Rezultaty skanu uzupełniającego Farbar Recovery Scan Tool (x64) Wersja:12-12-2015 01 Uruchomiony przez Andrzej (2015-12-13 13:59:46) Uruchomiony z E:\ Windows 7 Home Premium (X64) (2014-09-13 19:58:17) Tryb startu: Normal ========================================================== ==================== Konta użytkowników: ============================= Administrator (S-1-5-21-1948486060-1122046647-2940547672-500 - Administrator - Disabled) Andrzej (S-1-5-21-1948486060-1122046647-2940547672-1000 - Administrator - Enabled) => C:\Users\Andrzej Gość (S-1-5-21-1948486060-1122046647-2940547672-501 - Limited - Disabled) ==================== Centrum zabezpieczeń ======================== (Załączenie wejścia w fixlist spowoduje jego usunięcie.) AV: avast! Antivirus (Enabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B} AS: Windows Defender (Enabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: avast! Antivirus (Enabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736} FW: avast! Antivirus (Disabled) {2F96FC65-F07D-9D1E-5A6E-3DA5C487EAF0} ==================== Zainstalowane programy ====================== (W fixlist dozwolone tylko załączanie programów adware z flagą "Hidden" w celu ich uwidocznienia. Programy adware powinny zostać w poprawny sposób odinstalowane.) Adobe Flash Player 19 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 19.0.0.245 - Adobe Systems Incorporated) Aktualizacje NVIDIA 2.4.5.44 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 2.4.5.44 - NVIDIA Corporation) ASIO4ALL (HKLM-x32\...\ASIO4ALL) (Version: 2.10 - Michael Tippach) Avast Free Antivirus (HKLM-x32\...\Avast) (Version: 10.2.2218 - AVAST Software) CCleaner (HKLM\...\CCleaner) (Version: 4.19 - Piriform) Counter-Strike: Global Offensive (HKLM-x32\...\Steam App 730) (Version: - Valve) CWK (Czasowy Wyłącznik Komputera) (HKLM-x32\...\CWK) (Version: 2.52.3.43 - Damian Pasternak) FL Studio 11 (HKLM-x32\...\FL Studio 11) (Version: - Image-Line) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 44.0.2403.107 - Google Inc.) Google Update Helper (x32 Version: 1.3.28.1 - Google Inc.) Hidden IL Download Manager (HKLM-x32\...\IL Download Manager) (Version: - Image-Line) IL Minihost Modular (HKLM-x32\...\IL Minihost Modular) (Version: - Image-Line) IL Shared Libraries (HKLM-x32\...\IL Shared Libraries) (Version: - Image-Line) Java 8 Update 45 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218045F0}) (Version: 8.0.450 - Oracle Corporation) League of Legends (HKLM-x32\...\League of Legends 3.0.1) (Version: 3.0.1 - Riot Games) League of Legends (x32 Version: 3.0.1 - Riot Games) Hidden Microsoft .NET Framework 4 Client Profile (HKLM\...\Microsoft .NET Framework 4 Client Profile) (Version: 4.0.30319 - Microsoft Corporation) Microsoft Office Professional Plus 2013 (HKLM\...\Office15.PROPLUS) (Version: 15.0.4420.1017 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Minecraft (HKLM-x32\...\{1C16BCA3-EBC1-49F6-8623-8FBFB9CCC872}) (Version: 1.0.3.0 - Mojang) Mozilla Firefox 39.0 (x86 pl) (HKLM-x32\...\Mozilla Firefox 39.0 (x86 pl)) (Version: 39.0 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 32.0.1 - Mozilla) Narzędzia sprawdzające pakietu Microsoft Office 2013 — polski (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden NVIDIA Oprogramowanie systemu PhysX 9.15.0428 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.15.0428 - NVIDIA Corporation) NVIDIA Sterownik 3D Vision 353.30 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 353.30 - NVIDIA Corporation) NVIDIA Sterownik dźwięku HD 1.3.34.3 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.34.3 - NVIDIA Corporation) NVIDIA Sterownik graficzny 353.30 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 353.30 - NVIDIA Corporation) NVIDIA Sterownik kontrolera 3D Vision 352.65 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 352.65 - NVIDIA Corporation) Panel sterowania NVIDIA 353.30 (Version: 353.30 - NVIDIA Corporation) Hidden Platform (x32 Version: 1.34 - VIA Technologies, Inc.) Hidden PowerISO (HKLM-x32\...\PowerISO) (Version: 6.0 - Power Software Ltd) Realtek Ethernet Controller Driver For Windows 7 (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.23.623.2010 - Realtek) reFX Nexus VSTi RTAS v2.2.0 (HKLM-x32\...\reFX Nexus_is1) (Version: - ) Renesas Electronics USB 3.0 Host Controller Driver (HKLM-x32\...\InstallShield_{5442DAB8-7177-49E1-8B22-09A049EA5996}) (Version: 2.0.4.0 - Renesas Electronics Corporation) Renesas Electronics USB 3.0 Host Controller Driver (x32 Version: 2.0.4.0 - Renesas Electronics Corporation) Hidden SHIELD Streaming (Version: 4.1.2000 - NVIDIA Corporation) Hidden SHIELD Wireless Controller Driver (Version: 2.4.5.44 - NVIDIA Corporation) Hidden TeamSpeak 3 Client (HKLM-x32\...\TeamSpeak 3 Client) (Version: 3.0.16 - TeamSpeak Systems GmbH) TP-LINK TL-WN721N_TL-WN722N Driver (HKLM-x32\...\{86A7EED0-02D0-4D91-8183-8D2F23F5E6AE}) (Version: 1.3.1 - TP-LINK) VIA Platforma Menedżera urządzeń (HKLM-x32\...\InstallShield_{20D4A895-748C-4D88-871C-FDB1695B0169}) (Version: 1.34 - VIA Technologies, Inc.) WinRAR 4.01 (32-bitowy) (HKLM-x32\...\WinRAR archiver) (Version: 4.01.0 - win.rar GmbH) ==================== Niestandardowe rejestracje CLSID (filtrowane): ========================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) ==================== Punkty Przywracania systemu ========================= ==================== Hosts - zawartość: ========================== (Użycie dyrektywy Hosts: w fixlist spowoduje reset pliku Hosts.) 2009-07-14 03:34 - 2015-08-06 15:56 - 00001122 ____A C:\Windows\system32\Drivers\etc\hosts 127.0.0.1 genuine.microsoft.com 127.0.0.1 mpa.one.microsoft.com 127.0.0.1 sls.microsoft.com 127.0.0.1 lmlicenses.wip4.adobe.com 127.0.0.1 lm.licenses.adobe.com 127.0.0.1 na1r.services.adobe.com 127.0.0.1 hlrcv.stage.adobe.com 127.0.0.1 practivate.adobe.com 127.0.0.1 activate.adobe.com ==================== Zaplanowane zadania (filtrowane) ============= (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) Task: {2CD5D3A6-0A9C-4FF3-A235-C210492F3B2F} - System32\Tasks\{4D0B0032-D304-4ECA-AAF9-FED9EDD426D1} => pcalua.exe -a C:\Users\Andrzej\Downloads\LeagueofLegends_EUNE_Installer_9_15_2014.exe -d C:\Windows\SysWOW64 -c /groupsextract:100;101;102; /out:"C:\Users\Andrzej\AppData\Roaming\Riot Games\League of Legends\prerequisites" /callbackid:5248 Task: {4BC0BDE8-6BD1-4EC1-9EA3-A135515A557F} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => E:\office\Office15\msoia.exe [2012-10-01] (Microsoft Corporation) Task: {503E84F0-FEE7-4E7C-AD7E-EEE13E86FE35} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-11-21] (Adobe Systems Incorporated) Task: {6E14CFEB-7AEC-44DD-A062-8E0F58F60651} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2014-10-30] (Piriform Ltd) Task: {94BD4857-3E13-4A71-A791-6BE512EEC9CF} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office15\OLicenseHeartbeat.exe [2012-10-01] (Microsoft Corporation) Task: {AF3B556F-0474-448C-B130-33EF0D5E4F59} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2015-06-24] (Avast Software s.r.o.) Task: {C445A4D4-C6B5-4B9A-B4F6-79F2777FCA1E} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => E:\office\Office15\msoia.exe [2012-10-01] (Microsoft Corporation) Task: {F0D6DCD3-AD0D-4E1E-BFD2-7A47EAB85C23} - System32\Tasks\AVAST Software\Avast settings backup => C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe [2015-12-03] (AVAST Software) (Załączenie wejścia w fixlist spowoduje przesunięcie pliku zadania (.job). Plik uruchamiany docelowo przez zadanie nie zostanie przeniesiony.) Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe ==================== Skróty ============================= (Wybrane wejścia mogą zostać załączone w celu ich zresetowania lub usunięcia.) ShortcutWithArgument: C:\Users\Andrzej\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer (64-bit).lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) -> hxxp://www.yoursites123.com/?type=sc&ts=1449847688&z=dea763014cac2f144495a95g6z6zft4b0z1m7q4bdq&from=ient07021&uid=ST3160815AS_6RA372PZXXXX6RA372PZ <==== UWAGA ShortcutWithArgument: C:\Users\Andrzej\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk -> C:\Program Files (x86)\Internet Explorer\iexplore.exe (Microsoft Corporation) -> hxxp://www.yoursites123.com/?type=sc&ts=1449847688&z=dea763014cac2f144495a95g6z6zft4b0z1m7q4bdq&from=ient07021&uid=ST3160815AS_6RA372PZXXXX6RA372PZ <==== UWAGA ShortcutWithArgument: C:\Users\Andrzej\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Internet Explorer (No Add-ons).lnk -> C:\Program Files (x86)\Internet Explorer\iexplore.exe (Microsoft Corporation) -> hxxp://www.yoursites123.com/?type=sc&ts=1449847688&z=dea763014cac2f144495a95g6z6zft4b0z1m7q4bdq&from=ient07021&uid=ST3160815AS_6RA372PZXXXX6RA372PZ <==== UWAGA ShortcutWithArgument: C:\Users\Andrzej\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> hxxp://www.yoursites123.com/?type=sc&ts=1449847688&z=dea763014cac2f144495a95g6z6zft4b0z1m7q4bdq&from=ient07021&uid=ST3160815AS_6RA372PZXXXX6RA372PZ <==== UWAGA ShortcutWithArgument: C:\Users\Andrzej\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk -> C:\Program Files (x86)\Internet Explorer\iexplore.exe (Microsoft Corporation) -> hxxp://www.yoursites123.com/?type=sc&ts=1449847688&z=dea763014cac2f144495a95g6z6zft4b0z1m7q4bdq&from=ient07021&uid=ST3160815AS_6RA372PZXXXX6RA372PZ <==== UWAGA ShortcutWithArgument: C:\Users\Andrzej\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> hxxp://www.yoursites123.com/?type=sc&ts=1449847688&z=dea763014cac2f144495a95g6z6zft4b0z1m7q4bdq&from=ient07021&uid=ST3160815AS_6RA372PZXXXX6RA372PZ <==== UWAGA ShortcutWithArgument: C:\Users\Andrzej\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Mozilla Firefox.lnk -> C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation) -> hxxp://www.yoursites123.com/?type=sc&ts=1449847688&z=dea763014cac2f144495a95g6z6zft4b0z1m7q4bdq&from=ient07021&uid=ST3160815AS_6RA372PZXXXX6RA372PZ <==== UWAGA ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk -> C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation) -> hxxp://www.yoursites123.com/?type=sc&ts=1449847688&z=dea763014cac2f144495a95g6z6zft4b0z1m7q4bdq&from=ient07021&uid=ST3160815AS_6RA372PZXXXX6RA372PZ <==== UWAGA ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> hxxp://www.yoursites123.com/?type=sc&ts=1449847688&z=dea763014cac2f144495a95g6z6zft4b0z1m7q4bdq&from=ient07021&uid=ST3160815AS_6RA372PZXXXX6RA372PZ <==== UWAGA ShortcutWithArgument: C:\Users\Public\Desktop\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> hxxp://www.yoursites123.com/?type=sc&ts=1449847688&z=dea763014cac2f144495a95g6z6zft4b0z1m7q4bdq&from=ient07021&uid=ST3160815AS_6RA372PZXXXX6RA372PZ <==== UWAGA ShortcutWithArgument: C:\Users\Public\Desktop\Mozilla Firefox.lnk -> C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation) -> hxxp://www.yoursites123.com/?type=sc&ts=1449847688&z=dea763014cac2f144495a95g6z6zft4b0z1m7q4bdq&from=ient07021&uid=ST3160815AS_6RA372PZXXXX6RA372PZ <==== UWAGA ==================== Załadowane moduły (filtrowane) ============== 2014-09-13 21:06 - 2015-06-17 07:48 - 00116368 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll 2014-09-13 21:14 - 2010-08-11 11:32 - 00078448 ____R () C:\Program Files (x86)\VIA\VIAudioi\VDeck\QsApoApi64.dll 2014-09-13 21:14 - 2010-08-11 11:32 - 00386160 ____R () C:\Program Files (x86)\VIA\VIAudioi\VDeck\Dts2ApoApi64.dll 2014-09-13 21:14 - 2010-08-11 11:32 - 00105584 ____R () C:\Program Files (x86)\VIA\VIAudioi\VDeck\VMicApi.dll 2014-09-13 21:14 - 2010-08-11 11:32 - 64643696 ____R () C:\Program Files (x86)\VIA\VIAudioi\VDeck\Skin.dll 2014-05-17 10:05 - 2015-12-11 16:39 - 00103424 _____ () F:\DO ZRSZUTU\gry\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe 2015-06-24 10:07 - 2015-06-24 10:07 - 00104400 _____ () C:\Program Files\AVAST Software\Avast\log.dll 2015-06-24 10:07 - 2015-06-24 10:07 - 00081728 _____ () C:\Program Files\AVAST Software\Avast\JsonRpcServer.dll 2015-12-12 20:15 - 2015-12-12 20:15 - 02803200 _____ () C:\Program Files\AVAST Software\Avast\defs\15121202\algo.dll 2015-12-13 11:56 - 2015-12-13 11:56 - 02803200 _____ () C:\Program Files\AVAST Software\Avast\defs\15121300\algo.dll 2015-07-02 22:22 - 2015-06-17 10:10 - 00011920 _____ () C:\Program Files (x86)\NVIDIA Corporation\Update Core\detoured.dll 2015-06-24 10:07 - 2015-06-24 10:07 - 40540672 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll 2013-03-12 17:10 - 2015-11-10 20:55 - 00778752 _____ () F:\DO ZRSZUTU\gry\Steam\SDL2.dll 2015-01-23 19:54 - 2015-07-03 17:12 - 04962816 _____ () F:\DO ZRSZUTU\gry\Steam\v8.dll 2015-01-23 19:54 - 2015-07-03 17:12 - 01556992 _____ () F:\DO ZRSZUTU\gry\Steam\icui18n.dll 2015-01-23 19:54 - 2015-07-03 17:12 - 01187840 _____ () F:\DO ZRSZUTU\gry\Steam\icuuc.dll 2014-06-21 11:26 - 2015-12-10 21:11 - 02547280 _____ () F:\DO ZRSZUTU\gry\Steam\video.dll 2014-08-30 14:43 - 2015-09-24 01:33 - 02549248 _____ () F:\DO ZRSZUTU\gry\Steam\libavcodec-56.dll 2014-08-30 14:43 - 2015-09-24 01:33 - 00442880 _____ () F:\DO ZRSZUTU\gry\Steam\libavutil-54.dll 2014-08-30 14:43 - 2015-09-24 01:33 - 00491008 _____ () F:\DO ZRSZUTU\gry\Steam\libavformat-56.dll 2014-08-30 14:43 - 2015-09-24 01:33 - 00332800 _____ () F:\DO ZRSZUTU\gry\Steam\libavresample-2.dll 2014-08-30 14:43 - 2015-09-24 01:33 - 00485888 _____ () F:\DO ZRSZUTU\gry\Steam\libswscale-3.dll 2011-08-16 17:54 - 2015-12-10 21:11 - 00804432 _____ () F:\DO ZRSZUTU\gry\Steam\bin\chromehtml.DLL 2015-07-25 09:10 - 2015-11-03 23:00 - 00201728 _____ () F:\DO ZRSZUTU\gry\Steam\bin\openvr_api.dll 2015-12-13 12:03 - 2015-12-13 12:03 - 00155232 ___HT () C:\Users\Andrzej\AppData\Local\Temp\~FF9.tmp 2011-06-11 14:59 - 2015-11-17 01:31 - 47846176 _____ () F:\DO ZRSZUTU\gry\Steam\bin\libcef.dll 2015-01-23 19:54 - 2015-09-25 00:56 - 00119208 _____ () F:\DO ZRSZUTU\gry\Steam\winh264.dll 2014-02-28 14:33 - 2014-02-28 14:33 - 00148480 _____ () C:\Program Files (x86)\TeamSpeak 3 Client\quazip.dll 2014-02-27 14:46 - 2014-02-27 14:46 - 00864768 _____ () C:\Program Files (x86)\TeamSpeak 3 Client\platforms\qwindows.dll 2014-02-27 14:45 - 2014-02-27 14:45 - 00677376 _____ () C:\Program Files (x86)\TeamSpeak 3 Client\sqldrivers\qsqlite.dll 2014-08-04 14:43 - 2014-08-04 14:43 - 00092104 _____ () C:\Program Files (x86)\TeamSpeak 3 Client\soundbackends\directsound_win32.dll 2014-08-04 14:43 - 2014-08-04 14:43 - 00105416 _____ () C:\Program Files (x86)\TeamSpeak 3 Client\soundbackends\windowsaudiosession_win32.dll 2014-02-27 14:46 - 2014-02-27 14:46 - 00025600 _____ () C:\Program Files (x86)\TeamSpeak 3 Client\imageformats\qgif.dll 2014-02-27 14:46 - 2014-02-27 14:46 - 00242688 _____ () C:\Program Files (x86)\TeamSpeak 3 Client\imageformats\qjpeg.dll 2014-08-04 14:45 - 2014-08-04 14:45 - 00477128 _____ () C:\Program Files (x86)\TeamSpeak 3 Client\plugins\clientquery_plugin.dll 2014-08-04 14:45 - 2014-08-04 14:45 - 00484808 _____ () C:\Program Files (x86)\TeamSpeak 3 Client\plugins\teamspeak_control_plugin.dll 2014-02-27 14:46 - 2014-02-27 14:46 - 00123904 _____ () C:\Program Files (x86)\TeamSpeak 3 Client\accessible\qtaccessiblewidgets.dll 2014-05-17 10:05 - 2015-12-11 16:38 - 00198144 _____ () F:\DO ZRSZUTU\gry\Steam\steamapps\common\Counter-Strike Global Offensive\bin\launcher.dll 2014-05-17 09:46 - 2015-12-11 16:44 - 00317952 _____ () F:\DO ZRSZUTU\gry\Steam\steamapps\common\Counter-Strike Global Offensive\bin\tier0.dll 2014-05-17 10:05 - 2015-12-11 16:45 - 00203776 _____ () F:\DO ZRSZUTU\gry\Steam\steamapps\common\Counter-Strike Global Offensive\bin\vstdlib.dll 2014-05-17 09:46 - 2015-12-11 16:44 - 00390144 _____ () F:\DO ZRSZUTU\gry\Steam\steamapps\common\Counter-Strike Global Offensive\bin\filesystem_stdio.dll 2014-05-17 09:46 - 2015-12-11 16:39 - 06924800 _____ () f:\do zrszutu\gry\steam\steamapps\common\counter-strike global offensive\bin\engine.dll 2014-05-17 10:05 - 2015-12-11 16:38 - 00166912 _____ () f:\do zrszutu\gry\steam\steamapps\common\counter-strike global offensive\bin\inputsystem.dll 2014-05-17 09:46 - 2015-12-11 16:45 - 01174016 _____ () f:\do zrszutu\gry\steam\steamapps\common\counter-strike global offensive\bin\vphysics.dll 2014-05-17 09:46 - 2015-12-11 16:44 - 01240064 _____ () f:\do zrszutu\gry\steam\steamapps\common\counter-strike global offensive\bin\materialsystem.dll 2014-05-17 09:46 - 2015-12-11 16:38 - 00351744 _____ () f:\do zrszutu\gry\steam\steamapps\common\counter-strike global offensive\bin\datacache.dll 2014-05-17 09:46 - 2015-12-11 16:44 - 00607744 _____ () f:\do zrszutu\gry\steam\steamapps\common\counter-strike global offensive\bin\studiorender.dll 2014-05-17 10:05 - 2015-12-11 16:38 - 00164864 _____ () f:\do zrszutu\gry\steam\steamapps\common\counter-strike global offensive\bin\soundemittersystem.dll 2014-05-17 09:46 - 2015-12-11 16:45 - 00708096 _____ () f:\do zrszutu\gry\steam\steamapps\common\counter-strike global offensive\bin\vscript.dll 2014-05-17 10:05 - 2015-12-11 16:44 - 00134656 _____ () f:\do zrszutu\gry\steam\steamapps\common\counter-strike global offensive\bin\valve_avi.dll 2014-05-17 09:46 - 2015-12-11 16:44 - 01336320 _____ () f:\do zrszutu\gry\steam\steamapps\common\counter-strike global offensive\bin\vguimatsurface.dll 2014-05-17 09:46 - 2015-12-11 16:45 - 00395264 _____ () f:\do zrszutu\gry\steam\steamapps\common\counter-strike global offensive\bin\vgui2.dll 2014-05-17 09:46 - 2015-12-11 16:45 - 03274240 _____ () f:\do zrszutu\gry\steam\steamapps\common\counter-strike global offensive\bin\scaleformui.dll 2014-05-17 09:46 - 2015-12-11 16:39 - 01766400 _____ () F:\DO ZRSZUTU\gry\Steam\steamapps\common\Counter-Strike Global Offensive\bin\shaderapidx9.dll 2014-05-17 10:05 - 2015-12-11 16:38 - 00143360 _____ () f:\do zrszutu\gry\steam\steamapps\common\counter-strike global offensive\bin\localize.dll 2014-05-17 10:05 - 2015-12-11 16:44 - 00230912 _____ () f:\do zrszutu\gry\steam\steamapps\common\counter-strike global offensive\bin\stdshader_dbg.dll 2014-05-17 09:46 - 2015-12-11 16:45 - 00996864 _____ () f:\do zrszutu\gry\steam\steamapps\common\counter-strike global offensive\bin\stdshader_dx9.dll 2014-05-17 09:46 - 2015-12-11 16:45 - 00585216 _____ () f:\do zrszutu\gry\steam\steamapps\common\counter-strike global offensive\csgo\bin\matchmaking.dll 2014-05-17 09:46 - 2015-12-11 16:45 - 12589056 _____ () f:\do zrszutu\gry\steam\steamapps\common\counter-strike global offensive\csgo\bin\client.dll 2014-05-17 09:46 - 2015-12-11 16:45 - 10041344 _____ () f:\do zrszutu\gry\steam\steamapps\common\counter-strike global offensive\csgo\bin\server.dll 2014-05-17 10:06 - 2015-12-11 16:39 - 00094208 _____ () F:\DO ZRSZUTU\gry\Steam\steamapps\common\Counter-Strike Global Offensive\bin\scenefilecache.dll 2013-07-20 01:01 - 2015-12-11 16:44 - 00084992 _____ () f:\do zrszutu\gry\steam\steamapps\common\counter-strike global offensive\bin\vaudio_miles.dll 2013-07-20 01:01 - 2014-12-29 02:30 - 00071680 _____ () f:\do zrszutu\gry\steam\steamapps\common\counter-strike global offensive\bin\mssmp3.asi 2013-07-20 01:01 - 2014-12-29 02:30 - 00012800 _____ () f:\do zrszutu\gry\steam\steamapps\common\counter-strike global offensive\bin\mssds3d.flt 2013-07-20 01:01 - 2014-12-29 02:30 - 00055808 _____ () f:\do zrszutu\gry\steam\steamapps\common\counter-strike global offensive\bin\msseax.flt 2014-05-17 09:46 - 2015-12-11 16:44 - 00974336 _____ () f:\do zrszutu\gry\steam\steamapps\common\counter-strike global offensive\bin\serverbrowser.dll 2014-12-14 00:38 - 2015-12-11 16:44 - 00173568 _____ () f:\do zrszutu\gry\steam\steamapps\common\counter-strike global offensive\bin\vaudio_celt.dll ==================== Alternate Data Streams (filtrowane) ========= (Załączenie wejścia w fixlist spowoduje usunięcie strumienia ADS.) AlternateDataStreams: C:\ProgramData\TEMP:56E2E879 ==================== Tryb awaryjny (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Wartość "AlternateShell" zostanie przywrócona.) ==================== EXE - Powiązania (filtrowane) =============== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci.) ==================== Internet Explorer - Witryny zaufane i z ograniczeniami =============== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru.) ==================== Inne obszary ============================ (Obecnie brak automatycznej naprawy dla tej sekcji.) HKU\S-1-5-21-1948486060-1122046647-2940547672-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\Andrzej\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg DNS Servers: 192.168.1.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Zapora systemu Windows [funkcja włączona] ==================== MSCONFIG/TASK MANAGER - Wyłączone elementy == (Obecnie brak automatycznej naprawy dla tej sekcji.) MSCONFIG\Services: AdobeFlashPlayerUpdateSvc => 3 MSCONFIG\Services: bthserv => 3 MSCONFIG\Services: Fax => 3 MSCONFIG\Services: gupdate => 2 MSCONFIG\Services: gupdatem => 3 MSCONFIG\Services: HomeGroupListener => 3 MSCONFIG\Services: HomeGroupProvider => 3 MSCONFIG\Services: idsvc => 3 MSCONFIG\Services: ose64 => 3 MSCONFIG\Services: osppsvc => 3 MSCONFIG\Services: PolicyAgent => 3 MSCONFIG\Services: TapiSrv => 3 MSCONFIG\Services: TBS => 3 MSCONFIG\Services: TermService => 3 MSCONFIG\Services: vds => 3 MSCONFIG\Services: WebClient => 3 MSCONFIG\Services: wercplsupport => 3 MSCONFIG\Services: wmiApSrv => 3 MSCONFIG\startupreg: CCleaner Monitoring => "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR MSCONFIG\startupreg: MouseDriver => TiltWheelMouse.exe MSCONFIG\startupreg: NUSB3MON => "C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe" MSCONFIG\startupreg: PWRISOVM.EXE => C:\Program Files\PowerISO\PWRISOVM.EXE -startup MSCONFIG\startupreg: Skype => "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun ==================== Reguły Zapory systemu Windows (filtrowane) =============== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) FirewallRules: [TCP Query User{106A7803-E0F8-4906-8A3D-733141DC2969}C:\program files (x86)\image-line\minihost\minihostmodular_x64.exe] => (Allow) C:\program files (x86)\image-line\minihost\minihostmodular_x64.exe FirewallRules: [UDP Query User{483B7727-3884-48F0-92A3-4DACB6DAE5EE}C:\program files (x86)\image-line\minihost\minihostmodular_x64.exe] => (Allow) C:\program files (x86)\image-line\minihost\minihostmodular_x64.exe FirewallRules: [TCP Query User{57496648-FF94-4B0C-AAFF-DF2E369CABA9}E:\fl studio\plugins\minihost\minihostmodular.exe] => (Allow) E:\fl studio\plugins\minihost\minihostmodular.exe FirewallRules: [UDP Query User{2EFF9E94-7590-4F6B-9E7C-941CF13A10B6}E:\fl studio\plugins\minihost\minihostmodular.exe] => (Allow) E:\fl studio\plugins\minihost\minihostmodular.exe FirewallRules: [TCP Query User{CEBB9D8B-99FC-4F44-AF24-1E91373AA73C}E:\fl studio\plugins\minihost\minihostmodular_x64.exe] => (Allow) E:\fl studio\plugins\minihost\minihostmodular_x64.exe FirewallRules: [UDP Query User{2B2FD5BE-0C04-423E-B256-1CDA9B63201F}E:\fl studio\plugins\minihost\minihostmodular_x64.exe] => (Allow) E:\fl studio\plugins\minihost\minihostmodular_x64.exe FirewallRules: [{5AAA0C64-1071-4658-A0D4-07D974ADA212}] => (Allow) F:\DO ZRSZUTU\gry\Steam\Steam.exe FirewallRules: [{DB775770-A4D4-4796-8E1A-0B696B5345CA}] => (Allow) F:\DO ZRSZUTU\gry\Steam\Steam.exe FirewallRules: [{C8B9FD2D-97F9-4521-A02C-50E7D823F33A}] => (Allow) F:\DO ZRSZUTU\gry\Steam\bin\steamwebhelper.exe FirewallRules: [{A7925264-E00D-4192-A7F5-E2DCC0B05A79}] => (Allow) F:\DO ZRSZUTU\gry\Steam\bin\steamwebhelper.exe FirewallRules: [{479BA4F5-2FE8-4A85-B83C-EE7F67DF48DE}] => (Allow) F:\DO ZRSZUTU\gry\Steam\steamapps\common\PAYDAY 2\payday2_win32_release.exe FirewallRules: [{3C254988-5AE4-4D8C-A779-9B63E02575F3}] => (Allow) F:\DO ZRSZUTU\gry\Steam\steamapps\common\PAYDAY 2\payday2_win32_release.exe FirewallRules: [{CCDECC92-7DEF-4C33-A1A5-19370EB0F9F0}] => (Allow) F:\DO ZRSZUTU\gry\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe FirewallRules: [{3B8D49AE-8EA7-44BA-8775-459671F3776A}] => (Allow) F:\DO ZRSZUTU\gry\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe FirewallRules: [{330C0032-2AAF-4C56-950B-E91ED530D192}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{36B95192-3C31-4617-8400-1B231DFE15BE}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [TCP Query User{4C4E2643-F65A-4C88-8F1F-4D0FDDA77FE6}E:\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe] => (Allow) E:\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe FirewallRules: [UDP Query User{66747515-BE7A-4D56-BD92-BF1CF1BC9FFC}E:\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe] => (Allow) E:\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe FirewallRules: [TCP Query User{16D58338-4EB6-45B9-B8DC-16A049D04321}C:\program files (x86)\mozilla firefox\firefox.exe] => (Block) C:\program files (x86)\mozilla firefox\firefox.exe FirewallRules: [UDP Query User{A24D2030-B248-473E-BF9A-6C0D6DBE646D}C:\program files (x86)\mozilla firefox\firefox.exe] => (Block) C:\program files (x86)\mozilla firefox\firefox.exe FirewallRules: [{0CC2D30A-C4BC-45C3-B7F2-9010E5516F54}] => (Allow) E:\office\Office15\lync.exe FirewallRules: [{48D757F3-329B-4EB7-98E0-553CF5CBDB66}] => (Allow) E:\office\Office15\lync.exe FirewallRules: [{60DEAC1C-65FD-4370-A025-7C5F4C0D0D73}] => (Allow) E:\office\Office15\UcMapi.exe FirewallRules: [{66C1CFC3-AFDB-4505-8E8A-5B4AD21B7FD7}] => (Allow) E:\office\Office15\UcMapi.exe FirewallRules: [{336F5100-2F08-4E0A-829C-017A65863774}] => (Allow) E:\office\Office15\outlook.exe FirewallRules: [{4EDD7D37-1B1D-4B7A-A50E-12E56C6585CB}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe FirewallRules: [{60FF7B1F-5161-47A1-915B-93FF05C52E30}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe FirewallRules: [{C4A5AE11-CFF9-4DD9-A043-0D9F9ECA3AE4}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe FirewallRules: [{6A52669A-CE23-4188-B65E-B152A2E6CD02}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe FirewallRules: [{EC276B8B-667D-424B-BD60-96B4DAED3CB0}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{3FFCEEF3-0A1D-4765-BBBC-41BE63AF6823}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{F1CD00BB-3D36-40D9-B964-E09637AB02E8}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Wadliwe urządzenia w Menedżerze urządzeń ============= ==================== Błędy w Dzienniku zdarzeń: ========================= Dziennik Aplikacja: ================== Error: (12/13/2015 12:06:15 PM) (Source: Office 2013 Licensing Service) (EventID: 0) (User: ) Description: Subscription licensing service failed: -1073418154 Error: (12/13/2015 11:56:18 AM) (Source: Microsoft-Windows-CAPI2) (EventID: 4107) (User: ) Description: Nie można wyodrębnić listy głównej innych firm z pliku cab automatycznej aktualizacji z: , wystąpił błąd: Wymagany certyfikat jest poza okresem ważności, co wynika z weryfikacji bieżącego zegara systemowego lub sygnatury czasowej. . Error: (12/13/2015 11:56:10 AM) (Source: NvStreamSvc) (EventID: 2001) (User: ) Description: An error has occurred (NvVAD initialization failed [6]). Error: (12/13/2015 11:56:10 AM) (Source: NvStreamSvc) (EventID: 2001) (User: ) Description: An error has occurred (Failed to set NvVAD endpoint as default Audio endpoint [0]). Error: (12/13/2015 11:56:10 AM) (Source: NvStreamSvc) (EventID: 2001) (User: ) Description: An error has occurred (NvVAD endpoint registration failed [0]). Error: (12/13/2015 11:56:01 AM) (Source: Winlogon) (EventID: 4103) (User: ) Description: Aktywacja licencji systemu Windows nie powiodła się. Błąd 0x00000000. Error: (12/13/2015 11:56:01 AM) (Source: Software Protection Platform Service) (EventID: 8198) (User: ) Description: Wystąpił błąd aktywacji licencji (slui.exe), kod błędu: 0x800401F9 Error: (12/12/2015 06:21:40 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: plugin-container.exe, wersja: 39.0.0.5659, sygnatura czasowa: 0x55934d06 Nazwa modułu powodującego błąd: mozalloc.dll, wersja: 39.0.0.5659, sygnatura czasowa: 0x55933a83 Kod wyjątku: 0x80000003 Przesunięcie błędu: 0x00001aa1 Identyfikator procesu powodującego błąd: 0x1684 Godzina uruchomienia aplikacji powodującej błąd: 0xplugin-container.exe0 Ścieżka aplikacji powodującej błąd: plugin-container.exe1 Ścieżka modułu powodującego błąd: plugin-container.exe2 Identyfikator raportu: plugin-container.exe3 Error: (12/12/2015 12:37:10 PM) (Source: EventSystem) (EventID: 4621) (User: ) Description: 80070005EventSystem.EventSubscription{1D6A3FCB-3495-4C8C-9A17-6690A49F9E90}-{00000000-0000-0000-0000-000000000000}-{00000000-0000-0000-0000-000000000000}SLSVC_LOGON Error: (12/12/2015 12:28:20 AM) (Source: Office 2013 Licensing Service) (EventID: 0) (User: ) Description: Subscription licensing service failed: -1073418154 Dziennik System: ============= Error: (12/13/2015 11:55:51 AM) (Source: Microsoft-Windows-Eventlog) (EventID: 23) (User: ZARZĄDZANIE NT) Description: Usługa rejestrowania zdarzeń napotkała błąd (zasób=23) podczas inicjowania zasobów rejestrowana dla kanału Microsoft-Windows-GroupPolicy/Operational. Error: (12/13/2015 11:55:51 AM) (Source: Disk) (EventID: 7) (User: ) Description: W urządzeniu \Device\Harddisk0\DR0 wystąpił zły blok. Error: (12/13/2015 11:55:48 AM) (Source: Disk) (EventID: 7) (User: ) Description: W urządzeniu \Device\Harddisk0\DR0 wystąpił zły blok. Error: (12/13/2015 11:55:45 AM) (Source: Disk) (EventID: 7) (User: ) Description: W urządzeniu \Device\Harddisk0\DR0 wystąpił zły blok. Error: (12/13/2015 11:55:42 AM) (Source: Disk) (EventID: 7) (User: ) Description: W urządzeniu \Device\Harddisk0\DR0 wystąpił zły blok. Error: (12/13/2015 11:55:39 AM) (Source: Disk) (EventID: 7) (User: ) Description: W urządzeniu \Device\Harddisk0\DR0 wystąpił zły blok. Error: (12/13/2015 11:55:36 AM) (Source: Disk) (EventID: 7) (User: ) Description: W urządzeniu \Device\Harddisk0\DR0 wystąpił zły blok. Error: (12/13/2015 11:55:33 AM) (Source: Disk) (EventID: 7) (User: ) Description: W urządzeniu \Device\Harddisk0\DR0 wystąpił zły blok. Error: (12/13/2015 11:55:30 AM) (Source: Disk) (EventID: 7) (User: ) Description: W urządzeniu \Device\Harddisk0\DR0 wystąpił zły blok. Error: (12/13/2015 11:55:23 AM) (Source: Disk) (EventID: 7) (User: ) Description: W urządzeniu \Device\Harddisk0\DR0 wystąpił zły blok. ==================== Statystyki pamięci =========================== Procesor: AMD Phenom(tm) II X4 955 Processor Procent pamięci w użyciu: 78% Całkowita pamięć fizyczna: 4094.05 MB Dostępna pamięć fizyczna: 889.71 MB Całkowita pamięć wirtualna: 8186.26 MB Dostępna pamięć wirtualna: 4060 MB ==================== Dyski ================================ Drive c: () (Fixed) (Total:29.19 GB) (Free:4.33 GB) NTFS Drive d: () (Fixed) (Total:19.53 GB) (Free:17.3 GB) NTFS Drive e: () (Fixed) (Total:48.83 GB) (Free:18.24 GB) NTFS Drive f: (Beciaska) (Fixed) (Total:51.39 GB) (Free:11.51 GB) NTFS Drive m: (KINGSTON) (Removable) (Total:1.92 GB) (Free:1.05 GB) FAT32 ==================== MBR & Tablica partycji ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 149 GB) (Disk ID: E504E504) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=29.2 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=119.7 GB) - (Type=OF Extended) ======================================================== Disk: 1 (Size: 1.9 GB) (Disk ID: 00000000) Partition: GPT. ==================== Koniec Addition.txt ============================