Rezultaty skanu uzupełniającego Farbar Recovery Scan Tool (x64) Wersja:30-08-2015 Uruchomiony przez admin (2015-08-31 13:38:29) Uruchomiony z C:\Users\admin\Downloads Tryb startu: Normal ========================================================== ==================== Konta użytkowników: ============================= admin (S-1-5-21-4085586262-2414536989-1598607991-1000 - Administrator - Enabled) => C:\Users\admin Administrator (S-1-5-21-4085586262-2414536989-1598607991-500 - Administrator - Disabled) Gość (S-1-5-21-4085586262-2414536989-1598607991-501 - Limited - Disabled) ==================== Centrum zabezpieczeń ======================== (Załączenie wejścia w fixlist spowoduje jego usunięcie.) AV: 电脑管家系统防护 (Enabled - Up to date) {6F9C3F92-B625-0E47-F0B1-447602EC65F5} AV: Microsoft Security Essentials (Enabled - Up to date) {B7ECF8CD-0188-6703-DBA4-AA65C6ACFB0A} AS: Microsoft Security Essentials (Enabled - Up to date) {0C8D1929-27B2-688D-E114-9117BD2BB1B7} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: 电脑管家系统防护 (Enabled - Up to date) {D4FDDE76-901F-01C9-CA01-7F04796B2F48} ==================== Zainstalowane programy ====================== (W fixlist dozwolone tylko załączanie programów adware z flagą "Hidden" w celu ich uwidocznienia. Programy adware powinny zostać w poprawny sposób odinstalowane.) Adobe After Effects CS6 (HKLM-x32\...\{4817D846-700B-474E-A31B-80892B3E92E3}) (Version: 11 - Adobe Systems Incorporated) Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 3.1.0.4880 - Adobe Systems Incorporated) Adobe Help Manager (HKLM-x32\...\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1) (Version: 4.0.244 - Adobe Systems Incorporated) Aktualizacje NVIDIA 2.5.12.11 (Version: 2.5.12.11 - NVIDIA Corporation) Hidden ASRock App Charger v1.0.6 (HKLM\...\ASRock App Charger_is1) (Version: 1.0.6 - ASRock Inc.) Audacity 2.1.0 (HKLM-x32\...\Audacity_is1) (Version: 2.1.0 - Audacity Team) Canon Easy-PhotoPrint EX (HKLM-x32\...\Easy-PhotoPrint EX) (Version: - ) Canon Inkjet Printer/Scanner/Fax Extended Survey Program (HKLM-x32\...\CANONIJPLM100) (Version: - ) Canon MG5100 series MP Drivers (HKLM\...\{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MG5100_series) (Version: - ) Canon MP Navigator EX 4.0 (HKLM-x32\...\MP Navigator EX 4.0) (Version: - ) Canon My Printer (HKLM-x32\...\CanonMyPrinter) (Version: - ) Canon Solution Menu EX (HKLM-x32\...\CanonSolutionMenuEX) (Version: - ) Counter-Strike (HKLM-x32\...\Steam App 10) (Version: - Valve) Counter-Strike: Condition Zero (HKLM-x32\...\Steam App 80) (Version: - Valve) Counter-Strike: Global Offensive (HKLM-x32\...\Steam App 730) (Version: - Valve) dBpoweramp (HKLM-x32\...\dBpoweramp) (Version: Release 15.3 - Illustrate) dBpoweramp DSP Effects (HKLM-x32\...\dBpoweramp DSP Effects) (Version: Release 11 - Illustrate) FormatFactory 3.7.0.0 (HKLM-x32\...\FormatFactory) (Version: 3.7.0.0 - Format Factory) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 44.0.2403.157 - Google Inc.) Google Toolbar for Internet Explorer (HKLM-x32\...\{2318C2B1-4965-11d4-9B18-009027A5CD4F}) (Version: 7.5.6710.2136 - Google Inc.) Google Toolbar for Internet Explorer (x32 Version: 1.0.0 - Google Inc.) Hidden Google Update Helper (x32 Version: 1.3.21.115 - Google Inc.) Hidden Google Update Helper (x32 Version: 1.3.28.1 - Google Inc.) Hidden Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 9.5.15.1730 - Intel Corporation) Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 12.9.0.1001 - Intel Corporation) Intel(R) USB 3.0 eXtensible Host Controller Driver (HKLM-x32\...\{240C3DDD-C5E9-4029-9DF7-95650D040CF2}) (Version: 2.5.3.34 - Intel Corporation) Microsoft Security Essentials (HKLM\...\Microsoft Security Client) (Version: 4.8.204.0 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) NVIDIA GeForce Experience 2.5.12.11 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.5.12.11 - NVIDIA Corporation) NVIDIA Oprogramowanie systemu PhysX 9.15.0428 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.15.0428 - NVIDIA Corporation) NVIDIA Sterownik 3D Vision 353.30 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 353.30 - NVIDIA Corporation) NVIDIA Sterownik dźwięku HD 1.3.34.3 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.34.3 - NVIDIA Corporation) NVIDIA Sterownik graficzny 353.30 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 353.30 - NVIDIA Corporation) NVIDIA Sterownik kontrolera 3D Vision 352.65 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 352.65 - NVIDIA Corporation) Opera Stable 30.0.1835.125 (HKLM-x32\...\Opera 30.0.1835.125) (Version: 30.0.1835.125 - Opera Software) Panel sterowania NVIDIA 353.30 (Version: 353.30 - NVIDIA Corporation) Hidden PicosmosTools 1.0.1.0 (HKLM-x32\...\PicosmosTools) (Version: 1.0.1.0 - Free Time) Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.86.508.2014 - Realtek) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7209 - Realtek Semiconductor Corp.) Rejestracja użytkownika drukarki Canon MG5100 series (HKLM-x32\...\Rejestracja użytkownika drukarki Canon MG5100 series) (Version: - ) RocketDock 1.3.5 (HKLM-x32\...\RocketDock_is1) (Version: - Punk Software) SHIELD Streaming (Version: 4.1.3000 - NVIDIA Corporation) Hidden SHIELD Wireless Controller Driver (Version: 2.5.12.11 - NVIDIA Corporation) Hidden Sinister City (HKLM-x32\...\Steam App 326180) (Version: - JetDogs Studios) Skype™ 7.7 (HKLM-x32\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 7.7.102 - Skype Technologies S.A.) Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation) TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.0.16 - TeamSpeak Systems GmbH) TP-LINK TL-WN721N_TL-WN722N Driver (HKLM-x32\...\{86A7EED0-02D0-4D91-8183-8D2F23F5E6AE}) (Version: 1.3.1 - TP-LINK) TP-LINK Wireless Configuration Utility (HKLM-x32\...\{319D91C6-3D44-436C-9F79-36C0D22372DC}) (Version: 1.3.1 - TP-LINK) Vegas Pro 12.0 (64-bit) (HKLM-x32\...\Vegas Pro 12.0 (64-bit)) (Version: 12.0 (64-bit) - Salai Thawng Za Lian) WinRAR 5.21 (64-bitowy) (HKLM\...\WinRAR archiver) (Version: 5.21.0 - win.rar GmbH) ==================== Niestandardowe rejestracje CLSID (filtrowane): ========================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) ==================== Punkty Przywracania systemu ========================= 29-07-2015 16:14:26 Zainstalowany program DirectX 05-08-2015 12:51:57 Removed Panda Devices Agent. 13-08-2015 19:28:11 Zaplanowany punkt kontrolny 14-08-2015 11:11:05 Zainstalowany program DirectX 15-08-2015 10:47:06 Installed Microsoft Fix it 50123 24-08-2015 18:46:35 Zaplanowany punkt kontrolny 25-08-2015 13:33:52 Zainstalowany program DirectX ==================== Hosts - zawartość: =============================== (Użycie dyrektywy Hosts: w fixlist spowoduje reset pliku Hosts.) 2009-07-14 04:34 - 2009-06-10 23:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Zaplanowane zadania (filtrowane) ============= (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) Task: {49478A77-40B2-444A-834F-369162B03379} - System32\Tasks\Opera scheduled Autoupdate 1438121339 => C:\Program Files (x86)\Opera\launcher.exe Task: {826C1CC0-DDA1-4DBB-B89D-6D50F839302D} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-07-27] (Google Inc.) Task: {84718333-812F-43DE-B1FE-2E58338B9848} - System32\Tasks\RsDelayLauncher_{8A34248E-7D35-4832-8378-7659E0B0A380} => C:\PROGRAM FILES (X86)\RISING\RAV\rsdelaylauncher.exe Task: {92F89B66-5D5F-4FC3-A072-D679A83F45F1} - System32\Tasks\{2B4AC000-FC77-4F35-850D-BB235F312C0B} => pcalua.exe -a C:\Users\admin\Downloads\FormatFactory-13295-dp.cpl Task: {9A4028F8-9484-4618-B7F7-7008F1EB8922} - System32\Tasks\Relive => C:\ProgramData\Rising\Rav\ReliveRav.exe Task: {B1EA054B-1E18-4CA6-A32B-BDF22A47D4E5} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-07-27] (Google Inc.) Task: {C395754C-8D8C-4A28-8718-FF8048A9486D} - System32\Tasks\DgTeb5kgyhligOag2NJr6Air5x => C:\Users\admin\AppData\Roaming\DgTeb5kgyhligOag2NJr6Air5x.exe <==== UWAGA (Załączenie wejścia w fixlist spowoduje przesunięcie pliku zadania (.job). Plik uruchamiany docelowo przez zadanie nie zostanie przeniesiony.) Task: C:\Windows\Tasks\DgTeb5kgyhligOag2NJr6Air5x.job => C:\Users\admin\AppData\Roaming\DgTeb5kgyhligOag2NJr6Air5x.exe <==== UWAGA Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\Relive.job => C:\ProgramData\Rising\Rav\ReliveRav.exe ==================== Załadowane moduły (filtrowane) ============== 2015-07-29 15:51 - 2010-04-05 21:55 - 00116104 _____ () C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE 2015-08-30 14:36 - 2015-08-30 14:36 - 00088416 ____N () C:\Program Files (x86)\Tencent\QQPCMgr\10.11.16588.235\zlib.dll 2015-08-30 14:36 - 2015-08-30 14:36 - 00481632 ____N () C:\Program Files (x86)\Tencent\QQPCMgr\10.11.16588.235\sqlite.dll 2015-08-30 14:36 - 2015-08-30 14:36 - 00100704 ____N () C:\Program Files (x86)\Tencent\QQPCMgr\10.11.16588.235\tinyxml.dll 2015-08-30 14:36 - 2015-08-30 14:36 - 00039776 ____N () C:\Program Files (x86)\Tencent\QQPCMgr\10.11.16588.235\plugins\sysspeeduprtpplugin\SysSpeedupRtpPlugin.dll 2015-08-30 14:36 - 2015-08-30 14:36 - 00063840 ____N () C:\Program Files (x86)\Tencent\QQPCMgr\10.11.16588.235\plugins\qmiemalrtpplugin\qmiemalrtpplugin.dll 2015-08-30 14:36 - 2015-08-30 14:36 - 00018784 ____N () C:\Program Files (x86)\Tencent\QQPCMgr\10.11.16588.235\oDayProtect.dll 2015-08-30 14:36 - 2015-08-30 14:36 - 00125280 ____N () c:\program files (x86)\tencent\qqpcmgr\10.11.16588.235\qmrtpcontroller.dll 2015-08-21 21:52 - 2015-08-18 07:23 - 01405768 _____ () C:\Program Files (x86)\Google\Chrome\Application\44.0.2403.157\libglesv2.dll 2015-08-21 21:52 - 2015-08-18 07:23 - 00081224 _____ () C:\Program Files (x86)\Google\Chrome\Application\44.0.2403.157\libegl.dll ==================== Alternate Data Streams (filtrowane) ========= (Załączenie wejścia w fixlist spowoduje usunięcie strumienia ADS.) AlternateDataStreams: C:\Users\admin\Cookies:YfDoCC9jh43VnXdEBNSI AlternateDataStreams: C:\Users\admin\AppData\Local\yxCvtZTp:A08krVvkdZcAiNQucGB0g1BQ8Y9 ==================== Tryb awaryjny (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Wartość "AlternateShell" zostanie przywrócona.) ==================== EXE - Powiązania (filtrowane) =============== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci.) ==================== Internet Explorer - Witryny zaufane i z ograniczeniami =============== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru.) ==================== Inne obszary ============================ (Obecnie brak automatycznej naprawy dla tej sekcji.) HKU\S-1-5-21-4085586262-2414536989-1598607991-1000\Control Panel\Desktop\\Wallpaper -> DNS Servers: 192.168.0.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Zapora systemu Windows - funkcja włączona. ==================== MSCONFIG/TASK MANAGER - Wyłączone elementy == (Obecnie brak automatycznej naprawy dla tej sekcji.) ==================== Reguły Zapory systemu Windows (filtrowane) =============== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) FirewallRules: [{73F1C6B4-0223-4718-9F45-013BF298D4BF}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe FirewallRules: [{6558C717-F8D3-4C60-BFD4-F869C085841F}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe FirewallRules: [{5AD6C782-2FCB-496D-B8D2-7EB53B93FB88}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe FirewallRules: [{99DD224C-4E17-473E-A378-79B313F0E726}] => (Allow) D:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{430EC893-0985-46AE-A43F-35AE9D6FAA5B}] => (Allow) D:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{E2C1A9D7-B7CE-4D76-B6E2-C9EDA471CB96}] => (Allow) D:\Program Files (x86)\Steam\bin\steamwebhelper.exe FirewallRules: [{0FADE1FB-C283-428A-AA0F-BD9597CC872B}] => (Allow) D:\Program Files (x86)\Steam\bin\steamwebhelper.exe FirewallRules: [{D2FF9099-FA3C-42EE-A39D-54DF27BE0F33}] => (Allow) D:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe FirewallRules: [{39555F56-BB12-490F-82DA-D73920AB4E22}] => (Allow) D:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe FirewallRules: [{1375E533-A05F-4568-9EFB-C2DAB640CD2E}] => (Allow) D:\Program Files (x86)\Steam\steamapps\common\Half-Life\hl.exe FirewallRules: [{FCF5A73C-1BC0-485C-9B8D-658703AAF6E7}] => (Allow) D:\Program Files (x86)\Steam\steamapps\common\Half-Life\hl.exe FirewallRules: [TCP Query User{B607C710-0D46-4882-80F5-88D71F3EAC3A}C:\users\admin\downloads\teamspeak3-server_win64-3.0.11.3\teamspeak3-server_win64\ts3server_win64.exe] => (Allow) C:\users\admin\downloads\teamspeak3-server_win64-3.0.11.3\teamspeak3-server_win64\ts3server_win64.exe FirewallRules: [UDP Query User{FF5CB5E7-FC62-4D6F-9ABD-80D01C74EDF0}C:\users\admin\downloads\teamspeak3-server_win64-3.0.11.3\teamspeak3-server_win64\ts3server_win64.exe] => (Allow) C:\users\admin\downloads\teamspeak3-server_win64-3.0.11.3\teamspeak3-server_win64\ts3server_win64.exe FirewallRules: [{10D4C2DF-0A03-4AB6-8F29-FC5E808355F5}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe FirewallRules: [{2F4CE70C-C5A8-42ED-B501-7EF0D0604010}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe FirewallRules: [{C52F0184-E1C7-44B1-80EF-56AAE1F19E56}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe FirewallRules: [{AFC35CC7-06A8-4E6A-87BE-FFE00C93C1EC}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{05AF2600-613F-4BA7-9BD5-D59BACC3C7C7}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [TCP Query User{09070CD7-BC9F-4DEE-9444-900CCF373F16}C:\program files (x86)\formatfactory\ffmodules\package\pfinstonline.exe] => (Allow) C:\program files (x86)\formatfactory\ffmodules\package\pfinstonline.exe FirewallRules: [UDP Query User{4C604F23-BC6D-4994-B2EA-FC5DC2B2DDFB}C:\program files (x86)\formatfactory\ffmodules\package\pfinstonline.exe] => (Allow) C:\program files (x86)\formatfactory\ffmodules\package\pfinstonline.exe FirewallRules: [{AFBB38BF-AA3F-4871-B06F-7C165DA2F975}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe FirewallRules: [{B8CAB51D-282F-480F-9822-29A8E1F8122B}] => (Allow) D:\Program Files (x86)\Steam\steamapps\common\Sinister City\SinisterCity.exe FirewallRules: [{9222087F-6896-4362-9AEB-B55F2C072F58}] => (Allow) D:\Program Files (x86)\Steam\steamapps\common\Sinister City\SinisterCity.exe FirewallRules: [TCP Query User{BFDDB394-06F3-492A-A69C-1B7805C7F91B}C:\program files (x86)\搜狐影音\sohuva.exe] => (Block) C:\program files (x86)\搜狐影音\sohuva.exe FirewallRules: [UDP Query User{04A8B20D-DFF0-4C09-9DA0-820C049E007F}C:\program files (x86)\搜狐影音\sohuva.exe] => (Block) C:\program files (x86)\搜狐影音\sohuva.exe FirewallRules: [TCP Query User{536B27DE-FC63-42B8-9788-4B77BC1BD927}C:\program files (x86)\搜狐影音\shplayer.exe] => (Block) C:\program files (x86)\搜狐影音\shplayer.exe FirewallRules: [UDP Query User{D256620D-DC15-44D1-ACDC-2828DA6014A3}C:\program files (x86)\搜狐影音\shplayer.exe] => (Block) C:\program files (x86)\搜狐影音\shplayer.exe FirewallRules: [{E8878E68-AC49-47C6-9FA1-7E8E3C639C18}] => (Allow) C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\crossbrowse.exe FirewallRules: [{9F42C84E-CBB0-4EF0-8DD7-34D84FBE4064}] => (Allow) C:\Users\admin\AppData\Roaming\IQIYI Video\LStyle\GpUpdate.exe FirewallRules: [{96AF7BE9-5F91-4AED-8AB3-C2F10DF2F0F9}] => (Allow) C:\IQIYI Video\GeePlayer\GeePlayer.exe FirewallRules: [{F4CB119E-5691-43A1-B749-1EF68CA7F8CF}] => (Allow) C:\Users\admin\AppData\Roaming\IQIYI Video\LStyle\QyUpdate.exe FirewallRules: [{C5EBE921-45AB-46E1-90E7-C2B7784C5E5F}] => (Allow) C:\IQIYI Video\LStyle\QyClient.exe FirewallRules: [{AAC8F2AC-92E8-4B5D-8C02-7C116FD5B468}] => (Allow) C:\IQIYI Video\LStyle\QyWebPlayer.exe FirewallRules: [{F9C7D088-438C-4585-86C5-5A6D0AD627BC}] => (Allow) C:\IQIYI Video\Common\QyKernel.exe FirewallRules: [{0C098F22-6083-44CE-A387-EACF20823FF0}] => (Allow) C:\IQIYI Video\LStyle\QyPlayer.exe FirewallRules: [{676B704C-CFEA-4EA9-82B9-D75BF9912670}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\10.11.16588.235\QQPCmgrInstallGuide.exe FirewallRules: [{68F6A31C-3AD7-4504-A114-7E50D0D5622B}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\10.11.16588.235\QQPCTray.exe FirewallRules: [{A60E9044-D1BF-4F1A-A863-7B36F65BA305}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\10.11.16588.235\QQPCMgr.exe FirewallRules: [{11236F38-19AD-4E93-A873-1972CDB29AE2}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\10.11.16588.235\QQPCRTP.exe FirewallRules: [{92DBE68A-DFC2-4997-A066-41D37A31C6A1}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\10.11.16588.235\QMDL.exe FirewallRules: [{04028FD9-7F56-4C42-B97E-9CAEB76D7530}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\10.11.16588.235\bugreport.exe FirewallRules: [{2D374CD3-CF1E-41C0-9677-346BB3316EB4}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\10.11.16588.235\QQPCFileOpen.exe FirewallRules: [{0B8125D9-7DCB-4830-B9CB-FC8B762DDEA1}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\10.11.16588.235\QQPCLeakScan.exe FirewallRules: [{A05CE9BE-C278-406F-8721-44F3BA7A7D3A}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\10.11.16588.235\QQPConfig.exe FirewallRules: [{CB738DE8-591E-4D37-8661-56198B6DDFB6}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\10.11.16588.235\QQPCSoftMgr.exe FirewallRules: [{97F5A020-6F94-4AF2-9437-39C486670E11}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\10.11.16588.235\plugins\QMNetMon\QQPCNetFlow.exe FirewallRules: [{8153DE21-645D-4DE2-A37A-27F530E3E7A8}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\10.11.16588.235\QQPCBTU.exe FirewallRules: [{F14469AF-CDB6-4074-BB92-BC7EAF40C80A}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\10.11.16588.235\QQPCClinic.exe FirewallRules: [{FF92FB5F-51AF-4AC3-B729-23A0C3CEC7CC}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\10.11.16588.235\QQPCLaunch.exe FirewallRules: [{6544BCAC-A00D-4AD8-8914-949B59A9E6BC}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\10.11.16588.235\QMUpdate\QQPCMgrUpdate.exe FirewallRules: [{DD6158D4-F54C-4DC8-8E72-ED48637E4D74}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\10.11.16588.235\QQPCSoftGame.exe FirewallRules: [{6B8741A4-798F-453E-A719-A752782B8D8F}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\10.11.16588.235\QQPCSysOptimize.exe FirewallRules: [{D13D9E04-D6F8-48EA-8ABA-627D65715B35}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\10.11.16588.235\QQPCUpdateAVLib.exe FirewallRules: [{80EAB706-1D13-4083-808A-A80516A2E407}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\10.11.16588.235\QQRepair.exe FirewallRules: [{3FB6E8B3-6373-43D4-8426-D9037625CFED}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\10.11.16588.235\Uninst.exe FirewallRules: [{1DDCA01F-DBAA-4892-94A9-471F56A14931}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\10.11.16588.235\QQPCPatch.exe FirewallRules: [{2751BA04-68D3-491E-A835-B64FCB99C3A5}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\10.11.16588.235\TpkUpdate.exe FirewallRules: [{64FD725D-D034-4634-8496-269628A14E07}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\10.11.16588.235\QMRouterMgr.exe FirewallRules: [{16F1E4C3-ACDF-4D4C-8088-0922B54172F7}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\10.11.16588.235\QMAccountProtection.exe FirewallRules: [{BEDDFA69-3488-476D-8B79-F553B6F95E3A}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\10.11.16588.235\QMAdBlock.exe FirewallRules: [{FB834EDD-0361-4673-A39E-899B5FF4600E}] => (Allow) C:\program files (x86)\common files\tencent\qqdownload\130\tencentdl.exe FirewallRules: [{B8904C6A-95A9-458A-B645-BBD98F7998C3}] => (Allow) C:\program files (x86)\common files\tencent\qqdownload\130\bugreport_xf.exe FirewallRules: [{A6DF4FF7-BD38-443C-83D4-E44636D59FD7}] => (Allow) C:\Users\admin\AppData\Roaming\IQIYI Video\LStyle\QyUpdate.exe FirewallRules: [{D71E5117-3869-4B1A-9ACA-4041F9D4D757}] => (Allow) C:\IQIYI Video\LStyle\QyClient.exe FirewallRules: [{D9FC713C-1442-4649-81D7-E0F18DBBF699}] => (Allow) C:\IQIYI Video\LStyle\QyWebPlayer.exe FirewallRules: [{7F5463C1-D025-4184-B567-B09031A7DA91}] => (Allow) C:\IQIYI Video\Common\QyKernel.exe FirewallRules: [{D43E9832-5EA1-4F5A-8BA7-B4D2BF0CD502}] => (Allow) C:\IQIYI Video\LStyle\QyPlayer.exe FirewallRules: [{0F6B16B2-B51D-4832-84E6-D3287A8852A7}] => (Allow) C:\Users\admin\AppData\Roaming\IQIYI Video\GeePlayer\GpUpdate.exe FirewallRules: [{351E4CED-B84D-4032-A5C3-F71C0D0F2EE5}] => (Allow) C:\IQIYI Video\GeePlayer\GeePlayer\GeePlayer.exe ==================== Wadliwe urządzenia w Menedżerze urządzeń ============= Name: Kontroler PCI Simple Communications Description: Kontroler PCI Simple Communications Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. ==================== Błędy w Dzienniku zdarzeń: ========================= Dziennik Aplikacja: ================== Error: (08/31/2015 01:23:14 PM) (Source: ESENT) (EventID: 412) (User: ) Description: wuaueng.dll (1516) SUS20ClientDataStore: Nie można odczytać nagłówka pliku dziennika C:\Windows\SoftwareDistribution\DataStore\Logs\edb.log. Błąd -546. Error: (08/31/2015 01:23:14 PM) (Source: ESENT) (EventID: 412) (User: ) Description: wuaueng.dll (1516) SUS20ClientDataStore: Nie można odczytać nagłówka pliku dziennika C:\Windows\SoftwareDistribution\DataStore\Logs\edb.log. Błąd -546. Error: (08/31/2015 01:23:14 PM) (Source: ESENT) (EventID: 412) (User: ) Description: wuaueng.dll (1516) SUS20ClientDataStore: Nie można odczytać nagłówka pliku dziennika C:\Windows\SoftwareDistribution\DataStore\Logs\edb.log. Błąd -546. Error: (08/31/2015 01:23:14 PM) (Source: ESENT) (EventID: 412) (User: ) Description: wuaueng.dll (1516) SUS20ClientDataStore: Nie można odczytać nagłówka pliku dziennika C:\Windows\SoftwareDistribution\DataStore\Logs\edb.log. Błąd -546. Error: (08/31/2015 01:03:58 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 4107) (User: ) Description: Nie można wyodrębnić listy głównej innych firm z pliku cab automatycznej aktualizacji z: , wystąpił błąd: Nie można odnaleźć określonej procedury. . Error: (08/31/2015 01:03:58 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 4107) (User: ) Description: Nie można wyodrębnić listy głównej innych firm z pliku cab automatycznej aktualizacji z: , wystąpił błąd: Nie można odnaleźć określonej procedury. . Error: (08/31/2015 01:03:53 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 4107) (User: ) Description: Nie można wyodrębnić listy głównej innych firm z pliku cab automatycznej aktualizacji z: , wystąpił błąd: Nie można odnaleźć określonej procedury. . Error: (08/31/2015 01:03:53 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 4107) (User: ) Description: Nie można wyodrębnić listy głównej innych firm z pliku cab automatycznej aktualizacji z: , wystąpił błąd: Nie można odnaleźć określonej procedury. . Error: (08/31/2015 01:03:47 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 4107) (User: ) Description: Nie można wyodrębnić listy głównej innych firm z pliku cab automatycznej aktualizacji z: , wystąpił błąd: Nie można odnaleźć określonej procedury. . Error: (08/31/2015 01:03:47 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 4107) (User: ) Description: Nie można wyodrębnić listy głównej innych firm z pliku cab automatycznej aktualizacji z: , wystąpił błąd: Nie można odnaleźć określonej procedury. . Dziennik System: ============= Error: (08/31/2015 01:14:38 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Usługa Rsd Service niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 0 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie. Error: (08/31/2015 01:14:38 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Usługa Ochrona oprogramowania niespodziewanie zakończyła pracę. Wystąpiło to razy: 5. Error: (08/31/2015 01:14:38 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Usługa Windows Search niespodziewanie zakończyła pracę. Wystąpiło to razy: 5. Error: (08/31/2015 12:51:04 PM) (Source: Service Control Manager) (EventID: 7030) (User: ) Description: Usługa Rsd Service jest oznaczona jako usługa interakcyjna. System jest jednak skonfigurowany tak, aby nie zezwalać na usługi interakcyjne, dlatego ta usługa może nie działać właściwie. Error: (08/31/2015 12:31:38 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Usługa NVIDIA Display Driver Service niespodziewanie zakończyła pracę. Wystąpiło to razy: 2. Error: (08/31/2015 12:31:37 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Usługa Ochrona oprogramowania niespodziewanie zakończyła pracę. Wystąpiło to razy: 4. Error: (08/31/2015 12:31:37 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Usługa Windows Search niespodziewanie zakończyła pracę. Wystąpiło to razy: 4. Error: (08/31/2015 11:52:33 AM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Usługa Ochrona oprogramowania niespodziewanie zakończyła pracę. Wystąpiło to razy: 3. Error: (08/31/2015 11:52:32 AM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Usługa Bufor wydruku niespodziewanie zakończyła pracę. Wystąpiło to razy: 3. Error: (08/31/2015 11:52:32 AM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Usługa Windows Search niespodziewanie zakończyła pracę. Wystąpiło to razy: 3. Microsoft Office: ========================= Error: (08/31/2015 01:23:14 PM) (Source: ESENT) (EventID: 412) (User: ) Description: wuaueng.dll1516SUS20ClientDataStore: C:\Windows\SoftwareDistribution\DataStore\Logs\edb.log-546 Error: (08/31/2015 01:23:14 PM) (Source: ESENT) (EventID: 412) (User: ) Description: wuaueng.dll1516SUS20ClientDataStore: C:\Windows\SoftwareDistribution\DataStore\Logs\edb.log-546 Error: (08/31/2015 01:23:14 PM) (Source: ESENT) (EventID: 412) (User: ) Description: wuaueng.dll1516SUS20ClientDataStore: C:\Windows\SoftwareDistribution\DataStore\Logs\edb.log-546 Error: (08/31/2015 01:23:14 PM) (Source: ESENT) (EventID: 412) (User: ) Description: wuaueng.dll1516SUS20ClientDataStore: C:\Windows\SoftwareDistribution\DataStore\Logs\edb.log-546 Error: (08/31/2015 01:03:58 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 4107) (User: ) Description: http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cabNie można odnaleźć określonej procedury. Error: (08/31/2015 01:03:58 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 4107) (User: ) Description: http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cabNie można odnaleźć określonej procedury. Error: (08/31/2015 01:03:53 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 4107) (User: ) Description: http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cabNie można odnaleźć określonej procedury. Error: (08/31/2015 01:03:53 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 4107) (User: ) Description: http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cabNie można odnaleźć określonej procedury. Error: (08/31/2015 01:03:47 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 4107) (User: ) Description: http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cabNie można odnaleźć określonej procedury. Error: (08/31/2015 01:03:47 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 4107) (User: ) Description: http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cabNie można odnaleźć określonej procedury. ==================== Statystyki pamięci =========================== Processor: Intel(R) Core(TM) i3-4170 CPU @ 3.70GHz Procent pamięci w użyciu: 22% Całkowita pamięć fizyczna: 8131.39 MB Dostępna pamięć fizyczna: 6329.22 MB Całkowita pamięć wirtualna: 16260.92 MB Dostępna pamięć wirtualna: 14461.95 MB ==================== Dyski ================================ Drive c: () (Fixed) (Total:443.13 GB) (Free:390.18 GB) NTFS Drive d: () (Fixed) (Total:488.28 GB) (Free:475.2 GB) NTFS ==================== MBR & Tablica partycji ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: 89FC42C2) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=443.1 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=488.3 GB) - (Type=07 NTFS) ==================== Koniec Addition.txt ============================