Rezultaty skanu uzupełniającego Farbar Recovery Scan Tool (x64) Wersja:05-12-2015 Uruchomiony przez Natalia (2015-12-05 14:29:42) Uruchomiony z C:\Users\Natalia\Desktop Windows 8.1 (X64) (2013-08-22 08:16:06) Tryb startu: Normal ========================================================== ==================== Konta użytkowników: ============================= Administrator (S-1-5-21-1440869918-637336674-2589777491-500 - Administrator - Disabled) Gość (S-1-5-21-1440869918-637336674-2589777491-501 - Limited - Disabled) Natalia (S-1-5-21-1440869918-637336674-2589777491-1001 - Administrator - Enabled) => C:\Users\Natalia ==================== Centrum zabezpieczeń ======================== (Załączenie wejścia w fixlist spowoduje jego usunięcie.) AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AV: avast! Antivirus (Enabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: avast! Antivirus (Enabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736} FW: avast! Antivirus (Disabled) {2F96FC65-F07D-9D1E-5A6E-3DA5C487EAF0} ==================== Zainstalowane programy ====================== (W fixlist dozwolone tylko załączanie programów adware z flagą "Hidden" w celu ich uwidocznienia. Programy adware powinny zostać w poprawny sposób odinstalowane.) 7-Zip 9.20 (x64 edition) (HKLM\...\{23170F69-40C1-2702-0920-000001000000}) (Version: 9.20.00.0 - Igor Pavlov) Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 18.0.0.144 - Adobe Systems Incorporated) Adobe Photoshop CC 2015 (HKLM-x32\...\{793C2BF7-A4FE-4608-91C9-9282C5801C21}) (Version: 16.0 - Adobe Systems Incorporated) Adobe Photoshop CS6 (HKLM-x32\...\{74EB3499-8B95-4B5C-96EB-7B342F3FD0C6}) (Version: 13.0 - Adobe Systems Incorporated) Aktualizacja produktu Microsoft Office Excel 2007 Help (KB963678) (HKLM-x32\...\{90120000-0016-0415-0000-0000000FF1CE}_ENTERPRISE_{04E205D6-88B1-4652-B162-42DF2C3B1228}) (Version: - Microsoft) Aktualizacja produktu Microsoft Office Powerpoint 2007 Help (KB963669) (HKLM-x32\...\{90120000-0018-0415-0000-0000000FF1CE}_ENTERPRISE_{442ECBCF-94A7-48CC-8CD9-D31FFFD5FA86}) (Version: - Microsoft) Aktualizacja produktu Microsoft Office Word 2007 Help (KB963665) (HKLM-x32\...\{90120000-001B-0415-0000-0000000FF1CE}_ENTERPRISE_{128A36ED-21BE-4547-9FFE-5B85AEC735DD}) (Version: - Microsoft) Aktualizacje NVIDIA 2.4.5.44 (Version: 2.4.5.44 - NVIDIA Corporation) Hidden ALLPlayer V5.X (HKLM-x32\...\ALLPlayer_is1) (Version: - ALLPlayer Group, Ltd.) Apple Mobile Device Support (HKLM\...\{C4123106-B685-48E6-B9BD-E4F911841EB4}) (Version: 8.1.1.3 - Apple Inc.) Apple Software Update (HKLM-x32\...\{C6579A65-9CAE-4B31-8B6B-3306E0630A66}) (Version: 2.1.3.127 - Apple Inc.) ArchiCAD 15 R1 INT (HKLM\...\001FFF2FFF15FF00FF0701F01F02F000-R1) (Version: 15.0 - Graphisoft) ArchiCAD 16 POL (HKLM\...\001FFF2FFF16FF00FF1801F01F02F000-R1) (Version: 16.0 - GRAPHISOFT) Assassin's Creed II (HKLM-x32\...\{8570BEE8-0CA3-4977-9AB1-80ED93F0513C}) (Version: 1.01 - Ubisoft) Autodesk Content Service Language Pack (x32 Version: 3.0.84.0 - Autodesk) Hidden Autodesk Featured Apps 2016 (HKLM-x32\...\{D42F37CD-9AF9-4435-A474-B387C5BB6B47}) (Version: 2.0.0 - Autodesk) Avast Free Antivirus (HKLM-x32\...\Avast) (Version: 11.1.2245 - AVAST Software) BurnAware Free 6.9.4 (HKLM-x32\...\BurnAware Free_is1) (Version: - Burnaware) calibre 64bit (HKLM\...\{B74D8371-98D2-42AD-9D94-3531FF4EA328}) (Version: 2.31.0 - Kovid Goyal) CCleaner (HKLM\...\CCleaner) (Version: 4.11 - Piriform) Corel Graphics - Windows Shell Extension 64 Bit (Version: 15.2.686 - Corel Corporation) Hidden CrystalDiskInfo 6.5.2 (HKLM-x32\...\CrystalDiskInfo_is1) (Version: 6.5.2 - Crystal Dew World) DAEMON Tools Lite (HKLM\...\DAEMON Tools Lite) (Version: 5.0.1.0407 - Disc Soft Ltd) Fallout 3 (HKLM-x32\...\{974C4B12-4D02-4879-85E0-61C95CC63E9E}) (Version: 1.00.0000 - Bethesda Softworks) FARO LS 1.1.502.0 (64bit) (HKLM-x32\...\{66D83FE0-D798-4B38-86FE-FB48151E5AEF}) (Version: 5.2.0.35213 - FARO Scanner Production) FastStone Image Viewer 5.1 (HKLM-x32\...\FastStone Image Viewer) (Version: 5.1 - FastStone Soft) GardenPuzzle - Garden Planner (HKLM-x32\...\GardenPuzzle.31FAFA193F692E138C6BB309B446CA42C25328E4.1) (Version: 1.40 - Marek Rafalowicz) GardenPuzzle - Garden Planner (x32 Version: 1.40 - Marek Rafalowicz) Hidden Google Chrome (HKLM-x32\...\Google Chrome) (Version: 47.0.2526.73 - Google Inc.) Google Update Helper (x32 Version: 1.3.25.11 - Google Inc.) Hidden Google Update Helper (x32 Version: 1.3.29.1 - Google Inc.) Hidden HD Tune 2.55 (HKLM-x32\...\HD Tune_is1) (Version: - EFD Software) Hearthstone (HKLM-x32\...\Hearthstone) (Version: - Blizzard Entertainment) HWiNFO64 Version 4.24 (HKLM\...\HWiNFO64_is1) (Version: 4.24 - Martin Malík - REALiX) Intel(R) C++ Redistributables for Windows* on Intel(R) 64 (HKLM-x32\...\{D2437C5C-2D8C-40D2-8059-689AD7239FA3}) (Version: 11.1.048 - Intel Corporation) iTunes (HKLM\...\{93F2A022-6C37-48B8-B241-FFABD9F60C30}) (Version: 12.1.2.27 - Apple Inc.) Java 8 Update 66 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218066F0}) (Version: 8.0.660.18 - Oracle Corporation) K-Lite Codec Pack 10.4.0 Full (HKLM-x32\...\KLiteCodecPack_is1) (Version: 10.4.0 - ) LAV Filters 0.62.0 (HKLM-x32\...\lavfilters_is1) (Version: 0.62.0 - Hendrik Leppkes) Machinarium (HKLM-x32\...\Machinarium_is1) (Version: - GOG.com) Macromedia Extension Manager (HKLM-x32\...\{5546CDB5-2CE2-498B-B059-5B3BF81FC41F}) (Version: 1.7.240 - Macromedia, Inc.) Macromedia Flash 8 (HKLM-x32\...\{2BD5C305-1B27-4D41-B690-7A61172D2FEB}) (Version: 8.00.0000 - Macromedia) Macromedia Flash 8 Video Encoder (HKLM-x32\...\{8BF2C401-02CE-424D-BC26-6C4F9FB446B6}) (Version: 1.00.0000 - Macromedia) Macromedia Flash Player 8 (HKLM-x32\...\{885A63EA-382B-4DD4-A755-14809B8557D6}) (Version: 8.0.22.0 - Macromedia) Macromedia Flash Player 8 Plugin (HKLM-x32\...\{91057632-CA70-413C-B628-2D3CDBBB906B}) (Version: 8.0.22.0 - Macromedia) Microsoft ASP.NET MVC 4 Runtime (HKLM-x32\...\{3FE312D5-B862-40CE-8E4E-A6D8ABF62736}) (Version: 4.0.40804.0 - Microsoft Corporation) Microsoft Games for Windows - LIVE Redistributable (HKLM-x32\...\{929CE49F-1CA7-4CF3-A9A1-6D757443C63F}) (Version: 1.2.0241 - Microsoft Corporation) Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version: - Microsoft) Microsoft Office Enterprise 2007 (HKLM-x32\...\ENTERPRISE) (Version: 12.0.6612.1000 - Microsoft Corporation) Microsoft Office File Validation Add-In (HKLM-x32\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.40728.0 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 (HKLM-x32\...\{95716cce-fc71-413f-8ad5-56c2892d4b3a}) (Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual Studio Tools for Applications 2.0 - ENU (HKLM-x32\...\{AA4A4B2C-0465-3CF8-BA76-27A027D8ACAB}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual Studio Tools for Applications 2.0 Runtime (HKLM-x32\...\{299C0434-4F4E-341F-A916-4E07AEB35E79}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual Studio Tools for Applications 2012 (HKLM-x32\...\{89ca2a32-2b52-4595-8dfd-6fe4757958d0}) (Version: 11.0.51108 - Microsoft Corporation) Might & Magic Heroes VI - Shades of Darkness (HKLM-x32\...\{745D37C2-26F4-4B65-BA13-F9840EBFA75B}) (Version: 2.1.1 - Ubisoft) Mp3tag v2.60 (HKLM-x32\...\Mp3tag) (Version: v2.60 - Florian Heidenreich) MSXML 4.0 SP3 Parser (HKLM-x32\...\{196467F1-C11F-4F76-858B-5812ADC83B94}) (Version: 4.30.2100.0 - Microsoft Corporation) NapiProjekt 2.0.0 (build 2151) (HKLM-x32\...\NapiProjekt_is1) (Version: - ) Never Alone (Kisima Ingitchuna) (HKLM-x32\...\Steam App 295790) (Version: - Upper One Games) NVIDIA GeForce Experience 2.4.5.44 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.4.5.44 - NVIDIA Corporation) NVIDIA Oprogramowanie systemu PhysX 9.15.0428 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.15.0428 - NVIDIA Corporation) NVIDIA Sterownik 3D Vision 353.30 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 353.30 - NVIDIA Corporation) NVIDIA Sterownik dźwięku HD 1.3.34.3 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.34.3 - NVIDIA Corporation) NVIDIA Sterownik graficzny 353.30 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 353.30 - NVIDIA Corporation) NVIDIA Sterownik kontrolera 3D Vision 352.65 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 352.65 - NVIDIA Corporation) NVIDIA Wirtualny dźwięk Miracast 353.30 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Miracast.VirtualAudio) (Version: 353.30 - NVIDIA Corporation) Obsługa programów Apple (64-bitowa) (HKLM\...\{D7B824DE-DA32-4772-9E5E-39C5158136A7}) (Version: 3.1.3 - Apple Inc.) Oprogramowanie Logitech Unifying 2.50 (HKLM\...\Logitech Unifying) (Version: 2.50.25 - Logitech) Pacote de Idiomas do Microsoft Visual Studio Tools for Applications 2012 x64 Hosting Support - PTB (Version: 11.0.51108 - Microsoft Corporation) Hidden Pacote de Idiomas do Microsoft Visual Studio Tools for Applications 2012 x86 Hosting Support - PTB (x32 Version: 11.0.51108 - Microsoft Corporation) Hidden Panel sterowania NVIDIA 353.30 (Version: 353.30 - NVIDIA Corporation) Hidden Photomatix Pro version 5.0.3 (HKLM\...\PhotomatixPro5x64_is1) (Version: 5.0.3 - HDRsoft Ltd) Portal 2 (HKLM-x32\...\Postal 2_is1) (Version: - ) Prezi Desktop (HKLM-x32\...\{C38FC27A-C586-44F6-A47D-6193FB3024AB}) (Version: 4.2.1 - Prezi.com) QuickTime (HKLM-x32\...\{7BE15435-2D3E-4B58-867F-9C75BED0208C}) (Version: 7.71.80.42 - Apple Inc.) Realtime Landscaping Architect 2013 Trial (HKLM-x32\...\{9091C2CE-5FC4-4742-B8D7-EDCEA4BD0C0E}) (Version: 5.1.5 - Idea Spectrum) SHIELD Streaming (Version: 4.1.2000 - NVIDIA Corporation) Hidden SHIELD Wireless Controller Driver (Version: 2.4.5.44 - NVIDIA Corporation) Hidden Sigil 0.8.7 (HKLM\...\Sigil_is1) (Version: - John Schember) SketchUp 2014 (HKLM-x32\...\{A608A8D3-E77C-4BEE-8F2A-F8124F5F0FE2}) (Version: 14.0.4900 - Trimble Navigation Limited) Skype™ 7.0 (HKLM-x32\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 7.0.102 - Skype Technologies S.A.) Update for 2007 Microsoft Office System (KB967642) (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version: - Microsoft) Uplay (HKLM-x32\...\Uplay) (Version: 2.0 - Ubisoft) Wiedźmin 3 Dziki Gon wersja 1.0.2.0 (HKLM-x32\...\Wiedźmin 3 Dziki Gon_is1) (Version: 1.0.2.0 - GTX Box Team) Wiedźmin Edycja Rozszerzona (HKLM-x32\...\{F138762F-5A1F-4CF0-A5E1-1588EF6088A4}_is1) (Version: 1.5 - CD Projekt RED) ZUZIA11 wersja demo (HKLM-x32\...\{705EFB29-B042-4388-9692-C65CE722614F}_is1) (Version: 11 - Datacomp Sp. z o.o.) Языковой пакет для поддержки размещения набора средств Microsoft Visual Studio Tools для работы с приложениями 2012 (x64) - RUS (Version: 11.0.51108 - Microsoft Corporation) Hidden Языковой пакет для поддержки размещения набора средств Microsoft Visual Studio Tools для работы с приложениями 2012 (x86) - RUS (x32 Version: 11.0.51108 - Microsoft Corporation) Hidden ==================== Niestandardowe rejestracje CLSID (filtrowane): ========================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) CustomCLSID: HKU\S-1-5-21-1440869918-637336674-2589777491-1001_Classes\CLSID\{005A3A96-BAC4-4B0A-94EA-C0CE100EA736}\localserver32 -> C:\Users\Natalia\AppData\Roaming\Dropbox\bin\Dropbox.exe /autoplay => Brak pliku CustomCLSID: HKU\S-1-5-21-1440869918-637336674-2589777491-1001_Classes\CLSID\{0B628DE4-07AD-4284-81CA-5B439F67C5E6}\localserver32 -> C:\Program Files\Autodesk\AutoCAD 2016\acad.exe /Automation => Brak pliku CustomCLSID: HKU\S-1-5-21-1440869918-637336674-2589777491-1001_Classes\CLSID\{149DD748-EA85-45A6-93C5-AC50D0260C98}\localserver32 -> C:\Program Files\Autodesk\AutoCAD 2016\acad.exe => Brak pliku CustomCLSID: HKU\S-1-5-21-1440869918-637336674-2589777491-1001_Classes\CLSID\{5370C727-1451-4700-A960-77630950AF6D}\localserver32 -> C:\Program Files\Autodesk\AutoCAD 2016\acad.exe /Automation => Brak pliku CustomCLSID: HKU\S-1-5-21-1440869918-637336674-2589777491-1001_Classes\CLSID\{6A221957-2D85-42A7-8E19-BE33950D1DEB}\localserver32 -> C:\Program Files\Autodesk\AutoCAD 2014\acad.exe => Brak pliku CustomCLSID: HKU\S-1-5-21-1440869918-637336674-2589777491-1001_Classes\CLSID\{7DE1BE5C-CEBA-4F1D-ACBC-9CE11EE9A2A1}\localserver32 -> C:\Program Files\Autodesk\AutoCAD 2014\acad.exe /Automation => Brak pliku CustomCLSID: HKU\S-1-5-21-1440869918-637336674-2589777491-1001_Classes\CLSID\{BD0DEB94-63DB-4392-9420-6EEE05094B1F}\localserver32 -> C:\Program Files\Autodesk\AutoCAD 2014\acad.exe /Automation => Brak pliku CustomCLSID: HKU\S-1-5-21-1440869918-637336674-2589777491-1001_Classes\CLSID\{E2C40589-DE61-11ce-BAE0-0020AF6D7005}\InprocServer32 -> C:\Program Files\Autodesk\AutoCAD 2016\pl-PL\acadficn.dll => Brak pliku CustomCLSID: HKU\S-1-5-21-1440869918-637336674-2589777491-1001_Classes\CLSID\{E68D0A55-3C40-4712-B90D-DCFA93FF2534}\InprocServer32 -> C:\Users\Natalia\AppData\Roaming\GG\ggdrive\ggdrive-menu.dll => Brak pliku ==================== Punkty Przywracania systemu ========================= ==================== Hosts - zawartość: =============================== (Użycie dyrektywy Hosts: w fixlist spowoduje reset pliku Hosts.) 2013-08-22 14:25 - 2014-03-26 17:57 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Zaplanowane zadania (filtrowane) ============= (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) Task: {1005AE6B-A13C-49E5-A6BB-EAB1B7E74C99} - System32\Tasks\AVAST Software\Avast settings backup => C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe [2015-12-05] (AVAST Software) Task: {183F4B69-059E-450D-B681-274B5E3DF29D} - System32\Tasks\bench-sys => C:\Program Files (x86)\Bench\Updater\updater.exe <==== UWAGA Task: {272E3FF8-7325-4A47-9714-1BEC69B091DF} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2014-02-20] (Piriform Ltd) Task: {2D95A955-ABC0-4AD5-910C-43BF6BC18C00} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe Task: {3111C77E-3AD3-4F2F-A4C1-6078D0BE0072} - System32\Tasks\AdobeAAMUpdater-1.0-Natalka-Natalia => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2015-05-25] (Adobe Systems Incorporated) Task: {324111B4-6966-429B-B726-D4290FE0241C} - System32\Tasks\FacebookUpdateTaskUserS-1-5-21-1440869918-637336674-2589777491-1001UA => C:\Users\Natalia\AppData\Local\Facebook\Update\FacebookUpdate.exe [2014-07-26] (Facebook Inc.) Task: {3522CCA3-573B-449C-AB20-63AEE6AD872A} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2015-12-05] (AVAST Software) Task: {4BD48A32-7D2C-442F-9908-69A534E5E9FA} - System32\Tasks\FacebookUpdateTaskUserS-1-5-21-1440869918-637336674-2589777491-1001Core => C:\Users\Natalia\AppData\Local\Facebook\Update\FacebookUpdate.exe [2014-07-26] (Facebook Inc.) Task: {5D277F82-AC88-47AB-B2BB-4B484225E492} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\Windows\system32\MRT.exe [2015-11-11] (Microsoft Corporation) Task: {7D86055A-932C-442D-ABA1-A7D9DFFDFEAA} - System32\Tasks\avastBCLRestartS-1-5-21-1440869918-637336674-2589777491-1001 => Chrome.exe Task: {9AE898BC-9C4D-450C-9593-B519A5F2B034} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-04-17] (Google Inc.) Task: {D77EFCBF-B276-4D72-A1E8-C080C8368AAA} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-04-17] (Google Inc.) Task: {DC729C7C-6ADC-4DD0-A562-AB3F00F00442} - System32\Tasks\{500AF091-F61E-4C71-88B1-2C787ADB8720} => pcalua.exe -a C:\Users\Natalia\AppData\Roaming\do-search\UninstallManager.exe -c -ptid=cor (Załączenie wejścia w fixlist spowoduje przesunięcie pliku zadania (.job). Plik uruchamiany docelowo przez zadanie nie zostanie przeniesiony.) Task: C:\Windows\Tasks\bench-sys.job => C:\Program Files (x86)\Bench\Updater\updater.exe <==== UWAGA Task: C:\Windows\Tasks\bench-Updater removing.job => /verysilent WORKGROUP NATALKA This will uninstall Updater <==== UWAGA Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-1440869918-637336674-2589777491-1001Core.job => C:\Users\Natalia\AppData\Local\Facebook\Update\FacebookUpdate.exe Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-1440869918-637336674-2589777491-1001UA.job => C:\Users\Natalia\AppData\Local\Facebook\Update\FacebookUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ==================== Skróty ============================= (Wybrane wejścia mogą zostać załączone w celu ich zresetowania lub usunięcia.) ShortcutWithArgument: C:\Users\Natalia\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> hxxp://www.mystartsearch.com/?type=sc&ts=1443865678&z=4372d6f78e54e349a3111b4g8z2zbc5beqdw4z4mcz&from=cornl&uid=WDCXWD15EVDS-63V9B1_WD-WMAVU427336273362 <==== UWAGA ShortcutWithArgument: C:\Users\Natalia\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> hxxp://www.mystartsearch.com/?type=sc&ts=1443865678&z=4372d6f78e54e349a3111b4g8z2zbc5beqdw4z4mcz&from=cornl&uid=WDCXWD15EVDS-63V9B1_WD-WMAVU427336273362 <==== UWAGA ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> hxxp://www.mystartsearch.com/?type=sc&ts=1443865678&z=4372d6f78e54e349a3111b4g8z2zbc5beqdw4z4mcz&from=cornl&uid=WDCXWD15EVDS-63V9B1_WD-WMAVU427336273362 <==== UWAGA ==================== Załadowane moduły (filtrowane) ============== 2014-03-21 19:58 - 2015-06-17 07:48 - 00116368 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll 2015-03-20 17:12 - 2015-03-20 17:12 - 00085832 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll 2015-03-20 17:12 - 2015-03-20 17:12 - 01346344 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll 2007-06-05 13:20 - 2007-06-05 13:20 - 00177704 _____ () C:\Windows\SysWOW64\PSIService.exe 2015-12-05 12:26 - 2015-12-05 12:26 - 00103888 _____ () C:\Program Files\AVAST Software\Avast\log.dll 2015-12-05 12:26 - 2015-12-05 12:26 - 00125512 _____ () C:\Program Files\AVAST Software\Avast\JsonRpcServer.dll 2015-12-05 12:24 - 2015-12-05 12:24 - 02802176 _____ () C:\Program Files\AVAST Software\Avast\defs\15120403\algo.dll 2015-12-05 12:26 - 2015-12-05 12:26 - 00469008 _____ () C:\Program Files\AVAST Software\Avast\ffl2.dll 2015-12-05 13:11 - 2015-12-05 13:11 - 02803200 _____ () C:\Program Files\AVAST Software\Avast\defs\15120500\algo.dll 2015-06-05 12:46 - 2015-06-03 22:06 - 00011920 _____ () C:\Program Files (x86)\NVIDIA Corporation\Update Core\detoured.dll 2015-12-05 12:26 - 2015-12-05 12:26 - 40539648 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll ==================== Alternate Data Streams (filtrowane) ========= (Załączenie wejścia w fixlist spowoduje usunięcie strumienia ADS.) AlternateDataStreams: C:\ProgramData\TEMP:373E1720 ==================== Tryb awaryjny (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Wartość "AlternateShell" zostanie przywrócona.) ==================== EXE - Powiązania (filtrowane) =============== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci.) ==================== Internet Explorer - Witryny zaufane i z ograniczeniami =============== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru.) ==================== Inne obszary ============================ (Obecnie brak automatycznej naprawy dla tej sekcji.) HKU\S-1-5-21-1440869918-637336674-2589777491-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Natalia\Desktop\zdjecia\pauza\CAM006282.jpg DNS Servers: 62.179.1.61 - 62.179.1.63 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 0) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Zapora systemu Windows [funkcja włączona] ==================== MSCONFIG/TASK MANAGER - Wyłączone elementy == (Obecnie brak automatycznej naprawy dla tej sekcji.) HKLM\...\StartupApproved\Run: => "AdobeAAMUpdater-1.0" HKLM\...\StartupApproved\Run: => "iTunesHelper" HKLM\...\StartupApproved\Run: => "Logitech Download Assistant" HKLM\...\StartupApproved\Run: => "Corel Photo Downloader" HKLM\...\StartupApproved\Run32: => "SunJavaUpdateSched" HKLM\...\StartupApproved\Run32: => "QuickTime Task" HKU\S-1-5-21-1440869918-637336674-2589777491-1001\...\StartupApproved\StartupFolder: => "Dropbox.lnk" HKU\S-1-5-21-1440869918-637336674-2589777491-1001\...\StartupApproved\StartupFolder: => "Registration Heroes of Might & Magic 5.LNK" HKU\S-1-5-21-1440869918-637336674-2589777491-1001\...\StartupApproved\Run: => "Akamai NetSession Interface" HKU\S-1-5-21-1440869918-637336674-2589777491-1001\...\StartupApproved\Run: => "DAEMON Tools Lite" HKU\S-1-5-21-1440869918-637336674-2589777491-1001\...\StartupApproved\Run: => "AirDroid 3" HKU\S-1-5-21-1440869918-637336674-2589777491-1001\...\StartupApproved\Run: => "Steam" ==================== Reguły Zapory systemu Windows (filtrowane) =============== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139 FirewallRules: [TCP Query User{761B6A97-F2E5-4D6F-9BB2-B6006B6EF3A1}C:\users\natalia\appdata\local\akamai\netsession_win.exe] => (Allow) C:\users\natalia\appdata\local\akamai\netsession_win.exe FirewallRules: [UDP Query User{9CFF51DC-AF65-4B13-A423-AEEA7199DE5E}C:\users\natalia\appdata\local\akamai\netsession_win.exe] => (Allow) C:\users\natalia\appdata\local\akamai\netsession_win.exe FirewallRules: [{ACDB100E-CB2C-498C-B5D6-F23308D0BAF2}] => (Block) C:\users\natalia\appdata\local\akamai\netsession_win.exe FirewallRules: [{D17E09C6-A6B9-487B-B7EA-78987EE03E2B}] => (Block) C:\users\natalia\appdata\local\akamai\netsession_win.exe FirewallRules: [{9684E6C4-DC9C-4C60-91AE-545B9860304C}] => (Allow) C:\Users\Natalia\Downloads\BitTorrent.exe FirewallRules: [{4DC87C0A-791F-4425-8F79-79816401D6AB}] => (Allow) C:\Users\Natalia\Downloads\BitTorrent.exe FirewallRules: [{59A67D40-24EB-4BEA-B04B-F3471741D864}] => (Allow) C:\Program Files\Autodesk\3ds Max 2014\NVIDIA\Satellite\raysat_3dsmax2014_64server.exe FirewallRules: [{41CF1686-E2C5-490D-9F60-D38DE7C2F693}] => (Allow) C:\Program Files\Autodesk\3ds Max 2014\NVIDIA\Satellite\raysat_3dsmax2014_64server.exe FirewallRules: [{AB0BEFD0-8FCF-4AF4-A9C7-61E4602DEDF7}] => (Allow) C:\Program Files\Autodesk\3ds Max 2014\NVIDIA\Satellite\raysat_3dsmax2014_64.exe FirewallRules: [{F965EA8F-4926-4F7F-BCBD-62528E074E46}] => (Allow) C:\Program Files\Autodesk\3ds Max 2014\NVIDIA\Satellite\raysat_3dsmax2014_64.exe FirewallRules: [{96B7024E-63AA-4C52-8F54-2A65FD308F63}] => (Allow) D:\Autodesk\3ds Max 2013\NVIDIA\raysat_3dsmax2013_64server.exe FirewallRules: [{4DA0A885-83CE-4681-A4A3-3F123B73EA97}] => (Allow) D:\Autodesk\3ds Max 2013\NVIDIA\raysat_3dsmax2013_64server.exe FirewallRules: [{1A9CFCA1-7FA7-46C3-A8B4-654C66630EC4}] => (Allow) D:\Autodesk\3ds Max 2013\NVIDIA\raysat_3dsmax2013_64.exe FirewallRules: [{9B095D93-D6FF-4188-B7F7-2F902A63DCB8}] => (Allow) D:\Autodesk\3ds Max 2013\NVIDIA\raysat_3dsmax2013_64.exe FirewallRules: [{A39860D1-53F0-4BD2-9BD7-BA0BDCDE83CF}] => (Allow) D:\Autodesk\3ds Max 2013\3dsmax.exe FirewallRules: [{CC79B37E-F07D-4789-A524-964C33AB2594}] => (Allow) D:\Autodesk\3ds Max 2013\3dsmax.exe FirewallRules: [{E244581C-21C5-43AC-B7C1-0A217FF793A6}] => (Allow) D:\The Witcher Enhanced Edition\Launcher.exe FirewallRules: [{C046BF0E-F3AE-4706-B27F-D3CA09B11E20}] => (Allow) D:\The Witcher Enhanced Edition\System\witcher.exe FirewallRules: [{9CAB3EF7-D98D-42E3-B9B9-D1CF514AEBFC}] => (Allow) C:\Program Files\Autodesk\3ds Max 2013\NVIDIA\raysat_3dsmax2013_64server.exe FirewallRules: [{2049DB96-D2B3-459F-9617-B78DF0415012}] => (Allow) C:\Program Files\Autodesk\3ds Max 2013\NVIDIA\raysat_3dsmax2013_64server.exe FirewallRules: [{1FF0A33B-72A5-4CDB-9DC5-AC0C37FEEAFF}] => (Allow) C:\Program Files\Autodesk\3ds Max 2013\NVIDIA\raysat_3dsmax2013_64.exe FirewallRules: [{BF52D5B7-B30C-488A-8E33-5A4CCF116F41}] => (Allow) C:\Program Files\Autodesk\3ds Max 2013\NVIDIA\raysat_3dsmax2013_64.exe FirewallRules: [{3FF59EB8-51C5-4AC1-A2A5-C210F436F73F}] => (Allow) C:\Program Files\Autodesk\3ds Max 2013\3dsmax.exe FirewallRules: [{816D37E0-6727-4404-BCA7-CDAE59D44B52}] => (Allow) C:\Program Files\Autodesk\3ds Max 2013\3dsmax.exe FirewallRules: [TCP Query User{CFA5BA17-8312-433D-8838-37F21DF3EBF4}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe FirewallRules: [UDP Query User{97BF8F21-F399-4DEC-A217-35705A0258E1}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe FirewallRules: [{5519AE93-A278-4796-9497-C8C2792E9258}] => (Block) C:\program files (x86)\skype\phone\skype.exe FirewallRules: [{F543D119-D7F8-44F8-A718-14A3139C1A27}] => (Block) C:\program files (x86)\skype\phone\skype.exe FirewallRules: [TCP Query User{2C0F0568-2A94-4B3C-92B0-75C9CB688BA1}C:\program files (x86)\r.g. mechanics\the witcher 2 - assassins of kings\bin\witcher2.exe] => (Allow) C:\program files (x86)\r.g. mechanics\the witcher 2 - assassins of kings\bin\witcher2.exe FirewallRules: [UDP Query User{A7525147-BFD8-4DBF-90A9-884367E274B7}C:\program files (x86)\r.g. mechanics\the witcher 2 - assassins of kings\bin\witcher2.exe] => (Allow) C:\program files (x86)\r.g. mechanics\the witcher 2 - assassins of kings\bin\witcher2.exe FirewallRules: [TCP Query User{9174BB3B-2AA9-4186-9AEB-7B462F4FFD6F}C:\program files (x86)\java\jre7\bin\javaw.exe] => (Block) C:\program files (x86)\java\jre7\bin\javaw.exe FirewallRules: [UDP Query User{1A5C3EFC-E846-4F33-A162-613730045E29}C:\program files (x86)\java\jre7\bin\javaw.exe] => (Block) C:\program files (x86)\java\jre7\bin\javaw.exe FirewallRules: [TCP Query User{4F1492A9-8CC5-4503-9F6B-C53BA592306A}C:\windows\syswow64\javaw.exe] => (Block) C:\windows\syswow64\javaw.exe FirewallRules: [UDP Query User{1AC8F9AD-7E3E-449E-9926-3152EF303944}C:\windows\syswow64\javaw.exe] => (Block) C:\windows\syswow64\javaw.exe FirewallRules: [{594D963B-E5FC-4A95-A0E4-F7810808A87D}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{55B44C81-9F20-4D20-A4F0-88EB94D30171}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{4EF3CBEA-B1A8-4359-BAAE-82BA854026F5}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe FirewallRules: [{547492DB-A781-4B0C-965E-057C9E2E302E}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe FirewallRules: [{5F3C1975-972E-40D0-8AF7-582CE8A08D08}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\NeverAlone\Never_Alone.exe FirewallRules: [{561EAAFB-DF73-4D18-AED7-773331C1AC37}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\NeverAlone\Never_Alone.exe FirewallRules: [{61B85E8B-9F87-4765-B6E1-F9814892EAF5}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{A4BECC85-52EB-48EC-9B44-2DBAFB44CEA6}] => (Allow) C:\Program Files (x86)\Ubisoft\Assassin's Creed II\AssassinsCreedIIGame.exe FirewallRules: [{03492391-ECEC-44BA-B1A5-AADE28C88ADA}] => (Allow) C:\Program Files (x86)\Ubisoft\Assassin's Creed II\AssassinsCreedIIGame.exe FirewallRules: [{FBD71304-D0C3-4A87-AD79-A89759204B51}] => (Allow) C:\Program Files (x86)\Ubisoft\Assassin's Creed II\AssassinsCreedII.exe FirewallRules: [{27985CB6-E791-44E6-B22F-D0BA15DED40D}] => (Allow) C:\Program Files (x86)\Ubisoft\Assassin's Creed II\AssassinsCreedII.exe FirewallRules: [{7B6E699C-BF46-455A-9EC3-6FA9A89BE15E}] => (Allow) C:\Program Files (x86)\Ubisoft\Assassin's Creed II\UPlayBrowser.exe FirewallRules: [{3E54326B-D518-4605-94A7-C1656CB28D2F}] => (Allow) C:\Program Files (x86)\Ubisoft\Assassin's Creed II\UPlayBrowser.exe FirewallRules: [{9D485541-CCCB-4DD5-BBAE-87160C21BE09}] => (Allow) C:\Program Files\iTunes\iTunes.exe FirewallRules: [{B10E1735-9879-4E47-AE4D-A8F3820DE83F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Brothers - A Tale of Two Sons\Binaries\Win32\Brothers.exe FirewallRules: [{83E25951-49FC-46EC-B11B-B62556701F89}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Brothers - A Tale of Two Sons\Binaries\Win32\Brothers.exe FirewallRules: [{0FA0B5E3-7A3E-4BB4-9595-4225CB6373C1}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Brothers - A Tale of Two Sons\Binaries\Win32\BrothersLauncher.exe FirewallRules: [{173438CE-D8D3-4E98-B473-4AB343853712}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Brothers - A Tale of Two Sons\Binaries\Win32\BrothersLauncher.exe FirewallRules: [TCP Query User{9678192C-63B1-4BCB-A7D0-A3EFADF7CB72}C:\program files (x86)\airdroid\airdroid.exe] => (Allow) C:\program files (x86)\airdroid\airdroid.exe FirewallRules: [UDP Query User{4A58A763-F1BC-4AE4-A018-5AF213A4ACBA}C:\program files (x86)\airdroid\airdroid.exe] => (Allow) C:\program files (x86)\airdroid\airdroid.exe FirewallRules: [{3F7F8F9F-4E49-4375-AF2A-38253F6F4153}] => (Allow) C:\Program Files (x86)\GTX Box Team\Wiedźmin 3 Dziki Gon\bin\x64\witcher3.exe FirewallRules: [{B0D093A2-7806-458B-8DA7-0C770E583986}] => (Allow) C:\Program Files (x86)\GTX Box Team\Wiedźmin 3 Dziki Gon\bin\x64\witcher3.exe FirewallRules: [{53E35D49-EB40-46B3-A7C9-3BD758F4EE52}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe FirewallRules: [{A19A9BD4-3518-4F6A-A075-58FBB86A2895}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe FirewallRules: [{EC0EDA22-4AB7-4BDE-8BEF-DF1F09D95C14}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe FirewallRules: [{92F023AA-46D0-412D-A517-6E82BEBAD58A}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe FirewallRules: [{8FCC8D8F-7A92-46C9-A5B2-B788CD54FE28}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{FC8D512D-FF4B-428E-BFFC-7C3EBC544FD2}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [TCP Query User{8061593A-E363-4409-919C-766C35C3E9D3}C:\program files (x86)\valve\portal 2\portal2.exe] => (Allow) C:\program files (x86)\valve\portal 2\portal2.exe FirewallRules: [UDP Query User{3D7B9EFE-F8E0-4C08-9FE9-C20A4BDA715B}C:\program files (x86)\valve\portal 2\portal2.exe] => (Allow) C:\program files (x86)\valve\portal 2\portal2.exe FirewallRules: [TCP Query User{2AE9E4E9-0E10-47AA-BA22-D8004623587E}C:\program files\graphisoft\archicad 16\licensefilegenerator.exe] => (Allow) C:\program files\graphisoft\archicad 16\licensefilegenerator.exe FirewallRules: [UDP Query User{FE4684E1-4837-4CEA-9E3D-00C55601512C}C:\program files\graphisoft\archicad 16\licensefilegenerator.exe] => (Allow) C:\program files\graphisoft\archicad 16\licensefilegenerator.exe FirewallRules: [{E2CAE5D5-4B97-4A68-BFDB-2A4995DD363B}] => (Allow) C:\Program Files\GRAPHISOFT\ArchiCAD 15\ArchiCAD.exe FirewallRules: [{6B2BA4A0-C5F8-4B4C-9BAB-1464079D3A1D}] => (Allow) C:\Program Files\GRAPHISOFT\ArchiCAD 15\ArchiCAD.exe FirewallRules: [{A522727B-DF7B-4D96-AB54-47A43B3CCFC3}] => (Allow) C:\Program Files\GRAPHISOFT\ArchiCAD 15\GSQuickTimeServer\GSQTServer.exe FirewallRules: [{D79898D0-81AF-402C-B8E1-CFCA10B85224}] => (Allow) C:\Program Files\GRAPHISOFT\ArchiCAD 15\GSQuickTimeServer\GSQTServer.exe FirewallRules: [{F343156A-0099-4510-AB72-7A6E704786FA}] => (Allow) C:\Program Files (x86)\CodeMeter\Runtime\bin\CodeMeter.exe FirewallRules: [{97861609-183A-4D74-B3C6-EE5BED33D6EC}] => (Allow) C:\Program Files (x86)\CodeMeter\Runtime\bin\CodeMeter.exe FirewallRules: [{ADBCBDE0-3F3B-4354-B15F-23511FF6B25E}] => (Allow) C:\Program Files\arch16\ArchiCAD.exe FirewallRules: [{1D92CF60-9B8D-4B98-B4BC-A68B05592B99}] => (Allow) C:\Program Files\arch16\ArchiCAD.exe FirewallRules: [{0C7C5077-AFD3-43D9-BC2F-43E7E45AEE6E}] => (Allow) C:\Program Files\arch16\GSQuickTimeServer\GSQTServer.exe FirewallRules: [{A8C8631E-73CB-4011-88D6-B818299E2340}] => (Allow) C:\Program Files\arch16\GSQuickTimeServer\GSQTServer.exe FirewallRules: [{1393CC75-383C-4D72-B818-680A1361F1AE}] => (Allow) C:\Program Files (x86)\Ubisoft\Might & Magic Heroes VI\Might & Magic Heroes VI.exe FirewallRules: [{63E3A189-BEC8-46C0-8C34-862DF1DD8F35}] => (Allow) C:\Program Files (x86)\Ubisoft\Might & Magic Heroes VI\Might & Magic Heroes VI.exe FirewallRules: [TCP Query User{26F2AA81-3467-4BE0-B744-F276F83D91BA}C:\games\world_of_tanks\wotlauncher.exe] => (Allow) C:\games\world_of_tanks\wotlauncher.exe FirewallRules: [UDP Query User{0099125A-5A1B-4E18-8F91-E6A2D3AFA19D}C:\games\world_of_tanks\wotlauncher.exe] => (Allow) C:\games\world_of_tanks\wotlauncher.exe FirewallRules: [TCP Query User{F031D4CA-418C-4119-A449-BCC3ACD37695}C:\games\world_of_tanks\worldoftanks.exe] => (Allow) C:\games\world_of_tanks\worldoftanks.exe FirewallRules: [UDP Query User{7825DF8E-186C-483C-8FD9-36A7829FA344}C:\games\world_of_tanks\worldoftanks.exe] => (Allow) C:\games\world_of_tanks\worldoftanks.exe FirewallRules: [TCP Query User{7B896C7C-1D9F-4DEA-B031-E383998F3B1A}C:\games\world_of_warplanes\wowplauncher.exe] => (Allow) C:\games\world_of_warplanes\wowplauncher.exe FirewallRules: [UDP Query User{9E3AB70F-3B1F-49E7-B767-B41A399B9510}C:\games\world_of_warplanes\wowplauncher.exe] => (Allow) C:\games\world_of_warplanes\wowplauncher.exe FirewallRules: [TCP Query User{A36D0273-C1A6-4A60-BA6B-9D6ABA28E06E}C:\program files (x86)\shure\shure update utility\shure update utility.exe] => (Allow) C:\program files (x86)\shure\shure update utility\shure update utility.exe FirewallRules: [UDP Query User{07BB9EB2-42C1-4973-8B5C-B6492226D745}C:\program files (x86)\shure\shure update utility\shure update utility.exe] => (Allow) C:\program files (x86)\shure\shure update utility\shure update utility.exe FirewallRules: [TCP Query User{489E7E3C-25FF-4CFA-A8C9-B09235446846}C:\program files (x86)\hearthstone\hearthstone.exe] => (Allow) C:\program files (x86)\hearthstone\hearthstone.exe FirewallRules: [UDP Query User{702ACF0E-B78C-426E-91CC-0ABD85385EB2}C:\program files (x86)\hearthstone\hearthstone.exe] => (Allow) C:\program files (x86)\hearthstone\hearthstone.exe FirewallRules: [{45D4F5AB-20ED-4E36-A489-EA25750B85A7}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Wadliwe urządzenia w Menedżerze urządzeń ============= ==================== Błędy w Dzienniku zdarzeń: ========================= Dziennik Aplikacja: ================== Error: (12/05/2015 02:06:46 PM) (Source: System Restore) (EventID: 8193) (User: ) Description: Nie można utworzyć punktu przywracania (Proces = C:\Windows\system32\srtasks.exe ExecuteScheduledSPPCreation; Opis = Zaplanowany punkt kontrolny; Błąd = 0x80070422). Error: (12/05/2015 01:47:53 PM) (Source: System Restore) (EventID: 8193) (User: ) Description: Nie można utworzyć punktu przywracania (Proces = C:\Windows\system32\srtasks.exe ExecuteScheduledSPPCreation; Opis = Zaplanowany punkt kontrolny; Błąd = 0x80070422). Error: (12/05/2015 01:08:18 PM) (Source: Windows Search Service) (EventID: 1019) (User: ) Description: Usługa Windows Search nie może przetworzyć listy lokalizacji dołączonych i wykluczonych. Błąd: <30, 0x80040d07, „iehistory://{S-1-5-21-1440869918-637336674-2589777491-1001}/”>. Error: (12/05/2015 12:19:34 PM) (Source: MsiInstaller) (EventID: 11721) (User: Natalka) Description: Product: Apple Software Update -- Error 1721. There is a problem with this Windows Installer package. A program required for this install to complete could not be run. Contact your support personnel or package vendor. Action: SoftwareUpdate_UnregServer, location: C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe, command: /UnregServer Error: (12/05/2015 12:19:26 PM) (Source: System Restore) (EventID: 8193) (User: ) Description: Nie można utworzyć punktu przywracania (Proces = C:\Windows\system32\msiexec.exe /V; Opis = Removed Apple Software Update; Błąd = 0x80070422). Error: (12/05/2015 12:19:25 PM) (Source: System Restore) (EventID: 8193) (User: ) Description: Nie można utworzyć punktu przywracania (Proces = C:\Windows\system32\msiexec.exe /V; Opis = Removed Apple Software Update; Błąd = 0x80070422). Error: (12/05/2015 12:19:21 PM) (Source: System Restore) (EventID: 8193) (User: ) Description: Nie można utworzyć punktu przywracania (Proces = C:\Windows\system32\msiexec.exe /V; Opis = Usunięto SketchUp Import 2016.; Błąd = 0x80070422). Error: (12/05/2015 12:19:19 PM) (Source: System Restore) (EventID: 8193) (User: ) Description: Nie można utworzyć punktu przywracania (Proces = C:\Windows\system32\msiexec.exe /V; Opis = Removed SketchUp Import 2016.; Błąd = 0x80070422). Error: (12/05/2015 12:18:57 PM) (Source: System Restore) (EventID: 8193) (User: ) Description: Nie można utworzyć punktu przywracania (Proces = C:\Windows\system32\msiexec.exe /V; Opis = Usunięto SketchUp Import for AutoCAD 2014.; Błąd = 0x80070422). Error: (12/05/2015 12:18:54 PM) (Source: System Restore) (EventID: 8193) (User: ) Description: Nie można utworzyć punktu przywracania (Proces = C:\Windows\system32\msiexec.exe /V; Opis = Removed SketchUp Import for AutoCAD 2014.; Błąd = 0x80070422). Dziennik System: ============= Error: (12/05/2015 01:53:58 PM) (Source: DCOM) (EventID: 10010) (User: Natalka) Description: {BF6C1E47-86EC-4194-9CE5-13C15DCB2001} Error: (12/05/2015 01:53:28 PM) (Source: DCOM) (EventID: 10010) (User: Natalka) Description: {1B1F472E-3221-4826-97DB-2C2324D389AE} Error: (12/05/2015 01:36:30 PM) (Source: DCOM) (EventID: 10010) (User: Natalka) Description: {1B1F472E-3221-4826-97DB-2C2324D389AE} Error: (12/05/2015 01:36:00 PM) (Source: DCOM) (EventID: 10010) (User: Natalka) Description: {BF6C1E47-86EC-4194-9CE5-13C15DCB2001} Error: (12/05/2015 01:10:33 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi Util Solution Real z powodu następującego błędu: %%2 Error: (12/05/2015 01:10:33 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi Update Solution Real z powodu następującego błędu: %%2 Error: (12/05/2015 12:58:32 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi Util Solution Real z powodu następującego błędu: %%2 Error: (12/05/2015 12:58:32 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi Update Solution Real z powodu następującego błędu: %%2 Error: (12/05/2015 12:31:34 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Usługa ProtexisLicensing niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. Error: (12/05/2015 12:04:33 PM) (Source: Service Control Manager) (EventID: 7022) (User: ) Description: Usługa Autodesk Content Service zawiesiła się podczas uruchamiania. CodeIntegrity: =================================== Date: 2015-07-21 16:27:09.734 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume3\PROGRA~1\COMMON~1\MICROS~1\OFFICE12\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2014-06-22 09:41:19.950 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume3\PROGRA~1\COMMON~1\MICROS~1\OFFICE12\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2014-06-21 10:25:06.833 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume3\PROGRA~1\COMMON~1\MICROS~1\OFFICE12\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2014-06-20 09:51:11.221 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume3\PROGRA~1\COMMON~1\MICROS~1\OFFICE12\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2014-06-19 17:45:46.779 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume3\PROGRA~1\COMMON~1\MICROS~1\OFFICE12\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2014-06-17 09:10:08.907 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume3\PROGRA~1\COMMON~1\MICROS~1\OFFICE12\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2014-06-16 12:34:09.369 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume3\PROGRA~1\COMMON~1\MICROS~1\OFFICE12\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2014-06-15 16:55:13.102 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume3\PROGRA~1\COMMON~1\MICROS~1\OFFICE12\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2014-06-13 08:24:28.785 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume3\PROGRA~1\COMMON~1\MICROS~1\OFFICE12\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2014-06-12 15:28:40.724 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume3\PROGRA~1\COMMON~1\MICROS~1\OFFICE12\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements. ==================== Statystyki pamięci =========================== Procesor: AMD FX(tm)-6300 Six-Core Processor Procent pamięci w użyciu: 23% Całkowita pamięć fizyczna: 8174.11 MB Dostępna pamięć fizyczna: 6218.84 MB Całkowita pamięć wirtualna: 9454.11 MB Dostępna pamięć wirtualna: 7258.33 MB ==================== Dyski ================================ Drive c: () (Fixed) (Total:488.28 GB) (Free:210.3 GB) NTFS Drive d: () (Fixed) (Total:908.64 GB) (Free:326.02 GB) NTFS ==================== MBR & Tablica partycji ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 1397.3 GB) (Disk ID: 28C153B2) Partition 1: (Active) - (Size=350 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=908.6 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=488.3 GB) - (Type=07 NTFS) ==================== Koniec Addition.txt ============================