Rezultaty skanu uzupełniającego Farbar Recovery Scan Tool (x64) Wersja:18-01-2016 Uruchomiony przez Morthen (2016-01-20 16:47:50) Uruchomiony z C:\Users\Morthen\Downloads Windows 8.1 (X64) (2015-05-12 18:35:53) Tryb startu: Normal ========================================================== ==================== Konta użytkowników: ============================= Administrator (S-1-5-21-3888125600-2760613544-1702722691-500 - Administrator - Disabled) Gość (S-1-5-21-3888125600-2760613544-1702722691-501 - Limited - Disabled) Morthen (S-1-5-21-3888125600-2760613544-1702722691-1001 - Administrator - Enabled) => C:\Users\Morthen ==================== Centrum zabezpieczeń ======================== (Załączenie wejścia w fixlist spowoduje jego usunięcie.) AV: Windows Defender (Enabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AV: avast! Antivirus (Enabled - Out of date) {17AD7D40-BA12-9C46-7131-94903A54AD8B} AS: Windows Defender (Enabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: avast! Antivirus (Enabled - Out of date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736} ==================== Zainstalowane programy ====================== (W fixlist dozwolone tylko załączanie programów adware z flagą "Hidden" w celu ich uwidocznienia. Programy adware powinny zostać w poprawny sposób odinstalowane.) 7-Zip 9.20 (x64 edition) (HKLM\...\{23170F69-40C1-2702-0920-000001000000}) (Version: 9.20.00.0 - Igor Pavlov) ACPI Driver Installer (HKLM-x32\...\553E35CD-0415-41bc-B39A-410375E88534) (Version: 2.1 - Intel Corporation) Aktualizacje NVIDIA 2.8.1.21 (Version: 2.8.1.21 - NVIDIA Corporation) Hidden Assassin's Creed Syndicate (HKLM-x32\...\Uplay Install 1875) (Version: 1.21 - Ubisoft) Avast Free Antivirus (HKLM-x32\...\Avast) (Version: 11.1.2245 - AVAST Software) Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment) CCleaner (HKLM\...\CCleaner) (Version: 5.13 - Piriform) GOG Galaxy (HKLM-x32\...\{7258BA11-600C-430E-A759-27E2C691A335}_is1) (Version: - GOG.com) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 31.0.1650.59 - Google Inc.) Google Drive (HKLM-x32\...\{1C3D2F92-D25E-4D98-B810-3F3B0857BF26}) (Version: 1.26.0707.2863 - Google, Inc.) Google Update Helper (x32 Version: 1.3.21.115 - Google Inc.) Hidden Google Update Helper (x32 Version: 1.3.29.1 - Google Inc.) Hidden Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 10.0.31.1000 - Intel Corporation) Intel(R) Small Business Advantage (HKLM-x32\...\{6A6D86CD-B004-46b7-8951-7BB75A776F8C}) (Version: 2.2.51.8439 - Intel(R) Corporation) Intel(R) Smart Connect Technology (HKLM\...\{4188E70A-4D3B-447C-B366-963C9E8B4538}) (Version: 5.0.10.2907 - Intel Corporation) Intel(R) Update Manager (x32 Version: 1.0.0.36888 - Intel Corporation) Hidden Intel® Watchdog Timer Driver (Intel® WDT) (HKLM-x32\...\{3FD0C489-0F02-481a-A3E1-9754CD396761}) (Version: - Intel Corporation) Intel® Watchdog Timer Driver (Intel® WDT) (HKLM-x32\...\3FD0C489-0F02-481a-A3E1-9754CD396761) (Version: - Intel Corporation) Malwarebytes Anti-Malware wersja 2.2.0.1024 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.2.0.1024 - Malwarebytes) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Mozilla Firefox 43.0.4 (x86 pl) (HKLM-x32\...\Mozilla Firefox 43.0.4 (x86 pl)) (Version: 43.0.4 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 43.0.4.5848 - Mozilla) MSI Afterburner 4.0.0 (HKLM-x32\...\Afterburner) (Version: 4.0.0 - MSI Co., LTD) MSI Command Center (HKLM-x32\...\{85A2564E-9ED9-448A-91E4-B9211EE58A08}_is1) (Version: 1.0.0.91 - MSI) MSI Gaming APP (HKLM-x32\...\{E0229316-E73B-484B-B9E0-45098AB38D8C}}_is1) (Version: 4.0.0.00 - MSI) MSI Intel Extreme Tuning Utility (HKLM-x32\...\{56351c83-306c-4135-a570-2784d3025548}) (Version: 5.1.0.101 - Intel Corporation) MSI Intel Extreme Tuning Utility (x32 Version: 5.1.0.101 - Intel Corporation) Hidden MSI Kombustor 2.5.9 (HKLM-x32\...\{0B7C79A5-5CB2-4ABD-A9C1-92A6213CE8DD}_is1) (Version: - MSI Co., LTD) MSI Live Update 6 (HKLM-x32\...\{4F46CF54-47D2-41F4-B230-B0954C544420}}_is1) (Version: 6.1.009 - MSI) MSI Smart Utilities (HKLM-x32\...\{009E5DF2-3F97-480B-89DA-F2D5E672E14A}_is1) (Version: 2.0.0.10 - MSI) MSI Super Charger (HKLM-x32\...\{7CDF10DD-A9B5-4DA3-AB95-E193248D4369}_is1) (Version: 1.2.027 - MSI) Neverwinter Nights Diamond Edition (HKLM-x32\...\1207658890_is1) (Version: 2.1.0.20 - GOG.com) NVIDIA GeForce Experience 2.8.1.21 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.8.1.21 - NVIDIA Corporation) NVIDIA Oprogramowanie systemu PhysX 9.15.0428 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.15.0428 - NVIDIA Corporation) NVIDIA Sterownik 3D Vision 361.43 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 361.43 - NVIDIA Corporation) NVIDIA Sterownik dźwięku HD 1.3.34.4 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.34.4 - NVIDIA Corporation) NVIDIA Sterownik graficzny 361.43 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 361.43 - NVIDIA Corporation) NVIDIA Sterownik kontrolera 3D Vision 352.65 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 352.65 - NVIDIA Corporation) NVIDIA Wirtualny dźwięk Miracast 361.43 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Miracast.VirtualAudio) (Version: 361.43 - NVIDIA Corporation) Oprogramowanie mikroukładu Intel® (x32 Version: 10.0.20 - Intel(R) Corporation) Hidden Origin (HKLM-x32\...\Origin) (Version: 9.11.1.6605 - Electronic Arts, Inc.) Panel sterowania NVIDIA 361.43 (Version: 361.43 - NVIDIA Corporation) Hidden Pillars of Eternity (HKLM-x32\...\1207666813_is1) (Version: 2.6.0.12 - GOG.com) Pillars of Eternity Kickstarter Item (HKLM-x32\...\Pillars of Eternity Kickstarter Item_is1) (Version: 2.0.0.4 - GOG.com) Pillars of Eternity Preorder Item and Pet (HKLM-x32\...\Pillars of Eternity Preorder Item and Pet_is1) (Version: 2.0.0.4 - GOG.com) Qualcomm Atheros Bandwidth Control Filter Driver (Version: 1.1.49.1068 - Qualcomm Atheros) Hidden Qualcomm Atheros Killer E220x Drivers (Version: 1.1.49.1068 - Qualcomm Atheros) Hidden Qualcomm Atheros Killer Performance Suite (HKLM-x32\...\{E70DB50B-10B4-46BC-9DE2-AB8B49E061EE}) (Version: 1.1.49.1068 - Qualcomm Atheros) Qualcomm Atheros Network Manager (Version: 1.1.49.1068 - Qualcomm Atheros) Hidden Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7399 - Realtek Semiconductor Corp.) RivaTuner Statistics Server 6.2.0 (HKLM-x32\...\RTSS) (Version: 6.2.0 - Unwinder) SHIELD Streaming (Version: 4.1.0250 - NVIDIA Corporation) Hidden SHIELD Wireless Controller Driver (Version: 2.8.1.21 - NVIDIA Corporation) Hidden Sound Blaster Cinema (HKLM-x32\...\{8801CA65-921A-4CCC-9D63-879D1D0BAA97}) (Version: 1.00.05 - Creative Technology Limited) Spotify (HKU\S-1-5-21-3888125600-2760613544-1702722691-1001\...\Spotify) (Version: 1.0.20.94.g8f8543b3 - Spotify AB) Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation) The Sims™ 3 (HKLM-x32\...\{C05D8CDB-417D-4335-A38C-A0659EDFD6B8}) (Version: 1.69.36.024017 - Electronic Arts Inc.) The Witcher 3 - Wild Hunt (HKLM-x32\...\1207664643_is1) (Version: 1.0.12.0 - GOG.com) The Witcher 3: Wild Hunt - Free DLC program (16 DLC) (HKLM-x32\...\Free DLC program (16 DLC)_is1) (Version: 1.0.10.0 - GOG.com) The Witcher: Enhanced Edition (HKLM-x32\...\Steam App 20900) (Version: - CD PROJEKT RED) TP-LINK TL-WN881ND Driver (HKLM-x32\...\{FDA7E907-6539-42C1-9721-0239C281B336}) (Version: 1.3.1 - TP-LINK) TP-LINK Wireless Configuration Utility (HKLM-x32\...\{319D91C6-3D44-436C-9F79-36C0D22372DC}) (Version: 1.3.1 - TP-LINK) Uplay (HKLM-x32\...\Uplay) (Version: 14.0 - Ubisoft) VGA Boost (HKLM-x32\...\{809ACFAE-9A4D-4C60-9223-D8B615CD8CBA}}_is1) (Version: 1.0.0.8 - MSI) Visual Studio 2012 x64 Redistributables (HKLM\...\{8C775E70-A791-4DA8-BCC3-6AB7136F4484}) (Version: 14.0.0.1 - AVG Technologies) Visual Studio 2012 x86 Redistributables (HKLM-x32\...\{98EFF19A-30AB-4E4B-B943-F06B1C63EBF8}) (Version: 14.0.0.1 - AVG Technologies CZ, s.r.o.) World of Warcraft (HKLM-x32\...\World of Warcraft) (Version: - Blizzard Entertainment) XSplit Gamecaster (HKLM-x32\...\{7CBDC2CD-F5C7-4DD3-91C8-1E4D68924955}) (Version: 1.9.1409.2308 - SplitmediaLabs) ==================== Niestandardowe rejestracje CLSID (filtrowane): ========================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) ==================== Zaplanowane zadania (filtrowane) ============= (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) Task: {0775A191-D192-4260-8E26-A29956521AB2} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2015-05-13] (AVAST Software) Task: {1E7E3944-4155-4130-B8E3-25B920036669} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2015-12-08] (Piriform Ltd) Task: {3E4BDEC9-77AE-4A51-AABB-A474969BD3E3} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\Windows\system32\MRT.exe [2016-01-17] (Microsoft Corporation) Task: {879E2E63-E7F7-4489-AC08-CE3A7EC3FA4D} - System32\Tasks\AVAST Software\Avast settings backup => C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe [2016-01-19] (AVAST Software) Task: {8805B31B-B59A-41C6-87EE-36D8C31F6765} - System32\Tasks\Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeReminderTime => C:\Windows\system32\GWX\GWXUXWorker.exe [2015-12-05] (Microsoft Corporation) Task: {89635CA1-192A-4105-B917-258E8AF0A48F} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-05-13] (Google Inc.) Task: {BA48FCCD-F364-42BF-B684-E7B4DCC4D3D1} - System32\Tasks\Microsoft\Windows\UPnP\UPnPHostConfig => config upnphost start= auto Task: {C67F9BDA-3801-4CC5-9A7C-79AD41C12CF2} - System32\Tasks\Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeTime => C:\Windows\system32\GWX\GWXUXWorker.exe [2015-12-05] (Microsoft Corporation) Task: {DE84362E-10C8-4037-93C3-244F32F2826D} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_ERROR_HB => C:\Windows\system32\MRT.exe [2016-01-17] (Microsoft Corporation) Task: {EB34898C-A176-4E5B-B60D-F8ACDB2A6C9C} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-05-13] (Google Inc.) (Załączenie wejścia w fixlist spowoduje przesunięcie pliku zadania (.job). Plik uruchamiany docelowo przez zadanie nie zostanie przeniesiony.) Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ==================== Skróty ============================= (Wybrane wejścia mogą zostać załączone w celu ich zresetowania lub usunięcia.) ==================== Załadowane moduły (filtrowane) ============== 2014-08-25 15:01 - 2014-08-25 15:01 - 00209712 _____ () C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTAgent.exe 2014-08-25 15:01 - 2014-08-25 15:01 - 00057648 _____ () C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\NetworkHeuristic.dll 2014-08-25 15:01 - 2014-08-25 15:01 - 00057648 _____ () C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\ISCTEncryptionCheck.dll 2014-08-25 15:01 - 2014-08-25 15:01 - 00037168 _____ () C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\ISCTNetMon.dll 2015-05-12 20:08 - 2015-01-29 12:41 - 01992704 _____ () C:\Program Files (x86)\MSI\Command Center\MSIControlService.exe 2015-12-21 16:06 - 2015-12-09 02:52 - 00217720 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamBase.dll 2015-05-12 20:21 - 2015-12-16 15:53 - 00126072 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll 2015-05-12 20:00 - 2012-11-01 10:23 - 00089600 _____ () C:\Windows\SYSTEM32\CmdRtr64.DLL 2015-05-12 20:00 - 2012-11-01 10:21 - 00325120 _____ () C:\Windows\SYSTEM32\APOMgr64.DLL 2014-12-10 21:44 - 2014-12-10 21:44 - 00330240 _____ () C:\Program Files\Qualcomm Atheros\Network Manager\NetworkManager.exe 2016-01-19 21:17 - 2013-04-09 11:05 - 00846848 _____ () C:\Program Files (x86)\TP-LINK\TP-LINK Wireless Configuration Utility\TWCU.exe 2015-12-08 20:25 - 2015-12-08 20:25 - 00061440 _____ () C:\Program Files\CCleaner\lang\lang-1045.dll 2013-08-22 08:19 - 2013-08-22 07:54 - 00174592 _____ () C:\Windows\system32\WinMetadata\Windows.UI.winmd 2015-05-13 00:25 - 2015-05-13 00:25 - 00103888 _____ () C:\Program Files\AVAST Software\Avast\log.dll 2015-05-13 00:25 - 2015-05-13 00:25 - 00125512 _____ () C:\Program Files\AVAST Software\Avast\JsonRpcServer.dll 2016-01-19 16:08 - 2016-01-19 16:08 - 02818048 _____ () C:\Program Files\AVAST Software\Avast\defs\16011900\algo.dll 2015-05-13 00:25 - 2015-05-13 00:25 - 00469008 _____ () C:\Program Files\AVAST Software\Avast\ffl2.dll 2015-05-12 23:20 - 2005-07-18 12:43 - 00160256 _____ () C:\Program Files (x86)\MSI\Live Update\unrar.dll 2015-05-12 20:08 - 2014-08-13 19:10 - 01723856 _____ () C:\MSI\Smart Utilities\SuperRAIDExt.DLL 2015-05-13 00:25 - 2015-05-13 00:25 - 40539648 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll 2015-12-12 16:37 - 2015-12-09 02:53 - 00011896 _____ () C:\Program Files (x86)\NVIDIA Corporation\Update Core\detoured.dll 2014-11-10 11:12 - 2014-11-10 11:12 - 01243936 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll 2016-01-19 21:17 - 2013-01-22 14:40 - 01411072 _____ () C:\Program Files (x86)\TP-LINK\TP-LINK Wireless Configuration Utility\nicLan.dll 2016-01-19 21:17 - 2013-04-02 13:41 - 00193024 _____ () C:\Program Files (x86)\TP-LINK\TP-LINK Wireless Configuration Utility\DC_WFF.dll 2016-01-19 21:17 - 2013-05-07 11:16 - 00138752 _____ () C:\Program Files (x86)\TP-LINK\TP-LINK Wireless Configuration Utility\WJWF\WJWF.dll 2016-01-19 21:17 - 2013-05-07 11:16 - 00115712 _____ () C:\Program Files (x86)\TP-LINK\TP-LINK Wireless Configuration Utility\WJWF\WJWF_WPS_WIN7.DLL 2015-12-18 00:15 - 2015-12-18 00:15 - 26065408 _____ () C:\Program Files (x86)\Battle.net\Battle.net.6526\libcef.dll 2015-12-18 00:15 - 2015-12-18 00:15 - 00739840 _____ () C:\Program Files (x86)\Battle.net\Battle.net.6526\libGLESv2.dll 2015-12-18 00:15 - 2015-12-18 00:15 - 00293040 _____ () C:\Program Files (x86)\Battle.net\Battle.net.6526\ortp.dll 2015-12-18 00:15 - 2015-12-18 00:15 - 00909312 _____ () C:\Program Files (x86)\Battle.net\Battle.net.6526\platforms\qwindows.dll 2015-12-18 00:15 - 2015-12-18 00:15 - 00130048 _____ () C:\Program Files (x86)\Battle.net\Battle.net.6526\libEGL.dll 2015-12-18 00:15 - 2015-12-18 00:15 - 00020992 _____ () C:\Program Files (x86)\Battle.net\Battle.net.6526\imageformats\qgif.dll 2015-12-18 00:15 - 2015-12-18 00:15 - 00021504 _____ () C:\Program Files (x86)\Battle.net\Battle.net.6526\imageformats\qico.dll 2015-12-18 00:15 - 2015-12-18 00:15 - 00205312 _____ () C:\Program Files (x86)\Battle.net\Battle.net.6526\imageformats\qjpeg.dll 2015-12-18 00:15 - 2015-12-18 00:15 - 00225792 _____ () C:\Program Files (x86)\Battle.net\Battle.net.6526\imageformats\qmng.dll 2015-12-18 00:15 - 2015-12-18 00:15 - 00015872 _____ () C:\Program Files (x86)\Battle.net\Battle.net.6526\imageformats\qsvg.dll 2015-12-18 00:15 - 2015-12-18 00:15 - 00312832 _____ () C:\Program Files (x86)\Battle.net\Battle.net.6526\imageformats\qtiff.dll 2015-12-18 00:15 - 2015-12-18 00:15 - 00010240 _____ () C:\Program Files (x86)\Battle.net\Battle.net.6526\qml\QtQuick.2\qtquick2plugin.dll 2015-12-18 00:15 - 2015-12-18 00:15 - 00054272 _____ () C:\Program Files (x86)\Battle.net\Battle.net.6526\qml\QtQuick\Layouts\qquicklayoutsplugin.dll 2015-12-18 00:15 - 2015-12-18 00:15 - 00010240 _____ () C:\Program Files (x86)\Battle.net\Battle.net.6526\qml\QtQml\Models.2\modelsplugin.dll ==================== Alternate Data Streams (filtrowane) ========= (Załączenie wejścia w fixlist spowoduje usunięcie strumienia ADS.) ==================== Tryb awaryjny (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Wartość "AlternateShell" zostanie przywrócona.) ==================== EXE - Powiązania (filtrowane) =============== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci.) ==================== Internet Explorer - Witryny zaufane i z ograniczeniami =============== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru.) ==================== Hosts - zawartość: =============================== (Użycie dyrektywy Hosts: w fixlist spowoduje reset pliku Hosts.) 2013-08-22 14:25 - 2016-01-19 20:43 - 00000835 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Inne obszary ============================ (Obecnie brak automatycznej naprawy dla tej sekcji.) HKU\S-1-5-21-3888125600-2760613544-1702722691-1001\Control Panel\Desktop\\Wallpaper -> C:\Windows\Web\Wallpaper\MSI\MSI Gaming.jpg DNS Servers: 8.8.8.8 - 8.8.4.4 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Zapora systemu Windows [funkcja włączona] ==================== MSCONFIG/TASK MANAGER - Wyłączone elementy == (Obecnie brak automatycznej naprawy dla tej sekcji.) ==================== Reguły Zapory systemu Windows (filtrowane) =============== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) FirewallRules: [TCP Query User{82E4AE74-B1EE-4861-92A4-A69B9AB4B889}C:\users\morthen\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\morthen\appdata\roaming\spotify\spotify.exe FirewallRules: [UDP Query User{7CC6F818-16BB-48D3-8B36-23231233E910}C:\users\morthen\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\morthen\appdata\roaming\spotify\spotify.exe ==================== Punkty Przywracania systemu ========================= 30-12-2015 15:00:42 Windows Update 09-01-2016 16:52:30 Zaplanowany punkt kontrolny 16-01-2016 15:32:02 Installed TP-LINK Wireless Configuration Utility and Driver 17-01-2016 19:42:03 Zainstalowany program DirectX 19-01-2016 20:06:06 Removed TP-LINK Wireless Configuration Utility and Driver ==================== Wadliwe urządzenia w Menedżerze urządzeń ============= Name: Standardowa klawiatura PS/2 Description: Standardowa klawiatura PS/2 Class Guid: {4d36e96b-e325-11ce-bfc1-08002be10318} Manufacturer: (Klawiatury standardowe) Service: i8042prt Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24) Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed. Devices stay in this state if they have been prepared for removal. After you remove the device, this error disappears.Remove the device, and this error should be resolved. ==================== Błędy w Dzienniku zdarzeń: ========================= Dziennik Aplikacja: ================== Error: (01/19/2016 09:20:51 PM) (Source: Customer Experience Improvement Program) (EventID: 1008) (User: ) Description: 80070005 Error: (01/18/2016 08:04:34 PM) (Source: Microsoft-Windows-Defrag) (EventID: 257) (User: ) Description: Wolumin Zastrzeżone przez system nie został zoptymalizowany, ponieważ napotkano błąd: Parametr jest niepoprawny. (0x80070057) Error: (01/16/2016 03:46:27 PM) (Source: Microsoft-Windows-Defrag) (EventID: 257) (User: ) Description: Wolumin Zastrzeżone przez system nie został zoptymalizowany, ponieważ napotkano błąd: Parametr jest niepoprawny. (0x80070057) Error: (01/12/2016 12:30:13 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: CrashReporter.exe, wersja: 0.0.0.0, sygnatura czasowa: 0x54524e93 Nazwa modułu powodującego błąd: icuin52.dll, wersja: 6.3.9600.18146, sygnatura czasowa: 0x5650afd4 Kod wyjątku: 0xc0000135 Przesunięcie błędu: 0x0009d572 Identyfikator procesu powodującego błąd: 0x1304 Godzina uruchomienia aplikacji powodującej błąd: 0xCrashReporter.exe0 Ścieżka aplikacji powodującej błąd: CrashReporter.exe1 Ścieżka modułu powodującego błąd: CrashReporter.exe2 Identyfikator raportu: CrashReporter.exe3 Pełna nazwa pakietu powodującego błąd: CrashReporter.exe4 Identyfikator aplikacji względem pakietu powodującego błąd: CrashReporter.exe5 Error: (01/09/2016 05:58:25 PM) (Source: Microsoft-Windows-Defrag) (EventID: 257) (User: ) Description: Wolumin Zastrzeżone przez system nie został zoptymalizowany, ponieważ napotkano błąd: Parametr jest niepoprawny. (0x80070057) Error: (01/09/2016 04:42:31 PM) (Source: Microsoft-Windows-Defrag) (EventID: 257) (User: ) Description: Wolumin Zastrzeżone przez system nie został zoptymalizowany, ponieważ napotkano błąd: Parametr jest niepoprawny. (0x80070057) Error: (01/09/2016 03:15:42 PM) (Source: Microsoft-Windows-Defrag) (EventID: 257) (User: ) Description: Wolumin Zastrzeżone przez system nie został zoptymalizowany, ponieważ napotkano błąd: Parametr jest niepoprawny. (0x80070057) Error: (01/09/2016 02:14:31 PM) (Source: Microsoft-Windows-Defrag) (EventID: 257) (User: ) Description: Wolumin Zastrzeżone przez system nie został zoptymalizowany, ponieważ napotkano błąd: Parametr jest niepoprawny. (0x80070057) Error: (01/09/2016 01:35:10 PM) (Source: Microsoft-Windows-LocationProvider) (EventID: 2005) (User: ZARZĄDZANIE NT) Description: There was an error communicating to the Orion DCS server Error: (01/03/2016 01:59:26 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: KillerService.exe, wersja: 1.1.49.44, sygnatura czasowa: 0x54892137 Nazwa modułu powodującego błąd: ntdll.dll, wersja: 6.3.9600.18146, sygnatura czasowa: 0x5650b9bb Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x000000000003dcfe Identyfikator procesu powodującego błąd: 0x534 Godzina uruchomienia aplikacji powodującej błąd: 0xKillerService.exe0 Ścieżka aplikacji powodującej błąd: KillerService.exe1 Ścieżka modułu powodującego błąd: KillerService.exe2 Identyfikator raportu: KillerService.exe3 Pełna nazwa pakietu powodującego błąd: KillerService.exe4 Identyfikator aplikacji względem pakietu powodującego błąd: KillerService.exe5 Dziennik System: ============= Error: (01/19/2016 09:45:14 PM) (Source: Service Control Manager) (EventID: 7043) (User: ) Description: Usługa Windows Update nie została poprawnie zamknięta po odebraniu kodu sterującego przed zamknięciem. Error: (01/19/2016 09:32:31 PM) (Source: DCOM) (EventID: 10010) (User: Argoneth) Description: {BF6C1E47-86EC-4194-9CE5-13C15DCB2001} Error: (01/18/2016 08:10:32 PM) (Source: DCOM) (EventID: 10010) (User: Argoneth) Description: {1B1F472E-3221-4826-97DB-2C2324D389AE} Error: (01/18/2016 08:05:31 PM) (Source: DCOM) (EventID: 10010) (User: Argoneth) Description: {1B1F472E-3221-4826-97DB-2C2324D389AE} Error: (01/18/2016 08:05:01 PM) (Source: DCOM) (EventID: 10010) (User: Argoneth) Description: {BF6C1E47-86EC-4194-9CE5-13C15DCB2001} Error: (01/17/2016 02:16:38 PM) (Source: DCOM) (EventID: 10010) (User: Argoneth) Description: {BF6C1E47-86EC-4194-9CE5-13C15DCB2001} Error: (01/15/2016 11:52:35 PM) (Source: DCOM) (EventID: 10010) (User: Argoneth) Description: {BF6C1E47-86EC-4194-9CE5-13C15DCB2001} Error: (01/15/2016 11:52:05 PM) (Source: DCOM) (EventID: 10010) (User: Argoneth) Description: {1B1F472E-3221-4826-97DB-2C2324D389AE} Error: (01/14/2016 11:08:09 PM) (Source: DCOM) (EventID: 10010) (User: Argoneth) Description: {1B1F472E-3221-4826-97DB-2C2324D389AE} Error: (01/14/2016 11:07:39 PM) (Source: DCOM) (EventID: 10010) (User: Argoneth) Description: {BF6C1E47-86EC-4194-9CE5-13C15DCB2001} CodeIntegrity: =================================== Date: 2015-05-13 00:31:01.492 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files (x86)\AVG\Av\avgidsagent.exe) attempted to load \Device\HarddiskVolume2\Program Files (x86)\AVG\Framework\Common\avgfmwbasex.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-05-13 00:31:01.258 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files (x86)\AVG\Av\avgidsagent.exe) attempted to load \Device\HarddiskVolume2\Program Files (x86)\AVG\Framework\Common\avgfmwbasex.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-05-13 00:26:04.192 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files (x86)\AVG\Av\avgidsagent.exe) attempted to load \Device\HarddiskVolume2\Program Files (x86)\AVG\Framework\Common\avgfmwbasex.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-05-13 00:26:04.126 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files (x86)\AVG\Av\avgidsagent.exe) attempted to load \Device\HarddiskVolume2\Program Files (x86)\AVG\Framework\Common\avgfmwbasex.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-05-13 00:21:44.744 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files (x86)\AVG\Av\avgidsagent.exe) attempted to load \Device\HarddiskVolume2\Program Files (x86)\AVG\Framework\Common\avgfmwbasex.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-05-13 00:21:42.799 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files (x86)\AVG\Av\avgidsagent.exe) attempted to load \Device\HarddiskVolume2\Program Files (x86)\AVG\Framework\Common\avgfmwbasex.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-05-13 00:21:03.378 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files (x86)\AVG\Av\avgidsagent.exe) attempted to load \Device\HarddiskVolume2\Program Files (x86)\AVG\Framework\Common\avgfmwbasex.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-05-13 00:21:01.265 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files (x86)\AVG\Av\avgidsagent.exe) attempted to load \Device\HarddiskVolume2\Program Files (x86)\AVG\Framework\Common\avgfmwbasex.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-05-13 00:19:14.501 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files (x86)\AVG\Av\avgidsagent.exe) attempted to load \Device\HarddiskVolume2\Program Files (x86)\AVG\Framework\Common\avgfmwbasex.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-05-13 00:18:41.921 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files (x86)\AVG\Av\avgidsagent.exe) attempted to load \Device\HarddiskVolume2\Program Files (x86)\AVG\Framework\Common\avgfmwbasex.dll that did not meet the Custom 3 / Antimalware signing level requirements. ==================== Statystyki pamięci =========================== Procesor: Intel(R) Core(TM) i5-4590 CPU @ 3.30GHz Procent pamięci w użyciu: 24% Całkowita pamięć fizyczna: 8119.93 MB Dostępna pamięć fizyczna: 6160.1 MB Całkowita pamięć wirtualna: 9527.93 MB Dostępna pamięć wirtualna: 7029.44 MB ==================== Dyski ================================ Drive c: () (Fixed) (Total:232.54 GB) (Free:140.71 GB) NTFS Drive f: (Nowy) (Fixed) (Total:296.62 GB) (Free:296.12 GB) NTFS Drive g: (Nowy) (Fixed) (Total:634.77 GB) (Free:507.03 GB) NTFS ==================== MBR & Tablica partycji ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 232.9 GB) (Disk ID: 5B113C2C) Partition 1: (Active) - (Size=350 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=232.5 GB) - (Type=07 NTFS) ======================================================== Disk: 1 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: 00000000) Partition: GPT. ==================== Koniec Addition.txt ============================