FED0389D6FB}C:\program files (x86)\utorrent\utorrent.exe] => (Allow) C:\program files (x86)\utorrent\utorrent.exe FirewallRules: [TCP Query User{6F4112DC-2D31-453A-8F79-221BF1297937}C:\program files (x86)\opera\opera.exe] => (Allow) C:\program files (x86)\opera\opera.exe FirewallRules: [UDP Query User{F7C309C4-C027-4A9D-BA9C-9F3550905C68}C:\program files (x86)\opera\opera.exe] => (Allow) C:\program files (x86)\opera\opera.exe FirewallRules: [TCP Query User{29ACC1DE-81D4-424B-AE12-1E20C4105256}D:\lea\programy\winamp\winamp.exe] => (Allow) D:\lea\programy\winamp\winamp.exe FirewallRules: [UDP Query User{10225A46-19D6-47B1-AF92-3681BBB652F2}D:\lea\programy\winamp\winamp.exe] => (Allow) D:\lea\programy\winamp\winamp.exe FirewallRules: [TCP Query User{6381C0A5-DAC0-491A-A1BD-FDFFECA38FEC}D:\lea\programy\winamp\winamp.exe] => (Allow) D:\lea\programy\winamp\winamp.exe FirewallRules: [UDP Query User{21E9504C-AB67-470F-BA35-14878A5C129E}D:\lea\programy\winamp\winamp.exe] => (Allow) D:\lea\programy\winamp\winamp.exe FirewallRules: [TCP Query User{32C1EE29-D94E-464D-8D76-9FF4F6EE3441}C:\users\lea\downloads\jedi\gamedata\gamedata\jk2mp.exe] => (Block) C:\users\lea\downloads\jedi\gamedata\gamedata\jk2mp.exe FirewallRules: [UDP Query User{66475EE5-D858-4EFE-A0CF-FF8A1FF49877}C:\users\lea\downloads\jedi\gamedata\gamedata\jk2mp.exe] => (Block) C:\users\lea\downloads\jedi\gamedata\gamedata\jk2mp.exe FirewallRules: [TCP Query User{2A84D6AD-6F7F-4640-8651-A84AE65A5213}C:\program files (x86)\lucasarts\star wars jk ii jedi outcast\gamedata\jk2mp.exe] => (Block) C:\program files (x86)\lucasarts\star wars jk ii jedi outcast\gamedata\jk2mp.exe FirewallRules: [UDP Query User{A0E0FDF0-879D-42CB-8E83-F2F9B4573226}C:\program files (x86)\lucasarts\star wars jk ii jedi outcast\gamedata\jk2mp.exe] => (Block) C:\program files (x86)\lucasarts\star wars jk ii jedi outcast\gamedata\jk2mp.exe FirewallRules: [TCP Query User{BDD6E9EA-0E87-4157-BF48-8F5B90FD4653}C:\program files (x86)\lucasarts\star wars jk ii jedi outcast\gamedata\jk2mp.exe] => (Block) C:\program files (x86)\lucasarts\star wars jk ii jedi outcast\gamedata\jk2mp.exe FirewallRules: [UDP Query User{0CA35487-95F3-4AEE-85F0-504343A1222E}C:\program files (x86)\lucasarts\star wars jk ii jedi outcast\gamedata\jk2mp.exe] => (Block) C:\program files (x86)\lucasarts\star wars jk ii jedi outcast\gamedata\jk2mp.exe FirewallRules: [TCP Query User{7C212680-ED91-4C31-9A92-9129CB290CC0}C:\users\lea\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\lea\appdata\roaming\spotify\spotify.exe FirewallRules: [UDP Query User{EFDE33DA-055C-47F9-9987-6F21D619FB22}C:\users\lea\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\lea\appdata\roaming\spotify\spotify.exe FirewallRules: [TCP Query User{0CD0A73B-9781-4910-9A13-E610B5BD4D20}C:\program files (x86)\winamp\winamp.exe] => (Allow) C:\program files (x86)\winamp\winamp.exe FirewallRules: [UDP Query User{73CB9FFF-808A-49BA-B987-E82C831087DD}C:\program files (x86)\winamp\winamp.exe] => (Allow) C:\program files (x86)\winamp\winamp.exe FirewallRules: [TCP Query User{DD38C978-DDC2-4CDF-AFB0-6E223B4F4110}C:\program files (x86)\winamp\winamp.exe] => (Block) C:\program files (x86)\winamp\winamp.exe FirewallRules: [UDP Query User{4749FF1C-261E-4063-A7EF-E94A44232596}C:\program files (x86)\winamp\winamp.exe] => (Block) C:\program files (x86)\winamp\winamp.exe FirewallRules: [TCP Query User{4695178D-D35D-4EB3-ADCF-902739CD46D6}C:\users\lea\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\lea\appdata\roaming\spotify\spotify.exe FirewallRules: [UDP Query User{D668AA40-154D-47B8-BBAD-7645F461C534}C:\users\lea\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\lea\appdata\roaming\spotify\spotify.exe FirewallRules: [{04E92288-0141-4DE5-8F2B-97932183EEFA}] => (Allow) C:\Users\Lea\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{809CF4AD-3889-4341-A671-0FEEA66D5D76}] => (Allow) C:\Users\Lea\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [TCP Query User{F1F63DCC-9F14-44EB-A113-D6C81473A66B}D:\lea\programy\myphoneexplorer\myphoneexplorer.exe] => (Allow) D:\lea\programy\myphoneexplorer\myphoneexplorer.exe FirewallRules: [UDP Query User{BDA6E1A4-A3A3-4928-870B-B8CC8D60FAC8}D:\lea\programy\myphoneexplorer\myphoneexplorer.exe] => (Allow) D:\lea\programy\myphoneexplorer\myphoneexplorer.exe FirewallRules: [TCP Query User{FA92B2E9-14F3-4898-91D0-A830F9B5D35A}C:\program files (x86)\heroes of might and magic iii - zlota edycja\heroes3.exe] => (Allow) C:\program files (x86)\heroes of might and magic iii - zlota edycja\heroes3.exe FirewallRules: [UDP Query User{35D229F1-9B4F-4AB5-A349-AA6DBE0372AF}C:\program files (x86)\heroes of might and magic iii - zlota edycja\heroes3.exe] => (Allow) C:\program files (x86)\heroes of might and magic iii - zlota edycja\heroes3.exe FirewallRules: [{E63216E6-65D6-49E9-97F4-B5DCB4177AC2}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{1EC21783-C2A0-4FD6-96C2-A8D7C8CE5585}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{18934935-796A-4745-8B4E-573F5510D929}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{2A1D5AD7-6E13-40E9-BFB4-5A4A117814AE}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{ADE80D67-89B7-4447-8235-22C0B7D8C15F}] => (Allow) C:\Program Files (x86)\Sony\Xperia Companion\XperiaCompanion.exe FirewallRules: [{058F8DB6-41A5-47BA-ADEC-1B5245E1EA1A}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe FirewallRules: [{490036E8-E707-48CC-A169-9725840BF6D7}] => (Allow) C:\Program Files\AVAST Software\SZBrowser\4.58.2552.909\SZBrowser.exe ==================== Punkty Przywracania systemu ========================= ==================== Wadliwe urządzenia w Menedżerze urządzeń ============= ==================== Błędy w Dzienniku zdarzeń: ========================= Dziennik Aplikacja: ================== Error: (01/13/2018 09:36:07 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected. Dziennik System: ============= Error: (01/13/2018 09:44:16 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Usługa HWDeviceService64.exe niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. Error: (01/13/2018 09:42:59 PM) (Source: volsnap) (EventID: 36) (User: ) Description: Wykonywanie kopii w tle woluminu C: zostało przerwane, ponieważ nie można powiększyć magazynu kopii w tle z powodu limitu wprowadzonego przez użytkownika. Error: (01/13/2018 09:35:36 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi PLAY INTERNET. OUC z powodu następującego błędu: Usługa nie odpowiada na sygnał uruchomienia lub sygnał sterujący w oczekiwanym czasie. Error: (01/13/2018 09:35:36 PM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: Upłynął limit czasu (30000 ms) podczas oczekiwania na połączenie się z usługą PLAY INTERNET. OUC. ==================== Statystyki pamięci =========================== Procesor: Pentium(R) Dual-Core CPU T4200 @ 2.00GHz Procent pamięci w użyciu: 61% Całkowita pamięć fizyczna: 4093.2 MB Dostępna pamięć fizyczna: 1588.94 MB Całkowita pamięć wirtualna: 8184.56 MB Dostępna pamięć wirtualna: 5485.46 MB ==================== Dyski ================================ Drive c: () (Fixed) (Total:48.73 GB) (Free:7.24 GB) NTFS Drive d: () (Fixed) (Total:173.6 GB) (Free:7.02 GB) NTFS Drive e: (RECOVERY) (Fixed) (Total:10.46 GB) (Free:1.76 GB) NTFS ==>[system z komponentami startowymi (pozyskano odczytując dysk)] Drive g: (PLAY INTERNET) (CDROM) (Total:0.04 GB) (Free:0 GB) CDFS ==================== MBR & Tablica partycji ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 232.9 GB) (Disk ID: C47511FF) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=48.7 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=173.6 GB) - (Type=07 NTFS) Partition 4: (Not Active) - (Size=10.5 GB) - (Type=07 NTFS) ==================== Koniec Addition.txt ============================