Rezultaty skanu uzupełniającego Farbar Recovery Scan Tool (x64) Wersja:27-01-2016 Uruchomiony przez Piotr Nalewajko (2016-03-30 20:53:04) Uruchomiony z C:\Users\Piotr Nalewajko\Desktop\frst Windows 8.1 Pro (X64) (2016-01-27 02:25:44) Tryb startu: Normal ========================================================== ==================== Konta użytkowników: ============================= Administrator (S-1-5-21-2442656019-2658457348-799937204-500 - Administrator - Disabled) Gość (S-1-5-21-2442656019-2658457348-799937204-501 - Limited - Disabled) Piotr Nalewajko (S-1-5-21-2442656019-2658457348-799937204-1002 - Administrator - Enabled) => C:\Users\Piotr Nalewajko ==================== Centrum zabezpieczeń ======================== (Załączenie wejścia w fixlist spowoduje jego usunięcie.) AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AV: ZoneAlarm Free Firewall Antivirus (Enabled - Up to date) {23B6D20A-C2DE-B3F5-C67D-07ECD854E6A9} AS: ZoneAlarm Free Firewall Anti-Spyware (Enabled - Up to date) {98D733EE-E4E4-BC7B-FCCD-3C9EA3D3AC14} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} FW: ZoneAlarm Free Firewall Firewall (Enabled) {1B8D532F-88B1-B2AD-ED22-AED92687A1D2} ==================== Zainstalowane programy ====================== (W fixlist dozwolone tylko załączanie programów adware z flagą "Hidden" w celu ich uwidocznienia. Programy adware powinny zostać w poprawny sposób odinstalowane.) ACP Application (Version: 2.15.20.0015 - Advanced Micro Devices, Inc.) Hidden Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment) BitTorrent (HKU\S-1-5-21-2442656019-2658457348-799937204-1002\...\BitTorrent) (Version: 7.9.5.41866 - BitTorrent Inc.) Blackjack Card Counter (HKU\S-1-5-21-2442656019-2658457348-799937204-1002\...\cdb7654137098e67) (Version: 2.0.0.15 - BlackjackCardCounter.net) Blackjack Multi Advisor (HKLM-x32\...\Blackjack Multi Advisor) (Version: 1.8.7a - Blackjack-Soft.com) calibre 64bit (HKLM\...\{5F63ABE2-91EB-489E-9F33-EBFBB6CE0DC9}) (Version: 1.48.0 - Kovid Goyal) Cheat Engine 6.3 (HKLM-x32\...\Cheat Engine 6.3_is1) (Version: - Cheat Engine) CodeBlocks (HKU\S-1-5-21-2442656019-2658457348-799937204-1002\...\CodeBlocks) (Version: 16.01 - The Code::Blocks Team) Dota 2 (HKLM-x32\...\Steam App 570) (Version: - Valve) Fraps (HKLM-x32\...\Fraps) (Version: - ) Grammarly for Microsoft® Office Suite (HKU\S-1-5-21-2442656019-2658457348-799937204-1002\...\{e010e7a5-7dc4-4076-ae0b-c23ee065f1fe}) (Version: 6.5.50 - Grammarly) Grammarly for Microsoft® Office Suite (Version: 6.5.50 - Grammarly) Hidden Heroes of the Storm (HKLM-x32\...\Heroes of the Storm) (Version: - Blizzard Entertainment) Heroes of the Storm Public Test (HKLM-x32\...\Heroes of the Storm Public Test) (Version: - Blizzard Entertainment) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.14.4264 - Intel Corporation) Microsoft Office 365 ProPlus - en-us (HKLM\...\O365ProPlusRetail - en-us) (Version: 15.0.4805.1003 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (HKLM-x32\...\{a1909659-0a08-4554-8af1-2175904903a1}) (Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 (HKLM-x32\...\{95716cce-fc71-413f-8ad5-56c2892d4b3a}) (Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005 (HKLM-x32\...\{7f51bdb9-ee21-49ee-94d6-90afc321780e}) (Version: 12.0.21005.1 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 (HKLM-x32\...\{ce085a78-074e-4823-8dc1-8a721b94b76d}) (Version: 12.0.21005.1 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.23506 (HKLM-x32\...\{3ee5e5bb-b7cc-4556-8861-a00a82977d6c}) (Version: 14.0.23506.0 - Microsoft Corporation) Microsoft Visual Studio Code (HKLM-x32\...\{F8A2A208-72B3-4D61-95FC-8A65D340689B}_is1) (Version: 0.10.8 - Microsoft Corporation) Microsoft Visual Studio Community 2015 with Update 1 (HKLM-x32\...\{1d03ad7c-fa27-4517-91b0-410bb49f94d9}) (Version: 14.0.24720.1 - Microsoft Corporation) MSI Kombustor 2.5.9 (HKLM-x32\...\{0B7C79A5-5CB2-4ABD-A9C1-92A6213CE8DD}_is1) (Version: - MSI Co., LTD) Office 15 Click-to-Run Extensibility Component (x32 Version: 15.0.4797.1003 - Microsoft Corporation) Hidden Office 15 Click-to-Run Licensing Component (Version: 15.0.4797.1003 - Microsoft Corporation) Hidden Office 15 Click-to-Run Localization Component (x32 Version: 15.0.4797.1003 - Microsoft Corporation) Hidden Process Lasso (HKLM-x32\...\ProcessLasso) (Version: 8.9.6.0 - Bitsum) Raptr (HKLM-x32\...\Raptr) (Version: - ) Secret Ponchos (HKLM-x32\...\Steam App 265750) (Version: - Switchblade Monkeys Entertainment) Skype Click to Call (HKLM-x32\...\{6D1221A9-17BF-4EC0-81F2-27D30EC30701}) (Version: 8.0.0.9103 - Microsoft Corporation) Skype™ 7.18 (HKLM-x32\...\{FC965A47-4839-40CA-B618-18F486F042C6}) (Version: 7.18.109 - Skype Technologies S.A.) Software Lag Switch (HKLM-x32\...\{6EC29D9E-F229-4B07-AF22-7018AD29DAF0}) (Version: 1.2 - softwarelagswitch.com) StarCraft II (HKLM-x32\...\StarCraft II) (Version: - Blizzard Entertainment) Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation) TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.0.18 - TeamSpeak Systems GmbH) WinRAR 5.30 (32-bit) (HKLM-x32\...\WinRAR archiver) (Version: 5.30.0 - win.rar GmbH) ZoneAlarm Antivirus (x32 Version: 14.1.011.000 - Check Point Software Technologies Ltd.) Hidden ZoneAlarm Firewall (x32 Version: 14.1.011.000 - Check Point Software Technologies Ltd.) Hidden ZoneAlarm Free Firewall (HKLM-x32\...\ZoneAlarm Free Firewall) (Version: 14.1.011.000 - Check Point) ZoneAlarm Security (x32 Version: 14.1.011.000 - Check Point Software Technologies Ltd.) Hidden ==================== Niestandardowe rejestracje CLSID (filtrowane): ========================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) CustomCLSID: HKU\S-1-5-21-2442656019-2658457348-799937204-1002_Classes\CLSID\{2AD206F1-152C-4F9D-A24E-6F93FE7A4AFC}\InprocServer32 -> C:\Users\Piotr Nalewajko\AppData\Local\Grammarly\Grammarly for Microsoft Office Suite\6.5.50\6965875 (dane wartości zawierają 59 znaków więcej). CustomCLSID: HKU\S-1-5-21-2442656019-2658457348-799937204-1002_Classes\CLSID\{820D63D5-8CFF-46DE-86AF-4997DEDD6DB5}\localserver32 -> C:\Windows\system32\igfxEM.exe (Intel Corporation) ==================== Zaplanowane zadania (filtrowane) ============= (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) Task: {2954A78D-069C-4868-9125-8A957A534043} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [2016-02-09] (Microsoft Corporation) Task: {4D163049-6FB9-4641-9864-ED4CA847E7D1} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office 15\root\Office15\msoia.exe [2016-02-20] (Microsoft Corporation) Task: {6C76399E-4DF6-46C8-A2E5-FFC2122D1582} - System32\Tasks\Process Lasso Management Console (GUI) => C:\Program Files\Process Lasso\processlasso.exe [2016-02-02] (Bitsum LLC) Task: {84311A44-5F3D-4199-9580-CE12758DA5B4} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance => C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesCommonx86\Microsoft Shared\OFFICE15\OLicenseHeartbeat.exe [2016-03-14] (Microsoft Corporation) Task: {9946AA76-52E8-4EFD-B585-03DBFA7BA7D6} - System32\Tasks\Process Lasso Core Engine Only => C:\Program Files\Process Lasso\processgovernor.exe [2016-02-02] (Bitsum LLC) Task: {A250DB1D-5F9D-466B-B25A-6E631A799140} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office 15\root\Office15\msoia.exe [2016-02-20] (Microsoft Corporation) Task: {AF8F6EC3-B974-4FF9-930F-C9EF339EAFE5} - System32\Tasks\{2E182BA4-250E-457F-A7E5-9A9879CF7FA2} => c:\users\piotr nalewajko\appdata\local\browserair\application\browserair.exe Task: {BA48FCCD-F364-42BF-B684-E7B4DCC4D3D1} - System32\Tasks\Microsoft\Windows\UPnP\UPnPHostConfig => config upnphost start= auto Task: {EA6E6669-2633-45A5-B17D-447D19083E82} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [2016-02-09] (Microsoft Corporation) (Załączenie wejścia w fixlist spowoduje przesunięcie pliku zadania (.job). Plik uruchamiany docelowo przez zadanie nie zostanie przeniesiony.) ==================== Skróty ============================= (Wybrane wejścia mogą zostać załączone w celu ich zresetowania lub usunięcia.) ==================== Załadowane moduły (filtrowane) ============== 2016-02-20 13:37 - 2015-10-13 05:34 - 00105640 _____ () C:\Program Files\Microsoft Office 15\ClientX64\ApiClient.dll 2016-02-20 13:45 - 2016-02-20 13:45 - 08901184 _____ () C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\1033\GrooveIntlResource.dll 2015-11-03 07:42 - 2015-11-03 07:42 - 00794920 _____ () C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\kpcengine.2.3.dll 2016-02-20 13:39 - 2016-02-20 13:45 - 08901184 _____ () C:\Program Files\Microsoft Office 15\root\Office15\1033\GrooveIntlResource.dll 2016-01-28 18:15 - 2016-01-27 19:39 - 01632584 _____ () E:\Google\Chrome\Application\48.0.2564.97\libglesv2.dll 2016-01-28 18:15 - 2016-01-27 19:39 - 00087880 _____ () E:\Google\Chrome\Application\48.0.2564.97\libegl.dll 2016-01-28 18:15 - 2016-01-27 19:39 - 16799048 _____ () E:\Google\Chrome\Application\48.0.2564.97\PepperFlash\pepflashplayer.dll ==================== Alternate Data Streams (filtrowane) ========= ==================== Tryb awaryjny (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Wartość "AlternateShell" zostanie przywrócona.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\vsmon => ""="Service" ==================== EXE - Powiązania (filtrowane) =============== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci.) ==================== Internet Explorer - Witryny zaufane i z ograniczeniami =============== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru.) ==================== Hosts - zawartość: =============================== (Użycie dyrektywy Hosts: w fixlist spowoduje reset pliku Hosts.) 2013-08-22 15:25 - 2016-03-02 17:17 - 00000828 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Inne obszary ============================ (Obecnie brak automatycznej naprawy dla tej sekcji.) HKU\S-1-5-21-2442656019-2658457348-799937204-1002\Control Panel\Desktop\\Wallpaper -> C:\Users\Piotr Nalewajko\AppData\Roaming\Microsoft\Windows Photo Viewer\Tapeta z Przeglądarki fotografii systemu Windows.jpg DNS Servers: 192.168.1.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Zapora systemu Windows [funkcja wyłączona] ==================== MSCONFIG/TASK MANAGER - Wyłączone elementy == (Obecnie brak automatycznej naprawy dla tej sekcji.) ==================== Reguły Zapory systemu Windows (filtrowane) =============== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139 FirewallRules: [TCP Query User{C168B77C-4661-42B9-8144-9E7DAA31FF9E}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe FirewallRules: [UDP Query User{23C121DC-BD62-4097-9B3B-E1D3511F13A1}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe FirewallRules: [{030759E9-11B2-40D7-A059-3461C44A966C}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe FirewallRules: [{FB049C48-D6AD-4FEA-8EE8-985D7CA14252}] => (Allow) C:\Program Files (x86)\CheckPoint\ZoneAlarm\vsmon.exe FirewallRules: [{909F7DB6-FBF0-4FB8-92D8-9AEF16FFCAE3}] => (Allow) C:\Program Files (x86)\CheckPoint\ZoneAlarm\vsmon.exe FirewallRules: [{5A64263E-1019-48C3-970E-EF05698AC89E}] => (Allow) C:\Program Files (x86)\CheckPoint\ZoneAlarm\vsmon.exe FirewallRules: [{4565A796-6B02-40D9-8C1F-DA1352FFBCD8}] => (Allow) C:\Program Files (x86)\CheckPoint\ZoneAlarm\vsmon.exe FirewallRules: [{674CF1E2-EB88-48A7-B63D-4CBD94058B0F}] => (Allow) C:\Users\Piotr Nalewajko\Steam.exe FirewallRules: [{1853F760-26E7-4864-8B0D-2337D399A9DE}] => (Allow) C:\Users\Piotr Nalewajko\Steam.exe FirewallRules: [{08DCD1AC-04F6-453B-98AE-05F7CD5ABF6F}] => (Allow) C:\Users\Piotr Nalewajko\bin\steamwebhelper.exe FirewallRules: [{7071DFD0-DB4B-46C6-A6EC-A12F5512EDCB}] => (Allow) C:\Users\Piotr Nalewajko\bin\steamwebhelper.exe FirewallRules: [{9BBA1665-407A-4B48-ACA3-8C29941AEE87}] => (Allow) C:\Users\Piotr Nalewajko\AppData\Roaming\BitTorrent\BitTorrent.exe FirewallRules: [{13CCE6D5-CE05-4DBB-8E9A-30A69FA97929}] => (Allow) C:\Users\Piotr Nalewajko\AppData\Roaming\BitTorrent\BitTorrent.exe FirewallRules: [{453B149D-0B8A-492E-88F7-0053255DDC09}] => (Allow) C:\Users\Piotr Nalewajko\AppData\Roaming\BitTorrent\BitTorrent.exe FirewallRules: [{6B77F6B8-876E-4F27-8B44-AEBAF15D8270}] => (Allow) C:\Users\Piotr Nalewajko\AppData\Roaming\BitTorrent\BitTorrent.exe FirewallRules: [{9662BC43-0BAB-4E1F-BCC3-259EBD32FDB6}] => (Allow) C:\Users\Piotr Nalewajko\AppData\Roaming\BitTorrent\BitTorrent.exe FirewallRules: [{090139E0-C3F3-4E4C-B708-0055284AF917}] => (Allow) C:\Users\Piotr Nalewajko\AppData\Roaming\BitTorrent\BitTorrent.exe FirewallRules: [{F01DB058-F2CB-439F-BB9C-E711B7FFF48D}] => (Allow) C:\Program Files (x86)\Raptr\raptr.exe FirewallRules: [{E414101C-BB96-466D-A049-8A007D301232}] => (Allow) C:\Program Files (x86)\Raptr\raptr.exe FirewallRules: [{FDBE0940-229D-411C-A005-723A192598D3}] => (Allow) C:\Program Files (x86)\Raptr\raptr_im.exe FirewallRules: [{0E829611-A1E0-472A-98A9-210A6308801A}] => (Allow) C:\Program Files (x86)\Raptr\raptr_im.exe FirewallRules: [{50F7CB25-156E-482E-BF70-8D46C4C30F66}] => (Allow) F:\Stuff\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{FBF12B1D-CE1C-4517-A037-D2D87BAD5959}] => (Allow) F:\Stuff\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{F9D19326-78B1-411B-BB16-AE089051A18F}] => (Allow) C:\Program Files\Microsoft Office 15\root\Office15\outlook.exe FirewallRules: [{49BCA23C-90F0-4A58-8829-A228640566E5}] => (Allow) C:\Program Files\Microsoft Office 15\root\Office15\Lync.exe FirewallRules: [{B5DD80D5-8E7E-44E4-82A2-A5C8B041F311}] => (Allow) C:\Program Files\Microsoft Office 15\root\Office15\Lync.exe FirewallRules: [{9B3D96C0-CDAB-4FDB-AFC8-AA82AC2788EB}] => (Allow) C:\Program Files\Microsoft Office 15\root\Office15\UcMapi.exe FirewallRules: [{95D7E67A-B56D-4EEA-90B4-D1E4E59D3BE4}] => (Allow) C:\Program Files\Microsoft Office 15\root\Office15\UcMapi.exe FirewallRules: [TCP Query User{619A7C62-2B8B-4BD8-A364-63D8B73543EA}F:\stuff\heroes of the storm\versions\base40697\heroesofthestorm_x64.exe] => (Allow) F:\stuff\heroes of the storm\versions\base40697\heroesofthestorm_x64.exe FirewallRules: [UDP Query User{2A127975-204A-44C1-AB41-E099E28BAA2F}F:\stuff\heroes of the storm\versions\base40697\heroesofthestorm_x64.exe] => (Allow) F:\stuff\heroes of the storm\versions\base40697\heroesofthestorm_x64.exe FirewallRules: [TCP Query User{C966AB88-109A-4713-AADF-6920B2683465}F:\stuff\starcraft ii\versions\base39576\sc2_x64.exe] => (Allow) F:\stuff\starcraft ii\versions\base39576\sc2_x64.exe FirewallRules: [UDP Query User{8D870B0E-F271-48DE-A5C9-82237BA38E56}F:\stuff\starcraft ii\versions\base39576\sc2_x64.exe] => (Allow) F:\stuff\starcraft ii\versions\base39576\sc2_x64.exe FirewallRules: [TCP Query User{B210DEA1-1474-45EA-BDA9-FF236F85AA70}F:\stuff\heroes of the storm\versions\base41150\heroesofthestorm_x64.exe] => (Allow) F:\stuff\heroes of the storm\versions\base41150\heroesofthestorm_x64.exe FirewallRules: [UDP Query User{C7C92B1F-B482-4EB6-B3E5-FF55567B9D07}F:\stuff\heroes of the storm\versions\base41150\heroesofthestorm_x64.exe] => (Allow) F:\stuff\heroes of the storm\versions\base41150\heroesofthestorm_x64.exe FirewallRules: [{526DA398-A336-4D57-BB55-89C060FBD086}] => (Allow) F:\Stuff\SteamLibrary\steamapps\common\SecretPonchos\bin\SecretPonchosD3D11.exe FirewallRules: [{8AF7071F-E11B-409A-B0FE-A8E8B922F75E}] => (Allow) F:\Stuff\SteamLibrary\steamapps\common\SecretPonchos\bin\SecretPonchosD3D11.exe FirewallRules: [TCP Query User{D8F06D3C-971F-426D-B440-63EB23F0EC1C}C:\program files (x86)\heroes of the storm public test\versions\base41609\heroesofthestorm_x64.exe] => (Allow) C:\program files (x86)\heroes of the storm public test\versions\base41609\heroesofthestorm_x64.exe FirewallRules: [UDP Query User{84244139-8389-4FCE-81DF-D159B20B2511}C:\program files (x86)\heroes of the storm public test\versions\base41609\heroesofthestorm_x64.exe] => (Allow) C:\program files (x86)\heroes of the storm public test\versions\base41609\heroesofthestorm_x64.exe FirewallRules: [TCP Query User{1A0B7579-2BB2-4401-94B4-08D8958A99BF}C:\program files (x86)\heroes of the storm public test\versions\base41707\heroesofthestorm_x64.exe] => (Block) C:\program files (x86)\heroes of the storm public test\versions\base41707\heroesofthestorm_x64.exe FirewallRules: [UDP Query User{52235C94-9537-487E-B35D-70D0715A67C0}C:\program files (x86)\heroes of the storm public test\versions\base41707\heroesofthestorm_x64.exe] => (Allow) C:\program files (x86)\heroes of the storm public test\versions\base41707\heroesofthestorm_x64.exe FirewallRules: [TCP Query User{6ED21C77-9119-46D0-8F92-7885128C17A5}C:\program files (x86)\heroes of the storm public test\versions\base41764\heroesofthestorm_x64.exe] => (Allow) C:\program files (x86)\heroes of the storm public test\versions\base41764\heroesofthestorm_x64.exe FirewallRules: [UDP Query User{908AE3C6-7293-449F-AE0C-2E87E0174DD0}C:\program files (x86)\heroes of the storm public test\versions\base41764\heroesofthestorm_x64.exe] => (Allow) C:\program files (x86)\heroes of the storm public test\versions\base41764\heroesofthestorm_x64.exe FirewallRules: [TCP Query User{4B90BB45-BC68-4E7F-B0BC-D1A3978C3EC8}F:\stuff\heroes of the storm\versions\base41810\heroesofthestorm_x64.exe] => (Allow) F:\stuff\heroes of the storm\versions\base41810\heroesofthestorm_x64.exe FirewallRules: [UDP Query User{5D941665-CD36-425B-B919-F5977682FCB9}F:\stuff\heroes of the storm\versions\base41810\heroesofthestorm_x64.exe] => (Allow) F:\stuff\heroes of the storm\versions\base41810\heroesofthestorm_x64.exe ==================== Punkty Przywracania systemu ========================= ==================== Wadliwe urządzenia w Menedżerze urządzeń ============= Name: Kontroler PCI Simple Communications Description: Kontroler PCI Simple Communications Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: Kontroler magistrali zarządzania systemem Description: Kontroler magistrali zarządzania systemem Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. ==================== Błędy w Dzienniku zdarzeń: ========================= Dziennik Aplikacja: ================== Error: (03/30/2016 08:47:27 PM) (Source: Microsoft-Windows-AppModel-State) (EventID: 10) (User: SADBANANA) Description: microsoft.windowscommunicationsapps_8wekyb3d8bbwe3 Error: (03/30/2016 08:47:27 PM) (Source: Microsoft-Windows-AppModel-State) (EventID: 10) (User: SADBANANA) Description: microsoft.windowscommunicationsapps_8wekyb3d8bbwe3 Error: (03/30/2016 08:47:27 PM) (Source: Microsoft-Windows-AppModel-State) (EventID: 10) (User: SADBANANA) Description: microsoft.windowscommunicationsapps_8wekyb3d8bbwe3 Error: (03/30/2016 08:47:27 PM) (Source: Microsoft-Windows-AppModel-State) (EventID: 10) (User: SADBANANA) Description: microsoft.windowscommunicationsapps_8wekyb3d8bbwe3 Error: (03/30/2016 08:47:27 PM) (Source: Microsoft-Windows-AppModel-State) (EventID: 10) (User: SADBANANA) Description: microsoft.windowscommunicationsapps_8wekyb3d8bbwe3 Error: (03/30/2016 08:47:22 PM) (Source: Microsoft-Windows-AppModel-State) (EventID: 10) (User: SADBANANA) Description: microsoft.windowscommunicationsapps_8wekyb3d8bbwe3 Error: (03/30/2016 08:47:22 PM) (Source: Microsoft-Windows-AppModel-State) (EventID: 10) (User: SADBANANA) Description: microsoft.windowscommunicationsapps_8wekyb3d8bbwe3 Error: (03/30/2016 08:47:22 PM) (Source: Microsoft-Windows-AppModel-State) (EventID: 10) (User: SADBANANA) Description: microsoft.windowscommunicationsapps_8wekyb3d8bbwe3 Error: (03/30/2016 08:47:22 PM) (Source: Microsoft-Windows-AppModel-State) (EventID: 10) (User: SADBANANA) Description: microsoft.windowscommunicationsapps_8wekyb3d8bbwe3 Error: (03/30/2016 08:47:22 PM) (Source: Microsoft-Windows-AppModel-State) (EventID: 10) (User: SADBANANA) Description: microsoft.windowscommunicationsapps_8wekyb3d8bbwe3 Dziennik System: ============= Error: (03/30/2016 08:43:25 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Usługa Steam Client Service niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. Error: (03/30/2016 08:43:24 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Usługa Usługa buforowania czcionek platformy Windows Presentation Foundation, wersja 3.0.0.0 niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 0 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie. Error: (03/30/2016 08:43:24 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Usługa Windows Search niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 30000 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie. Error: (03/30/2016 08:43:24 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Usługa Microsoft Office ClickToRun Service niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 0 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie. Error: (03/30/2016 08:43:24 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Usługa Skype Click to Call PNR Service niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. Error: (03/30/2016 08:43:24 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Usługa Skype Click to Call Updater niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. Error: (03/30/2016 08:43:24 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Usługa ACP User Service niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. Error: (03/30/2016 08:43:24 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Usługa Bufor wydruku niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 5000 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie. Error: (03/30/2016 08:43:23 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Usługa Intel(R) HD Graphics Control Panel Service niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. Error: (03/30/2016 08:43:23 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Usługa AMD External Events Utility niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. CodeIntegrity: =================================== Date: 2016-03-13 05:21:50.181 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\ProgramData\{F66CB4EE-546F-4D54-9332-216DE189AAB0}\browser.dll that did not meet the Windows signing level requirements. Date: 2016-03-12 15:39:15.839 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\ProgramData\{F66CB4EE-546F-4D54-9332-216DE189AAB0}\browser.dll that did not meet the Windows signing level requirements. Date: 2016-03-11 13:33:35.115 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\ProgramData\{F66CB4EE-546F-4D54-9332-216DE189AAB0}\browser.dll that did not meet the Windows signing level requirements. Date: 2016-03-10 16:08:55.047 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\ProgramData\{F66CB4EE-546F-4D54-9332-216DE189AAB0}\browser.dll that did not meet the Windows signing level requirements. Date: 2016-03-09 15:36:45.036 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\ProgramData\{F66CB4EE-546F-4D54-9332-216DE189AAB0}\browser.dll that did not meet the Windows signing level requirements. Date: 2016-03-08 17:26:16.277 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\ProgramData\{F66CB4EE-546F-4D54-9332-216DE189AAB0}\browser.dll that did not meet the Windows signing level requirements. Date: 2016-03-07 18:14:09.554 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\ProgramData\{F66CB4EE-546F-4D54-9332-216DE189AAB0}\browser.dll that did not meet the Windows signing level requirements. Date: 2016-03-06 16:27:03.156 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\ProgramData\{F66CB4EE-546F-4D54-9332-216DE189AAB0}\browser.dll that did not meet the Windows signing level requirements. Date: 2016-03-06 13:03:42.210 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\ProgramData\{F66CB4EE-546F-4D54-9332-216DE189AAB0}\browser.dll that did not meet the Windows signing level requirements. Date: 2016-03-05 17:04:10.527 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\ProgramData\{F66CB4EE-546F-4D54-9332-216DE189AAB0}\browser.dll that did not meet the Windows signing level requirements. ==================== Statystyki pamięci =========================== Procesor: Intel(R) Core(TM) i5-4460 CPU @ 3.20GHz Procent pamięci w użyciu: 20% Całkowita pamięć fizyczna: 8092.14 MB Dostępna pamięć fizyczna: 6471.77 MB Całkowita pamięć wirtualna: 9436.14 MB Dostępna pamięć wirtualna: 7753.74 MB ==================== Dyski ================================ Drive c: (System) (Fixed) (Total:58.59 GB) (Free:17.64 GB) NTFS Drive e: (Inne syfy) (Fixed) (Total:394.06 GB) (Free:393.04 GB) NTFS Drive f: (Gierce) (Fixed) (Total:478.52 GB) (Free:428.25 GB) NTFS ==================== MBR & Tablica partycji ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: 94E0917A) Partition 1: (Active) - (Size=350 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=394.1 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=58.6 GB) - (Type=07 NTFS) Partition 4: (Not Active) - (Size=478.5 GB) - (Type=07 NTFS) ==================== Koniec Addition.txt ============================