Rezultaty skanu uzupełniającego Farbar Recovery Scan Tool (x64) Wersja: 03.05.2018 Uruchomiony przez w (04-05-2018 01:49:15) Uruchomiony z C:\Users\w\Downloads Windows 10 Home Wersja 1709 16299.309 (X64) (2017-12-09 22:56:30) Tryb startu: Normal ========================================================== ==================== Konta użytkowników: ============================= Administrator (S-1-5-21-2780740895-2156724078-2569186773-500 - Administrator - Disabled) Gość (S-1-5-21-2780740895-2156724078-2569186773-501 - Limited - Disabled) Konto domyślne (S-1-5-21-2780740895-2156724078-2569186773-503 - Limited - Disabled) w (S-1-5-21-2780740895-2156724078-2569186773-1001 - Administrator - Enabled) => C:\Users\w WDAGUtilityAccount (S-1-5-21-2780740895-2156724078-2569186773-504 - Limited - Disabled) ==================== Centrum zabezpieczeń ======================== (Załączenie wejścia w fixlist spowoduje jego usunięcie.) AV: COMODO Antivirus (Enabled - Out of date) {D0CC7563-ABD2-DEBE-138E-FDD553335AF2} AV: Avast Antivirus (Enabled - Up to date) {8EA8924E-BC81-DC44-8BB0-8BAE75D86EBF} AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Comodo Defense+ (Enabled - Up to date) {6BAD9487-8DE8-D130-293E-C6A728B4104F} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Avast Antivirus (Enabled - Up to date) {35C973AA-9ABB-D3CA-B100-B0DC0E5F2402} FW: COMODO Firewall (Disabled) {E8F7F446-E1BD-DFE6-38D1-54E0ADE01D89} FW: ZoneAlarm Free Firewall Firewall (Disabled) {3EB84D8C-4821-F4B8-2DD8-2831FAA29B21} ==================== Zainstalowane programy ====================== (W fixlist dozwolone tylko załączanie programów adware z flagą "Hidden" w celu ich uwidocznienia. Programy adware powinny zostać w poprawny sposób odinstalowane.) µTorrent (HKU\S-1-5-21-2780740895-2156724078-2569186773-1001\...\uTorrent) (Version: 3.5.3.44396 - BitTorrent Inc.) Adobe Flash Player 29 PPAPI (HKLM-x32\...\Adobe Flash Player PPAPI) (Version: 29.0.0.140 - Adobe Systems Incorporated) Aktualizacje NVIDIA 2.11.4.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 2.11.4.1 - NVIDIA Corporation) Hidden Aplikacja Blizzard (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment) Apple Application Support (32-bit) (HKLM-x32\...\{D2FE6376-E549-4F63-A2C5-CA24DA035DE4}) (Version: 5.6 - Apple Inc.) Apple Application Support (64-bit) (HKLM\...\{BB109E24-EE90-485B-A28B-ADDEFB40540B}) (Version: 5.6 - Apple Inc.) Apple Software Update (HKLM-x32\...\{52D87F32-70E4-4348-8148-C0B9F35B1314}) (Version: 2.3.0.177 - Apple Inc.) Arc (HKLM-x32\...\{CED8E25B-122A-4E80-B612-7F99B93284B3}) (Version: 1.0.0.9668 - Perfect World Entertainment) Avast Free Antivirus (HKLM-x32\...\Avast Antivirus) (Version: 18.3.2333 - AVAST Software) Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.) Booking (HKLM-x32\...\{13D4CD54-EA09-4FDB-B979-8B2BC0F020CA}_is1) (Version: 2.0.701 - Booking) Booking.com version 1.1.0.5019 (HKLM-x32\...\{958A475F-037D-401A-AC05-209725973E11}_is1) (Version: 1.1.0.5019 - Booking.com) <==== UWAGA Check Point SBA (HKLM\...\{CF47471E-A933-409A-AC94-E7A64913A186}) (Version: 86.4.4022 - Check Point Software Technologies Ltd.) Hidden COMODO Internet Security Premium (HKLM\...\{37AD632E-994D-4944-B57D-A80852BCB96D}) (Version: 8.4.0.5068 - COMODO Security Solutions Inc.) CyberLink Power2Go 8 (HKLM-x32\...\InstallShield_{2A87D48D-3FDF-41fd-97CD-A1E370EFFFE2}) (Version: 8.0.0.5521 - CyberLink Corp.) Diablo II (HKLM-x32\...\Diablo II) (Version: - ) Diablo III (HKLM-x32\...\Diablo III) (Version: - Blizzard Entertainment) Dolby Audio X2 Windows API SDK (HKLM\...\{6A478BF2-F67F-4ABC-A7F1-B6B5BA862371}) (Version: 0.6.3.44 - Dolby Laboratories, Inc.) Dolby Audio X2 Windows APP (HKLM\...\{7DA57EF8-9D20-4126-AF15-D0CC97D0C017}) (Version: 0.4.0.22 - Dolby Laboratories, Inc.) Dungeons 2 (HKLM-x32\...\{15D55CCC-5A24-4754-BA22-8C6F01F7062F}) (Version: 1.6.1 - Realmforge Studios GmbH) Epic Games Launcher (HKLM-x32\...\{CA4F7840-CC89-451D-8453-392F2EDAA605}) (Version: 1.1.70.0 - Epic Games, Inc.) e-pity 9.2.12 za rok 2017 (HKLM-x32\...\{80D8170E-5590-218-B9ED-E24E4C99A11D}_is1) (Version: 9.2.12 - e-file sp. z o.o. sp.k.) Facebook Gameroom 1.4.1.0 (HKLM-x32\...\{BF83FC65-8072-4850-A4CE-969A5F3570DA}) (Version: 1.4.1.0 - Facebook) Facebook Gameroom 1.4.6373.26636 (HKLM-x32\...\{62E64CE0-AA1E-4F83-BC24-86D9AD6A1C30}) (Version: 1.4.6373.26636 - Facebook) FlatOut 2 (HKLM-x32\...\1207660523_is1) (Version: 2.1.0.9 - GOG.com) Foto2Avi 4.4 (HKLM-x32\...\Foto2Avi) (Version: 4.4 - TrustFm) GeekBuddy (HKLM\...\{6A078CE4-6E64-4145-B6D7-51C56836CD6D}) (Version: 4.27.177 - Comodo Security Solutions Inc) GOG Galaxy (HKLM-x32\...\{7258BA11-600C-430E-A759-27E2C691A335}_is1) (Version: - GOG.com) GOG.com Heroes of Might and Magic 3 (HKLM\...\{1d3c859c-1028-4822-b0a7-da4f7bbc18bc}.sdb) (Version: - ) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 66.0.3359.139 - Google Inc.) Google Drive (HKLM-x32\...\{A8DC81F2-D365-4248-892A-FA3B5951F731}) (Version: 2.34.9392.7803 - Google, Inc.) Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.33.7 - Google Inc.) Hidden Hearthstone (HKLM-x32\...\Hearthstone) (Version: - Blizzard Entertainment) Heroes of Might and Magic 3 Complete (HKLM-x32\...\GOGPACKHOMM3COMPLETE_is1) (Version: 2.0.0.16 - GOG.com) Heroes of the Storm (HKLM-x32\...\Heroes of the Storm) (Version: - Blizzard Entertainment) Hi-Rez Studios Authenticate and Update Service (HKLM-x32\...\{3C87E0FF-BC0A-4F5E-951B-68DC3F8DF1FC}) (Version: 3.0.0.0 - Hi-Rez Studios) iCloud (HKLM\...\{C510BB61-AE0B-4420-87AF-9CF646E86364}) (Version: 6.2.3.17 - Apple Inc.) Icy Tower v1.3.1 (HKLM-x32\...\Icy Tower v1.3.1_is1) (Version: - Free Lunch Design) Innkeeper (HKU\S-1-5-21-2780740895-2156724078-2569186773-1001\...\Innkeeper) (Version: 0.4.19 - Curse Inc.) Instrukcje użytkownika (HKLM-x32\...\{F07C2CF8-4C53-4EC3-8162-A6221E36EB88}) (Version: 4.0.0.1 - Lenovo) Hidden Intel Security True Key (HKLM\...\TrueKey) (Version: 4.20.110.1 - Intel Security) Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 11.0.0.1162 - Intel Corporation) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.15.4271 - Intel Corporation) Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 14.6.0.1029 - Intel Corporation) Intel(R) Wireless Bluetooth(R) (HKLM-x32\...\{609B7E15-BE3A-4B81-BAEA-5E4B24BBB24F}) (Version: 18.1.1538.2273 - Intel Corporation) Intel® RealSense™ Depth Camera Manager Beta (x86): dptf_com (HKLM-x32\...\{C982EA5E-7331-11E5-ABE7-2C44FD873B55}) (Version: 2.2.0.52404 - Intel Corporation) Hidden Intel® RealSense™ Depth Camera Manager F200 Gold (x86): Intel® RealSense™ 3D camera IO module (HKLM-x32\...\{6C1D3280-7332-11E5-AD4E-2C44FD873B55}) (Version: 1.4.27.52404 - Intel Corporation) Hidden Intel® RealSense™ Depth Camera Manager F200 Gold (x86): Intel® RealSense™ Depth Camera Manager Service (HKLM-x32\...\{6C1D3280-7332-11E5-B485-2C44FD873B55}) (Version: 1.4.27.52404 - Intel Corporation) Hidden Intel® Security Assist (HKLM-x32\...\{4B230374-6475-4A73-BA6E-41015E9C5013}) (Version: 1.0.0.532 - Intel Corporation) K-Lite Mega Codec Pack 13.2.4 (HKLM-x32\...\KLiteCodecPack_is1) (Version: 13.2.4 - KLCP) Konwerter Wideo Apowersoft V4.4.2 (HKLM-x32\...\{195E8D7F-292B-4B04-A6E7-E96CAF04C767}_is1) (Version: 4.4.2 - APOWERSOFT LIMITED) Layers of Fear - Inheritance (HKLM-x32\...\1256894029_is1) (Version: 2.2.0.5 - GOG.com) Layers of Fear (HKLM\...\bGF5ZXJzb2ZmZWFy_is1) (Version: 1 - ) Layers of Fear (HKLM-x32\...\1455107123_is1) (Version: 2.3.0.7 - GOG.com) League of Legends (HKLM-x32\...\League of Legends 1.0) (Version: 1.0 - Riot Games, Inc) Lenovo Experience Improvement (HKLM\...\LenovoExperienceImprovement) (Version: 2.0.9.0 - Lenovo) Lenovo FusionEngine (HKLM-x32\...\Lenovo FusionEngine) (Version: 1.0.13.0 - Lenovo, Inc.) Lenovo OneKey Recovery (HKLM\...\{46F4D124-20E5-4D12-BE52-EC177A7A4B42}) (Version: 8.1.0.4706 - CyberLink Corp.) Hidden Lenovo OneKey Recovery (HKLM-x32\...\InstallShield_{46F4D124-20E5-4D12-BE52-EC177A7A4B42}) (Version: 8.1.0.4706 - CyberLink Corp.) Lenovo Photo Master (HKLM-x32\...\{BC94C56A-3649-420C-8756-2ADEBE399D33}) (Version: 2.5.5720.01 - CyberLink Corp.) Lenovo PowerDVD12 (HKLM-x32\...\{B46BEA36-0B71-4A4E-AE41-87241643FA0A}) (Version: 12.0.5328.55 - CyberLink Corp.) Hidden Lenovo PowerDVD12 (HKLM-x32\...\InstallShield_{B46BEA36-0B71-4A4E-AE41-87241643FA0A}) (Version: 12.0.5328.55 - CyberLink Corp.) Lenovo Product Demo (HKLM-x32\...\{DEF9172A-9D54-450B-9202-E121CE85BD08}) (Version: 1.0.3 - Lenovo) Lenovo QuickOptimizer (HKLM\...\{8D2C871B-1B9F-45AC-9C43-2BB18089CDFA}) (Version: 1.0.019.00 - Lenovo) Lenovo Solution Center (HKLM\...\{A5591EC4-8AD6-48EE-9F8D-FACFA8BA4E35}) (Version: 3.0.003.00 - Lenovo) LOST PLANET COLONIES (HKLM-x32\...\{6FCFA783-CE7B-4018-AC48-0E6EEAAEA322}) (Version: 1.00.129 - CAPCOM CO.,LTD.) Malwarebytes (wersja 3.4.4.2398) (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 3.4.4.2398 - Malwarebytes) McAfee Security Scan Plus (HKLM\...\McAfee Security Scan) (Version: 3.11.427.2 - McAfee, Inc.) McAfee WebAdvisor (HKLM-x32\...\{35ED3F83-4BDC-4c44-8EC6-6A8301C7413A}) (Version: 4.0.7.190 - McAfee, Inc.) Menedżer kamery z technologią wykrywania głębi Intel® RealSense™ F200 (HKLM-x32\...\ARP_for_prd_dcm_runtime_1.4.27.52404) (Version: 1.4.27.52404 - Intel Corporation) Metric Collection SDK (HKLM-x32\...\{DDAA788F-52E6-44EA-ADB8-92837B11BF26}) (Version: 1.1.0012.00 - Lenovo Group Limited) Hidden Metric Collection SDK 35 (HKLM-x32\...\{C2B5B5B0-2545-4E94-B4BA-548D4BF0B196}) (Version: 1.2.0010.00 - Lenovo Group Limited) Hidden Microsoft Games for Windows - LIVE Redistributable (HKLM-x32\...\{929CE49F-1CA7-4CF3-A9A1-6D757443C63F}) (Version: 1.2.0241 - Microsoft Corporation) Microsoft Office 365 - pl-pl (HKLM\...\O365HomePremRetail - pl-pl) (Version: 16.0.9126.2152 - Microsoft Corporation) Microsoft OneDrive (HKU\S-1-5-21-2780740895-2156724078-2569186773-1001\...\OneDriveSetup.exe) (Version: 18.065.0329.0002 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24215 (HKLM-x32\...\{d992c12e-cab2-426f-bde3-fb8c53950b0d}) (Version: 14.0.24215.1 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24215 (HKLM-x32\...\{e2803110-78b3-4664-a479-3611a381656a}) (Version: 14.0.24215.1 - Microsoft Corporation) Microsoft WSE 3.0 Runtime (HKLM-x32\...\{E3E71D07-CD27-46CB-8448-16D4FB29AA13}) (Version: 3.0.5305.0 - Microsoft Corp.) Microsoft XNA Framework Redistributable 4.0 (HKLM-x32\...\{2BFC7AA0-544C-4E3A-8796-67F3BE655BE9}) (Version: 4.0.20823.0 - Microsoft Corporation) Mortal Kombat X Premium Edition v.1.0 (HKLM-x32\...\Mortal Kombat X Premium Edition_is1) (Version: - ) Movavi Slideshow Maker 2 (HKLM-x32\...\Movavi Slideshow Maker 2) (Version: 2.1.0 - Movavi) NVIDIA GeForce Experience 2.11.4.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.11.4.1 - NVIDIA Corporation) NVIDIA Oprogramowanie systemu PhysX 9.15.0428 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.15.0428 - NVIDIA Corporation) O2Micro Flash Memory Card Windows Driver (HKLM\...\{A6668863-B0A3-4812-AAF2-E47749ECFE0E}) (Version: 3.3.00.145 - O2Micro International LTD.) Hidden O2Micro Flash Memory Card Windows Driver (HKLM-x32\...\InstallShield_{A6668863-B0A3-4812-AAF2-E47749ECFE0E}) (Version: 3.3.00.145 - O2Micro International LTD.) Office 16 Click-to-Run Extensibility Component (HKLM-x32\...\{90160000-008C-0000-0000-0000000FF1CE}) (Version: 16.0.9126.2152 - Microsoft Corporation) Hidden Office 16 Click-to-Run Extensibility Component 64-bit Registration (HKLM\...\{90160000-00DD-0000-1000-0000000FF1CE}) (Version: 16.0.9126.2152 - Microsoft Corporation) Hidden Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-008F-0000-1000-0000000FF1CE}) (Version: 16.0.9126.2152 - Microsoft Corporation) Hidden Office 16 Click-to-Run Localization Component (HKLM-x32\...\{90160000-008C-0415-0000-0000000FF1CE}) (Version: 16.0.9126.2152 - Microsoft Corporation) Hidden OpenAL (HKLM-x32\...\OpenAL) (Version: - ) OpenOffice 4.1.5 (HKLM-x32\...\{7076105B-6FE8-464A-AC28-FFBB2686B68F}) (Version: 4.15.9789 - Apache Software Foundation) Oprogramowanie Intel® PROSet/Wireless (HKLM-x32\...\{4c8b7360-62a2-4339-b745-41323055d0bb}) (Version: 18.20.0 - Intel Corporation) Oprogramowanie mikroukładu Intel® (HKLM-x32\...\{c7f54569-0018-439c-809a-48046a4d4ebc}) (Version: 10.1.1.9 - Intel(R) Corporation) Hidden Origin (HKLM-x32\...\Origin) (Version: 10.5.16.49299 - Electronic Arts, Inc.) Overwatch (HKLM-x32\...\Overwatch) (Version: - Blizzard Entertainment) Overwolf (HKLM-x32\...\Overwolf) (Version: 0.112.2.37 - Overwolf Ltd.) Panel sterowania NVIDIA 376.54 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel) (Version: 376.54 - NVIDIA Corporation) Hidden PhotoScape (HKLM-x32\...\PhotoScape) (Version: - ) Picasa 3 (HKLM-x32\...\Picasa 3) (Version: 3.9.141.259 - Google, Inc.) PLAY ONLINE (HKLM-x32\...\PLAY ONLINE) (Version: 21.005.11.17.264 - Huawei Technologies Co.,Ltd) Quake IV (HKLM-x32\...\1836059896_is1) (Version: 1.4.3 - GOG.com) REACHit (HKLM-x32\...\{4532E4C5-C84D-4040-A044-ECFCC5C6995B}) (Version: 2.5.005.12 - Lenovo) Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 10.1.505.2015 - Realtek) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7780 - Realtek Semiconductor Corp.) SHAREit (HKLM-x32\...\SHAREit_is1) (Version: 2.5.5.0 - Lenovo) SHIELD Streaming (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GFExperience.NvStreamSrv) (Version: 7.1.0280 - NVIDIA Corporation) Hidden SHIELD Wireless Controller Driver (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_ShieldWirelessController) (Version: 2.11.4.1 - NVIDIA Corporation) Hidden Spotify (HKU\S-1-5-21-2780740895-2156724078-2569186773-1001\...\Spotify) (Version: 1.0.77.338.g758ebd78 - Spotify AB) StarCraft II (HKLM-x32\...\StarCraft II) (Version: - Blizzard Entertainment) Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation) StepMania 5 (HKLM-x32\...\StepMania 5) (Version: 5.0.12 - StepMania) Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 19.3.10.38 - Synaptics Incorporated) TeamSpeak 3 Client (HKLM-x32\...\TeamSpeak 3 Client) (Version: 3.1.6 - TeamSpeak Systems GmbH) The Sims™ 3 (HKLM-x32\...\{C05D8CDB-417D-4335-A38C-A0659EDFD6B8}) (Version: 1.67.2 - Electronic Arts) The Sims™ 3 Miejskie Życie Akcesoria (HKLM-x32\...\{7B11296A-F894-449C-8DF6-6AAAA7D4D118}) (Version: 9.0.73 - Electronic Arts) The Sims™ 3 Po zmroku (HKLM-x32\...\{45057FCE-5784-48BE-8176-D9D00AF56C3C}) (Version: 6.0.81 - Electronic Arts) The Sims™ 3 Studenckie życie (HKLM-x32\...\{F26DE8EF-F2CF-40DC-8CDA-CC0D82D11B36}) (Version: 18.0.126 - Electronic Arts) The Sims™ 4 (HKLM-x32\...\{48EBEBBF-B9F8-4520-A3CF-89A730721917}) (Version: 1.41.38.1020 - Electronic Arts Inc.) The Witcher 3 - Wild Hunt - Game of the Year Edition (HKLM-x32\...\1495134320_is1) (Version: 1.30.0.0 - GOG.com) Tibia (HKU\S-1-5-21-2780740895-2156724078-2569186773-1001\...\Tibia) (Version: - CipSoft GmbH) Update for Windows 10 for x64-based Systems (KB4023057) (HKLM\...\{DE083343-D24D-4495-919E-18C65EC0F289}) (Version: 2.8.0.0 - Microsoft Corporation) User Manuals (HKLM-x32\...\InstallShield_{F07C2CF8-4C53-4EC3-8162-A6221E36EB88}) (Version: 4.0.0.1 - Lenovo) War Thunder Launcher 1.0.3.70 (HKU\S-1-5-21-2780740895-2156724078-2569186773-1001\...\{ed8deea4-29fa-3932-9612-e2122d8a62d9}}_is1) (Version: - Gaijin Entertainment) What Remains of Edith Finch (HKLM\...\d2hhdHJlbWFpbnNvZmVkaXRoZmluY2g_is1) (Version: 1 - ) WinRAR 5.50 (32-bitowy) (HKLM-x32\...\WinRAR archiver) (Version: 5.50.0 - win.rar GmbH) Xerazx-OTS version 1.2 (HKU\S-1-5-21-2780740895-2156724078-2569186773-1001\...\{048CBE82-7FBB-4F55-B67D-84C205106EFC}_is1) (Version: 1.2 - Xerazx-OTS, Inc.) ZoneAlarm Anti-Ransomware (HKLM-x32\...\{0B8C3231-9818-4CB9-8213-4AB839836791}) (Version: 1.001.0524 - Check Point Software) Hidden ZoneAlarm Firewall (HKLM-x32\...\{8EBC1C58-53F5-4338-BDE4-642C199CC948}) (Version: 15.2.053.17581 - Check Point Software Technologies Ltd.) Hidden ZoneAlarm Free Firewall (HKLM-x32\...\ZoneAlarm Free Firewall) (Version: 15.2.053.17581 - Check Point) ZoneAlarm Security (HKLM-x32\...\{B4C419B7-534C-46AA-A7CB-7C9A6867D7A5}) (Version: 15.2.053.17581 - Check Point Software Technologies Ltd.) Hidden ==================== Niestandardowe rejestracje CLSID (filtrowane): ========================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) CustomCLSID: HKU\S-1-5-21-2780740895-2156724078-2569186773-1001_Classes\CLSID\{087B3AE3-E237-4467-B8DB-5A38AB959AC9}\InprocServer32 -> C:\Program Files (x86)\OpenOffice 4\program\shlxthdl\shlxthdl_x64.dll (Apache Software Foundation) CustomCLSID: HKU\S-1-5-21-2780740895-2156724078-2569186773-1001_Classes\CLSID\{3B092F0C-7696-40E3-A80F-68D74DA84210}\InprocServer32 -> C:\Program Files (x86)\OpenOffice 4\program\shlxthdl\shlxthdl_x64.dll (Apache Software Foundation) CustomCLSID: HKU\S-1-5-21-2780740895-2156724078-2569186773-1001_Classes\CLSID\{63542C48-9552-494A-84F7-73AA6A7C99C1}\InprocServer32 -> C:\Program Files (x86)\OpenOffice 4\program\shlxthdl\shlxthdl_x64.dll (Apache Software Foundation) CustomCLSID: HKU\S-1-5-21-2780740895-2156724078-2569186773-1001_Classes\CLSID\{7BC0E710-5703-45BE-A29D-5D46D8B39262}\InprocServer32 -> C:\Program Files (x86)\OpenOffice 4\program\shlxthdl\ooofilt_x64.dll (Apache Software Foundation) CustomCLSID: HKU\S-1-5-21-2780740895-2156724078-2569186773-1001_Classes\CLSID\{AE424E85-F6DF-4910-A6A9-438797986431}\InprocServer32 -> C:\Program Files (x86)\OpenOffice 4\program\shlxthdl\propertyhdl_x64.dll (Apache Software Foundation) CustomCLSID: HKU\S-1-5-21-2780740895-2156724078-2569186773-1001_Classes\CLSID\{C52AF81D-F7A0-4AAB-8E87-F80A60CCD396}\InprocServer32 -> C:\Program Files (x86)\OpenOffice 4\program\shlxthdl\shlxthdl_x64.dll (Apache Software Foundation) CustomCLSID: HKU\S-1-5-21-2780740895-2156724078-2569186773-1001_Classes\CLSID\{cece6816-6107-4dc7-bdbc-20cd5ae1ffed}\localserver32 -> C:\ProgramData\Lenovo\ImController\Plugins\LenovoAppPromotionPlugin\x64\DesktopToastsHelper.exe => Brak pliku ShellIconOverlayIdentifiers: [ GoogleDriveBlacklisted] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll [2018-04-23] (Google) ShellIconOverlayIdentifiers: [ GoogleDriveSynced] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll [2018-04-23] (Google) ShellIconOverlayIdentifiers: [ GoogleDriveSyncing] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll [2018-04-23] (Google) ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2018-04-14] (AVAST Software) ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2018-04-14] (AVAST Software) ContextMenuHandlers1: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2018-04-14] (AVAST Software) ContextMenuHandlers1: [CLVDShellExt] -> {3E2A0A32-6E14-4BAD-AA87-BBB6A75EBFF2} => C:\Program Files (x86)\Common Files\CyberLink\ShellExtComponent\CLVDShellExt.dll [2015-07-21] (Cyberlink) ContextMenuHandlers1: [Comodo Antivirus] -> {4255A182-CAD9-4214-A19B-7BA7FB633BBD} => C:\Program Files\COMODO\COMODO Internet Security\cavshell.dll [2016-09-15] (COMODO) ContextMenuHandlers1: [GDContextMenu] -> {BB02B294-8425-42E5-983F-41A1FA970CD6} => C:\Program Files (x86)\Google\Drive\contextmenu64.dll [2018-04-23] (Google) ContextMenuHandlers1: [PhotoStreamsExt] -> {89D984B3-813B-406A-8298-118AFA3A22AE} => C:\Program Files\Common Files\Apple\Internet Services\ShellStreams64.dll [2017-07-14] (Apple Inc.) ContextMenuHandlers1: [SHAREit.FileContextMenuExt] -> {430BD134-576D-4E75-87CD-0F5C6221A82B} => C:\Program Files (x86)\Lenovo\SHAREit\ShellEx\ShellExt64.dll [2015-07-12] (Lenovo) ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext64.dll [2017-09-13] (Alexander Roshal) ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext.dll [2017-09-13] (Alexander Roshal) ContextMenuHandlers2: [CLVDShellExt] -> {3E2A0A32-6E14-4BAD-AA87-BBB6A75EBFF2} => C:\Program Files (x86)\Common Files\CyberLink\ShellExtComponent\CLVDShellExt.dll [2015-07-21] (Cyberlink) ContextMenuHandlers2: [Comodo Antivirus] -> {4255A182-CAD9-4214-A19B-7BA7FB633BBD} => C:\Program Files\COMODO\COMODO Internet Security\cavshell.dll [2016-09-15] (COMODO) ContextMenuHandlers3: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2018-04-14] (AVAST Software) ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2018-03-03] (Malwarebytes) ContextMenuHandlers4: [GDContextMenu] -> {BB02B294-8425-42E5-983F-41A1FA970CD6} => C:\Program Files (x86)\Google\Drive\contextmenu64.dll [2018-04-23] (Google) ContextMenuHandlers4: [SHAREit.FileContextMenuExt] -> {430BD134-576D-4E75-87CD-0F5C6221A82B} => C:\Program Files (x86)\Lenovo\SHAREit\ShellEx\ShellExt64.dll [2015-07-12] (Lenovo) ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> Brak pliku ContextMenuHandlers5: [igfxDTCM] -> {9B5F5829-A529-4B12-814A-E81BCB8D93FC} => C:\WINDOWS\System32\DriverStore\FileRepository\igdlh64.inf_amd64_bde03d8af75e6be5\igfxDTCM.dll [2017-01-04] (Intel Corporation) ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\system32\nvshext.dll [2016-12-29] (NVIDIA Corporation) ContextMenuHandlers6: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2018-04-14] (AVAST Software) ContextMenuHandlers6: [Comodo Antivirus] -> {4255A182-CAD9-4214-A19B-7BA7FB633BBD} => C:\Program Files\COMODO\COMODO Internet Security\cavshell.dll [2016-09-15] (COMODO) ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2018-03-03] (Malwarebytes) ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext64.dll [2017-09-13] (Alexander Roshal) ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext.dll [2017-09-13] (Alexander Roshal) ==================== Zaplanowane zadania (filtrowane) ============= (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) Task: {037A57DB-BE65-4C7B-8BE9-046818D8EE7D} - System32\Tasks\Avast Emergency Update => C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [2018-04-14] (AVAST Software) Task: {078EA210-A4A8-4C35-8D4E-A98E723BBEFD} - System32\Tasks\S-1-5-21-2780740895-2156724078-2569186773-1001\DataSenseLiveTileTask => C:\WINDOWS\System32\DataUsageLiveTileTask.exe [2017-09-29] (Microsoft Corporation) Task: {100E4423-6BDE-4D50-8887-7B70F1863903} - System32\Tasks\Lenovo\BatteryGauge => C:\Program Files\lenovo\BatteryGauge\BatteryGaugeIcon.exe Task: {1C4FDC64-EF29-4483-81D8-7CD7D774F018} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance => C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonx86\Microsoft Shared\Office16\OLicenseHeartbeat.exe [2018-04-20] (Microsoft Corporation) Task: {227102D3-714D-461C-B09C-B69170DC0F57} - System32\Tasks\COMODO\COMODO Scan {F140D794-60B6-4F00-9235-D6457AA25B22} => C:\Program Files\COMODO\COMODO Internet Security\cfpconfg.exe [2016-10-04] (COMODO) Task: {235BF333-16B3-4D4C-85A4-6FF51A7FF805} - System32\Tasks\Lenovo\Experience Improvement => C:\Program Files\Lenovo\ExperienceImprovement\LenovoExperienceImprovement.exe [2016-07-06] (Lenovo) Task: {2469BF30-A4AA-42D8-9EB1-05C8C35CC0AF} - System32\Tasks\{31DDBD37-5DB7-4030-8064-10B0CAA806C3} => C:\Program Files\COMODO\COMODO Internet Security\cistray.exe [2016-10-04] (COMODO) Task: {2D0836BF-41AB-4BA4-9707-A81E393CD0B3} - System32\Tasks\COMODO\COMODO Update {A6D52E4F-569B-4756-B3D8-DF217313DA85} => C:\Program Files\COMODO\COMODO Internet Security\cfpconfg.exe [2016-10-04] (COMODO) Task: {31CD42C7-4047-4712-8EC2-927D1A6642C1} - System32\Tasks\Lenovo\Lenovo Customer Feedback Program 64 => C:\Program Files (x86)\Lenovo\Customer Feedback Program\Lenovo.TVT.CustomerFeedback.Agent.exe [2015-07-08] (Lenovo) Task: {3331403C-9F32-48D0-A37D-64B9B7C01887} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerRegistration => C:\Program Files (x86)\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [2018-04-20] (Microsoft Corporation) Task: {3FA69BEE-CB8E-45BD-B708-73408EEFB2E7} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2018-04-06] (Microsoft Corporation) Task: {40A096F8-886E-4ECB-8750-60B71F13AE02} - System32\Tasks\COMODO\COMODO Autostart {D5EFF3B3-E126-4AF6-BCE9-852A72129E10} => C:\Program Files\COMODO\COMODO Internet Security\cistray.exe [2016-10-04] (COMODO) Task: {44095607-4A7F-47A4-8CB2-5FC98D3441F2} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-07-01] (Google Inc.) Task: {489F8A41-FBEF-44A9-ACCF-2A423FE5DAB1} - System32\Tasks\CyberLink\Photo Master Gadget startup => C:\Program Files (x86)\Lenovo\Lenovo Photo Master\PhotoMasterWorker.exe [2016-09-22] (CyberLink Corp.) Task: {5220B238-E126-4D3B-BAA5-4AF67A6193BA} - System32\Tasks\Microsoft\Windows\PLA\LSC Memory => C:\Windows\system32\rundll32.exe C:\Windows\system32\pla.dll,PlaHost "LSC Memory" "$(Arg0)" Task: {52298CBA-0390-480E-96BC-8A13E2D990CD} - System32\Tasks\Lenovo\LSC\LSCHardwareScan => C:\Program Files\Lenovo\Lenovo Solution Center\LSC.exe [2015-07-17] () Task: {552F62A9-A592-4AEE-9437-B690B98FCAC3} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe [2018-04-16] (AVAST Software) Task: {5D185C3A-76B7-4CE7-9F81-06AA8CBD92B7} - System32\Tasks\PDVDServ12 Task => C:\Program Files (x86)\Lenovo\PowerDVD12\PDVD12Serv.exe [2015-05-28] (CyberLink Corp.) Task: {6233C8A8-BCC3-47B2-93B1-662236D02E8F} - System32\Tasks\COMODO\COMODO Cache Builder {0FB77674-7905-4F34-A362-C5A9A26F8CF9} => C:\Program Files\COMODO\COMODO Internet Security\cfpconfg.exe [2016-10-04] (COMODO) Task: {658381B2-A83D-4737-A5EC-5BD68337C2D5} - System32\Tasks\{2085FC0F-AFF3-49AE-B38E-87A226517BBE} => C:\WINDOWS\system32\pcalua.exe -a "C:\Program Files (x86)\Electronic Arts\The Sims 3 Miejskie Życie Akcesoria\Game\Bin\TS3SP04.exe" -d "C:\Program Files (x86)\Electronic Arts\The Sims 3 Miejskie Życie Akcesoria\Game\Bin" Task: {6C212DA2-CEE8-4188-AC25-CB0FDCFF57BD} - System32\Tasks\COMODO\COMODO Signature Update {B9D5C6F9-17D2-4917-8BD0-614BAA1C6A59} => C:\Program Files\COMODO\COMODO Internet Security\cfpconfg.exe [2016-10-04] (COMODO) Task: {6C310D38-375C-447D-8FFF-BD15F0CBB351} - System32\Tasks\Lenovo\LSC\Lenovo Solution Center Notifications => C:\Program Files\Lenovo\Lenovo Solution Center\LSCNotify.exe [2015-07-17] (Lenovo) Task: {795E86B8-BDF0-4905-A2F1-698FC82ED798} - System32\Tasks\Lenovo\ImController\Plugins\LenovoSystemUpdatePlugin_WeeklyTask => %windir%\System32\reg.exe add hklm\SOFTWARE\Lenovo\SystemUpdatePlugin\scheduler /v start /t reg_dword /d 1 /f /reg:32 Task: {7D226D4F-5540-485D-AAF5-980F75737A5A} - System32\Tasks\Lenovo\Lenovo Solution Center Launcher => C:\Program Files\lenovo\lenovo solution center\App\LSCService.exe [2015-07-17] (Lenovo) Task: {87CDE479-A92E-4972-B797-38140F3BA298} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\828962cf-b37c-47f3-aa25-46533bf6915b => C:\Program Files\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [2018-03-19] (Lenovo Group Limited) Task: {8A5F8D72-5DFC-4671-AF59-70EAF7E4495D} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\80c87ae8-d462-4689-96e4-9fbedf6b358a => C:\Program Files\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [2018-03-19] (Lenovo Group Limited) Task: {8B8F3081-21B7-41A6-B306-23874754818A} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2018-04-06] (Microsoft Corporation) Task: {8C7D3D32-FD47-494D-9D7B-610D9C0C622B} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2017-02-14] (Apple Inc.) Task: {B3CE3B18-0ADF-4397-8F81-188492F31C22} - System32\Tasks\Lenovo\REACHit Agent Startup => C:\Program Files (x86)\Lenovo\REACHit\REACHitAgent.exe [2016-05-18] (Lenovo) Task: {B652FE6B-9942-4D39-BAD2-7690E1547614} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-07-01] (Google Inc.) Task: {B6D55A40-46FC-4BD4-9576-7819D0337304} - System32\Tasks\Lenovo\ImController\Lenovo iM Controller Scheduled Maintenance => %windir%\system32\sc.exe START ImControllerService Task: {BA161BE3-3FB0-4D51-A7D8-F428FD587687} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\b4b6e638-adcb-49b6-acdd-55257ae7718b => C:\Program Files\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [2018-03-19] (Lenovo Group Limited) Task: {BF55267D-07C6-4C93-9755-0280D17D2744} - System32\Tasks\Lenovo\REACHit Agent Update => C:\Program Files (x86)\Lenovo\REACHit\REACHitAgent.exe [2016-05-18] (Lenovo) Task: {CB73B501-F9FB-4A3D-8A27-8B28A3A1F459} - System32\Tasks\Overwolf Updater Task => C:\Program Files (x86)\Overwolf\OverwolfUpdater.exe [2018-04-26] (Overwolf LTD) Task: {D5934C22-B9CF-419B-B3CC-59BC5B651691} - System32\Tasks\Adobe Flash Player Updater => C:\WINDOWS\SysWoW64\Macromed\Flash\FlashPlayerUpdateService.exe [2018-04-11] (Adobe Systems Incorporated) Task: {D81FA970-58EA-43C2-BF36-EE5CF07DED63} - System32\Tasks\Lenovo\ImController\Lenovo iM Controller Monitor => C:\WINDOWS\system32\ImController.InfInstaller.exe [2018-03-19] (Lenovo Group Limited) Task: {DE633568-418B-4EBE-9614-400768B2637D} - System32\Tasks\Adobe Flash Player PPAPI Notifier => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_29_0_0_140_pepper.exe [2018-04-11] (Adobe Systems Incorporated) Task: {E6FD9E0C-F146-4D1F-A934-F99B597D7BFA} - System32\Tasks\AVAST Software\Avast settings backup => C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe Task: {EBE77D65-50E3-40E9-988B-241E058CD713} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\48ff9eb9-39e5-4054-a857-30c48fe98994 => C:\Program Files\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [2018-03-19] (Lenovo Group Limited) Task: {F568BF66-D91F-476A-9A78-B3C7090293FB} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerLogon => C:\Program Files (x86)\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [2018-04-20] (Microsoft Corporation) Task: {FBF6E1B1-DAFC-47CC-AECD-A1F4437C291B} - System32\Tasks\Lenovo\LSC\LSCHardwareScanPostpone => C:\Program Files\Lenovo\Lenovo Solution Center\LSC.exe [2015-07-17] () Task: {FE7A49E7-EE32-4459-93EC-E6BCB5BFE24D} - System32\Tasks\klcp_update => C:\Program Files (x86)\K-Lite Codec Pack\Tools\CodecTweakTool.exe [2017-06-06] () (Załączenie wejścia w fixlist spowoduje przesunięcie pliku zadania (.job). Plik uruchamiany docelowo przez zadanie nie zostanie przeniesiony.) ==================== Skróty & WMI ======================== (Wybrane wejścia mogą zostać załączone w celu ich zresetowania lub usunięcia.) ==================== Załadowane moduły (filtrowane) ============== 2017-09-29 15:41 - 2017-09-29 15:41 - 000184432 _____ () C:\WINDOWS\SYSTEM32\inputhost.dll 2011-03-14 17:27 - 2011-03-14 17:27 - 000346976 _____ () C:\ProgramData\DatacardService\HWDeviceService64.exe 2015-05-19 10:11 - 2015-05-19 10:11 - 000007680 _____ () C:\Program Files (x86)\Intel\Intel(R) Security Assist\isaHelperService.exe 2016-10-03 18:48 - 2016-12-29 15:16 - 000134712 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll 2015-09-28 15:09 - 2015-09-28 15:09 - 000043976 _____ () C:\Program Files\Lenovo\QuickOptimizer\LNBPrismAssistInf.dll 2018-03-20 08:49 - 2018-03-20 08:49 - 000035064 _____ () c:\program files (x86)\checkpoint\endpoint security\tpcommon\cipolla\sbacipollasrvhost.exe 2018-04-27 21:27 - 2018-04-26 05:14 - 004443992 _____ () C:\Program Files (x86)\Google\Chrome\Application\66.0.3359.139\libglesv2.dll 2018-04-27 21:27 - 2018-04-26 05:14 - 000099672 _____ () C:\Program Files (x86)\Google\Chrome\Application\66.0.3359.139\libegl.dll 2015-06-16 04:53 - 2015-06-16 04:53 - 000628736 _____ () C:\Program Files\Dolby\Dolby DAX2\DAX2_APP\DolbyDAX2TrayIcon.exe 2018-03-14 16:02 - 2018-02-22 02:26 - 011044864 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll 2018-03-14 16:02 - 2018-02-22 02:21 - 001804288 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll 2017-09-29 15:41 - 2017-09-29 15:41 - 001909248 _____ () C:\Windows\ShellExperiences\PeopleCommonControls.dll 2018-03-14 16:02 - 2018-02-22 02:29 - 001266176 _____ () C:\Windows\ShellExperiences\PeopleBarFlyout.dll 2017-12-10 00:06 - 2017-12-10 00:06 - 002988032 _____ () C:\Windows\ShellExperiences\WindowsInternal.People.PeoplePicker.dll 2018-03-22 19:42 - 2018-03-22 19:42 - 000153336 _____ () C:\Program Files (x86)\CheckPoint\Endpoint Security\TPCommon\TPCommonCLI.dll 2015-07-20 10:26 - 2015-07-20 10:26 - 001058320 _____ () C:\Program Files (x86)\CheckPoint\Endpoint Security\EFR\CloudServices.dll 2018-03-22 19:42 - 2018-03-22 19:42 - 000096504 _____ () C:\Program Files (x86)\CheckPoint\Endpoint Security\Remediation\RemediationProxyWrapperLib.dll 2015-12-18 06:09 - 2016-06-15 03:14 - 000020536 _____ () C:\Program Files (x86)\NVIDIA Corporation\Update Core\detoured.dll 2015-12-18 05:09 - 2015-02-12 17:02 - 000224696 _____ () C:\Program Files (x86)\Lenovo\CCSDK\SDKClient.dll 2018-04-14 08:46 - 2018-04-14 08:46 - 000282840 _____ () C:\Program Files\AVAST Software\Avast\tasks_core.dll 2018-03-19 21:17 - 2018-03-19 21:17 - 067126928 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll 2018-04-14 08:46 - 2018-04-14 08:46 - 000349912 _____ () C:\Program Files\AVAST Software\Avast\streamback_avast.dll 2018-04-14 08:46 - 2018-04-14 08:46 - 000295640 _____ () C:\Program Files\AVAST Software\Avast\streamback.dll 2018-04-14 08:46 - 2018-04-14 08:46 - 000281816 _____ () C:\Program Files\AVAST Software\Avast\gaming_mode_ui.dll 2017-10-06 14:17 - 2016-09-22 08:24 - 000884504 _____ () C:\Program Files (x86)\Lenovo\Lenovo Photo Master\subsys\Kernel\Boomerang\UNO.dll 2017-10-06 14:16 - 2016-09-22 08:11 - 000081920 _____ () C:\Program Files (x86)\Lenovo\Lenovo Photo Master\koan\_ctypes.pyd 2017-07-13 20:51 - 2017-07-13 20:51 - 001041720 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll 2017-07-13 20:50 - 2017-07-13 20:50 - 000189752 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxslt.dll 2017-07-13 20:51 - 2017-07-13 20:51 - 000080184 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll 2017-05-02 18:50 - 2017-05-02 18:50 - 001162752 _____ () C:\Users\w\AppData\Local\Facebook\Games\CefSharp.Core.dll 2017-05-02 18:50 - 2017-05-02 18:50 - 067197440 _____ () C:\Users\w\AppData\Local\Facebook\Games\libcef.dll 2015-12-18 05:13 - 2014-07-04 06:35 - 000627672 _____ () C:\Program Files (x86)\Lenovo\Power2Go\CLMediaLibrary.dll 2014-07-04 13:35 - 2014-07-04 13:35 - 000016856 _____ () C:\Program Files (x86)\Lenovo\Power2Go\CLMLSvcPS.dll 2016-07-26 00:58 - 2018-05-01 09:32 - 000788256 _____ () C:\Program Files (x86)\Steam\SDL2.dll 2016-07-26 00:58 - 2016-09-01 03:02 - 004969248 _____ () C:\Program Files (x86)\Steam\v8.dll 2016-07-26 00:58 - 2018-05-02 11:04 - 002633504 _____ () C:\Program Files (x86)\Steam\video.dll 2016-07-26 00:58 - 2016-09-01 03:02 - 001563936 _____ () C:\Program Files (x86)\Steam\icui18n.dll 2016-07-26 00:58 - 2016-09-01 03:02 - 001195296 _____ () C:\Program Files (x86)\Steam\icuuc.dll 2017-12-17 12:12 - 2017-12-20 03:43 - 000695584 _____ () C:\Program Files (x86)\Steam\libavformat-57.dll 2017-12-17 12:12 - 2017-12-20 03:43 - 000351520 _____ () C:\Program Files (x86)\Steam\libavresample-3.dll 2017-12-17 12:12 - 2017-12-20 03:43 - 000847136 _____ () C:\Program Files (x86)\Steam\libavutil-55.dll 2017-12-17 12:12 - 2017-12-20 03:43 - 000783648 _____ () C:\Program Files (x86)\Steam\libswscale-4.dll 2017-12-17 12:12 - 2017-12-20 03:43 - 005137696 _____ () C:\Program Files (x86)\Steam\libavcodec-57.dll 2016-07-26 00:58 - 2018-05-02 11:03 - 000977184 _____ () C:\Program Files (x86)\Steam\bin\chromehtml.DLL 2016-07-26 00:58 - 2016-07-05 00:17 - 000266560 _____ () C:\Program Files (x86)\Steam\openvr_api.dll 2015-08-07 02:09 - 2015-08-07 02:09 - 001243936 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll 2018-03-22 19:42 - 2018-03-22 19:42 - 000063224 _____ () C:\Program Files (x86)\CheckPoint\Endpoint Security\Remediation\FileOperationsWrapperLib.dll 2018-03-22 19:42 - 2018-03-22 19:42 - 000059128 _____ () C:\Program Files (x86)\CheckPoint\Endpoint Security\Remediation\FileOperationsLib.dll 2017-05-02 18:50 - 2017-05-02 18:50 - 000752640 _____ () C:\Users\w\AppData\Local\Facebook\Games\CefSharp.BrowserSubprocess.Core.dll 2017-05-02 18:50 - 2017-05-02 18:50 - 001886208 _____ () C:\Users\w\AppData\Local\Facebook\Games\libglesv2.dll 2017-05-02 18:50 - 2017-05-02 18:50 - 000078848 _____ () C:\Users\w\AppData\Local\Facebook\Games\libegl.dll 2017-06-18 12:34 - 2018-05-01 09:32 - 000788256 _____ () C:\Program Files (x86)\Steam\bin\cef\cef.win7\SDL2.dll 2016-12-15 19:25 - 2017-12-13 23:16 - 071471392 _____ () C:\Program Files (x86)\Steam\bin\cef\cef.win7\libcef.dll 2016-07-26 00:58 - 2015-09-25 01:52 - 000119208 _____ () C:\Program Files (x86)\Steam\winh264.dll ==================== Alternate Data Streams (filtrowane) ========= (Załączenie wejścia w fixlist spowoduje usunięcie strumienia ADS.) AlternateDataStreams: C:\WINDOWS\avastSS.scr:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\NvContainerRecovery.bat:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\system32\cdpreference.exe:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\system32\CNC_ARC.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\system32\CNC_ARI.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\system32\CNC_ARL.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\system32\CNC_ARO.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\system32\CNHMCA6.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\system32\CNMIUAR.DLL:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\system32\D3DCompiler_33.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\system32\D3DCompiler_34.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\system32\D3DCompiler_35.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\system32\D3DCompiler_36.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\system32\D3DCompiler_37.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\system32\D3DCompiler_38.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\system32\D3DCompiler_39.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\system32\D3DCompiler_42.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\system32\D3DCompiler_43.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\system32\d3dcsx_42.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\system32\d3dcsx_43.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\system32\d3dx10.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\system32\d3dx10_33.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\system32\d3dx10_34.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\system32\d3dx10_35.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\system32\d3dx10_36.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\system32\d3dx10_37.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\system32\d3dx10_38.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\system32\d3dx10_39.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\system32\d3dx10_42.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\system32\d3dx11_42.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\system32\d3dx9_24.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\system32\d3dx9_25.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\system32\d3dx9_26.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\system32\d3dx9_27.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\system32\d3dx9_28.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\system32\d3dx9_29.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\system32\d3dx9_30.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\system32\d3dx9_31.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\system32\d3dx9_32.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\system32\d3dx9_35.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\system32\d3dx9_36.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\system32\D3DX9_37.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\system32\D3DX9_38.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\system32\D3DX9_39.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\system32\D3DX9_40.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\system32\D3DX9_41.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\system32\D3DX9_42.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\system32\ImController.CoInstaller.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\system32\ImController.InfInstaller.exe:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\system32\iMDriverHelper.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\system32\nvapi64.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\system32\nvcompiler.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\system32\nvcuda.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\system32\nvcuvid.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\system32\nvdispco6435474.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\system32\nvdispco6436839.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\system32\nvdispco6437654.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\system32\nvdispgenco6435474.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\system32\nvdispgenco6436839.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\system32\nvdispgenco6437654.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\system32\nvEncMFTH264.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\system32\nvEncodeAPI64.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\system32\nvfatbinaryLoader.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\system32\NvFBC64.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\system32\NvIFR64.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\system32\NvIFROpenGL.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\system32\nvoglv64.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\system32\nvopencl.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\system32\nvptxJitCompiler.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\system32\SynCOM.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\system32\SynTPAPI.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\system32\SynTPCo34-10.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\system32\SynTPCo54-05.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\system32\wdfcoinstaller01007.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\system32\WdfCoInstaller01011.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\system32\WudfUpdate_02000.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\system32\x3daudio1_0.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\system32\x3daudio1_1.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\system32\X3DAudio1_2.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\system32\X3DAudio1_3.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\system32\X3DAudio1_4.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\system32\X3DAudio1_5.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\system32\X3DAudio1_6.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\system32\X3DAudio1_7.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\system32\xactengine2_0.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\system32\xactengine2_1.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\system32\xactengine2_10.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\system32\xactengine2_2.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\system32\xactengine2_3.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\system32\xactengine2_4.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\system32\xactengine2_5.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\system32\xactengine2_6.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\system32\xactengine2_7.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\system32\xactengine2_8.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\system32\xactengine2_9.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\system32\xactengine3_0.dll:$CmdTcID [32] AlternateDataStreams: C:\WINDOWS\system32\xactengine3_1.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\system32\xactengine3_2.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\system32\xactengine3_3.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\system32\xactengine3_4.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\system32\xactengine3_5.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\system32\xactengine3_6.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\system32\xactengine3_7.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\system32\XAPOFX1_0.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\system32\XAPOFX1_1.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\system32\XAPOFX1_2.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\system32\XAPOFX1_3.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\system32\XAPOFX1_4.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\system32\XAPOFX1_5.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\system32\XAudio2_0.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\system32\XAudio2_1.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\system32\XAudio2_2.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\system32\XAudio2_3.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\system32\XAudio2_4.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\system32\XAudio2_5.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\system32\XAudio2_6.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\system32\XAudio2_7.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\system32\xinput1_1.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\system32\xinput1_2.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\system32\xinput1_3.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\SysWOW64\CNC_ARL.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\SysWOW64\CNC_ARU.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\SysWOW64\CNHMCA.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\SysWOW64\D3DCompiler_33.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\SysWOW64\D3DCompiler_34.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\SysWOW64\D3DCompiler_35.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\SysWOW64\D3DCompiler_36.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\SysWOW64\D3DCompiler_37.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\SysWOW64\D3DCompiler_38.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\SysWOW64\D3DCompiler_39.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\SysWOW64\D3DCompiler_40.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\SysWOW64\D3DCompiler_41.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\SysWOW64\D3DCompiler_42.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\SysWOW64\D3DCompiler_43.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\SysWOW64\d3dcsx_42.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\SysWOW64\d3dcsx_43.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\SysWOW64\d3dx10.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\SysWOW64\d3dx10_33.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\SysWOW64\d3dx10_34.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\SysWOW64\d3dx10_35.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\SysWOW64\d3dx10_36.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\SysWOW64\d3dx10_37.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\SysWOW64\d3dx10_38.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\SysWOW64\d3dx10_39.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\SysWOW64\d3dx10_40.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\SysWOW64\d3dx10_41.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\SysWOW64\d3dx10_42.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\SysWOW64\d3dx11_42.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\SysWOW64\d3dx9_24.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\SysWOW64\d3dx9_25.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\SysWOW64\d3dx9_26.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\SysWOW64\d3dx9_27.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\SysWOW64\d3dx9_28.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\SysWOW64\d3dx9_29.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\SysWOW64\d3dx9_30.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\SysWOW64\d3dx9_31.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\SysWOW64\d3dx9_32.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\SysWOW64\d3dx9_33.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\SysWOW64\d3dx9_34.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\SysWOW64\d3dx9_35.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\SysWOW64\d3dx9_36.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\SysWOW64\D3DX9_37.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\SysWOW64\D3DX9_38.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\SysWOW64\D3DX9_39.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\SysWOW64\D3DX9_40.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\SysWOW64\D3DX9_41.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\SysWOW64\D3DX9_42.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\SysWOW64\nvapi.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\SysWOW64\nvcompiler.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\SysWOW64\nvcuda.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\SysWOW64\nvcuvid.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\SysWOW64\nvEncMFTH264.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\SysWOW64\nvEncodeAPI.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\SysWOW64\nvfatbinaryLoader.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\SysWOW64\NvFBC.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\SysWOW64\NvIFR.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\SysWOW64\NvIFROpenGL.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\SysWOW64\nvoglv32.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\SysWOW64\nvopencl.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\SysWOW64\nvptxJitCompiler.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\SysWOW64\SynCom.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\SysWOW64\x3daudio1_0.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\SysWOW64\x3daudio1_1.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\SysWOW64\X3DAudio1_2.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\SysWOW64\X3DAudio1_3.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\SysWOW64\X3DAudio1_4.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\SysWOW64\X3DAudio1_5.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\SysWOW64\X3DAudio1_6.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\SysWOW64\X3DAudio1_7.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\SysWOW64\xactengine2_0.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\SysWOW64\xactengine2_1.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\SysWOW64\xactengine2_10.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\SysWOW64\xactengine2_2.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\SysWOW64\xactengine2_3.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\SysWOW64\xactengine2_4.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\SysWOW64\xactengine2_5.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\SysWOW64\xactengine2_6.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\SysWOW64\xactengine2_7.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\SysWOW64\xactengine2_8.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\SysWOW64\xactengine2_9.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\SysWOW64\xactengine3_0.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\SysWOW64\xactengine3_1.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\SysWOW64\xactengine3_2.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\SysWOW64\xactengine3_3.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\SysWOW64\xactengine3_4.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\SysWOW64\xactengine3_5.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\SysWOW64\xactengine3_6.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\SysWOW64\xactengine3_7.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\SysWOW64\XAPOFX1_0.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\SysWOW64\XAPOFX1_1.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\SysWOW64\XAPOFX1_2.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\SysWOW64\XAPOFX1_3.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\SysWOW64\XAPOFX1_4.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\SysWOW64\XAPOFX1_5.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\SysWOW64\XAudio2_0.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\SysWOW64\XAudio2_1.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\SysWOW64\XAudio2_2.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\SysWOW64\XAudio2_3.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\SysWOW64\XAudio2_4.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\SysWOW64\XAudio2_5.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\SysWOW64\XAudio2_6.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\SysWOW64\XAudio2_7.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\SysWOW64\xinput1_1.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\SysWOW64\xinput1_2.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\SysWOW64\xinput1_3.dll:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\system32\Drivers\CFRMD.sys:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\system32\Drivers\ew_jubusenum.sys:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\system32\Drivers\Smb_driver_AMDASF_Aux.sys:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\system32\Drivers\Smb_driver_Intel.sys:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\system32\Drivers\Smb_driver_Intel_Aux.sys:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\system32\Drivers\SynHidI2C_Aux.sys:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\system32\Drivers\SynRMIHID_Aux.sys:$CmdTcID [130] AlternateDataStreams: C:\WINDOWS\system32\Drivers\SynTP.sys:$CmdTcID [130] AlternateDataStreams: C:\Users\Public\AppData:CSM [464] AlternateDataStreams: C:\Users\w\Desktop\tumblr_nxq0evjcRv1u3x79lo1_400.gif:$CmdZnID [26] AlternateDataStreams: C:\Users\w\Downloads\14202789_334554183601803_303750244_o.jpg:$CmdZnID [32] AlternateDataStreams: C:\Users\w\Downloads\14233423_334554256935129_423519563_o.jpg:$CmdZnID [0] AlternateDataStreams: C:\Users\w\Downloads\14247785_334554246935130_1217885264_o (1).jpg:$CmdZnID [0] AlternateDataStreams: C:\Users\w\Downloads\14247785_334554246935130_1217885264_o.jpg:$CmdZnID [32] AlternateDataStreams: C:\Users\w\Downloads\2011 - Psychologia poznania - Umysł i świat - Maruszewski a.pdf:$CmdZnID [32] AlternateDataStreams: C:\Users\w\Downloads\20180219_190104.jpg:$CmdZnID [32] AlternateDataStreams: C:\Users\w\Downloads\20180219_190110 (1).jpg:$CmdZnID [26] AlternateDataStreams: C:\Users\w\Downloads\20180219_190110.jpg:$CmdZnID [26] AlternateDataStreams: C:\Users\w\Downloads\20180219_190125.jpg:$CmdZnID [26] AlternateDataStreams: C:\Users\w\Downloads\22119679_1338408409614676_1235851039_o.jpg:$CmdZnID [26] AlternateDataStreams: C:\Users\w\Downloads\22831108_1125099420958749_1308713245_o.jpg:$CmdZnID [26] AlternateDataStreams: C:\Users\w\Downloads\22831109_1125099454292079_1694078779_o.jpg:$CmdZnID [26] AlternateDataStreams: C:\Users\w\Downloads\22833554_1125099500958741_818164507_o.jpg:$CmdZnID [26] AlternateDataStreams: C:\Users\w\Downloads\22850481_1125099467625411_150636866_o.jpg:$CmdZnID [26] AlternateDataStreams: C:\Users\w\Downloads\22851392_1125099224292102_1812281071_o.jpg:$CmdZnID [26] AlternateDataStreams: C:\Users\w\Downloads\22879187_1125996520869039_14453439_o.jpg:$CmdZnID [26] AlternateDataStreams: C:\Users\w\Downloads\22882131_1125996594202365_1042936274_o.jpg:$CmdZnID [26] AlternateDataStreams: C:\Users\w\Downloads\22882198_1125099374292087_933404143_o.jpg:$CmdZnID [26] AlternateDataStreams: C:\Users\w\Downloads\22882408_1125099514292073_1239636432_o.jpg:$CmdZnID [26] AlternateDataStreams: C:\Users\w\Downloads\23432243_2051117865117819_29395803_o.jpg:$CmdZnID [26] AlternateDataStreams: C:\Users\w\Downloads\23432451_2051117835117822_1008605316_o.jpg:$CmdZnID [26] AlternateDataStreams: C:\Users\w\Downloads\23432644_2051117861784486_1119101071_o.jpg:$CmdZnID [26] AlternateDataStreams: C:\Users\w\Downloads\23468475_2051117838451155_1804799685_o.jpg:$CmdZnID [26] AlternateDataStreams: C:\Users\w\Downloads\23633460_1495071450530575_859728635_o.jpg:$CmdZnID [26] AlternateDataStreams: C:\Users\w\Downloads\23846966_1519740091441910_1498012915_o.jpg:$CmdZnID [26] AlternateDataStreams: C:\Users\w\Downloads\23874259_1519739994775253_1428757291_o.jpg:$CmdZnID [26] AlternateDataStreams: C:\Users\w\Downloads\23874387_1519740118108574_849218649_o.jpg:$CmdZnID [26] AlternateDataStreams: C:\Users\w\Downloads\23897113_1519740011441918_1163340924_o.jpg:$CmdZnID [26] AlternateDataStreams: C:\Users\w\Downloads\26981722_1545731458881146_505721062_o.png:$CmdZnID [32] AlternateDataStreams: C:\Users\w\Downloads\AltricOficjalnyClient23032018.7z:$CmdZnID [32] AlternateDataStreams: C:\Users\w\Downloads\Anastia.pl.rar:$CmdZnID [26] AlternateDataStreams: C:\Users\w\Downloads\Anna Grabowska, Wanda Budohoska, Józef Kozielecki - Percepcja, myślenie, decyzje.pdf:$CmdZnID [0] AlternateDataStreams: C:\Users\w\Downloads\Apache_OpenOffice_4.1.5_Win_x86_install_pl.exe:$CmdZnID [32] AlternateDataStreams: C:\Users\w\Downloads\ArchClient.zip:$CmdZnID [0] AlternateDataStreams: C:\Users\w\Downloads\Augustyn. Wyznania..doc:$CmdZnID [32] AlternateDataStreams: C:\Users\w\Downloads\Bauman. Ponowoczesne wzory osobowe.doc:$CmdZnID [0] AlternateDataStreams: C:\Users\w\Downloads\biologiczne podstawy psychologii kalat james PWN 2006.pdf:$CmdZnID [26] AlternateDataStreams: C:\Users\w\Downloads\Biologiczne podstawy zachowaÅ_ - streszczenie%09Kalat222222(1).doc:$CmdZnID [26] AlternateDataStreams: C:\Users\w\Downloads\biologiczne-podstawy-zachowan.docx:$CmdZnID [32] AlternateDataStreams: C:\Users\w\Downloads\Biologiczne_podstawy_zachowan_cz__I_Psychologia_N_2013_2014 (1).pdf:$CmdZnID [26] AlternateDataStreams: C:\Users\w\Downloads\Biologiczne_podstawy_zachowan_cz__I_Psychologia_N_2013_2014 (2).pdf:$CmdZnID [26] AlternateDataStreams: C:\Users\w\Downloads\Biologiczne_podstawy_zachowan_cz__I_Psychologia_N_2013_2014.pdf:$CmdZnID [26] AlternateDataStreams: C:\Users\w\Downloads\Biologiczne_podstawy_zachowan_cz__I_Psychologia_N_2016_2017.pdf:$CmdZnID [26] AlternateDataStreams: C:\Users\w\Downloads\bpz (1).docx:$CmdZnID [32] AlternateDataStreams: C:\Users\w\Downloads\bpz.docx:$CmdZnID [0] AlternateDataStreams: C:\Users\w\Downloads\Config-CSGO.rar:$CmdZnID [32] AlternateDataStreams: C:\Users\w\Downloads\Dark Sand OTS.rar:$CmdZnID [32] AlternateDataStreams: C:\Users\w\Downloads\Divineclassic.rar:$CmdZnID [26] AlternateDataStreams: C:\Users\w\Downloads\DivineWorld Classic - Oficjalny Klient Gry.zip:$CmdZnID [32] AlternateDataStreams: C:\Users\w\Downloads\Filozofia-pytania-NAJWAZNIEJSZE (1).docx:$CmdZnID [32] AlternateDataStreams: C:\Users\w\Downloads\Filozofia-pytania-NAJWAZNIEJSZE (2).docx:$CmdZnID [32] AlternateDataStreams: C:\Users\w\Downloads\Filozofia-pytania-NAJWAZNIEJSZE.docx:$CmdZnID [32] AlternateDataStreams: C:\Users\w\Downloads\HearthArena-OverwolfInstaller.exe:$CmdZnID [26] AlternateDataStreams: C:\Users\w\Downloads\iCloudSetup.exe:$CmdZnID [29] AlternateDataStreams: C:\Users\w\Downloads\iMetin.7z:$CmdZnID [32] AlternateDataStreams: C:\Users\w\Downloads\iMetin.exe:$CmdZnID [32] AlternateDataStreams: C:\Users\w\Downloads\IMG_0020.JPG:$CmdZnID [26] AlternateDataStreams: C:\Users\w\Downloads\IMG_0021.JPG:$CmdZnID [26] AlternateDataStreams: C:\Users\w\Downloads\IMG_0022.JPG:$CmdZnID [26] AlternateDataStreams: C:\Users\w\Downloads\IMG_0045.JPG:$CmdZnID [26] AlternateDataStreams: C:\Users\w\Downloads\IMG_1458.PNG:$CmdZnID [0] AlternateDataStreams: C:\Users\w\Downloads\IMG_1899.jpg:$CmdZnID [32] AlternateDataStreams: C:\Users\w\Downloads\IMG_1919.jpg:$CmdZnID [0] AlternateDataStreams: C:\Users\w\Downloads\IMG_2114.JPG:$CmdZnID [26] AlternateDataStreams: C:\Users\w\Downloads\IMG_2125.JPG:$CmdZnID [26] AlternateDataStreams: C:\Users\w\Downloads\IMG_2168.JPG:$CmdZnID [26] AlternateDataStreams: C:\Users\w\Downloads\IMG_2169.JPG:$CmdZnID [26] AlternateDataStreams: C:\Users\w\Downloads\IMG_2190 (1).jpg:$CmdZnID [32] AlternateDataStreams: C:\Users\w\Downloads\IMG_2190.jpg:$CmdZnID [32] AlternateDataStreams: C:\Users\w\Downloads\IMG_2622.JPG:$CmdZnID [26] AlternateDataStreams: C:\Users\w\Downloads\IMG_2720.JPG:$CmdZnID [26] AlternateDataStreams: C:\Users\w\Downloads\IMG_2956 (1).PNG:$CmdZnID [32] AlternateDataStreams: C:\Users\w\Downloads\IMG_2956.PNG:$CmdZnID [32] AlternateDataStreams: C:\Users\w\Downloads\IMG_4589.jpg:$CmdZnID [32] AlternateDataStreams: C:\Users\w\Downloads\IMG_4589.PNG:$CmdZnID [32] AlternateDataStreams: C:\Users\w\Downloads\IMG_9839.JPG:$CmdZnID [26] AlternateDataStreams: C:\Users\w\Downloads\IMG_9840.JPG:$CmdZnID [26] AlternateDataStreams: C:\Users\w\Downloads\IMG_9841.JPG:$CmdZnID [26] AlternateDataStreams: C:\Users\w\Downloads\IMG_9856.JPG:$CmdZnID [26] AlternateDataStreams: C:\Users\w\Downloads\InnkeeperSetup.exe:$CmdZnID [29] AlternateDataStreams: C:\Users\w\Downloads\Jan Paweł II. Fides et ratio..doc:$CmdZnID [32] AlternateDataStreams: C:\Users\w\Downloads\KALAT - SKRYPT.docx:$CmdZnID [32] AlternateDataStreams: C:\Users\w\Downloads\Kant, Uzasadnienie metafizyki moralności..doc:$CmdZnID [32] AlternateDataStreams: C:\Users\w\Downloads\Kartezjusz. Rozprawa o metodzie.docx:$CmdZnID [32] AlternateDataStreams: C:\Users\w\Downloads\kupdf.com_biologiczne-podstawy-psychologii-kalat-james-pwn-2006-8301146885.pdf:$CmdZnID [32] AlternateDataStreams: C:\Users\w\Downloads\League of Legends installer EUNE.exe:$CmdZnID [29] AlternateDataStreams: C:\Users\w\Downloads\Lista koncertowa inz przyg.docx:$CmdZnID [26] AlternateDataStreams: C:\Users\w\Downloads\Logika_-_wyk_322_ad-1.pdf:$CmdZnID [32] AlternateDataStreams: C:\Users\w\Downloads\Marek Aureliusz. Rozmyślania..doc:$CmdZnID [32] AlternateDataStreams: C:\Users\w\Downloads\mb3-setup-consumer-3.4.4.2398-1.0.322-1.0.4488 (1).exe:$CmdZnID [32] AlternateDataStreams: C:\Users\w\Downloads\mb3-setup-consumer-3.4.4.2398-1.0.322-1.0.4488 (2).exe:$CmdZnID [26] AlternateDataStreams: C:\Users\w\Downloads\mb3-setup-consumer-3.4.4.2398-1.0.322-1.0.4488 (3).exe:$CmdZnID [26] AlternateDataStreams: C:\Users\w\Downloads\mb3-setup-consumer-3.4.4.2398-1.0.322-1.0.4488 (4).exe:$CmdZnID [26] AlternateDataStreams: C:\Users\w\Downloads\mb3-setup-consumer-3.4.4.2398-1.0.322-1.0.4488.exe:$CmdZnID [32] AlternateDataStreams: C:\Users\w\Downloads\mbam-log-2012-02-19 (12-01-59).txt:$CmdZnID [32] AlternateDataStreams: C:\Users\w\Downloads\odp.docx:$CmdZnID [32] AlternateDataStreams: C:\Users\w\Downloads\Odpowiedzi-do-Krótki-kurs-cz.2 (1).docx:$CmdZnID [32] AlternateDataStreams: C:\Users\w\Downloads\Odpowiedzi-do-Krótki-kurs-cz.2.docx:$CmdZnID [32] AlternateDataStreams: C:\Users\w\Downloads\Pangea_dmg_mh.rar:$CmdZnID [32] AlternateDataStreams: C:\Users\w\Downloads\Pascal. Myśli.docx:$CmdZnID [32] AlternateDataStreams: C:\Users\w\Downloads\Pawel Peczkowski (1).pdf:$CmdZnID [26] AlternateDataStreams: C:\Users\w\Downloads\Pawel Peczkowski.pdf:$CmdZnID [26] AlternateDataStreams: C:\Users\w\Downloads\pdf:$CmdZnID [26] AlternateDataStreams: C:\Users\w\Downloads\Percepcja-wzrokowa (1).docx:$CmdZnID [32] AlternateDataStreams: C:\Users\w\Downloads\Percepcja-wzrokowa (2).docx:$CmdZnID [32] AlternateDataStreams: C:\Users\w\Downloads\Percepcja-wzrokowa (3).docx:$CmdZnID [32] AlternateDataStreams: C:\Users\w\Downloads\Percepcja-wzrokowa.docx:$CmdZnID [32] AlternateDataStreams: C:\Users\w\Downloads\Plany.pdf:$CmdZnID [26] AlternateDataStreams: C:\Users\w\Downloads\Platon Obrona Sokratesa - odpowiedzi do tekstu.odt:$CmdZnID [32] AlternateDataStreams: C:\Users\w\Downloads\Platon. Obrona Sokratesa..doc:$CmdZnID [32] AlternateDataStreams: C:\Users\w\Downloads\podręcznik niemiecki frycz.doc:$CmdZnID [26] AlternateDataStreams: C:\Users\w\Downloads\Psychologia społeczna (1).pdf:$CmdZnID [32] AlternateDataStreams: C:\Users\w\Downloads\Psychologia społeczna.pdf:$CmdZnID [32] AlternateDataStreams: C:\Users\w\Downloads\psychologia-studia_jednolite_mag.doc:$CmdZnID [32] AlternateDataStreams: C:\Users\w\Downloads\Pytania z książki Krótki kurs samoobrony... (1).docx:$CmdZnID [26] AlternateDataStreams: C:\Users\w\Downloads\Pytania z książki Krótki kurs samoobrony....docx:$CmdZnID [26] AlternateDataStreams: C:\Users\w\Downloads\RMN-1237.jpg:$CmdZnID [26] AlternateDataStreams: C:\Users\w\Downloads\RMN-1615.jpg:$CmdZnID [26] AlternateDataStreams: C:\Users\w\Downloads\Semeria.rar:$CmdZnID [26] AlternateDataStreams: C:\Users\w\Downloads\Sesja_zimowa_2013-14.pdf:$CmdZnID [32] AlternateDataStreams: C:\Users\w\Downloads\Sesja_zimowa_poprawkowa_2013-14.pdf:$CmdZnID [0] AlternateDataStreams: C:\Users\w\Downloads\setup_e-pity2017-partner-bonnppl17.exe:$CmdZnID [32] AlternateDataStreams: C:\Users\w\Downloads\Spencer A. Rathus - Psychologia wspóczesna.pdf:$CmdZnID [26] AlternateDataStreams: C:\Users\w\Downloads\TeamSpeak3-Client-win32-3.1.6.exe:$CmdZnID [29] AlternateDataStreams: C:\Users\w\Downloads\Tematy, które trzeba koniecznie znać. Filozofia z elem. etyki.doc:$CmdZnID [32] AlternateDataStreams: C:\Users\w\Downloads\Tibia_Setup_Simple.exe:$CmdZnID [26] AlternateDataStreams: C:\Users\w\Downloads\tl.rar:$CmdZnID [26] AlternateDataStreams: C:\Users\w\Downloads\Tomografia komputerowa i inne metody neuroobrazowania.ppt:$CmdZnID [26] AlternateDataStreams: C:\Users\w\Downloads\video-1476311587.mp4:$CmdZnID [32] AlternateDataStreams: C:\Users\w\Downloads\video-1476311622.mp4:$CmdZnID [32] AlternateDataStreams: C:\Users\w\Downloads\Wojciszke - Psychologia spoleczna (1).pdf:$CmdZnID [26] AlternateDataStreams: C:\Users\w\Downloads\Wojciszke - Psychologia spoleczna.pdf:$CmdZnID [26] AlternateDataStreams: C:\Users\w\Downloads\wpr. do psych. (1) (1) (1).rtf:$CmdZnID [26] AlternateDataStreams: C:\Users\w\Downloads\Wstęp do wykladu.docx:$CmdZnID [32] AlternateDataStreams: C:\Users\w\Downloads\Wykład. Filozofia z elementami etyki..doc:$CmdZnID [32] AlternateDataStreams: C:\Users\w\Downloads\Xerazx-OTS-ClientV1.2.exe:$CmdZnID [32] AlternateDataStreams: C:\Users\w\Downloads\zafwSetupWeb_152_053_17581.exe:$CmdZnID [32] AlternateDataStreams: C:\Users\w\Downloads\ZamoriaPL.rar:$CmdZnID [32] ==================== Tryb awaryjny (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Wartość "AlternateShell" zostanie przywrócona.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\vsmon => ""="Service" ==================== Powiązania plików (filtrowane) =============== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci.) ==================== Internet Explorer - Witryny zaufane i z ograniczeniami =============== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru.) ==================== Hosts - zawartość: ========================== (Użycie dyrektywy Hosts: w fixlist spowoduje reset pliku Hosts.) 2015-07-10 13:04 - 2017-08-22 14:23 - 000004538 _____ C:\WINDOWS\system32\Drivers\etc\hosts 0.0.0.1 mssplus.mcafee.com 0.0.0.0 0.0.0.0 # fix for traceroute and netstat display anomaly 0.0.0.0 tracking.opencandy.com.s3.amazonaws.com 0.0.0.0 media.opencandy.com 0.0.0.0 cdn.opencandy.com 0.0.0.0 tracking.opencandy.com 0.0.0.0 api.opencandy.com 0.0.0.0 api.recommendedsw.com 0.0.0.0 rp.yefeneri2.com 0.0.0.0 os.yefeneri2.com 0.0.0.0 os2.yefeneri2.com 0.0.0.0 installer.betterinstaller.com 0.0.0.0 installer.filebulldog.com 0.0.0.0 d3oxtn1x3b8d7i.cloudfront.net 0.0.0.0 inno.bisrv.com 0.0.0.0 nsis.bisrv.com 0.0.0.0 cdn.file2desktop.com 0.0.0.0 cdn.goateastcach.us 0.0.0.0 cdn.guttastatdk.us 0.0.0.0 cdn.inskinmedia.com 0.0.0.0 cdn.insta.oibundles2.com 0.0.0.0 cdn.insta.playbryte.com 0.0.0.0 cdn.llogetfastcach.us 0.0.0.0 cdn.montiera.com 0.0.0.0 cdn.msdwnld.com 0.0.0.0 cdn.mypcbackup.com 0.0.0.0 cdn.ppdownload.com 0.0.0.0 cdn.riceateastcach.us 0.0.0.0 cdn.shyapotato.us 0.0.0.0 cdn.solimba.com ==================== Inne obszary ============================ (Obecnie brak automatycznej naprawy dla tej sekcji.) HKU\S-1-5-21-2780740895-2156724078-2569186773-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\w\Desktop\wszystkie śmieci\zdjęcia\memy\tumblr_ockxj2nfx81s9c6nao1_1280.jpg DNS Servers: 192.168.1.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: RequireAdmin) Zapora systemu Windows [funkcja wyłączona] ==================== MSCONFIG/TASK MANAGER - Wyłączone elementy == ==================== Reguły Zapory systemu Windows (filtrowane) =============== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) FirewallRules: [UDP Query User{E20A78DD-6200-4686-B37F-F1ABCC9BF077}C:\program files (x86)\starcraft ii\versions\base58400\sc2_x64.exe] => (Block) C:\program files (x86)\starcraft ii\versions\base58400\sc2_x64.exe FirewallRules: [TCP Query User{4466BEC5-9BCA-40BE-87C9-213C7EBA12DE}C:\program files (x86)\starcraft ii\versions\base58400\sc2_x64.exe] => (Block) C:\program files (x86)\starcraft ii\versions\base58400\sc2_x64.exe FirewallRules: [UDP Query User{41176C5E-750F-4DB4-8C72-C5FC0A513250}C:\program files (x86)\steam\steamapps\common\cryptic studios\neverwinter\live\gameclient.exe] => (Block) C:\program files (x86)\steam\steamapps\common\cryptic studios\neverwinter\live\gameclient.exe FirewallRules: [TCP Query User{3D343CF0-0847-4CF1-B8E0-D9DCF94EE81B}C:\program files (x86)\steam\steamapps\common\cryptic studios\neverwinter\live\gameclient.exe] => (Block) C:\program files (x86)\steam\steamapps\common\cryptic studios\neverwinter\live\gameclient.exe FirewallRules: [{20D8D0C8-3BEB-4095-80F3-E1D7CE35F527}] => (Allow) C:\Program Files (x86)\CAPCOM\LOSTPLANETCOLONIES\LostPlanetColoniesDX10.exe FirewallRules: [{D1548211-8465-4ACA-8541-A302184B0375}] => (Allow) C:\Program Files (x86)\CAPCOM\LOSTPLANETCOLONIES\LostPlanetColoniesDX10.exe FirewallRules: [{820004B5-6484-42FE-A848-863659DF5527}] => (Allow) C:\Program Files (x86)\CAPCOM\LOSTPLANETCOLONIES\LostPlanetColoniesDX9.exe FirewallRules: [{37D4D5BA-8B8E-48FF-95EC-330733487A44}] => (Allow) C:\Program Files (x86)\CAPCOM\LOSTPLANETCOLONIES\LostPlanetColoniesDX9.exe FirewallRules: [UDP Query User{18611936-77BB-4847-A8FB-9161D9093F79}C:\program files (x86)\hearthstone\hearthstone.exe] => (Block) C:\program files (x86)\hearthstone\hearthstone.exe FirewallRules: [TCP Query User{E5EC0D13-AFD4-43A8-AFDB-515AD303C0F0}C:\program files (x86)\hearthstone\hearthstone.exe] => (Block) C:\program files (x86)\hearthstone\hearthstone.exe FirewallRules: [UDP Query User{B3174061-F915-482C-AE40-A1C4102E74C3}C:\users\w\appdata\roaming\spotify\spotify.exe] => (Block) C:\users\w\appdata\roaming\spotify\spotify.exe FirewallRules: [TCP Query User{879B5B2E-D400-4956-B71C-10B9982D15F5}C:\users\w\appdata\roaming\spotify\spotify.exe] => (Block) C:\users\w\appdata\roaming\spotify\spotify.exe FirewallRules: [{8D820995-61F2-465E-8228-937BC760FB04}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{3F48553E-26E4-4598-9EDB-1842A0D39511}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{85DAB829-0F0D-417E-BA3D-0A73F975C339}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{5FE05D1E-C11A-4821-AA2F-092C9C4B5E79}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [UDP Query User{8A69B3FF-68C5-4306-96AC-321C8F76CA4C}C:\games\stepmania 5\program\stepmania.exe] => (Allow) C:\games\stepmania 5\program\stepmania.exe FirewallRules: [TCP Query User{1A093648-02A7-4806-831F-AE6388E3A8FF}C:\games\stepmania 5\program\stepmania.exe] => (Allow) C:\games\stepmania 5\program\stepmania.exe FirewallRules: [UDP Query User{59B86ABF-6420-41DB-9BF6-8E8856BCD446}C:\program files (x86)\steam\steamapps\common\outlast\binaries\win64\olgame.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\outlast\binaries\win64\olgame.exe FirewallRules: [TCP Query User{BC1CEB97-080C-44E7-821B-C78DA67FE674}C:\program files (x86)\steam\steamapps\common\outlast\binaries\win64\olgame.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\outlast\binaries\win64\olgame.exe FirewallRules: [{B11991FA-25B0-4790-9782-1550E360E09F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Outlast\OutlastLauncher.exe FirewallRules: [{A9A94D87-49A1-479C-88B1-955C4C3C8C74}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Outlast\OutlastLauncher.exe FirewallRules: [{789CDC7C-AB69-4948-9159-B90E64AF2812}] => (Allow) C:\Program Files (x86)\Origin Games\The Sims 4\Game\Bin\TS4_x64.exe FirewallRules: [{20CC530D-0597-4A26-BCD9-006AFFA0289E}] => (Allow) C:\Program Files (x86)\Origin Games\The Sims 4\Game\Bin\TS4_x64.exe FirewallRules: [{C797D7D1-9ED8-4E76-80BA-A971C57663FA}] => (Allow) C:\Program Files (x86)\Origin Games\The Sims 4\Game\Bin\TS4.exe FirewallRules: [{D13F48B5-F922-4C9A-B0C3-09806C1442CE}] => (Allow) C:\Program Files (x86)\Origin Games\The Sims 4\Game\Bin\TS4.exe FirewallRules: [UDP Query User{6869DDEF-F708-49C6-B9AF-6AE2493E8CE9}D:\diablo iii\x64\diablo iii64.exe] => (Block) D:\diablo iii\x64\diablo iii64.exe FirewallRules: [TCP Query User{CC745E05-6E13-4181-A3B4-3581E03CAA47}D:\diablo iii\x64\diablo iii64.exe] => (Block) D:\diablo iii\x64\diablo iii64.exe FirewallRules: [{870B0C42-7E28-481A-AAB5-566670D71D3D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\CSNZ\Bin\cstrike-online.exe FirewallRules: [{DA9C1D8F-1D6F-4B5A-975A-974097001B65}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\CSNZ\Bin\cstrike-online.exe FirewallRules: [UDP Query User{EC09762E-6EB8-46B5-BFAC-62F8B7E025AD}C:\program files (x86)\hearthstone\hearthstone.exe] => (Allow) C:\program files (x86)\hearthstone\hearthstone.exe FirewallRules: [TCP Query User{809D6243-62A3-4E34-AED5-0B2BD846C9C1}C:\program files (x86)\hearthstone\hearthstone.exe] => (Allow) C:\program files (x86)\hearthstone\hearthstone.exe FirewallRules: [UDP Query User{2E95C1B0-E432-4B94-9F98-4225D2D16C0A}C:\program files (x86)\steam\steamapps\common\cryptic studios\neverwinter\live\gameclient.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\cryptic studios\neverwinter\live\gameclient.exe FirewallRules: [TCP Query User{2420294C-63DD-4140-BF73-F729D43B6536}C:\program files (x86)\steam\steamapps\common\cryptic studios\neverwinter\live\gameclient.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\cryptic studios\neverwinter\live\gameclient.exe FirewallRules: [{E3C99AE3-2A41-4ACD-A337-3D420C7DE812}] => (Allow) C:\Program Files (x86)\Apowersoft\Video Converter Studio\Video Converter Studio.exe FirewallRules: [{03F918ED-3521-4675-B941-2D54B15A0350}] => (Allow) C:\Program Files (x86)\Apowersoft\Video Converter Studio\Video Converter Studio.exe FirewallRules: [UDP Query User{F8489A55-2E42-4D4C-B779-CB7029B71A08}C:\users\w\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\w\appdata\roaming\spotify\spotify.exe FirewallRules: [TCP Query User{B5CEFF8B-703F-4C2C-AB5A-376D5F06BAAC}C:\users\w\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\w\appdata\roaming\spotify\spotify.exe FirewallRules: [{DC286833-9CBA-4E2B-942B-2A2D7599D07E}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe FirewallRules: [{4E25741B-91EB-45DD-ADE7-D29A705D7439}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe FirewallRules: [{A3F3FE27-9DD7-4CEA-B184-EEEB40FBF7A7}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{E25A051E-A2D5-48F5-BED4-90388D45747D}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{BA897E52-1583-45D3-B326-151A26C474C6}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe FirewallRules: [{B196C688-1D5F-47E4-AF66-04152F7021A6}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe FirewallRules: [{90F5A95F-42B4-4E9C-A803-7FA03E5DE7D5}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe FirewallRules: [{16A00A71-A340-4BE7-B28C-EEF236D6E15B}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe FirewallRules: [{8C27A770-D32D-403C-9AD4-193901F35D51}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe FirewallRules: [{F467F525-DAE2-4466-A00A-6E48D07D2AC1}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{8F20C946-F1CC-4904-A634-BF37473D885F}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{944667C1-61DE-4A47-A934-9B9241E60DA2}] => (Allow) C:\Program Files (x86)\Lenovo\LenovoPortal\Lenovo.Portal.exe FirewallRules: [{3442FC29-EDBA-4B61-BAF8-639CCCFFD81F}] => (Allow) C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe FirewallRules: [{FF6A4474-AE3C-4C76-A7B8-F15F23C734EE}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe FirewallRules: [{73958764-4488-44B0-A307-A527286AF7DF}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe FirewallRules: [{BEE351E7-943E-43BA-8FBE-FA9BD1D7D4D5}] => (Allow) C:\Program Files (x86)\Lenovo\SHAREit\SHAREit.exe FirewallRules: [{901EC19A-A901-49DA-95C3-38F0B593B69E}] => (Allow) C:\Program Files (x86)\Lenovo\SHAREit\SHAREit.exe FirewallRules: [TCP Query User{A8014ACE-FD23-43A4-AE5E-5C37AE44BEED}E:\heroes of the storm\versions\base60522\heroesofthestorm_x64.exe] => (Block) E:\heroes of the storm\versions\base60522\heroesofthestorm_x64.exe FirewallRules: [UDP Query User{7ABE6277-4F3D-4E59-AA5B-4876C038E9F4}E:\heroes of the storm\versions\base60522\heroesofthestorm_x64.exe] => (Block) E:\heroes of the storm\versions\base60522\heroesofthestorm_x64.exe FirewallRules: [TCP Query User{E314E18D-93DC-4809-BE83-B6E316711505}E:\heroes of the storm\versions\base60632\heroesofthestorm_x64.exe] => (Block) E:\heroes of the storm\versions\base60632\heroesofthestorm_x64.exe FirewallRules: [UDP Query User{4A338066-E43A-480B-B01D-2247D2E5CF0F}E:\heroes of the storm\versions\base60632\heroesofthestorm_x64.exe] => (Block) E:\heroes of the storm\versions\base60632\heroesofthestorm_x64.exe FirewallRules: [TCP Query User{372D7910-2260-4D5A-902A-CF05FFDC3162}E:\heroes of the storm\versions\base60821\heroesofthestorm_x64.exe] => (Block) E:\heroes of the storm\versions\base60821\heroesofthestorm_x64.exe FirewallRules: [UDP Query User{F9AD7653-407D-43A2-A103-2DE949A5A0F9}E:\heroes of the storm\versions\base60821\heroesofthestorm_x64.exe] => (Block) E:\heroes of the storm\versions\base60821\heroesofthestorm_x64.exe FirewallRules: [TCP Query User{BFD8CB77-AB20-4E6B-9A3B-AD70CB98333E}E:\heroes of the storm\versions\base60821\heroesofthestorm_x64.exe] => (Block) E:\heroes of the storm\versions\base60821\heroesofthestorm_x64.exe FirewallRules: [UDP Query User{934B8B5A-8160-4C2C-9B77-699E5FCE9BB3}E:\heroes of the storm\versions\base60821\heroesofthestorm_x64.exe] => (Block) E:\heroes of the storm\versions\base60821\heroesofthestorm_x64.exe FirewallRules: [{BC7E29A1-5E0E-42E7-8B11-178DEE3E1D45}] => (Allow) E:\SteamLibrary\steamapps\common\Paladins\Binaries\Win32\HirezBridge.exe FirewallRules: [{76A60DD2-5DA4-498E-BF22-C32A5A24398C}] => (Allow) E:\SteamLibrary\steamapps\common\Paladins\Binaries\Win32\HirezBridge.exe FirewallRules: [TCP Query User{D5503BF2-AF18-417B-8D27-E0047321430E}E:\steamlibrary\steamapps\common\paladins\binaries\win32\paladins.exe] => (Allow) E:\steamlibrary\steamapps\common\paladins\binaries\win32\paladins.exe FirewallRules: [UDP Query User{EDB0C047-4524-4524-BFC3-B8B2CA44AE6C}E:\steamlibrary\steamapps\common\paladins\binaries\win32\paladins.exe] => (Allow) E:\steamlibrary\steamapps\common\paladins\binaries\win32\paladins.exe FirewallRules: [TCP Query User{177CF6A9-6FA7-45DC-A2E4-135EB7058860}E:\heroes of the storm\versions\base61129\heroesofthestorm_x64.exe] => (Allow) E:\heroes of the storm\versions\base61129\heroesofthestorm_x64.exe FirewallRules: [UDP Query User{464218F8-E3D1-4A01-8865-6A8818C05F22}E:\heroes of the storm\versions\base61129\heroesofthestorm_x64.exe] => (Allow) E:\heroes of the storm\versions\base61129\heroesofthestorm_x64.exe FirewallRules: [{A7B53D71-F01B-4D96-9117-4F4D1A28FC31}] => (Allow) E:\SteamLibrary\steamapps\common\The Binding of Isaac Rebirth\isaac-ng.exe FirewallRules: [{567CB47A-4A0D-42B1-ADEF-288DD8F31EF9}] => (Allow) E:\SteamLibrary\steamapps\common\The Binding of Isaac Rebirth\isaac-ng.exe FirewallRules: [TCP Query User{B5413890-9142-499D-9628-A4E6578C55E8}E:\heroes of the storm\versions\base61361\heroesofthestorm_x64.exe] => (Block) E:\heroes of the storm\versions\base61361\heroesofthestorm_x64.exe FirewallRules: [UDP Query User{F060601F-2B09-496B-AED7-79171B1E0643}E:\heroes of the storm\versions\base61361\heroesofthestorm_x64.exe] => (Block) E:\heroes of the storm\versions\base61361\heroesofthestorm_x64.exe FirewallRules: [TCP Query User{7A8BCBA1-EFD7-474A-A2C8-292E139F7A3D}E:\heroes of the storm\versions\base61552\heroesofthestorm_x64.exe] => (Allow) E:\heroes of the storm\versions\base61552\heroesofthestorm_x64.exe FirewallRules: [UDP Query User{A0EB1CF7-55E8-407E-A21F-7FA411D9D483}E:\heroes of the storm\versions\base61552\heroesofthestorm_x64.exe] => (Allow) E:\heroes of the storm\versions\base61552\heroesofthestorm_x64.exe FirewallRules: [TCP Query User{D6966B8A-B941-45EE-9E49-AD20E16C5963}E:\warthunder\launcher.exe] => (Allow) E:\warthunder\launcher.exe FirewallRules: [UDP Query User{A3360507-718F-4779-AD97-A580D13D4C59}E:\warthunder\launcher.exe] => (Allow) E:\warthunder\launcher.exe FirewallRules: [TCP Query User{F4640F75-D95C-4868-9EFC-C693FE3BA97A}E:\cs\csgo.exe] => (Block) E:\cs\csgo.exe FirewallRules: [UDP Query User{E7E8EEDD-D2EE-4EAD-AE89-AF9059C35790}E:\cs\csgo.exe] => (Block) E:\cs\csgo.exe FirewallRules: [{F9FBDC80-5455-499F-8154-D3FC63D03C06}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\outlook.exe FirewallRules: [TCP Query User{655EFBD8-76F6-4239-BD79-F5F4F400C410}E:\overwatch\overwatch\overwatch.exe] => (Allow) E:\overwatch\overwatch\overwatch.exe FirewallRules: [UDP Query User{DE2E7783-77E0-4B47-BE56-9E77EC486E19}E:\overwatch\overwatch\overwatch.exe] => (Allow) E:\overwatch\overwatch\overwatch.exe FirewallRules: [TCP Query User{F86862C4-0B06-4FE4-9D04-6D6D0DA8D5C1}E:\heroes of the storm\versions\base62119\heroesofthestorm_x64.exe] => (Allow) E:\heroes of the storm\versions\base62119\heroesofthestorm_x64.exe FirewallRules: [UDP Query User{D5AA65BB-1262-41AE-BD48-FBB1822927DC}E:\heroes of the storm\versions\base62119\heroesofthestorm_x64.exe] => (Allow) E:\heroes of the storm\versions\base62119\heroesofthestorm_x64.exe FirewallRules: [{AAEB1F1B-EFC3-448C-8443-42B423C43FD4}] => (Allow) E:\SteamLibrary\steamapps\common\Counter-Strike Global Offensive\csgo.exe FirewallRules: [{9BE4A329-CF2B-44BE-91F1-F3E2E4CC8685}] => (Allow) E:\SteamLibrary\steamapps\common\Counter-Strike Global Offensive\csgo.exe FirewallRules: [TCP Query User{028B0786-6FF4-4AB9-84C1-B3518081F643}E:\heroes of the storm\versions\base62212\heroesofthestorm_x64.exe] => (Block) E:\heroes of the storm\versions\base62212\heroesofthestorm_x64.exe FirewallRules: [UDP Query User{3F5C53CF-4D6B-49C4-AE6B-0DE8182654C6}E:\heroes of the storm\versions\base62212\heroesofthestorm_x64.exe] => (Block) E:\heroes of the storm\versions\base62212\heroesofthestorm_x64.exe FirewallRules: [TCP Query User{0D513BA4-FE11-4A9D-96A1-A9F8222499F6}C:\program files (x86)\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe] => (Allow) C:\program files (x86)\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe FirewallRules: [UDP Query User{E803AD6A-7667-42D1-BC89-750D325D5AF4}C:\program files (x86)\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe] => (Allow) C:\program files (x86)\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe FirewallRules: [TCP Query User{7A369AC4-7A67-4D1B-B1B6-0AFECC6AE9AE}C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Allow) C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe FirewallRules: [UDP Query User{379279AB-0B20-4387-95DB-516938F2D505}C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Allow) C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe FirewallRules: [TCP Query User{8467C121-A4D8-4DC7-AC39-01534E56E507}E:\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe] => (Allow) E:\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe FirewallRules: [UDP Query User{0EAC8993-2A4A-4F79-AFAB-8201A59DD1C1}E:\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe] => (Allow) E:\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe FirewallRules: [TCP Query User{ACE7417F-AA23-4D0A-B774-D751F389510E}E:\heroes of the storm\versions\base62833\heroesofthestorm_x64.exe] => (Allow) E:\heroes of the storm\versions\base62833\heroesofthestorm_x64.exe FirewallRules: [UDP Query User{01014AC6-FAE3-46F7-A766-F299C6994083}E:\heroes of the storm\versions\base62833\heroesofthestorm_x64.exe] => (Allow) E:\heroes of the storm\versions\base62833\heroesofthestorm_x64.exe FirewallRules: [{AA40C275-54AE-42B8-922A-6A7224D77910}] => (Allow) C:\Program Files (x86)\Origin Games\The Sims 4\Game\Bin\TS4.exe FirewallRules: [{674D0683-8AE6-4FDC-AC5D-F57BEC5E3B06}] => (Allow) C:\Program Files (x86)\Origin Games\The Sims 4\Game\Bin\TS4.exe FirewallRules: [{AA87A5A2-1FF9-4B9A-877F-695D4911A442}] => (Allow) C:\Program Files (x86)\Origin Games\The Sims 4\Game\Bin\TS4_x64.exe FirewallRules: [{ACE5BFDD-1833-48D8-9F5E-AF2BA97B66B8}] => (Allow) C:\Program Files (x86)\Origin Games\The Sims 4\Game\Bin\TS4_x64.exe FirewallRules: [{4E96D029-9FC3-46BF-8B84-E528FC81CB1A}] => (Allow) E:\SteamLibrary\steamapps\common\H1Z1\H1Z1_BE.exe FirewallRules: [{09A952D2-ED36-44AC-BC9A-DC1D6D06AE84}] => (Allow) E:\SteamLibrary\steamapps\common\H1Z1\H1Z1_BE.exe FirewallRules: [TCP Query User{0650AF70-8D2C-488B-BF42-2F82D64A23FD}E:\steamlibrary\steamapps\common\h1z1\h1z1.exe] => (Allow) E:\steamlibrary\steamapps\common\h1z1\h1z1.exe FirewallRules: [UDP Query User{7592A8E4-3D0B-4BE0-9995-93B3075C2A0E}E:\steamlibrary\steamapps\common\h1z1\h1z1.exe] => (Allow) E:\steamlibrary\steamapps\common\h1z1\h1z1.exe FirewallRules: [{24696869-858A-4E56-8485-CFE9757C579D}] => (Allow) C:\Program Files (x86)\Kalypso Media\Dungeons2\mono\bin\mono.exe FirewallRules: [TCP Query User{71377845-61CA-4A1C-A01B-E2DB7F03BE8A}C:\program files (x86)\blizzard app\battle.net.exe] => (Allow) C:\program files (x86)\blizzard app\battle.net.exe FirewallRules: [UDP Query User{B654EF8A-8601-4E43-9268-05BB3F7F72E5}C:\program files (x86)\blizzard app\battle.net.exe] => (Allow) C:\program files (x86)\blizzard app\battle.net.exe FirewallRules: [TCP Query User{6E63FDA1-94A7-44A4-B376-14365F104539}E:\heroes of the storm\versions\base63070\heroesofthestorm_x64.exe] => (Block) E:\heroes of the storm\versions\base63070\heroesofthestorm_x64.exe FirewallRules: [UDP Query User{F6532601-E6A4-48BD-BC22-A6A8A2E0D704}E:\heroes of the storm\versions\base63070\heroesofthestorm_x64.exe] => (Block) E:\heroes of the storm\versions\base63070\heroesofthestorm_x64.exe FirewallRules: [TCP Query User{C537D9A7-5AF8-4065-9C58-D533B283E789}E:\unrealtournament\engine\binaries\win64\ue4-win64-shipping.exe] => (Allow) E:\unrealtournament\engine\binaries\win64\ue4-win64-shipping.exe FirewallRules: [UDP Query User{8DD8EEFF-782F-4B10-82AE-0D3275D63CB5}E:\unrealtournament\engine\binaries\win64\ue4-win64-shipping.exe] => (Allow) E:\unrealtournament\engine\binaries\win64\ue4-win64-shipping.exe FirewallRules: [{9091667C-E83D-43A2-A1F8-AFF152F55D5A}] => (Allow) C:\Program Files (x86)\CheckPoint\ZoneAlarm\vsmon.exe FirewallRules: [{D44419E2-C894-456E-A071-3DF4EE8DEF30}] => (Allow) C:\Program Files (x86)\CheckPoint\ZoneAlarm\vsmon.exe FirewallRules: [{CC781214-1B98-4C08-8B32-813D5C875A9D}] => (Allow) C:\Program Files (x86)\CheckPoint\ZoneAlarm\vsmon.exe FirewallRules: [{4FDF527F-526E-4410-BE9F-9A6065F277ED}] => (Allow) C:\Program Files (x86)\CheckPoint\ZoneAlarm\vsmon.exe FirewallRules: [{F93DBAB9-3A8B-4686-B58E-0D6DE7F7D2BF}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Punkty Przywracania systemu ========================= 29-04-2018 15:58:47 Zaplanowany punkt kontrolny ==================== Wadliwe urządzenia w Menedżerze urządzeń ============= ==================== Błędy w Dzienniku zdarzeń: ========================= Dziennik Aplikacja: ================== Error: (05/04/2018 01:47:31 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: DllHost.exe, wersja: 10.0.16299.15, sygnatura czasowa: 0x5e7a01e6 Nazwa modułu powodującego błąd: unknown, wersja: 0.0.0.0, sygnatura czasowa: 0x00000000 Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x00007ffc898a02b8 Identyfikator procesu powodującego błąd: 0x265c Godzina uruchomienia aplikacji powodującej błąd: 0x01d3e339187fcf8d Ścieżka aplikacji powodującej błąd: C:\WINDOWS\system32\DllHost.exe Ścieżka modułu powodującego błąd: unknown Identyfikator raportu: 2a5f06a2-d101-4136-9fda-b7457fc51b21 Pełna nazwa pakietu powodującego błąd: Identyfikator aplikacji względem pakietu powodującego błąd: Error: (05/04/2018 01:47:23 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: DllHost.exe, wersja: 10.0.16299.15, sygnatura czasowa: 0x5e7a01e6 Nazwa modułu powodującego błąd: unknown, wersja: 0.0.0.0, sygnatura czasowa: 0x00000000 Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x00007ffc898a02b8 Identyfikator procesu powodującego błąd: 0x3918 Godzina uruchomienia aplikacji powodującej błąd: 0x01d3e339141c5483 Ścieżka aplikacji powodującej błąd: C:\WINDOWS\system32\DllHost.exe Ścieżka modułu powodującego błąd: unknown Identyfikator raportu: ecaf4c7a-ae96-4564-8246-1ef6302b5361 Pełna nazwa pakietu powodującego błąd: Identyfikator aplikacji względem pakietu powodującego błąd: Error: (05/04/2018 01:47:05 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: DllHost.exe, wersja: 10.0.16299.15, sygnatura czasowa: 0x5e7a01e6 Nazwa modułu powodującego błąd: unknown, wersja: 0.0.0.0, sygnatura czasowa: 0x00000000 Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x00007ffc898a02b8 Identyfikator procesu powodującego błąd: 0x2940 Godzina uruchomienia aplikacji powodującej błąd: 0x01d3e3390974b06e Ścieżka aplikacji powodującej błąd: C:\WINDOWS\system32\DllHost.exe Ścieżka modułu powodującego błąd: unknown Identyfikator raportu: cd177878-49b9-4690-b38a-eb65535cdcb6 Pełna nazwa pakietu powodującego błąd: Identyfikator aplikacji względem pakietu powodującego błąd: Error: (05/04/2018 01:46:18 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: DllHost.exe, wersja: 10.0.16299.15, sygnatura czasowa: 0x5e7a01e6 Nazwa modułu powodującego błąd: unknown, wersja: 0.0.0.0, sygnatura czasowa: 0x00000000 Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x00007ffc898a02b8 Identyfikator procesu powodującego błąd: 0x300c Godzina uruchomienia aplikacji powodującej błąd: 0x01d3e338ed1c87ee Ścieżka aplikacji powodującej błąd: C:\WINDOWS\system32\DllHost.exe Ścieżka modułu powodującego błąd: unknown Identyfikator raportu: b7d39e14-3505-4c9b-b9b5-31e31082610d Pełna nazwa pakietu powodującego błąd: Identyfikator aplikacji względem pakietu powodującego błąd: Error: (05/04/2018 01:46:10 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: DllHost.exe, wersja: 10.0.16299.15, sygnatura czasowa: 0x5e7a01e6 Nazwa modułu powodującego błąd: unknown, wersja: 0.0.0.0, sygnatura czasowa: 0x00000000 Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x00007ffc898a02b8 Identyfikator procesu powodującego błąd: 0x2d38 Godzina uruchomienia aplikacji powodującej błąd: 0x01d3e338e8a9be8f Ścieżka aplikacji powodującej błąd: C:\WINDOWS\system32\DllHost.exe Ścieżka modułu powodującego błąd: unknown Identyfikator raportu: e5f53281-ad08-4cc7-ab94-f92021930b43 Pełna nazwa pakietu powodującego błąd: Identyfikator aplikacji względem pakietu powodującego błąd: Error: (05/04/2018 01:45:55 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: DllHost.exe, wersja: 10.0.16299.15, sygnatura czasowa: 0x5e7a01e6 Nazwa modułu powodującego błąd: unknown, wersja: 0.0.0.0, sygnatura czasowa: 0x00000000 Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x00007ffc898a02b8 Identyfikator procesu powodującego błąd: 0x18b4 Godzina uruchomienia aplikacji powodującej błąd: 0x01d3e338df525956 Ścieżka aplikacji powodującej błąd: C:\WINDOWS\system32\DllHost.exe Ścieżka modułu powodującego błąd: unknown Identyfikator raportu: 67b54d7e-2076-4b4a-9939-ec3084871424 Pełna nazwa pakietu powodującego błąd: Identyfikator aplikacji względem pakietu powodującego błąd: Error: (05/04/2018 01:45:32 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: DllHost.exe, wersja: 10.0.16299.15, sygnatura czasowa: 0x5e7a01e6 Nazwa modułu powodującego błąd: unknown, wersja: 0.0.0.0, sygnatura czasowa: 0x00000000 Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x00007ffc898a02b8 Identyfikator procesu powodującego błąd: 0x3118 Godzina uruchomienia aplikacji powodującej błąd: 0x01d3e338d183e690 Ścieżka aplikacji powodującej błąd: C:\WINDOWS\system32\DllHost.exe Ścieżka modułu powodującego błąd: unknown Identyfikator raportu: 5d222fda-e919-48a3-aba4-b231c90b04d5 Pełna nazwa pakietu powodującego błąd: Identyfikator aplikacji względem pakietu powodującego błąd: Error: (05/04/2018 01:42:49 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: PeopleExperienceHost.exe, wersja: 10.0.16299.15, sygnatura czasowa: 0x59cdaa0d Nazwa modułu powodującego błąd: guard64.dll, wersja: 8.4.0.5165, sygnatura czasowa: 0x57d9cefe Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x00000000000012c6 Identyfikator procesu powodującego błąd: 0x2660 Godzina uruchomienia aplikacji powodującej błąd: 0x01d3e3386f51b824 Ścieżka aplikacji powodującej błąd: C:\Windows\SystemApps\Microsoft.Windows.PeopleExperienceHost_cw5n1h2txyewy\PeopleExperienceHost.exe Ścieżka modułu powodującego błąd: C:\Windows\system32\guard64.dll Identyfikator raportu: 65f37431-f00d-4550-b038-d4ba59625c25 Pełna nazwa pakietu powodującego błąd: Microsoft.Windows.PeopleExperienceHost_10.0.16299.15_neutral_neutral_cw5n1h2txyewy Identyfikator aplikacji względem pakietu powodującego błąd: App Dziennik System: ============= Error: (05/04/2018 01:47:35 AM) (Source: DCOM) (EventID: 10010) (User: ZARZĄDZANIE NT) Description: Serwer {3EB3C877-1F16-487C-9050-104DBCD66683} nie zarejestrował się w modelu DCOM w wymaganym czasie. Error: (05/04/2018 01:47:28 AM) (Source: DCOM) (EventID: 10010) (User: ZARZĄDZANIE NT) Description: Serwer {3EB3C877-1F16-487C-9050-104DBCD66683} nie zarejestrował się w modelu DCOM w wymaganym czasie. Error: (05/04/2018 01:47:20 AM) (Source: DCOM) (EventID: 10010) (User: ZARZĄDZANIE NT) Description: Serwer {3EB3C877-1F16-487C-9050-104DBCD66683} nie zarejestrował się w modelu DCOM w wymaganym czasie. Error: (05/04/2018 01:46:33 AM) (Source: DCOM) (EventID: 10010) (User: ZARZĄDZANIE NT) Description: Serwer {3EB3C877-1F16-487C-9050-104DBCD66683} nie zarejestrował się w modelu DCOM w wymaganym czasie. Error: (05/04/2018 01:46:21 AM) (Source: DCOM) (EventID: 10016) (User: ZARZĄDZANIE NT) Description: Zgodnie z ustawieniami uprawnienia właściwe dla aplikacji nie jest udzielane uprawnienie Lokalny Aktywacja do aplikacji serwera COM z identyfikatorem klasy CLSID {D63B10C5-BB46-4990-A94F-E40B9D520160} i identyfikatorem aplikacji APPID {9CA88EE3-ACB7-47C8-AFC4-AB702511C276} użytkownikowi ZARZĄDZANIE NT\USŁUGA LOKALNA o identyfikatorze zabezpieczeń SID (S-1-5-19) z adresu LocalHost (użycie LRPC) działającemu w kontenerze aplikacji o identyfikatorze SID Niedostępny (Niedostępny). To uprawnienie zabezpieczeń można modyfikować przy użyciu narzędzia administracyjnego Usługi składowe. Error: (05/04/2018 01:46:14 AM) (Source: DCOM) (EventID: 10010) (User: ZARZĄDZANIE NT) Description: Serwer {3EB3C877-1F16-487C-9050-104DBCD66683} nie zarejestrował się w modelu DCOM w wymaganym czasie. Error: (05/04/2018 01:46:08 AM) (Source: DCOM) (EventID: 10010) (User: ZARZĄDZANIE NT) Description: Serwer {3EB3C877-1F16-487C-9050-104DBCD66683} nie zarejestrował się w modelu DCOM w wymaganym czasie. Error: (05/04/2018 01:45:52 AM) (Source: DCOM) (EventID: 10010) (User: ZARZĄDZANIE NT) Description: Serwer {3EB3C877-1F16-487C-9050-104DBCD66683} nie zarejestrował się w modelu DCOM w wymaganym czasie. CodeIntegrity: =================================== Date: 2018-05-04 01:40:57.259 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Program Files\Bonjour\mdnsNSP.dll that did not meet the Microsoft signing level requirements. Date: 2018-05-04 01:40:57.251 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Program Files\Bonjour\mdnsNSP.dll that did not meet the Microsoft signing level requirements. Date: 2018-05-04 01:40:48.333 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\guard64.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2018-05-04 01:39:21.652 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Program Files\Bonjour\mdnsNSP.dll that did not meet the Microsoft signing level requirements. Date: 2018-05-04 01:39:21.645 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Program Files\Bonjour\mdnsNSP.dll that did not meet the Microsoft signing level requirements. Date: 2018-05-04 01:37:11.425 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Program Files\Bonjour\mdnsNSP.dll that did not meet the Microsoft signing level requirements. Date: 2018-05-04 01:37:09.266 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Program Files\Bonjour\mdnsNSP.dll that did not meet the Microsoft signing level requirements. Date: 2018-05-04 01:36:27.762 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Program Files\Bonjour\mdnsNSP.dll that did not meet the Microsoft signing level requirements. ==================== Statystyki pamięci =========================== Procesor: Intel(R) Core(TM) i5-6300HQ CPU @ 2.30GHz Procent pamięci w użyciu: 50% Całkowita pamięć fizyczna: 8051.91 MB Dostępna pamięć fizyczna: 3954.48 MB Całkowita pamięć wirtualna: 12147.91 MB Dostępna pamięć wirtualna: 7372.4 MB ==================== Dyski ================================ Drive c: (Windows) (Fixed) (Total:444.3 GB) (Free:91.88 GB) NTFS ==>[system z komponentami startowymi (pozyskano odczytując dysk)] Drive d: (LENOVO) (Fixed) (Total:25 GB) (Free:2.12 GB) NTFS Drive e: () (Fixed) (Total:440.08 GB) (Free:256.26 GB) NTFS Drive g: (EXPANSION) (CDROM) (Total:0.47 GB) (Free:0 GB) CDFS \\?\Volume{48bd73b4-90f0-414f-8f5e-ddf19513b1b1}\ (SYSTEM_DRV) (Fixed) (Total:0.25 GB) (Free:0.22 GB) FAT32 \\?\Volume{8dca5b4b-69e3-4e98-b9fb-11a675285ab3}\ (WINRE_DRV) (Fixed) (Total:0.98 GB) (Free:0.51 GB) NTFS \\?\Volume{632fef9c-7094-40d3-acdc-d723d6f7cbeb}\ (LENOVO_PART) (Fixed) (Total:19.9 GB) (Free:5.12 GB) NTFS ==================== MBR & Tablica partycji ================== ======================================================== Disk: 0 (Size: 931.5 GB) (Disk ID: DC0B575E) Partition: GPT. ==================== Koniec Addition.txt ============================