Rezultaty skanu uzupełniającego Farbar Recovery Scan Tool (x86) Wersja:12-12-2015 01 Uruchomiony przez user2 (2015-12-12 20:37:01) Uruchomiony z C:\Users\user2\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\0TFYC2LX Microsoft Windows 7 Professional Service Pack 1 (X86) (2013-11-19 19:38:24) Tryb startu: Normal ========================================================== ==================== Konta użytkowników: ============================= Administrator (S-1-5-21-350388361-695255728-3904762994-500 - Administrator - Disabled) Gość (S-1-5-21-350388361-695255728-3904762994-501 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-350388361-695255728-3904762994-1002 - Limited - Enabled) user2 (S-1-5-21-350388361-695255728-3904762994-1001 - Administrator - Enabled) => C:\Users\user2 ==================== Centrum zabezpieczeń ======================== (Załączenie wejścia w fixlist spowoduje jego usunięcie.) AV: Microsoft Security Essentials (Enabled - Up to date) {B7ECF8CD-0188-6703-DBA4-AA65C6ACFB0A} AS: Microsoft Security Essentials (Enabled - Up to date) {0C8D1929-27B2-688D-E114-9117BD2BB1B7} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Zainstalowane programy ====================== (W fixlist dozwolone tylko załączanie programów adware z flagą "Hidden" w celu ich uwidocznienia. Programy adware powinny zostać w poprawny sposób odinstalowane.) 7-Zip 9.38 beta (HKLM\...\7-Zip) (Version: - ) Adobe Flash Player 20 NPAPI (HKLM\...\Adobe Flash Player NPAPI) (Version: 20.0.0.235 - Adobe Systems Incorporated) Adobe Reader XI (11.0.13) - Polish (HKLM\...\{AC76BA86-7AD7-1045-7B44-AB0000000001}) (Version: 11.0.13 - Adobe Systems Incorporated) AIMP3 (HKLM\...\AIMP3) (Version: v3.55.1324, 15.11.2013 - AIMP DevTeam) Anvi Smart Defender 2.5 (HKLM\...\Anvi Smart Defender) (Version: 2.5 - Anvisoft) Crystal Security (HKLM\...\Crystal Security 3.5.0.152) (Version: 3.5.0.152 - Kardo Kristal) Crystal Security (Version: 3.5.0.152 - Kardo Kristal) Hidden Dell Touchpad (HKLM\...\{9F72EF8B-AEC9-4CA5-B483-143980AFD6FD}) (Version: 7.1207.101.108 - ALPS ELECTRIC CO., LTD.) Dropbox (HKU\S-1-5-21-350388361-695255728-3904762994-1001\...\Dropbox) (Version: 3.12.5 - Dropbox, Inc.) DRUKI Gofin 2.3.37.0 (HKLM\...\{269E312C-8251-4A51-A47C-4C28D0076A8D}) (Version: 2.3.37.0 - Wydawnictwo Podatkowe GOFIN sp. z o.o.) Intel(R) Graphics Media Accelerator Driver (HKLM\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 8.15.10.2869 - Intel Corporation) Intel(R) Network Connections Drivers (HKLM\...\PROSet) (Version: 18.4 - Intel) Malwarebytes Anti-Malware wersja 2.2.0.1024 (HKLM\...\Malwarebytes Anti-Malware_is1) (Version: 2.2.0.1024 - Malwarebytes) Metric Collection SDK (Version: 1.1.0012.00 - Lenovo Group Limited) Hidden Microsoft .NET Framework 4.5.1 (Polski) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1045) (Version: 4.5.50938 - Microsoft Corporation) Microsoft .NET Framework 4.5.2 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.51209 - Microsoft Corporation) Microsoft Office Professional Plus 2010 (HKLM\...\Office14.PROPLUS) (Version: 14.0.7015.1000 - Microsoft Corporation) Microsoft Security Essentials (HKLM\...\Microsoft Security Client) (Version: 4.8.204.0 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.41105.0 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual Studio 2010 Tools for Office Runtime (x86) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x86)) (Version: 10.0.50903 - Microsoft Corporation) Microsoft WSE 3.0 (HKLM\...\{EDEA8AB7-7683-4ED2-AA19-E6C078064C0D}) (Version: 3.0.5305.0 - Microsoft Corporation) MSXML 4.0 SP2 (KB954430) (HKLM\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation) MSXML 4.0 SP2 (KB973688) (HKLM\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation) MSXML 4.0 SP2 Parser and SDK (HKLM\...\{716E0306-8318-4364-8B8F-0CC4E9376BAC}) (Version: 4.20.9818.0 - Microsoft Corporation) Objectif Express version 1.0 (HKLM\...\{5820482F-EBBB-43A4-8F54-97BAE102E410}_is1) (Version: 1.0 - Hachette) PIT Format 2013 (HKLM\...\PIT Format 2013_is1) (Version: - Biuro Informatyki Stosowanej FORMAT) PIT Projekt 2013 (HKLM\...\{9DC72E7A-ED60-49C9-845F-3022B7A5BB8C}}_is1) (Version: 2.0.0 - GP SOFT) PIT Projekt 2014 (HKLM\...\{E8068C90-002F-469E-B65F-3CB6D141B145}}_is1) (Version: 3.0.12 - GP SOFT) PITy 2010 dla Windows kompilacja:1.2.7.3 (HKLM\...\PITy 2010_is1) (Version: - IPS Przedsiębiorstwo Informatyczne) PITy 2011 dla Windows kompilacja:1.3.3.5 (HKLM\...\PITy 2011_is1) (Version: - IPS Przedsiębiorstwo Informatyczne) PITy 2013/2014 (HKLM\...\PITy 2013/2014_is1) (Version: 2.0 - NEONET CONSULTING S.C.) Płatnik 9.01.001F (HKLM\...\{05381030-963D-4779-BECA-0D7D49268EDB}) (Version: 9.01.001F - Asseco Poland S.A.) Polski pakiet językowy dla narzędzi Microsoft Visual Studio 2010 Tools for Office Runtime (x86) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x86) Language Pack - PLK) (Version: 10.0.50903 - Microsoft Corporation) Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{DE28B448-32E8-4E8F-84F0-A52B21A49B5B}) (Version: - Microsoft) WRF (Płatnik) 1.02.001 S (HKLM\...\{460BE803-88CF-4FD2-9082-2450A5959959}) (Version: 1.02.001 S - Asseco Poland S.A.) WRFKL 1.02.001 H (HKLM\...\{A98C53C1-D7D5-43FE-82F4-EACD66292004}) (Version: 1.02.001 H - Asseco Poland S.A.) WRFSL 1.02.001 J (HKLM\...\{98A95680-71E0-4C6B-B3D0-384193FCA4F6}) (Version: 1.02.001 J - Asseco Poland S.A.) ==================== Niestandardowe rejestracje CLSID (filtrowane): ========================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) CustomCLSID: HKU\S-1-5-21-350388361-695255728-3904762994-1001_Classes\CLSID\{005A3A96-BAC4-4B0A-94EA-C0CE100EA736}\localserver32 -> C:\Users\user2\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-350388361-695255728-3904762994-1001_Classes\CLSID\{0A368B9B-3566-4730-B40E-EAF6858A53AF}\InprocServer32 -> C:\Users\user2\AppData\Local\Dropbox\Update\1.3.27.33\psuser.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-350388361-695255728-3904762994-1001_Classes\CLSID\{1aad99ea-ee10-5c3a-8174-84c63a67adde}\InprocServer32 -> C:\ProgramData\Anvisoft\Anvi Smart Defender 2\extensions\npAdblockPlugin.dll (Anvisoft) CustomCLSID: HKU\S-1-5-21-350388361-695255728-3904762994-1001_Classes\CLSID\{3059C9E6-9EDC-4C89-933E-C65623F8FD60}\localserver32 -> C:\Users\user2\AppData\Local\Dropbox\Update\DropboxUpdate.exe (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-350388361-695255728-3904762994-1001_Classes\CLSID\{87DC457B-B35D-48AC-BD42-BDF35EF623CE}\localserver32 -> C:\Users\user2\AppData\Local\Dropbox\Update\1.3.27.33\DropboxUpdateOnDemand.exe (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-350388361-695255728-3904762994-1001_Classes\CLSID\{9FAA38ED-5635-44F7-9BE0-8CAFE29B3783}\localserver32 -> C:\Users\user2\AppData\Local\Dropbox\Update\1.3.27.33\DropboxUpdateOnDemand.exe (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-350388361-695255728-3904762994-1001_Classes\CLSID\{C0DD324D-A74F-4533-84AD-030F76771C77}\localserver32 -> C:\Users\user2\AppData\Local\Dropbox\Update\1.3.27.33\DropboxUpdateOnDemand.exe (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-350388361-695255728-3904762994-1001_Classes\CLSID\{C32E3EEC-3C10-426E-95F3-38C7F139FADD}\localserver32 -> C:\Users\user2\AppData\Local\Dropbox\Update\1.3.27.33\DropboxUpdateOnDemand.exe (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-350388361-695255728-3904762994-1001_Classes\CLSID\{D166BD15-03AF-413A-BEFD-0679FF410B49}\InprocServer32 -> C:\Users\user2\AppData\Local\Dropbox\Update\1.3.27.29\psuser.dll => Brak pliku CustomCLSID: HKU\S-1-5-21-350388361-695255728-3904762994-1001_Classes\CLSID\{ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C}\InprocServer32 -> C:\Users\user2\AppData\Roaming\Dropbox\bin\DropboxExt.28.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-350388361-695255728-3904762994-1001_Classes\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\user2\AppData\Roaming\Dropbox\bin\DropboxExt.28.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-350388361-695255728-3904762994-1001_Classes\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\user2\AppData\Roaming\Dropbox\bin\DropboxExt.28.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-350388361-695255728-3904762994-1001_Classes\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\user2\AppData\Roaming\Dropbox\bin\DropboxExt.28.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-350388361-695255728-3904762994-1001_Classes\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\user2\AppData\Roaming\Dropbox\bin\DropboxExt.28.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-350388361-695255728-3904762994-1001_Classes\CLSID\{FB314EDD-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\user2\AppData\Roaming\Dropbox\bin\DropboxExt.28.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-350388361-695255728-3904762994-1001_Classes\CLSID\{FB314EDE-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\user2\AppData\Roaming\Dropbox\bin\DropboxExt.28.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-350388361-695255728-3904762994-1001_Classes\CLSID\{FB314EDF-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\user2\AppData\Roaming\Dropbox\bin\DropboxExt.28.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-350388361-695255728-3904762994-1001_Classes\CLSID\{FB314EE0-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\user2\AppData\Roaming\Dropbox\bin\DropboxExt.28.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-350388361-695255728-3904762994-1001_Classes\CLSID\{FBC9D74C-AF55-4309-9FB2-C426E071637F}\InprocServer32 -> C:\Users\user2\AppData\Roaming\Dropbox\bin\DropboxExt.28.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-350388361-695255728-3904762994-1001_Classes\CLSID\{FE819BE5-BADF-4370-9913-6FB84ABA6FB1}\InprocServer32 -> C:\Users\user2\AppData\Local\Dropbox\Update\1.3.27.33\psuser.dll (Dropbox, Inc.) ==================== Punkty Przywracania systemu ========================= 28-11-2015 11:12:17 Windows Update 02-12-2015 07:18:44 Windows Update 06-12-2015 07:04:00 Windows Update 09-12-2015 09:59:34 Windows Update 09-12-2015 12:41:05 Windows Update 09-12-2015 16:08:09 Usunięte Brother Software Suite ==================== Hosts - zawartość: =============================== (Użycie dyrektywy Hosts: w fixlist spowoduje reset pliku Hosts.) 2009-07-14 03:04 - 2015-01-26 15:01 - 00000027 ____N C:\Windows\system32\Drivers\etc\hosts 127.0.0.1 localhost ==================== Zaplanowane zadania (filtrowane) ============= (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) Task: {1E889520-1AE1-4D9A-891A-B91379A585D1} - \SwiftSearch Auto Updater 1.10.0.25 Pending Update -> Brak pliku <==== UWAGA Task: {224AC995-54FE-4999-97E3-1E50CD6151CB} - \Inst_Rep -> Brak pliku <==== UWAGA Task: {236D11E4-6846-4E42-A67A-CEF04FD5AAB3} - System32\Tasks\DropboxUpdateTaskUserS-1-5-21-350388361-695255728-3904762994-1001Core => C:\Users\user2\AppData\Local\Dropbox\Update\DropboxUpdate.exe [2015-06-16] (Dropbox, Inc.) Task: {6A3ABE8D-CFE0-43A2-A2B3-1AC7C85809E4} - System32\Tasks\ASD_Main => C:\Program Files\Anvisoft\Anvi Smart Defender\ASD2.exe [2015-09-17] (Anvisoft) Task: {752379F0-2592-415A-8091-28C9311D567F} - \SmartWeb Upgrade Trigger Task -> Brak pliku <==== UWAGA Task: {9365FD10-232F-4C1F-9CD9-4ADBC83800A8} - \SwiftSearch Auto Updater 1.10.0.25 Core -> Brak pliku <==== UWAGA Task: {A4938B02-BF5E-4725-A141-D864AE624587} - System32\Tasks\Lenovo\Lenovo Customer Feedback Program => C:\Program Files\Lenovo\Customer Feedback Program\Lenovo.TVT.CustomerFeedback.Agent.exe [2015-07-08] (Lenovo) Task: {B1310786-A289-4BF0-B62D-C625D77EFC38} - System32\Tasks\DropboxUpdateTaskUserS-1-5-21-350388361-695255728-3904762994-1001UA => C:\Users\user2\AppData\Local\Dropbox\Update\DropboxUpdate.exe [2015-06-16] (Dropbox, Inc.) Task: {E7282233-4820-4991-9321-5B8D7AF04F74} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2015-12-09] (Adobe Systems Incorporated) Task: {F7778436-8889-4015-BE1C-777ED59DB43E} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2015-10-28] (Adobe Systems Incorporated) Task: {F9875FA4-AFD0-4CF1-9CF5-8403D2C3BF6A} - \ShopperProJSUpd -> Brak pliku <==== UWAGA Task: {FA251AA4-0385-4AFD-98E3-6F2644CD2A05} - System32\Tasks\Bx72lxMv8LJUF9 => C:\Users\user2\AppData\Roaming\Bx72lxMv8LJUF9.exe <==== UWAGA (Załączenie wejścia w fixlist spowoduje przesunięcie pliku zadania (.job). Plik uruchamiany docelowo przez zadanie nie zostanie przeniesiony.) Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\Bx72lxMv8LJUF9.job => C:\Users\user2\AppData\Roaming\Bx72lxMv8LJUF9.exe <==== UWAGA Task: C:\Windows\Tasks\DropboxUpdateTaskUserS-1-5-21-350388361-695255728-3904762994-1001Core.job => C:\Users\user2\AppData\Local\Dropbox\Update\DropboxUpdate.exe Task: C:\Windows\Tasks\DropboxUpdateTaskUserS-1-5-21-350388361-695255728-3904762994-1001UA.job => C:\Users\user2\AppData\Local\Dropbox\Update\DropboxUpdate.exe ==================== Skróty ============================= (Wybrane wejścia mogą zostać załączone w celu ich zresetowania lub usunięcia.) ShortcutWithArgument: C:\Users\user2\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) -> hxxp://www.yoursites123.com/?type=sc&ts=1449650906&z=0eaabbecbe620bbc363cedeg6zdz8t5qcwfect5e8z&from=ient07021&uid=WDCXWD3200BEKT-75PVMT1_WD-WX31A53F5527F5527 <==== UWAGA ShortcutWithArgument: C:\Users\user2\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft WSE 3.0\WSE on the Web.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) -> hxxp://www.yoursites123.com/?type=sc&ts=1449650906&z=0eaabbecbe620bbc363cedeg6zdz8t5qcwfect5e8z&from=ient07021&uid=WDCXWD3200BEKT-75PVMT1_WD-WX31A53F5527F5527 <==== UWAGA ShortcutWithArgument: C:\Users\user2\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Internet Explorer (No Add-ons).lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) -> hxxp://www.yoursites123.com/?type=sc&ts=1449650906&z=0eaabbecbe620bbc363cedeg6zdz8t5qcwfect5e8z&from=ient07021&uid=WDCXWD3200BEKT-75PVMT1_WD-WX31A53F5527F5527 <==== UWAGA ShortcutWithArgument: C:\Users\user2\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) -> hxxp://www.yoursites123.com/?type=sc&ts=1449650906&z=0eaabbecbe620bbc363cedeg6zdz8t5qcwfect5e8z&from=ient07021&uid=WDCXWD3200BEKT-75PVMT1_WD-WX31A53F5527F5527 <==== UWAGA ShortcutWithArgument: C:\Users\user2\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Internet Explorer.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) -> hxxp://www.yoursites123.com/?type=sc&ts=1449650906&z=0eaabbecbe620bbc363cedeg6zdz8t5qcwfect5e8z&from=ient07021&uid=WDCXWD3200BEKT-75PVMT1_WD-WX31A53F5527F5527 <==== UWAGA ==================== Załadowane moduły (filtrowane) ============== 2015-09-17 05:54 - 2015-09-17 05:54 - 00499336 _____ () C:\Program Files\Anvisoft\Anvi Smart Defender\http_hook.dll 2013-09-05 00:14 - 2013-09-05 00:14 - 04300456 _____ () C:\Program Files\Common Files\microsoft shared\OFFICE14\Cultures\OFFICE.ODF 2014-04-30 03:04 - 2014-04-30 03:04 - 00088080 _____ () C:\Program Files\Anvisoft\Anvi Smart Defender\libglog.dll 2015-09-17 05:54 - 2015-09-17 05:54 - 00909448 _____ () C:\Program Files\Anvisoft\Anvi Smart Defender\ASD2Engine.dll 2014-04-30 03:04 - 2014-04-30 03:04 - 00038928 _____ () C:\Program Files\Anvisoft\Anvi Smart Defender\fuzzy.dll 2014-04-30 03:04 - 2014-04-30 03:04 - 00093712 _____ () C:\Program Files\Anvisoft\Anvi Smart Defender\zlibwapi.dll 2015-09-17 05:54 - 2015-09-17 05:54 - 00130696 _____ () C:\Program Files\Anvisoft\Anvi Smart Defender\ExtractImpl.dll 2015-09-17 05:55 - 2015-09-17 05:55 - 00026760 _____ () C:\Program Files\Anvisoft\Anvi Smart Defender\UnpackImpl.dll 2015-09-17 05:55 - 2015-09-17 05:55 - 00257160 _____ () C:\Program Files\Anvisoft\Anvi Smart Defender\pyunpacker.dll 2015-09-17 05:54 - 2015-09-17 05:54 - 00038024 _____ () C:\Program Files\Anvisoft\Anvi Smart Defender\fsmlib.dll 2014-04-30 02:27 - 2014-04-30 02:27 - 00649744 _____ () C:\Program Files\Anvisoft\Anvi Smart Defender\sqlite3.dll 2015-12-11 22:59 - 2015-10-31 01:59 - 00034768 _____ () C:\Users\user2\AppData\Roaming\Dropbox\bin\_multiprocessing.pyd 2015-12-11 22:59 - 2015-10-31 02:00 - 00019408 _____ () C:\Users\user2\AppData\Roaming\Dropbox\bin\faulthandler.pyd 2015-12-11 22:59 - 2015-12-08 22:36 - 00022848 _____ () C:\Users\user2\AppData\Roaming\Dropbox\bin\Crypto.Random.OSRNG.winrandom.pyd 2015-12-11 22:59 - 2015-12-08 22:36 - 00023352 _____ () C:\Users\user2\AppData\Roaming\Dropbox\bin\Crypto.Util._counter.pyd 2015-12-11 22:59 - 2015-12-08 22:36 - 00042296 _____ () C:\Users\user2\AppData\Roaming\Dropbox\bin\Crypto.Cipher._AES.pyd 2015-12-11 22:59 - 2015-10-31 01:59 - 00116688 _____ () C:\Users\user2\AppData\Roaming\Dropbox\bin\pywintypes27.dll 2015-12-11 22:59 - 2015-10-31 01:59 - 00093640 _____ () C:\Users\user2\AppData\Roaming\Dropbox\bin\_ctypes.pyd 2015-12-11 22:59 - 2015-10-31 01:59 - 00018376 _____ () C:\Users\user2\AppData\Roaming\Dropbox\bin\select.pyd 2015-12-11 22:59 - 2015-12-08 22:36 - 00019760 _____ () C:\Users\user2\AppData\Roaming\Dropbox\bin\tornado.speedups.pyd 2015-12-11 22:59 - 2015-10-31 02:00 - 00105928 _____ () C:\Users\user2\AppData\Roaming\Dropbox\bin\win32api.pyd 2015-12-11 22:59 - 2015-10-31 01:59 - 00392144 _____ () C:\Users\user2\AppData\Roaming\Dropbox\bin\pythoncom27.dll 2015-12-11 22:59 - 2015-12-08 22:36 - 00381752 _____ () C:\Users\user2\AppData\Roaming\Dropbox\bin\win32com.shell.shell.pyd 2015-12-11 22:59 - 2015-10-31 01:59 - 00692688 _____ () C:\Users\user2\AppData\Roaming\Dropbox\bin\unicodedata.pyd 2015-12-11 22:59 - 2015-12-08 22:36 - 00020816 _____ () C:\Users\user2\AppData\Roaming\Dropbox\bin\cryptography.hazmat.bindings._constant_time.pyd 2015-12-11 22:59 - 2015-10-31 02:00 - 00109520 _____ () C:\Users\user2\AppData\Roaming\Dropbox\bin\_cffi_backend.pyd 2015-12-11 22:59 - 2015-12-08 22:36 - 01737032 _____ () C:\Users\user2\AppData\Roaming\Dropbox\bin\cryptography.hazmat.bindings._openssl.pyd 2015-12-11 22:59 - 2015-12-08 22:36 - 00020808 _____ () C:\Users\user2\AppData\Roaming\Dropbox\bin\cryptography.hazmat.bindings._padding.pyd 2015-12-11 22:59 - 2015-12-08 22:36 - 00020800 _____ () C:\Users\user2\AppData\Roaming\Dropbox\bin\_cffi_python_x66cf7a7cx17a72769.pyd 2015-12-11 22:59 - 2015-12-08 22:36 - 00021840 _____ () C:\Users\user2\AppData\Roaming\Dropbox\bin\_cffi_unicode_environ_win32_x8bf8e68bx9968e850.pyd 2015-12-11 22:59 - 2015-12-08 22:36 - 00038696 _____ () C:\Users\user2\AppData\Roaming\Dropbox\bin\fastpath.pyd 2015-12-11 22:59 - 2015-10-31 02:00 - 00024528 _____ () C:\Users\user2\AppData\Roaming\Dropbox\bin\win32event.pyd 2015-12-11 22:59 - 2015-10-31 02:00 - 00020936 _____ () C:\Users\user2\AppData\Roaming\Dropbox\bin\mmapfile.pyd 2015-12-11 22:59 - 2015-10-31 02:00 - 00114640 _____ () C:\Users\user2\AppData\Roaming\Dropbox\bin\win32security.pyd 2015-12-11 22:59 - 2015-12-08 22:36 - 00021320 _____ () C:\Users\user2\AppData\Roaming\Dropbox\bin\_cffi_pywin_kernel32_xde9e4433x360333f0.pyd 2015-12-11 22:59 - 2015-10-31 02:00 - 00124880 _____ () C:\Users\user2\AppData\Roaming\Dropbox\bin\win32file.pyd 2015-12-11 22:59 - 2015-10-31 02:00 - 00030160 _____ () C:\Users\user2\AppData\Roaming\Dropbox\bin\win32pipe.pyd 2015-12-11 22:59 - 2015-10-31 02:00 - 00043472 _____ () C:\Users\user2\AppData\Roaming\Dropbox\bin\win32process.pyd 2015-12-11 22:59 - 2015-10-31 02:00 - 00175560 _____ () C:\Users\user2\AppData\Roaming\Dropbox\bin\win32gui.pyd 2015-12-11 22:59 - 2015-10-31 02:00 - 00028616 _____ () C:\Users\user2\AppData\Roaming\Dropbox\bin\win32ts.pyd 2015-12-11 22:59 - 2015-10-31 02:00 - 00024016 _____ () C:\Users\user2\AppData\Roaming\Dropbox\bin\win32clipboard.pyd 2015-12-11 22:59 - 2015-10-31 02:00 - 00048592 _____ () C:\Users\user2\AppData\Roaming\Dropbox\bin\win32service.pyd 2015-12-11 22:59 - 2015-12-08 22:36 - 00024392 _____ () C:\Users\user2\AppData\Roaming\Dropbox\bin\librsyncffi.compiled._librsyncffi.pyd 2015-12-11 22:59 - 2015-10-31 02:00 - 00036296 _____ () C:\Users\user2\AppData\Roaming\Dropbox\bin\librsync.dll 2015-12-11 22:59 - 2015-10-31 02:00 - 00024016 _____ () C:\Users\user2\AppData\Roaming\Dropbox\bin\win32profile.pyd 2015-12-11 22:59 - 2015-12-08 22:36 - 00117056 _____ () C:\Users\user2\AppData\Roaming\Dropbox\bin\breakpad.client.windows.handler.pyd 2015-12-11 22:59 - 2015-12-08 22:36 - 00023376 _____ () C:\Users\user2\AppData\Roaming\Dropbox\bin\winscreenshot.compiled._CaptureScreenshot.pyd 2015-12-11 22:59 - 2015-10-31 01:59 - 00134608 _____ () C:\Users\user2\AppData\Roaming\Dropbox\bin\_elementtree.pyd 2015-12-11 22:59 - 2015-10-31 01:59 - 00134088 _____ () C:\Users\user2\AppData\Roaming\Dropbox\bin\pyexpat.pyd 2015-12-11 22:59 - 2015-10-31 02:00 - 00240584 _____ () C:\Users\user2\AppData\Roaming\Dropbox\bin\jpegtran.pyd 2015-12-11 22:59 - 2015-12-08 22:36 - 00020280 _____ () C:\Users\user2\AppData\Roaming\Dropbox\bin\cpuid.compiled._cpuid.pyd 2015-12-11 22:59 - 2015-12-08 22:36 - 00052024 _____ () C:\Users\user2\AppData\Roaming\Dropbox\bin\psutil._psutil_windows.pyd 2015-12-11 22:59 - 2015-12-08 22:36 - 00021304 _____ () C:\Users\user2\AppData\Roaming\Dropbox\bin\Crypto.Util.strxor.pyd 2015-12-11 22:59 - 2015-10-31 02:00 - 00350152 _____ () C:\Users\user2\AppData\Roaming\Dropbox\bin\winxpgui.pyd 2015-12-11 22:59 - 2015-12-08 22:36 - 00084792 _____ () C:\Users\user2\AppData\Roaming\Dropbox\bin\dropbox_sqlite_ext.DLL 2015-12-11 22:59 - 2015-12-08 22:36 - 01826608 _____ () C:\Users\user2\AppData\Roaming\Dropbox\bin\PyQt5.QtCore.pyd 2015-12-11 22:59 - 2015-10-31 02:00 - 00083912 _____ () C:\Users\user2\AppData\Roaming\Dropbox\bin\sip.pyd 2015-12-11 22:59 - 2015-12-08 22:36 - 03891504 _____ () C:\Users\user2\AppData\Roaming\Dropbox\bin\PyQt5.QtWidgets.pyd 2015-12-11 22:59 - 2015-12-08 22:36 - 01950000 _____ () C:\Users\user2\AppData\Roaming\Dropbox\bin\PyQt5.QtGui.pyd 2015-12-11 22:59 - 2015-12-08 22:36 - 00519984 _____ () C:\Users\user2\AppData\Roaming\Dropbox\bin\PyQt5.QtNetwork.pyd 2015-12-11 22:59 - 2015-12-08 22:36 - 00133936 _____ () C:\Users\user2\AppData\Roaming\Dropbox\bin\PyQt5.QtWebKit.pyd 2015-12-11 22:59 - 2015-12-08 22:36 - 00225080 _____ () C:\Users\user2\AppData\Roaming\Dropbox\bin\PyQt5.QtWebKitWidgets.pyd 2015-12-11 22:59 - 2015-12-08 22:36 - 00207672 _____ () C:\Users\user2\AppData\Roaming\Dropbox\bin\PyQt5.QtPrintSupport.pyd 2015-12-11 22:59 - 2015-12-08 22:36 - 00024904 _____ () C:\Users\user2\AppData\Roaming\Dropbox\bin\_cffi_wpad_proxy_win_x752e3d61xdcfdcc84.pyd 2015-12-11 22:59 - 2015-12-08 22:36 - 00486704 _____ () C:\Users\user2\AppData\Roaming\Dropbox\bin\PyQt5.QtQuick.pyd 2015-12-11 22:59 - 2015-12-08 22:36 - 00357680 _____ () C:\Users\user2\AppData\Roaming\Dropbox\bin\PyQt5.QtQml.pyd 2015-12-11 22:59 - 2015-10-31 02:01 - 00019920 _____ () C:\Users\user2\AppData\Roaming\Dropbox\bin\QtQuick.2\qtquick2plugin.dll 2015-03-04 22:45 - 2015-10-31 02:00 - 00786904 _____ () C:\Users\user2\AppData\Roaming\Dropbox\bin\QtQuick\Controls\qtquickcontrolsplugin.dll 2015-12-11 22:59 - 2015-10-31 02:00 - 00063448 _____ () C:\Users\user2\AppData\Roaming\Dropbox\bin\QtQuick\Layouts\qquicklayoutsplugin.dll 2015-12-11 22:59 - 2015-10-31 02:00 - 00019408 _____ () C:\Users\user2\AppData\Roaming\Dropbox\bin\QtQuick\Window.2\windowplugin.dll ==================== Alternate Data Streams (filtrowane) ========= (Załączenie wejścia w fixlist spowoduje usunięcie strumienia ADS.) ==================== Tryb awaryjny (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Wartość "AlternateShell" zostanie przywrócona.) ==================== EXE - Powiązania (filtrowane) =============== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci.) ==================== Internet Explorer - Witryny zaufane i z ograniczeniami =============== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru.) ==================== Inne obszary ============================ (Obecnie brak automatycznej naprawy dla tej sekcji.) HKU\S-1-5-21-350388361-695255728-3904762994-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\user2\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg DNS Servers: 217.172.224.160 - 89.231.1.206 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 0) (ConsentPromptBehaviorUser: 3) (EnableLUA: 0) Zapora systemu Windows [funkcja włączona] ==================== MSCONFIG/TASK MANAGER - Wyłączone elementy == (Obecnie brak automatycznej naprawy dla tej sekcji.) MSCONFIG\startupreg: YTDownloader => "C:\Program Files\YTDownloader\YTDownloader.exe" /boot ==================== Reguły Zapory systemu Windows (filtrowane) =============== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) FirewallRules: [SPPSVC-In-TCP] => (Allow) %SystemRoot%\system32\sppsvc.exe FirewallRules: [SPPSVC-In-TCP-NoScope] => (Allow) %SystemRoot%\system32\sppsvc.exe FirewallRules: [{CAED30B8-5628-47AB-B49E-F4C8E5621725}] => (Allow) C:\Program Files\McAfee\Common Framework\FrameworkService.exe FirewallRules: [{DB305CB2-BDF6-435B-BF43-E1991C5EC475}] => (Allow) C:\Program Files\McAfee\Common Framework\FrameworkService.exe FirewallRules: [{64797C69-733E-44E4-98AA-E0586EFDB35C}] => (Allow) C:\Program Files\McAfee\Common Framework\FrameworkService.exe FirewallRules: [{1B03B543-70F6-4FDA-90DA-2458D2E0BF42}] => (Allow) C:\Program Files\McAfee\Common Framework\FrameworkService.exe FirewallRules: [{671AEFA9-8063-44E3-A0D4-D9E44541314F}] => (Allow) C:\Program Files\McAfee\Common Framework\FrameworkService.exe FirewallRules: [{EB1E6B99-4CB5-4233-8CE9-6CF6233E9DDB}] => (Allow) C:\Program Files\McAfee\Common Framework\FrameworkService.exe FirewallRules: [{AD40A15F-FDA2-400A-806A-EDD903583DA0}] => (Allow) C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe FirewallRules: [{0B519DE4-16C5-45BB-9293-8FC898D7D74D}] => (Allow) C:\Users\user2\AppData\Roaming\Dropbox\bin\Dropbox.exe FirewallRules: [{0CFA63ED-F93A-4A05-B159-CB06A408D795}] => (Allow) C:\Users\user2\AppData\Roaming\Dropbox\bin\Dropbox.exe FirewallRules: [TCP Query User{0F9200B4-C573-43F0-A3D6-CF0F1E5F358A}C:\users\user2\appdata\roaming\dropbox\bin\dropbox.exe] => (Block) C:\users\user2\appdata\roaming\dropbox\bin\dropbox.exe FirewallRules: [UDP Query User{00B91FF4-CC62-494D-AD56-799D0A34BA0A}C:\users\user2\appdata\roaming\dropbox\bin\dropbox.exe] => (Block) C:\users\user2\appdata\roaming\dropbox\bin\dropbox.exe FirewallRules: [TCP Query User{7C9D7825-9A54-4246-90B9-3F5D58F99719}C:\program files\mozilla firefox\firefox.exe] => (Allow) C:\program files\mozilla firefox\firefox.exe FirewallRules: [UDP Query User{8E35AF33-081B-4650-A1AE-DDA9500C452F}C:\program files\mozilla firefox\firefox.exe] => (Allow) C:\program files\mozilla firefox\firefox.exe ==================== Wadliwe urządzenia w Menedżerze urządzeń ============= Name: Teredo Tunneling Pseudo-Interface Description: Karta tunelowania Teredo firmy Microsoft Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318} Manufacturer: Microsoft Service: tunnel Problem: : This device cannot start. (Code10) Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device. On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard. ==================== Błędy w Dzienniku zdarzeń: ========================= Dziennik Aplikacja: ================== Error: (12/12/2015 08:08:20 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (12/12/2015 06:25:07 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (12/12/2015 05:58:32 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: iexplore.exe, wersja: 11.0.9600.18124, sygnatura czasowa: 0x5641278d Nazwa modułu powodującego błąd: ntdll.dll, wersja: 6.1.7601.19045, sygnatura czasowa: 0x56258dbb Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x0002e096 Identyfikator procesu powodującego błąd: 0x728 Godzina uruchomienia aplikacji powodującej błąd: 0xiexplore.exe0 Ścieżka aplikacji powodującej błąd: iexplore.exe1 Ścieżka modułu powodującego błąd: iexplore.exe2 Identyfikator raportu: iexplore.exe3 Error: (12/12/2015 05:05:38 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (12/12/2015 12:26:43 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (12/12/2015 12:06:27 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (12/11/2015 11:44:50 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (12/11/2015 11:33:36 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (12/11/2015 11:29:07 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (12/11/2015 11:26:06 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Dziennik System: ============= Error: (12/12/2015 08:06:54 PM) (Source: Service Control Manager) (EventID: 7026) (User: ) Description: Nie można załadować następujących sterowników startu rozruchowego lub systemowego: asd2fsm Error: (12/12/2015 08:06:49 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi WdMan Service z powodu następującego błędu: %%2 Error: (12/12/2015 06:24:10 PM) (Source: Service Control Manager) (EventID: 7026) (User: ) Description: Nie można załadować następujących sterowników startu rozruchowego lub systemowego: asd2fsm Error: (12/12/2015 06:23:55 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi WdMan Service z powodu następującego błędu: %%2 Error: (12/12/2015 05:03:58 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi WdMan Service z powodu następującego błędu: %%2 Error: (12/12/2015 12:25:00 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi WdMan Service z powodu następującego błędu: %%2 Error: (12/12/2015 12:14:11 AM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: Usługa Przeglądarka komputera zależy od usługi Serwer, której nie można uruchomić z powodu następującego błędu: %%1068 Error: (12/12/2015 12:14:11 AM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: Usługa Przeglądarka komputera zależy od usługi Serwer, której nie można uruchomić z powodu następującego błędu: %%1068 Error: (12/12/2015 12:14:11 AM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: Usługa Przeglądarka komputera zależy od usługi Serwer, której nie można uruchomić z powodu następującego błędu: %%1068 Error: (12/12/2015 12:12:05 AM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: Usługa Przeglądarka komputera zależy od usługi Serwer, której nie można uruchomić z powodu następującego błędu: %%1068 CodeIntegrity: =================================== Date: 2015-12-12 20:36:53.949 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\asd2fsm.sys because the set of per-page image hashes could not be found on the system. Date: 2015-12-12 20:36:53.889 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\asd2fsm.sys because the set of per-page image hashes could not be found on the system. Date: 2015-12-12 20:36:20.859 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\asd2fsm.sys because the set of per-page image hashes could not be found on the system. Date: 2015-12-12 20:36:20.799 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\asd2fsm.sys because the set of per-page image hashes could not be found on the system. Date: 2015-12-12 20:06:53.854 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\asd2fsm.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2015-12-12 20:06:53.854 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\asd2fsm.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2015-12-12 20:06:53.589 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\asd2fsm.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2015-12-12 20:06:53.589 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\asd2fsm.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2015-12-12 20:06:47.895 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\asd2fsm.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2015-12-12 20:06:47.895 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\asd2fsm.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. ==================== Statystyki pamięci =========================== Procesor: Intel(R) Core(TM)2 Duo CPU P8400 @ 2.26GHz Procent pamięci w użyciu: 44% Całkowita pamięć fizyczna: 3023.92 MB Dostępna pamięć fizyczna: 1687.09 MB Całkowita pamięć wirtualna: 6046.15 MB Dostępna pamięć wirtualna: 4562.89 MB ==================== Dyski ================================ Drive c: () (Fixed) (Total:97.56 GB) (Free:49.6 GB) NTFS Drive d: () (Fixed) (Total:200.43 GB) (Free:188.27 GB) NTFS ==================== MBR & Tablica partycji ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 298.1 GB) (Disk ID: CE8B8EC0) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=97.6 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=200.4 GB) - (Type=07 NTFS) ==================== Koniec Addition.txt ============================