Rezultaty skanu uzupełniającego Farbar Recovery Scan Tool (x64) Wersja:13-12-2015 Uruchomiony przez Mariusz (2015-12-15 15:10:23) Uruchomiony z C:\Users\Mariusz\Downloads\wir Windows 10 Home (X64) (2015-12-15 09:47:54) Tryb startu: Normal ========================================================== ==================== Konta użytkowników: ============================= Administrator (S-1-5-21-2915783206-49812008-3396176740-500 - Administrator - Disabled) Gość (S-1-5-21-2915783206-49812008-3396176740-501 - Limited - Disabled) Guest (S-1-5-21-2915783206-49812008-3396176740-1003 - Limited - Enabled) => C:\Users\Guest Konto domyślne (S-1-5-21-2915783206-49812008-3396176740-503 - Limited - Disabled) Mariusz (S-1-5-21-2915783206-49812008-3396176740-1001 - Administrator - Enabled) => C:\Users\Mariusz ==================== Centrum zabezpieczeń ======================== (Załączenie wejścia w fixlist spowoduje jego usunięcie.) AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AV: COMODO Antivirus (Disabled - Up to date) {F25D0092-CDBE-B303-ADB7-88DE8CDECCF5} AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Zainstalowane programy ====================== (W fixlist dozwolone tylko załączanie programów adware z flagą "Hidden" w celu ich uwidocznienia. Programy adware powinny zostać w poprawny sposób odinstalowane.) 2007 Microsoft Office system (HKLM-x32\...\PROHYBRIDR) (Version: 12.0.4518.1014 - Microsoft Corporation) 7-Zip 9.20 (x64 edition) (HKLM\...\{23170F69-40C1-2702-0920-000001000000}) (Version: 9.20.00.0 - Igor Pavlov) Adobe Acrobat Reader DC - Polish (HKLM-x32\...\{AC76BA86-7AD7-1045-7B44-AC0F074E4100}) (Version: 15.009.20079 - Adobe Systems Incorporated) Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 20.0.0.204 - Adobe Systems Incorporated) Adobe Community Help (HKLM-x32\...\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1) (Version: 3.0.0.400 - Adobe Systems Incorporated) Adobe Flash Professional CS5 (HKLM-x32\...\{CFC9F871-7C40-40B6-BE4A-B98A5B309716}) (Version: 11.0 - Adobe Systems Incorporated) Adobe Media Player (HKLM-x32\...\com.adobe.amp.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1) (Version: 1.8 - Adobe Systems Incorporated) Adobe Photoshop CS5 (HKLM-x32\...\{15FEDA5F-141C-4127-8D7E-B962D1742728}) (Version: 12.0 - Adobe Systems Incorporated) ALLPlayer V6.X (HKLM-x32\...\ALLPlayer_is1) (Version: - ALLPlayer Group, Ltd.) AMD Catalyst Control Center (HKLM-x32\...\WUCCCApp) (Version: 1.00.0000 - AMD) Balsamiq Mockups 3 (HKLM-x32\...\BalsamiqMockups3.EDE15CF69E11F7F7D45B5430C7D37CC6C3545E3C.1) (Version: 3.1.9 - Balsamiq SRL) Balsamiq Mockups 3 (x32 Version: 3.1.9 - Balsamiq SRL) Hidden CGS17_Setup_x64 (Version: 17.0 - Corel Corporation) Hidden COMODO Antivirus (HKLM\...\{38F898C8-272F-455F-9BD6-71FEBA3E4AF5}) (Version: 8.2.0.4703 - COMODO Security Solutions Inc.) Corel Graphics - Windows Shell Extension (HKLM\...\_{4AB916EE-ABA8-4079-9889-745798B6D809}) (Version: 17.0.0.491 - Corel Corporation) Corel Graphics - Windows Shell Extension (Version: 17.0.491 - Corel Corporation) Hidden Corel Graphics - Windows Shell Extension 32 Bit (Version: 17.0.491 - Corel Corporation) Hidden CorelDRAW Graphics Suite X7 - Capture (x64) (Version: 17.0 - Corel Corporation) Hidden CorelDRAW Graphics Suite X7 - Common (x64) (Version: 17.0 - Corel Corporation) Hidden CorelDRAW Graphics Suite X7 - Connect (x64) (Version: 17.0 - Corel Corporation) Hidden CorelDRAW Graphics Suite X7 - Custom Data (x64) (Version: 17.0 - Corel Corporation) Hidden CorelDRAW Graphics Suite X7 - Draw (x64) (Version: 17.0 - Corel Corporation) Hidden CorelDRAW Graphics Suite X7 - EN (x64) (Version: 17.0 - Corel Corporation) Hidden CorelDRAW Graphics Suite X7 - Filters (x64) (Version: 17.0 - Corel Corporation) Hidden CorelDRAW Graphics Suite X7 - FontNav (x64) (Version: 17.0 - Corel Corporation) Hidden CorelDRAW Graphics Suite X7 - IPM Content (x64) (Version: 17.0 - Corel Corporation) Hidden CorelDRAW Graphics Suite X7 - IPM T (x64) (Version: 17.0 - Corel Corporation) Hidden CorelDRAW Graphics Suite X7 - PHOTO-PAINT (x64) (Version: 17.0 - Corel Corporation) Hidden CorelDRAW Graphics Suite X7 - Photozoom Plugin (x64) (Version: 17.0 - Corel Corporation) Hidden CorelDRAW Graphics Suite X7 - Redist (x64) (Version: 17.0 - Corel Corporation) Hidden CorelDRAW Graphics Suite X7 - Setup Files (x64) (Version: 17.0 - Corel Corporation) Hidden CorelDRAW Graphics Suite X7 - VBA (x64) (Version: 17.0 - Corel Corporation) Hidden CorelDRAW Graphics Suite X7 - VideoBrowser (x64) (Version: 17.0 - Corel Corporation) Hidden CorelDRAW Graphics Suite X7 - Writing Tools (x64) (Version: 17.0 - Corel Corporation) Hidden CorelDRAW Graphics Suite X7 (64-Bit) (HKLM\...\_{5CB73140-806C-42C6-A05A-1AFD0E92DEB5}) (Version: 17.0.0.491 - Corel Corporation) Dropbox (HKLM-x32\...\Dropbox) (Version: 3.12.5 - Dropbox, Inc.) Dropbox Update Helper (x32 Version: 1.3.27.35 - Dropbox, Inc.) Hidden Google Chrome (HKLM-x32\...\Google Chrome) (Version: 47.0.2526.80 - Google Inc.) Google Update Helper (x32 Version: 1.3.29.1 - Google Inc.) Hidden HP LaserJet Professional M1130-M1210 MFP Series (HKLM\...\HP LaserJet Professional M1130-M1210 MFP Series) (Version: - ) Intel(R) C++ Redistributables for Windows* on Intel(R) 64 (HKLM-x32\...\{D2437C5C-2D8C-40D2-8059-689AD7239FA3}) (Version: 11.1.048 - Intel Corporation) Java 8 Update 66 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218066F0}) (Version: 8.0.660.18 - Oracle Corporation) KeePass Password Safe 2.30 (HKLM-x32\...\KeePassPasswordSafe2_is1) (Version: 2.30 - Dominik Reichl) K-Lite Mega Codec Pack 11.4.0 (HKLM-x32\...\KLiteCodecPack_is1) (Version: 11.4.0 - ) LibreOffice 5.0.1.2 (HKLM-x32\...\{927AE35D-72BC-437D-BAC7-EE47D03DEE54}) (Version: 5.0.1.2 - The Document Foundation) Microsoft Mouse and Keyboard Center (HKLM\...\Microsoft Mouse and Keyboard Center) (Version: 2.6.140.0 - Microsoft Corporation) Microsoft Silverlight (HKLM-x32\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.30319 (HKLM\...\{DA5E371C-6333-3D8A-93A4-6FD5B20BCC6E}) (Version: 10.0.30319 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.30319 (HKLM-x32\...\{196BB40D-1578-3D01-B289-BEFC77A11A1E}) (Version: 10.0.30319 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727 (HKLM-x32\...\{15134cb0-b767-4960-a911-f2d16ae54797}) (Version: 11.0.50727.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 (HKLM-x32\...\{22154f09-719a-4619-bb71-5b3356999fbf}) (Version: 11.0.50727.1 - Microsoft Corporation) Microsoft Visual Studio Tools for Applications 2012 (HKLM-x32\...\{89ca2a32-2b52-4595-8dfd-6fe4757958d0}) (Version: 11.0.51108 - Microsoft Corporation) Mozilla Firefox 42.0 (x86 pl) (HKLM-x32\...\Mozilla Firefox 42.0 (x86 pl)) (Version: 42.0 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 42.0 - Mozilla) Napisy24 (HKLM-x32\...\{D1985DBC-F09E-4317-91B8-932AD0FD4A27}_is1) (Version: 1.1 - Napisy24.pl) Pacote de Idiomas do Microsoft Visual Studio Tools for Applications 2012 x64 Hosting Support - PTB (Version: 11.0.51108 - Microsoft Corporation) Hidden Pacote de Idiomas do Microsoft Visual Studio Tools for Applications 2012 x86 Hosting Support - PTB (x32 Version: 11.0.51108 - Microsoft Corporation) Hidden PDF Settings CS5 (x32 Version: 10.0 - Adobe Systems Incorporated) Hidden Picasa 3 (HKLM-x32\...\Picasa 3) (Version: 3.9.140.248 - Google, Inc.) Popcorn Time (HKU\S-1-5-21-2915783206-49812008-3396176740-1001\...\Popcorn Time) (Version: - Popcorn Official) ProjectLibre (HKLM-x32\...\{8E2A530F-ABE9-45B4-B4EA-B9DF56698376}) (Version: 1.6.2.0 - ProjectLibre) Scan To (HKLM\...\{E8A34AC8-0137-4515-A94B-0A0946DDC251}) (Version: 1.0.1 - HP) Skype™ 7.13 (HKLM-x32\...\{6A0549A9-1B96-498C-ACBC-3943001FEB19}) (Version: 7.13.101 - Skype Technologies S.A.) Sublime Text 2.0.2 (HKLM\...\Sublime Text 2_is1) (Version: - ) TeamViewer 10 (HKLM-x32\...\TeamViewer) (Version: 10.0.47484 - TeamViewer) Total Commander 64-bit (Remove or Repair) (HKLM\...\Totalcmd64) (Version: 8.52a - Ghisler Software GmbH) Vuze Leap 1.7 (HKU\S-1-5-21-2915783206-49812008-3396176740-1001\...\{a9a27088-7578-499d-ad2b-67ba95a4def4}) (Version: 1.7 - Azureus Software, Inc.) Winamp (HKLM-x32\...\Winamp) (Version: 5.666 - Nullsoft, Inc) Языковой пакет для поддержки размещения набора средств Microsoft Visual Studio Tools для работы с приложениями 2012 (x64) - RUS (Version: 11.0.51108 - Microsoft Corporation) Hidden Языковой пакет для поддержки размещения набора средств Microsoft Visual Studio Tools для работы с приложениями 2012 (x86) - RUS (x32 Version: 11.0.51108 - Microsoft Corporation) Hidden ==================== Niestandardowe rejestracje CLSID (filtrowane): ========================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) CustomCLSID: HKU\S-1-5-21-2915783206-49812008-3396176740-1001_Classes\CLSID\{71DCE5D6-4B57-496B-AC21-CD5B54EB93FD}\localserver32 -> C:\Users\Mariusz\AppData\Local\Microsoft\OneDrive\17.3.6281.1202\FileCoAuth.exe (Microsoft Corporation) ==================== Punkty Przywracania systemu ========================= UWAGA: Przywracanie systemu jest wyłączone ==================== Hosts - zawartość: =============================== (Użycie dyrektywy Hosts: w fixlist spowoduje reset pliku Hosts.) 2015-07-10 12:04 - 2015-07-10 12:02 - 00000824 ____A C:\WINDOWS\system32\Drivers\etc\hosts ==================== Zaplanowane zadania (filtrowane) ============= (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) Task: {0F354C7F-42A1-4363-A03E-0D7E46F269BC} - System32\Tasks\COMODO\COMODO Update {A6D52E4F-569B-4756-B3D8-DF217313DA85} => C:\Program Files\COMODO\COMODO Internet Security\cfpconfg.exe [2015-08-05] (COMODO) Task: {1A142DD3-E3E7-4304-804D-182957CEFBD8} - System32\Tasks\COMODO\COMODO Signature Update {B9D5C6F9-17D2-4917-8BD0-614BAA1C6A59} => C:\Program Files\COMODO\COMODO Internet Security\cfpconfg.exe [2015-08-05] (COMODO) Task: {317973FE-7CC6-41DC-BD14-23214061ECF3} - System32\Tasks\Microsoft_Hardware_Launch_mousekeyboardcenter_exe => C:\Program Files\Microsoft Mouse and Keyboard Center\mousekeyboardcenter.exe [2015-10-26] (Microsoft) Task: {43E019B9-282B-42F5-9145-79038A1E7F58} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\Windows\system32\MRT.exe [2015-12-15] (Microsoft Corporation) Task: {465D6A3D-0B54-4669-876E-E17D6F8D9F28} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-09-19] (Google Inc.) Task: {5C02AE5A-6AE1-4941-B16E-A103F0C7D53C} - System32\Tasks\AdobeAAMUpdater-1.0-DESKTOP-00CRU8F-Guest => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2010-03-06] (Adobe Systems Incorporated) Task: {6A57F0B6-3296-4135-80CE-798FC916BB12} - System32\Tasks\COMODO\COMODO Cache Builder {0FB77674-7905-4F34-A362-C5A9A26F8CF9} => C:\Program Files\COMODO\COMODO Internet Security\cfpconfg.exe [2015-08-05] (COMODO) Task: {71EE9BA2-C2B2-4D3D-87DB-800771DD2C75} - System32\Tasks\COMODO\COMODO Scan {F140D794-60B6-4F00-9235-D6457AA25B22} => C:\Program Files\COMODO\COMODO Internet Security\cfpconfg.exe [2015-08-05] (COMODO) Task: {73AA7D7E-CD5A-47FF-887D-D9ED2C729AAF} - System32\Tasks\Microsoft_MKC_Logon_Task_itype.exe => C:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe [2015-10-26] (Microsoft Corporation) Task: {91FD79C4-552B-4EB1-97CC-AA65671F6A92} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2015-11-02] (Adobe Systems Incorporated) Task: {98E69056-1743-4165-9EA6-7EE3AF976704} - System32\Tasks\DropboxUpdateTaskMachineUA => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [2015-09-19] (Dropbox, Inc.) Task: {A6600C06-2919-476D-A641-B45100DBB244} - System32\Tasks\Microsoft_MKC_Logon_Task_ipoint.exe => C:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe [2015-10-26] (Microsoft Corporation) Task: {BA2D8637-DF75-4FAD-80D8-39AF3361D277} - System32\Tasks\Microsoft_Hardware_Launch_ipoint_exe => C:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe [2015-10-26] (Microsoft Corporation) Task: {D30AD6A0-401F-446E-A803-E437F3117F3D} - System32\Tasks\Microsoft_Hardware_Launch_itype_exe => C:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe [2015-10-26] (Microsoft Corporation) Task: {DD68BCC5-E4C0-46DE-8ED5-4080746046B2} - System32\Tasks\COMODO\COMODO Autostart {D5EFF3B3-E126-4AF6-BCE9-852A72129E10} => C:\Program Files\COMODO\COMODO Internet Security\cistray.exe [2015-08-05] (COMODO) Task: {E34C620D-42A6-4701-88AE-238E721BE16D} - System32\Tasks\DropboxUpdateTaskMachineCore => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [2015-09-19] (Dropbox, Inc.) Task: {E36410B3-4A47-40E1-9FB4-078F448F5D34} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-09-19] (Google Inc.) Task: {E4CCF6F6-A92D-4A07-89AF-F62525284BCC} - System32\Tasks\klcp_update => C:\Program Files (x86)\K-Lite Codec Pack\Tools\CodecTweakTool.exe [2015-08-24] () (Załączenie wejścia w fixlist spowoduje przesunięcie pliku zadania (.job). Plik uruchamiany docelowo przez zadanie nie zostanie przeniesiony.) Task: C:\WINDOWS\Tasks\DropboxUpdateTaskMachineCore.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe Task: C:\WINDOWS\Tasks\DropboxUpdateTaskMachineUA.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ==================== Skróty ============================= (Wybrane wejścia mogą zostać załączone w celu ich zresetowania lub usunięcia.) ==================== Załadowane moduły (filtrowane) ============== 2015-10-30 08:18 - 2015-10-30 08:18 - 00185856 _____ () C:\WINDOWS\SYSTEM32\ism32k.dll 2015-09-19 15:10 - 2009-11-20 12:43 - 00074240 _____ () C:\WINDOWS\system32\spool\PRTPROCS\x64\HPM1210PP.dll 2015-01-08 22:02 - 2015-01-08 22:02 - 00067808 _____ () C:\Program Files\COMODO\COMODO Internet Security\scanners\smart.cav 2015-12-15 10:31 - 2015-12-15 10:31 - 02653816 _____ () C:\WINDOWS\system32\CoreUIComponents.dll 2015-12-15 11:18 - 2015-12-15 11:19 - 00144384 _____ () C:\Program Files\WindowsApps\Microsoft.Messaging_1.11.19004.0_x86__8wekyb3d8bbwe\SkypeHost.exe 2015-12-15 10:31 - 2015-12-15 10:31 - 02653816 _____ () C:\WINDOWS\System32\CoreUIComponents.dll 2015-10-30 08:17 - 2015-10-30 08:17 - 00093696 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\Windows.UI.Shell.SharedUtilities.dll 2015-10-30 08:17 - 2015-10-30 08:17 - 00472064 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\QuickActions.dll 2015-12-15 10:31 - 2015-12-15 10:31 - 08005632 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll 2015-12-15 10:31 - 2015-12-15 10:31 - 00591360 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll 2015-12-15 10:31 - 2015-12-15 10:31 - 02483200 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll 2015-12-15 10:31 - 2015-12-15 10:31 - 04089856 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll 2015-12-15 11:18 - 2015-12-15 11:19 - 00152064 _____ () C:\Program Files\WindowsApps\Microsoft.Messaging_1.11.19004.0_x86__8wekyb3d8bbwe\SkypeBackgroundTasks.dll 2015-12-15 11:18 - 2015-12-15 11:19 - 18906624 _____ () C:\Program Files\WindowsApps\Microsoft.Messaging_1.11.19004.0_x86__8wekyb3d8bbwe\SkyWrap.dll 2015-12-10 10:18 - 2015-12-04 22:32 - 01583432 _____ () C:\Program Files (x86)\Google\Chrome\Application\47.0.2526.80\libglesv2.dll 2015-12-10 10:18 - 2015-12-04 22:32 - 00081224 _____ () C:\Program Files (x86)\Google\Chrome\Application\47.0.2526.80\libegl.dll ==================== Alternate Data Streams (filtrowane) ========= (Załączenie wejścia w fixlist spowoduje usunięcie strumienia ADS.) AlternateDataStreams: C:\WINDOWS\system32\amdgfxinfo64.dll:$CmdTcID AlternateDataStreams: C:\WINDOWS\system32\amdhdl64.dll:$CmdTcID AlternateDataStreams: C:\WINDOWS\system32\amdlvr64.dll:$CmdTcID AlternateDataStreams: C:\WINDOWS\system32\amdmantle64.dll:$CmdTcID AlternateDataStreams: C:\WINDOWS\system32\amdmiracast.dll:$CmdTcID AlternateDataStreams: C:\WINDOWS\system32\amdmmcl6.dll:$CmdTcID AlternateDataStreams: C:\WINDOWS\system32\amdocl12cl64.dll:$CmdTcID AlternateDataStreams: C:\WINDOWS\system32\amdocl_as64.exe:$CmdTcID AlternateDataStreams: C:\WINDOWS\system32\amdocl_ld64.exe:$CmdTcID AlternateDataStreams: C:\WINDOWS\system32\amdpcom64.dll:$CmdTcID AlternateDataStreams: C:\WINDOWS\system32\amdxc64.dll:$CmdTcID AlternateDataStreams: C:\WINDOWS\system32\atiadlxx.dll:$CmdTcID AlternateDataStreams: C:\WINDOWS\system32\atiapfxx.exe:$CmdTcID AlternateDataStreams: C:\WINDOWS\system32\aticalcl64.dll:$CmdTcID AlternateDataStreams: C:\WINDOWS\system32\aticaldd64.dll:$CmdTcID AlternateDataStreams: C:\WINDOWS\system32\aticalrt64.dll:$CmdTcID AlternateDataStreams: C:\WINDOWS\system32\aticfx64.dll:$CmdTcID AlternateDataStreams: C:\WINDOWS\system32\atidemgy.dll:$CmdTcID AlternateDataStreams: C:\WINDOWS\system32\atidxx64.dll:$CmdTcID AlternateDataStreams: C:\WINDOWS\system32\atieah64.exe:$CmdTcID AlternateDataStreams: C:\WINDOWS\system32\atieclxx.exe:$CmdTcID AlternateDataStreams: C:\WINDOWS\system32\atiesrxx.exe:$CmdTcID AlternateDataStreams: C:\WINDOWS\system32\atig6pxx.dll:$CmdTcID AlternateDataStreams: C:\WINDOWS\system32\atig6txx.dll:$CmdTcID AlternateDataStreams: C:\WINDOWS\system32\atiglpxx.dll:$CmdTcID AlternateDataStreams: C:\WINDOWS\system32\atimpc64.dll:$CmdTcID AlternateDataStreams: C:\WINDOWS\system32\atimuixx.dll:$CmdTcID AlternateDataStreams: C:\WINDOWS\system32\atio6axx.dll:$CmdTcID AlternateDataStreams: C:\WINDOWS\system32\ATIODCLI.exe:$CmdTcID AlternateDataStreams: C:\WINDOWS\system32\ATIODE.exe:$CmdTcID AlternateDataStreams: C:\WINDOWS\system32\atitmm64.dll:$CmdTcID AlternateDataStreams: C:\WINDOWS\system32\atiu9p64.dll:$CmdTcID AlternateDataStreams: C:\WINDOWS\system32\atiumd64.dll:$CmdTcID AlternateDataStreams: C:\WINDOWS\system32\atiumd6a.dll:$CmdTcID AlternateDataStreams: C:\WINDOWS\system32\atiuxp64.dll:$CmdTcID AlternateDataStreams: C:\WINDOWS\system32\clinfo.exe:$CmdTcID AlternateDataStreams: C:\WINDOWS\system32\coin98ip.dll:$CmdTcID AlternateDataStreams: C:\WINDOWS\system32\coin98itp.dll:$CmdTcID AlternateDataStreams: C:\WINDOWS\system32\coinst_15.20.dll:$CmdTcID AlternateDataStreams: C:\WINDOWS\system32\detoured.dll:$CmdTcID AlternateDataStreams: C:\WINDOWS\system32\hsa-thunk64.dll:$CmdTcID AlternateDataStreams: C:\WINDOWS\system32\mantle64.dll:$CmdTcID AlternateDataStreams: C:\WINDOWS\system32\mantleaxl64.dll:$CmdTcID AlternateDataStreams: C:\WINDOWS\system32\MpSigStub.exe:$CmdTcID AlternateDataStreams: C:\WINDOWS\system32\MRT.exe:$CmdTcID AlternateDataStreams: C:\WINDOWS\system32\OpenCL.dll:$CmdTcID AlternateDataStreams: C:\WINDOWS\system32\vcomp100.dll:$CmdTcID AlternateDataStreams: C:\WINDOWS\system32\WdfCoInstaller01011.dll:$CmdTcID AlternateDataStreams: C:\WINDOWS\SysWOW64\amdgfxinfo32.dll:$CmdTcID AlternateDataStreams: C:\WINDOWS\SysWOW64\amdhdl32.dll:$CmdTcID AlternateDataStreams: C:\WINDOWS\SysWOW64\amdlvr32.dll:$CmdTcID AlternateDataStreams: C:\WINDOWS\SysWOW64\amdmantle32.dll:$CmdTcID AlternateDataStreams: C:\WINDOWS\SysWOW64\amdmmcl.dll:$CmdTcID AlternateDataStreams: C:\WINDOWS\SysWOW64\amdocl.dll:$CmdTcID AlternateDataStreams: C:\WINDOWS\SysWOW64\amdocl12cl.dll:$CmdTcID AlternateDataStreams: C:\WINDOWS\SysWOW64\amdocl_as32.exe:$CmdTcID AlternateDataStreams: C:\WINDOWS\SysWOW64\amdocl_ld32.exe:$CmdTcID AlternateDataStreams: C:\WINDOWS\SysWOW64\amdpcom32.dll:$CmdTcID AlternateDataStreams: C:\WINDOWS\SysWOW64\amdxc32.dll:$CmdTcID AlternateDataStreams: C:\WINDOWS\SysWOW64\atiadlxx.dll:$CmdTcID AlternateDataStreams: C:\WINDOWS\SysWOW64\atiadlxy.dll:$CmdTcID AlternateDataStreams: C:\WINDOWS\SysWOW64\aticalcl.dll:$CmdTcID AlternateDataStreams: C:\WINDOWS\SysWOW64\aticaldd.dll:$CmdTcID AlternateDataStreams: C:\WINDOWS\SysWOW64\aticalrt.dll:$CmdTcID AlternateDataStreams: C:\WINDOWS\SysWOW64\aticfx32.dll:$CmdTcID AlternateDataStreams: C:\WINDOWS\SysWOW64\atidxx32.dll:$CmdTcID AlternateDataStreams: C:\WINDOWS\SysWOW64\atieah32.exe:$CmdTcID AlternateDataStreams: C:\WINDOWS\SysWOW64\atigktxx.dll:$CmdTcID AlternateDataStreams: C:\WINDOWS\SysWOW64\atiglpxx.dll:$CmdTcID AlternateDataStreams: C:\WINDOWS\SysWOW64\atimpc32.dll:$CmdTcID AlternateDataStreams: C:\WINDOWS\SysWOW64\atioglxx.dll:$CmdTcID AlternateDataStreams: C:\WINDOWS\SysWOW64\atiu9pag.dll:$CmdTcID AlternateDataStreams: C:\WINDOWS\SysWOW64\atiumdag.dll:$CmdTcID AlternateDataStreams: C:\WINDOWS\SysWOW64\atiumdva.dll:$CmdTcID AlternateDataStreams: C:\WINDOWS\SysWOW64\atiuxpag.dll:$CmdTcID AlternateDataStreams: C:\WINDOWS\SysWOW64\detoured.dll:$CmdTcID AlternateDataStreams: C:\WINDOWS\SysWOW64\hsa-thunk.dll:$CmdTcID AlternateDataStreams: C:\WINDOWS\SysWOW64\mantle32.dll:$CmdTcID AlternateDataStreams: C:\WINDOWS\SysWOW64\mantleaxl32.dll:$CmdTcID AlternateDataStreams: C:\WINDOWS\SysWOW64\OpenCL.dll:$CmdTcID AlternateDataStreams: C:\WINDOWS\SysWOW64\WISPTIS.EXE:$CmdTcID AlternateDataStreams: C:\WINDOWS\system32\Drivers\ati2erec.dll:$CmdTcID AlternateDataStreams: C:\WINDOWS\system32\Drivers\atikmdag.sys:$CmdTcID AlternateDataStreams: C:\WINDOWS\system32\Drivers\atikmpag.sys:$CmdTcID AlternateDataStreams: C:\WINDOWS\system32\Drivers\dc3d.sys:$CmdTcID AlternateDataStreams: C:\WINDOWS\system32\Drivers\point64.sys:$CmdTcID AlternateDataStreams: C:\Users\Guest\Desktop\114577_14_f.jpg:$CmdZnID AlternateDataStreams: C:\Users\Guest\Desktop\Business_Model_Canvas.png:$CmdTcID AlternateDataStreams: C:\Users\Guest\Desktop\Business_Model_Canvas.png:$CmdZnID AlternateDataStreams: C:\Users\Guest\Downloads\12204820_1516046282046377_1913496035_n.jpg:$CmdZnID AlternateDataStreams: C:\Users\Guest\Downloads\Adele - Hello.mp3:$CmdZnID AlternateDataStreams: C:\Users\Guest\Downloads\DAVID GUETTA - HEY MAMA ft. NICKI MINAJ & AFROJACK (Official Audio).mp3:$CmdZnID AlternateDataStreams: C:\Users\Guest\Downloads\downloaded.pdf:$CmdZnID AlternateDataStreams: C:\Users\Guest\Downloads\Dzień Rektorski.pdf:$CmdZnID AlternateDataStreams: C:\Users\Guest\Downloads\Ekonomia zjazd 3.xlsx:$CmdZnID AlternateDataStreams: C:\Users\Guest\Downloads\Fifth Harmony - Worth It ft. Kid Ink.mp3:$CmdZnID AlternateDataStreams: C:\Users\Guest\Downloads\Imany Feat. Filatov & Karas Don't Be So Shy (Original Mix).mp3:$CmdZnID AlternateDataStreams: C:\Users\Guest\Downloads\list motywacyjny.docx:$CmdZnID AlternateDataStreams: C:\Users\Guest\Downloads\lista_plac_wzor_od2013.01.xls:$CmdZnID AlternateDataStreams: C:\Users\Guest\Downloads\Plan Ekonomia zjazd2.xlsx:$CmdZnID AlternateDataStreams: C:\Users\Guest\Downloads\Robin Schulz - Sugar (feat. Francesco Yates).mp3:$CmdZnID AlternateDataStreams: C:\Users\Guest\Downloads\Sam Feldt - Show Me Love (EDX's Indian Summer Remix) [Official Video].mp3:$CmdZnID AlternateDataStreams: C:\Users\Guest\Downloads\Scan0002.jpg:$CmdZnID AlternateDataStreams: C:\Users\Guest\Downloads\TERMINARZ ZJAZDÓW 2015-2016- STARGARD.doc:$CmdZnID AlternateDataStreams: C:\Users\Guest\Downloads\The Weeknd - Can't Feel My Face.mp3:$CmdZnID AlternateDataStreams: C:\Users\Guest\Downloads\the-weeknd-often.mp3:$CmdZnID AlternateDataStreams: C:\Users\Guest\Downloads\Ulotka.docx:$CmdZnID AlternateDataStreams: C:\Users\Guest\Downloads\załącznik-nr-1-wniosek-stypendialny3.doc:$CmdZnID AlternateDataStreams: C:\Users\Guest\Downloads\załącznik-nr-1-wniosek-stypendialny4 (1).doc:$CmdZnID AlternateDataStreams: C:\Users\Guest\Downloads\załącznik-nr-1-wniosek-stypendialny4.doc:$CmdZnID AlternateDataStreams: C:\Users\Guest\Downloads\Załącznik-nr-5-Oświadczenie-o-wysokości-składek-na-ubezpieczenie-zdrowotne2.doc:$CmdZnID AlternateDataStreams: C:\Users\Guest\Downloads\życiorys.docx:$CmdZnID ==================== Tryb awaryjny (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Wartość "AlternateShell" zostanie przywrócona.) ==================== EXE - Powiązania (filtrowane) =============== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci.) ==================== Internet Explorer - Witryny zaufane i z ograniczeniami =============== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru.) ==================== Inne obszary ============================ (Obecnie brak automatycznej naprawy dla tej sekcji.) HKU\S-1-5-21-2915783206-49812008-3396176740-1001\Control Panel\Desktop\\Wallpaper -> F:\Grafika\ws_Downtown_Sidney_1920x1200.jpg DNS Servers: 8.8.8.8 - 8.8.4.4 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Zapora systemu Windows [funkcja włączona] ==================== MSCONFIG/TASK MANAGER - Wyłączone elementy == (Obecnie brak automatycznej naprawy dla tej sekcji.) HKLM\...\StartupApproved\Run: => "AdobeAAMUpdater-1.0" HKLM\...\StartupApproved\Run32: => "AdobeCS5ServiceManager" HKLM\...\StartupApproved\Run32: => "KeePass 2 PreLoad" HKU\S-1-5-21-2915783206-49812008-3396176740-1001\...\StartupApproved\Run: => "ALLUpdate" HKU\S-1-5-21-2915783206-49812008-3396176740-1001\...\StartupApproved\Run: => "OneDrive" HKU\S-1-5-21-2915783206-49812008-3396176740-1001\...\StartupApproved\Run: => "Napisy24Update" ==================== Reguły Zapory systemu Windows (filtrowane) =============== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139 FirewallRules: [{801B3CB4-F944-4D57-9C3C-91BE9C402AD1}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{D64D8FA1-480A-497F-9682-08C4DB63B1EA}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{05F57AF9-C922-4D45-9756-C8C49B601004}] => (Allow) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe FirewallRules: [{42B47EC1-FED9-42F6-9DFC-C62AE4B35999}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe FirewallRules: [{EC0EA1D6-F897-490A-9B64-54F1BD717005}] => (Allow) C:\Users\Mariusz\AppData\Roaming\Vuze Leap\VuzeLeap.exe FirewallRules: [{DE224F3F-D79C-445A-A891-FECE86841E5A}] => (Allow) C:\Users\Mariusz\AppData\Roaming\Vuze Leap\VuzeLeap.exe FirewallRules: [{EB04CFB0-ACE8-4E0C-97AC-76BF1308548A}] => (Block) c:\Program Files\Corel\CorelDRAW Graphics Suite X7\Programs64\CorelPP.exe FirewallRules: [{2B65FD56-93D6-4017-A50D-6BE8C20BFFF5}] => (Block) c:\Program Files\Corel\CorelDRAW Graphics Suite X7\Programs64\CorelDrw.exe FirewallRules: [UDP Query User{DE2FE57E-F4C0-4748-AD5E-B9C2EF8ECAB7}C:\program files\totalcmd\totalcmd64.exe] => (Allow) C:\program files\totalcmd\totalcmd64.exe FirewallRules: [TCP Query User{23CE9ED0-5C1C-4AF9-8655-DA1D6F35BD33}C:\program files\totalcmd\totalcmd64.exe] => (Allow) C:\program files\totalcmd\totalcmd64.exe FirewallRules: [{C0FACE1D-F521-4E1E-8C06-1996B9909C90}] => (Allow) C:\Program Files (x86)\Winamp\winamp.exe FirewallRules: [{01B8EB06-761A-4D57-A6CE-50C1C8E5CAC4}] => (Allow) C:\Program Files (x86)\Winamp\winamp.exe FirewallRules: [UDP Query User{703BA33C-5979-4FCE-8282-4CFB7B31B13B}C:\users\mariusz\appdata\local\popcorn time\nw.exe] => (Allow) C:\users\mariusz\appdata\local\popcorn time\nw.exe FirewallRules: [TCP Query User{152E1ECA-C83B-43B9-8835-E6DD42963248}C:\users\mariusz\appdata\local\popcorn time\nw.exe] => (Allow) C:\users\mariusz\appdata\local\popcorn time\nw.exe FirewallRules: [{A4C4665A-498F-4B82-8984-327382D7BD6C}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe FirewallRules: [{39B20823-D37B-433F-B8E5-55C103250C35}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe FirewallRules: [{9B943E93-1221-4E1A-9FAC-F72236963BB1}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe FirewallRules: [{62899F75-C1F8-4F05-9FCD-C56DCC7BD721}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe FirewallRules: [{01A62317-D616-4872-B605-3F8F2AF4B59C}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe ==================== Wadliwe urządzenia w Menedżerze urządzeń ============= ==================== Błędy w Dzienniku zdarzeń: ========================= Dziennik Aplikacja: ================== Error: (12/15/2015 11:26:39 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: DESKTOP-00CRU8F) Description: Aktywacja aplikacji Microsoft.WindowsPhone_8wekyb3d8bbwe!CompanionApp.App nie powiodła się. Błąd: -2147024770. Więcej informacji można znaleźć w dzienniku Microsoft-Windows-TWinUI/Działa. Error: (12/15/2015 11:11:39 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: DESKTOP-00CRU8F) Description: Aktywacja aplikacji Microsoft.WindowsPhone_8wekyb3d8bbwe!CompanionApp.App nie powiodła się. Błąd: -2147024770. Więcej informacji można znaleźć w dzienniku Microsoft-Windows-TWinUI/Działa. Error: (12/15/2015 11:01:39 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: DESKTOP-00CRU8F) Description: Aktywacja aplikacji Microsoft.WindowsPhone_8wekyb3d8bbwe!CompanionApp.App nie powiodła się. Błąd: -2147024770. Więcej informacji można znaleźć w dzienniku Microsoft-Windows-TWinUI/Działa. Error: (12/15/2015 10:56:39 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: DESKTOP-00CRU8F) Description: Aktywacja aplikacji Microsoft.WindowsPhone_8wekyb3d8bbwe!CompanionApp.App nie powiodła się. Błąd: -2147024770. Więcej informacji można znaleźć w dzienniku Microsoft-Windows-TWinUI/Działa. Error: (12/15/2015 10:54:14 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: DESKTOP-00CRU8F) Description: Aktywacja aplikacji Microsoft.WindowsPhone_8wekyb3d8bbwe!CompanionApp.App nie powiodła się. Błąd: -2147024770. Więcej informacji można znaleźć w dzienniku Microsoft-Windows-TWinUI/Działa. Error: (12/15/2015 10:52:56 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: DESKTOP-00CRU8F) Description: Aktywacja aplikacji Microsoft.WindowsPhone_8wekyb3d8bbwe!CompanionApp.App nie powiodła się. Błąd: -2147024770. Więcej informacji można znaleźć w dzienniku Microsoft-Windows-TWinUI/Działa. Error: (12/15/2015 10:46:17 AM) (Source: Microsoft-Windows-WMI) (EventID: 24) (User: ZARZĄDZANIE NT) Description: Dostawca zdarzeń CisWmi próbował zarejestrować zapytanie „SELECT * FROM CisFileRatingChange”, w przypadku którego klasa docelowa „CisFileRatingChange” w przestrzeni nazw //./ROOT/cis nie istnieje. Zapytanie zostanie zignorowane. Error: (12/15/2015 10:46:17 AM) (Source: Microsoft-Windows-WMI) (EventID: 24) (User: ZARZĄDZANIE NT) Description: Dostawca zdarzeń CisWmi próbował zarejestrować zapytanie „SELECT * FROM CisStatusChange”, w przypadku którego klasa docelowa „CisStatusChange” w przestrzeni nazw //./ROOT/cis nie istnieje. Zapytanie zostanie zignorowane. Error: (12/15/2015 10:46:17 AM) (Source: Microsoft-Windows-WMI) (EventID: 24) (User: ZARZĄDZANIE NT) Description: Dostawca zdarzeń CisWmi próbował zarejestrować zapytanie „SELECT * FROM CisNotification”, w przypadku którego klasa docelowa „CisNotification” w przestrzeni nazw //./ROOT/cis nie istnieje. Zapytanie zostanie zignorowane. Error: (12/15/2015 10:46:17 AM) (Source: Microsoft-Windows-WMI) (EventID: 24) (User: ZARZĄDZANIE NT) Description: Dostawca zdarzeń CisWmi próbował zarejestrować zapytanie „SELECT * FROM FwAlert”, w przypadku którego klasa docelowa „FwAlert” w przestrzeni nazw //./ROOT/cis nie istnieje. Zapytanie zostanie zignorowane. Dziennik System: ============= Error: (12/15/2015 03:07:27 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Usługa Synchronizuj hosta_5040e niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 10000 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie. Error: (12/15/2015 03:07:27 PM) (Source: DCOM) (EventID: 10016) (User: ZARZĄDZANIE NT) Description: właściwe dla aplikacjiLokalnyAktywacja{D63B10C5-BB46-4990-A94F-E40B9D520160}{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}ZARZĄDZANIE NTSYSTEMS-1-5-18LocalHost (użycie LRPC)NiedostępnyNiedostępny Error: (12/15/2015 03:07:21 PM) (Source: Service Control Manager) (EventID: 7032) (User: ) Description: Menedżer sterowania usługami próbował podjąć akcję korekcyjną (Uruchom usługę ponownie) po nieoczekiwanym zakończeniu usługi Windows Search, ale ta akcja nie powiodła się przy następującym błędzie: %%1056. Error: (12/15/2015 03:06:51 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Usługa COMODO Virtual Service Manager niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. Error: (12/15/2015 03:06:51 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Usługa Windows Search niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 30000 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie. Error: (12/15/2015 03:06:51 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Usługa COMODO Internet Security Helper Service niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. Error: (12/15/2015 03:06:51 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Usługa TeamViewer 10 niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 2000 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie. Error: (12/15/2015 03:06:51 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Usługa Corel License Validation Service V2 x64, Powered by arvato niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. Error: (12/15/2015 03:06:51 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Usługa WdMan Service niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. Error: (12/15/2015 03:06:51 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Usługa HP SI Service niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 1000 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie. CodeIntegrity: =================================== Date: 2015-12-15 15:10:18.917 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\guard64.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2015-12-15 15:10:18.112 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\guard64.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2015-12-15 15:10:17.969 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\guard64.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2015-12-15 15:10:15.525 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\guard64.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2015-12-15 15:09:42.445 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\guard64.dll because the set of per-page image hashes could not be found on the system. Date: 2015-12-15 15:08:08.101 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\guard64.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2015-12-15 15:08:06.415 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\guard64.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2015-12-15 15:03:35.287 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\guard64.dll because the set of per-page image hashes could not be found on the system. Date: 2015-12-15 14:57:27.546 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\guard64.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2015-12-15 14:57:26.357 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\guard64.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. ==================== Statystyki pamięci =========================== Procesor: Intel(R) Core(TM) i7 CPU 930 @ 2.80GHz Procent pamięci w użyciu: 28% Całkowita pamięć fizyczna: 6142.49 MB Dostępna pamięć fizyczna: 4366.28 MB Całkowita pamięć wirtualna: 7166.49 MB Dostępna pamięć wirtualna: 5187.23 MB ==================== Dyski ================================ Drive c: (System) (Fixed) (Total:111.3 GB) (Free:69.97 GB) NTFS Drive e: (Dane) (Fixed) (Total:97.56 GB) (Free:69.04 GB) NTFS Drive f: (Media) (Fixed) (Total:254.37 GB) (Free:226.57 GB) NTFS Drive g: (Praca) (Fixed) (Total:244.14 GB) (Free:132.74 GB) NTFS ==================== MBR & Tablica partycji ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 111.8 GB) (Disk ID: F00EA888) Partition 1: (Active) - (Size=500 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=111.3 GB) - (Type=07 NTFS) ======================================================== Disk: 1 (MBR Code: Windows 7 or 8) (Size: 596.2 GB) (Disk ID: 2DAC744E) Partition 1: (Not Active) - (Size=100 MB) - (Type=17) Partition 2: (Active) - (Size=97.6 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=254.4 GB) - (Type=07 NTFS) Partition 4: (Not Active) - (Size=244.1 GB) - (Type=OF Extended) ==================== Koniec Addition.txt ============================