Rezultaty skanu uzupełniającego Farbar Recovery Scan Tool (x64) Wersja:18-04-2016 Uruchomiony przez Natalka (2016-04-25 19:11:52) Uruchomiony z C:\Users\Natalka\AppData\Local\Temp\scoped_dir7620_27408 Windows 8.1 (X64) (2015-06-15 04:55:23) Tryb startu: Normal ========================================================== ==================== Konta użytkowników: ============================= Administrator (S-1-5-21-899261099-702920328-1542426104-500 - Administrator - Disabled) Gość (S-1-5-21-899261099-702920328-1542426104-501 - Limited - Disabled) Natalka (S-1-5-21-899261099-702920328-1542426104-1001 - Administrator - Enabled) => C:\Users\Natalka ==================== Centrum zabezpieczeń ======================== (Załączenie wejścia w fixlist spowoduje jego usunięcie.) AV: ESET Smart Security 8.0 (Disabled - Up to date) {19259FAE-8396-A113-46DB-15B0E7DFA289} AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: ESET Smart Security 8.0 (Disabled - Up to date) {A2447E4A-A5AC-AE9D-7C6B-2EC29C58E834} FW: Zapora osobista ESET (Enabled) {211E1E8B-C9F9-A04B-6D84-BC85190CE5F2} ==================== Zainstalowane programy ====================== (W fixlist dozwolone tylko załączanie programów adware z flagą "Hidden" w celu ich uwidocznienia. Programy adware powinny zostać w poprawny sposób odinstalowane.) µTorrent (HKU\S-1-5-21-899261099-702920328-1542426104-1001\...\uTorrent) (Version: 3.4.3.40298 - BitTorrent Inc.) Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 21.0.0.176 - Adobe Systems Incorporated) Adobe Flash Player 20 PPAPI (HKLM-x32\...\Adobe Flash Player PPAPI) (Version: 20.0.0.306 - Adobe Systems Incorporated) AMD Install Manager (HKLM\...\AMD Catalyst Install Manager) (Version: 5.00 - Advanced Micro Devices, Inc.) Body Text Feathering (HKLM-x32\...\PopupProduct) (Version: 1.0.0.0 - Body Text Feathering) <==== UWAGA Call Form (HKU\S-1-5-21-899261099-702920328-1542426104-1001\...\{AA5BEDCF-83D8-FAC0-36EA-A6A8B5E55015}) (Version: 1.9.0 - Stack corp) <==== UWAGA Catalyst Control Center Next Localization BR (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization CHS (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization CHT (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization CS (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization DA (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization DE (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization EL (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization ES (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization FI (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization FR (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization HU (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization IT (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization JA (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization KO (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization NL (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization NO (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization PL (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization RU (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization SV (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization TH (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization TR (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden CCSDK (HKLM-x32\...\{AE75190B-11B4-4F90-8254-DAB275CF2557}_is1) (Version: 1.1.0.7 - Lenovo) Conexant HD Audio (HKLM\...\CNXT_AUDIO_HDA) (Version: 8.65.55.52 - Conexant) Crysis WARHEAD(R) (HKU\S-1-5-21-899261099-702920328-1542426104-1001\...\Crysis WARHEAD(R)) (Version: - Electronic Arts) Crysis WARHEAD(R) (x32 Version: 1.0 - Crytek) Hidden DAEMON Tools Lite (HKLM\...\DAEMON Tools Lite) (Version: 10.1.0.0074 - Disc Soft Ltd) Dependency Package Update (Version: 1.6.29.00 - Lenovo Inc.) Hidden Dependency Package Update (Version: 1.6.38.00 - Lenovo Inc.) Hidden Dependency Package Update (x32 Version: 1.6.32.00 - Lenovo Group Limited) Hidden Dependency Package Update (x32 Version: 1.6.38.00 - Lenovo Group Limited) Hidden Dolby Digital Plus Advanced Audio (HKLM\...\{B0BFC63F-EA07-419E-960B-3FB2ED5DD0B2}) (Version: 7.5.1.1 - Dolby Laboratories Inc) Dota 2 (HKLM-x32\...\Steam App 570) (Version: - Valve) EAX Unified (HKLM-x32\...\EAX Unified) (Version: - ) ESET Smart Security (HKLM\...\{A9550052-52AD-414B-AB58-74F0D7DC8188}) (Version: 8.0.304.2 - ESET, spol s r. o.) Euro Truck Simulator 2 wersja 1.19.2.0 (HKLM-x32\...\Euro Truck Simulator 2_is1) (Version: 1.19.2.0 - GTX Box Team) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 44.0.2403.157 - Google Inc.) Google Update Helper (x32 Version: 1.3.28.17 - Google Inc.) Hidden Grand Theft Auto IV (HKLM-x32\...\{579BA58C-F33D-4970-9953-B94B43768AC3}) (Version: 1.00.0000 - Rockstar Games) Grand Theft Auto IV (x32 Version: 1.0.0013.131 - Rockstar Games Inc.) Hidden Grand Theft Auto V (HKLM-x32\...\R3JhbmRUaGVmdEF1dG9W_is1) (Version: 1 - ) Host App Service (HKU\S-1-5-21-899261099-702920328-1542426104-1001\...\SweetLabs_AP) (Version: 0.269.7.927 - Pokki) Intel(R) Control Center (HKLM-x32\...\{F8A9085D-4C7A-41a9-8A77-C8998A96C421}) (Version: 1.2.1.1008 - Intel Corporation) Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 10.0.28.1006 - Intel Corporation) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.14.4062 - Intel Corporation) Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 13.5.0.1056 - Intel Corporation) Intel(R) Update Manager (HKLM-x32\...\{84A2B59B-6A7B-4C01-8592-15C9BFE6AC36}) (Version: 2.4.3 - Intel Corporation) Java 8 Update 51 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218051F0}) (Version: 8.0.510 - Oracle Corporation) Lenovo Bluetooth with Enhanced Data Rate Software (HKLM\...\{C6D9ED03-6FCF-4410-9CB7-45CA285F9E11}) (Version: 12.0.0.9840 - Broadcom Corporation) Lenovo Dependency Package (HKLM\...\Lenovo Dependency Package_is1) (Version: 1.6.38.00 - Lenovo Group Limited) Lenovo EasyCamera (HKLM-x32\...\{E0A7ED39-8CD6-4351-93C3-69CCA00D12B4}) (Version: 6.2.9200.10292 - Realtek Semiconductor Corp.) Lenovo FusionEngine (HKLM-x32\...\Lenovo FusionEngine) (Version: 1.0.13.0 - Lenovo, Inc.) Lenovo OneKey Recovery (HKLM-x32\...\InstallShield_{46F4D124-20E5-4D12-BE52-EC177A7A4B42}) (Version: 8.1.0.2619 - CyberLink Corp.) Lenovo OneKey Recovery (Version: 8.1.0.2619 - CyberLink Corp.) Hidden Lenovo Patch Utility (x32 Version: 1.3.2.6 - Lenovo Group Limited) Hidden Lenovo Patch Utility 64 bit (Version: 1.3.2.6 - Lenovo Group Limited) Hidden Lenovo PhoneCompanion (HKLM-x32\...\InstallShield_{0F82EA83-B0C5-4AB9-9695-DFE92C5FD57B}) (Version: 2.0.0.19 - Lenovo) Lenovo PhoneCompanion (x32 Version: 2.0.0.19 - Lenovo) Hidden Lenovo Photo Master (HKLM-x32\...\InstallShield_{BC94C56A-3649-420C-8756-2ADEBE399D33}) (Version: 1.0.1826.01 - CyberLink Corp.) Lenovo Photo Master (x32 Version: 1.0.1826.01 - CyberLink Corp.) Hidden Lenovo PowerDVD10 (HKLM-x32\...\InstallShield_{DEC235ED-58A4-4517-A278-C41E8DAEAB3B}) (Version: 10.0.6806.52 - CyberLink Corp.) Lenovo PowerDVD10 (x32 Version: 10.0.6806.52 - CyberLink Corp.) Hidden Lenovo Settings - Camera Audio (HKLM\...\{88C6A6D9-324C-46E8-BA87-563D14021442}_is1) (Version: 4.3.5.0 - Lenovo Corporation) Lenovo Settings (HKLM\...\{D14CCBF5-1A3A-4C08-955B-BE6D519835C4}_is1) (Version: 2.0.0.4 - Lenovo) Lenovo Settings Dependency Package (HKLM\...\{3694BA2E-BE31-4B7E-886B-A0B559E69D4D}_is1) (Version: 2.3.1.28 - Lenovo Group Limited) Lenovo Settings Service (HKLM\...\{8C6F1EBA-17F1-4481-B688-9777E63E985F}_is1) (Version: 2.3.0.20 - Lenovo Group Limited) Lenovo Settings UMDF driver (HKLM\...\{2BDC7413-65EA-4B99-8C4B-02F11075BE6D}_is1) (Version: 1.2.0.6 - Lenovo Group Limited) Lenovo Settings WiFi (HKLM\...\{86045A6C-C156-4349-A3E2-47A88A42F5C2}_is1) (Version: 2.0.0.2 - Lenovo) Lenovo Solution Center (HKLM\...\{4C2B6F96-3AED-4E3F-8DCE-917863D1E6B1}) (Version: 2.7.003.00 - Lenovo Group Limited) Lenovo VeriFace Pro (HKLM\...\Lenovo VeriFace) (Version: 5.1.14.6181 - Lenovo) Lenovo Web Start (HKU\S-1-5-21-899261099-702920328-1542426104-1001\...\Pokki_04bb6df446330549a2cb8d67fbd1a745025b7bd1) (Version: 1.0.2.53457 - Pokki) Lenovo_Wireless_Driver (HKLM-x32\...\{5D642A72-8194-4A22-80DA-11FE610CCA8E}) (Version: 6.30.223.201 - Lenovo) LenovoUtility (HKLM-x32\...\InstallShield_{6ADA7E88-8D16-4D0D-BC90-2B93AC5E56DA}) (Version: 2.0.0.5 - Nazwa firmy) LenovoUtility (x32 Version: 2.0.0.5 - Nazwa firmy) Hidden Mafia (HKLM-x32\...\Mafia) (Version: - ) Mafia II (HKLM-x32\...\Mafia II_is1) (Version: - ) Maxthon Cloud Browser (HKLM-x32\...\Maxthon3) (Version: 4.4.2.2000 - Maxthon International Limited) Medal of Honor 2010 version 1.0.0 (HKLM-x32\...\Medal of Honor 2010_is1) (Version: 1.0.0 - GTX Box Team) Metric Collection SDK 35 (x32 Version: 1.2.0001.00 - Lenovo Group Limited) Hidden Microsoft Games for Windows - LIVE Redistributable (HKLM-x32\...\{59E4543A-D49D-4489-B445-473D763C79AF}) (Version: 2.0.672.0 - Microsoft Corporation) Microsoft Office Enterprise 2007 (HKLM-x32\...\ENTERPRISE) (Version: 12.0.4518.1014 - Microsoft Corporation) Microsoft OneDrive (HKU\S-1-5-21-899261099-702920328-1542426104-1001\...\OneDriveSetup.exe) (Version: 17.3.6302.0225 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.40728.0 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727 (HKLM-x32\...\{15134cb0-b767-4960-a911-f2d16ae54797}) (Version: 11.0.50727.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 (HKLM-x32\...\{22154f09-719a-4619-bb71-5b3356999fbf}) (Version: 11.0.50727.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005 (HKLM-x32\...\{7f51bdb9-ee21-49ee-94d6-90afc321780e}) (Version: 12.0.21005.1 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 (HKLM-x32\...\{ce085a78-074e-4823-8dc1-8a721b94b76d}) (Version: 12.0.21005.1 - Microsoft Corporation) Midnight Club 2 (HKLM-x32\...\Midnight Club 2) (Version: - ) NVIDIA PhysX (HKLM-x32\...\{3F5C371F-8EA2-4F25-9D3D-D0B4526E3AEA}) (Version: 9.10.0513 - NVIDIA Corporation) OEM Application Profile (HKLM-x32\...\{B7A04A71-5DDD-9FA5-66ED-C3CC33152388}) (Version: 1.00.0000 - Advanced Micro Devices, Inc.) OneKey Optimizer (HKLM-x32\...\InstallShield_{D5D573DC-D989-4769-9B56-D6A7EA503D7F}) (Version: 1.1.20.16 - Lenovo) OneKey Optimizer (x32 Version: 1.1.20.16 - Lenovo) Hidden OpenIV (HKU\S-1-5-21-899261099-702920328-1542426104-1001\...\OpenIV) (Version: 2.6.4.642 - .black/OpenIV Team) Opera Stable 36.0.2130.65 (HKLM-x32\...\Opera 36.0.2130.65) (Version: 36.0.2130.65 - Opera Software) Oprogramowanie mikroukładu Intel® (x32 Version: 10.0.22 - Intel(R) Corporation) Hidden Pakiet sterowników systemu Windows - Lenovo (ACPIVPC) System (09/24/2013 19.29.2.34) (HKLM\...\EE9B1F2037C580F36D92FA431CC02BFF04C31F15) (Version: 09/24/2013 19.29.2.34 - Lenovo) Pakiet sterowników systemu Windows - Lenovo (WUDFRd) LenovoVhid (07/25/2013 10.30.0.288) (HKLM\...\6BCA401E9CBEED970D75F55FA5320F60D11984E9) (Version: 07/25/2013 10.30.0.288 - Lenovo) PAŃSTWOWE TESTY EGZAMINACYJNE NA PJ (HKLM-x32\...\PAŃSTWOWE TESTY EGZAMINACYJNE NA PJ) (Version: - ) PX Profile Update (x32 Version: 1.00.1. - AMD) Hidden Raptr (HKLM-x32\...\Raptr) (Version: - ) Realtek Card Reader (HKLM-x32\...\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}) (Version: 6.3.9600.39059 - Realtek Semiconductor Corp.) Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 8.33.529.2014 - Realtek) Rockstar Games Social Club (HKLM-x32\...\Rockstar Games Social Club) (Version: 1.1.5.8 - Rockstar Games) SDFormatter (HKLM-x32\...\{179324FF-7B16-4BA8-9836-055CAAEE4F08}) (Version: 4.0.0 - SD Association) Skype™ 7.6 (HKLM-x32\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 7.6.103 - Skype Technologies S.A.) Sleeping Dogs Definitive Edition (HKLM-x32\...\Sleeping Dogs Definitive Edition_is1) (Version: - ) Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation) Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 18.0.7.132 - Synaptics Incorporated) System Requirements Lab Detection (HKLM-x32\...\{47C3FEA4-6103-46F9-A3B0-4B05078E4524}) (Version: 6.1.5.0 - Husdawg, LLC) The Sims 4 (HKLM-x32\...\VGhlU2ltczQ=_is1) (Version: 1 - ) The Sims™ 4 (HKLM-x32\...\{48EBEBBF-B9F8-4520-A3CF-89A730721917}) (Version: 1.0.732.20 - Electronic Arts Inc.) Tropico 5 (HKLM-x32\...\Tropico 5_is1) (Version: - ) Twierdza (HKLM-x32\...\Stronghold_is1) (Version: - Cenega Poland Sp. z o.o.) Unity Web Player (HKU\S-1-5-21-899261099-702920328-1542426104-1001\...\UnityWebPlayer) (Version: 5.2.0f3 - Unity Technologies ApS) Visual Studio C++ 10.0 Runtime (HKLM-x32\...\{4412F224-3849-4461-A3E9-DEEF8D252790}) (Version: 10.0.0 - TomTom International B.V.) Wesola Szkola (HKLM-x32\...\Wesola Szkola) (Version: - ) WinRAR 5.21 (64-bitowy) (HKLM\...\WinRAR archiver) (Version: 5.21.0 - win.rar GmbH) YouTubeByClick (HKLM-x32\...\{F5037D77-398F-4085-8BD0-FD9180B671B2}) (Version: 2.2.16 - YouTubeByClick.com) YTDownloader (HKLM-x32\...\YTDownloader) (Version: - YTDownloader) <==== UWAGA ==================== Niestandardowe rejestracje CLSID (filtrowane): ========================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) ==================== Zaplanowane zadania (filtrowane) ============= (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) Task: {01489A37-BFBB-4BFE-BBB0-B074A014CD2E} - System32\Tasks\Lenovo\Lenovo Customer Feedback Program 64 => C:\Program Files (x86)\Lenovo\Customer Feedback Program\Lenovo.TVT.CustomerFeedback.Agent.exe [2014-09-02] (Lenovo) Task: {1018195B-3C10-4318-9894-537AA1A6A5D3} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-06-15] (Google Inc.) Task: {1A1F30AB-7B5C-4A18-9095-CB6E822706A7} - System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473-Logon => C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe [2014-04-09] () Task: {1DB97C7E-7609-4EEF-8DD2-0A03370FAFB3} - System32\Tasks\psv_Greentax => /c regedit.exe /s "C:\ProgramData\dlohn\Jobdax.reg" & del "C:\ProgramData\dlohn\Jobdax.reg" & SCHTASKS /Delete /TN "psv_Greentax" /F <==== UWAGA Task: {1DD30DAA-6E92-4595-BBDF-F93629C5096D} - System32\Tasks\psv_Joytam => /c regedit.exe /s "C:\ProgramData\serfe\Saltcore.reg" & del "C:\ProgramData\serfe\Saltcore.reg" & SCHTASKS /Delete /TN "psv_Joytam" /F <==== UWAGA Task: {23088C43-0D7D-401D-A114-EA8E98FD2B6B} - System32\Tasks\Lenovo\LSC\LSCHardwareScanPostpone => C:\Program Files\Lenovo\Lenovo Solution Center\LSC.exe [2014-10-16] () Task: {385EBCAA-73BA-435F-9AD9-EC7BFAAB899E} - System32\Tasks\Lenovo\Lenovo Customer Feedback Program => C:\Program Files\Lenovo\Customer Feedback Program\Lenovo.TVT.CustomerFeedback.Agent.exe [2014-10-16] (Lenovo) Task: {3A8A3034-887F-4269-BA4B-45ABDAF99626} - System32\Tasks\psv_Latsankix => /c regedit.exe /s "C:\ProgramData\dlohn\Unophase.reg" & del "C:\ProgramData\dlohn\Unophase.reg" & SCHTASKS /Delete /TN "psv_Latsankix" /F <==== UWAGA Task: {3FAE48D6-52F6-417A-AF9A-7A1B46910029} - System32\Tasks\Lenovo\LSC\Lenovo Solution Center Notifications => C:\Program Files\Lenovo\Lenovo Solution Center\LSCNotify.exe [2014-10-16] (Lenovo) Task: {40BA97B2-891D-46A6-90DF-30E3B8D9A8A2} - System32\Tasks\Lenovo\LSC\LSCHardwareScan => C:\Program Files\Lenovo\Lenovo Solution Center\LSC.exe [2014-10-16] () Task: {455D7CC7-9BD5-472C-B4AA-6109FD9F022E} - System32\Tasks\Adobe Flash Player PPAPI Notifier => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_20_0_0_306_pepper.exe [2016-02-14] (Adobe Systems Incorporated) Task: {4BBE1116-ACA6-48B5-8B26-548672E583B4} - System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473 => C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe [2014-04-09] () Task: {5C74706C-9F46-47A7-A049-4E26D091CE80} - System32\Tasks\psv_Zoomcore => /c regedit.exe /s "C:\ProgramData\serfe\Touch-Lax.reg" & del "C:\ProgramData\serfe\Touch-Lax.reg" & SCHTASKS /Delete /TN "psv_Zoomcore" /F <==== UWAGA Task: {75F905F5-ED16-4D86-BF4D-9598D1370E63} - System32\Tasks\AMD Updater => C:\Program Files\AMD\CIM\\Bin64\InstallManagerApp.exe [2015-11-18] (Advanced Micro Devices, Inc.) Task: {770B41A8-5537-4E91-9B02-B0D2FFA59ACA} - System32\Tasks\Call Form => Rundll32.exe "C:\Users\Natalka\AppData\Local\Call Form\{B49D99C5-345C-2EBB-7681-69580AE8BE65}\CallForm.dll",#1 <==== UWAGA Task: {7D5DC876-066E-44C9-A5C5-2B3BB0B98AD4} - System32\Tasks\SweetLabs App Platform => C:\Users\Natalka\AppData\Local\SweetLabs App Platform\Engine\ServiceHostAppUpdater.exe [2016-04-14] (Pokki) Task: {8CA7A5FB-4F4B-4201-B3E8-B5C43B1325D8} - System32\Tasks\psv_DoubleQuostrong => /c regedit.exe /s "C:\ProgramData\dlohn\Trustsoft.reg" & del "C:\ProgramData\dlohn\Trustsoft.reg" & SCHTASKS /Delete /TN "psv_DoubleQuostrong" /F <==== UWAGA Task: {9A1B9764-4DDF-4DC2-A3E7-BDE7A3BD58FC} - System32\Tasks\YTDownloader => C:\Program Files (x86)\YTDownloader\YTDownloader.exe [2015-10-22] (YTDownloader) <==== UWAGA Task: {A9F5A798-9F72-44D1-90E7-8B1F1CBD90C7} - System32\Tasks\PDVDServ Task => C:\Program Files (x86)\Lenovo\PowerDVD10\PDVD10Serv.EXE [2013-03-08] (CyberLink Corp.) Task: {ABA3F571-725E-4F1F-B976-C1ECB6AC639D} - System32\Tasks\Lenovo\Lenovo Customer Feedback Program 64 35 => C:\Program Files (x86)\Lenovo\Customer Feedback Program 35\Lenovo.TVT.CustomerFeedback.Agent35.exe [2014-05-30] (Lenovo) Task: {AD86AF9D-9029-494B-815B-F97C5D815281} - System32\Tasks\Lenovo\Dependency Package Auto Update => C:\Program Files\Lenovo\iMController\AutoUpdate.exe [2015-12-14] () Task: {B1CBA681-8D70-4572-9B15-BD490534BAF6} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-06-15] (Google Inc.) Task: {B7B9AD9A-539F-4085-8127-EBD5370A25A9} - System32\Tasks\Lenovo\Lenovo Solution Center Launcher => C:\Program Files\lenovo\lenovo solution center\App\LSCService.exe [2014-10-16] (Lenovo) Task: {BD8E52B5-F2B0-428A-B11E-0BFAFF93CF30} - System32\Tasks\Maxthon Update => C:\Program Files (x86)\Maxthon\Bin\Maxthon.exe [2015-10-27] (Maxthon International ltd.) Task: {CD979AAC-52B1-4EF8-811C-19A39512C7ED} - System32\Tasks\ESET Windows 10 upgrade – Refresh settings => C:\Program Files\Common Files\AV\ESET Smart Security 8.0\upgrade.exe [2016-04-18] (ESET) Task: {D11F1C0C-AB7D-47B0-BBA0-D284CE5B98FF} - System32\Tasks\psv_Latlab => /c regedit.exe /s "C:\ProgramData\dlohn\StockRemcore.reg" & del "C:\ProgramData\dlohn\StockRemcore.reg" & SCHTASKS /Delete /TN "psv_Latlab" /F <==== UWAGA Task: {D5521BDF-0BBA-4FEB-9C12-761F9C0ECF35} - System32\Tasks\Microsoft OneDrive Auto Update Task-S-1-5-21-899261099-702920328-1542426104-1001 => C:\Users\Natalka\AppData\Local\Microsoft\OneDrive\OneDrive.exe [2016-03-11] (Microsoft Corporation) Task: {D58D529E-D8C7-4EB1-92A9-AA001240205A} - System32\Tasks\YTDownloaderUpd => C:\Program Files (x86)\YTDownloader\updater.exe [2015-10-22] (Goobzo) <==== UWAGA Task: {D9E1BD74-F7CE-4BD5-9768-CE1B00BBE486} - System32\Tasks\Call Form2 => Rundll32.exe "C:\Users\Natalka\AppData\Local\Call Form\{B49D99C5-345C-2EBB-7681-69580AE8BE65}\mqku.dll",#1 <==== UWAGA Task: {E1A0344D-A453-48E4-B6F1-84C17754607E} - System32\Tasks\Opera scheduled Autoupdate 1453027716 => C:\Program Files (x86)\Opera\launcher.exe [2016-04-11] (Opera Software) (Załączenie wejścia w fixlist spowoduje przesunięcie pliku zadania (.job). Plik uruchamiany docelowo przez zadanie nie zostanie przeniesiony.) Task: C:\WINDOWS\Tasks\Adobe Flash Player PPAPI Notifier.job => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_20_0_0_306_pepper.exe Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ==================== Skróty ============================= (Wybrane wejścia mogą zostać załączone w celu ich zresetowania lub usunięcia.) ShortcutWithArgument: C:\Users\Natalka\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) -> %SNP% ShortcutWithArgument: C:\Users\Natalka\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> hxxp://www.so-v.com/?type=ll&uid=d305cef8-9813-4ffe-aa46-d46d44c55f64 ShortcutWithArgument: C:\Users\Natalka\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) -> %SNP% ShortcutWithArgument: C:\Users\Natalka\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> hxxp://www.so-v.com/?type=ll&uid=d305cef8-9813-4ffe-aa46-d46d44c55f64 ShortcutWithArgument: C:\Users\Natalka\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Internet Explorer.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) -> %SNP% ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> hxxp://www.so-v.com/?type=ll&uid=d305cef8-9813-4ffe-aa46-d46d44c55f64 ShortcutWithArgument: C:\Users\Public\Desktop\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> hxxp://www.so-v.com/?type=ll&uid=d305cef8-9813-4ffe-aa46-d46d44c55f64 ShortcutWithArgument: C:\Users\Public\Desktop\Opera.lnk -> C:\Program Files (x86)\Opera\launcher.exe (Opera Software) -> hxxp://www.so-v.com/?type=ll&uid=d305cef8-9813-4ffe-aa46-d46d44c55f64 ==================== Załadowane moduły (filtrowane) ============== 2016-01-17 11:30 - 2016-01-17 11:30 - 00383488 _____ () C:\Program Files\amdidx\amdidx.exe 2015-10-22 11:57 - 2015-10-22 11:57 - 00112560 _____ () C:\Program Files (x86)\YTDownloader\BrowserHelperSrv.exe 2014-07-10 17:33 - 2014-07-10 17:33 - 00049408 _____ () C:\Program Files\Lenovo\Bluetooth Software\btwleapi.dll 2016-04-12 18:21 - 2016-04-12 17:35 - 00400384 _____ () C:\ProgramData\DCHP\DCHP.exe 2016-01-20 17:32 - 2016-01-20 16:35 - 00539136 _____ () C:\ProgramData\dlohn\dlohn.exe 2015-03-13 05:08 - 2015-03-13 05:08 - 00133440 _____ () C:\Program Files\Lenovo PhoneCompanion\LPAWDService.exe 2015-03-13 04:59 - 2015-03-13 04:59 - 00068880 _____ () C:\Program Files (x86)\Lenovo\Lenovo VeriFace Pro\VfConnectorService.exe 2015-03-13 04:59 - 2015-03-13 04:59 - 00672016 _____ () C:\Program Files (x86)\Lenovo\Lenovo VeriFace Pro\VfDataStorageInterface.dll 2015-03-13 04:58 - 2014-10-22 11:15 - 00644080 _____ () C:\Program Files (x86)\Lenovo\CCSDK\CCSDK.exe 2015-03-13 05:11 - 2014-11-17 16:35 - 00036632 _____ () C:\Program Files\Lenovo\OneKey Optimizer\bin\Metric.dll 2015-03-13 05:11 - 2014-11-17 16:35 - 00166680 _____ () C:\Program Files\Lenovo\OneKey Optimizer\bin\Lenovo.MetricCollectionMFCx64.dll 2015-03-12 19:52 - 2014-12-19 06:03 - 00391784 _____ () C:\WINDOWS\system32\igfxTray.exe 2015-03-13 04:58 - 2014-10-22 11:15 - 00410096 _____ () C:\Program Files (x86)\Lenovo\CCSDK\WinGather.exe 2015-03-13 04:11 - 2010-10-26 06:40 - 00049056 _____ () C:\Program Files\CONEXANT\ForteConfig\fmapp.exe 2015-03-13 04:59 - 2015-03-13 04:59 - 00791368 _____ () C:\Program Files\Lenovo\LenovoUtility\utility.exe 2015-03-13 04:59 - 2015-03-13 04:59 - 00097048 _____ () C:\Program Files\Lenovo\LenovoUtility\kbdhook.dll 2015-06-25 17:34 - 2015-06-25 17:34 - 00014336 _____ () C:\Program Files\AMD\CNext\CNext\QtQuick.2\qtquick2plugin.dll 2015-06-25 17:37 - 2015-06-25 17:37 - 00739840 _____ () C:\Program Files\AMD\CNext\CNext\QtQuick\Controls\qtquickcontrolsplugin.dll 2015-06-25 17:35 - 2015-06-25 17:35 - 00014336 _____ () C:\Program Files\AMD\CNext\CNext\QtQuick\Window.2\windowplugin.dll 2015-06-25 17:38 - 2015-06-25 17:38 - 00071168 _____ () C:\Program Files\AMD\CNext\CNext\QtQuick\Layouts\qquicklayoutsplugin.dll 2015-06-25 16:53 - 2015-06-25 16:53 - 00011776 _____ () C:\Program Files\AMD\CNext\CNext\libEGL.dll 2015-06-25 16:51 - 2015-06-25 16:51 - 02013696 _____ () C:\Program Files\AMD\CNext\CNext\libGLESv2.dll 2014-04-09 12:29 - 2014-04-09 12:29 - 00174368 _____ () C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe 2014-09-03 12:03 - 2014-09-03 12:03 - 01241560 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll 2015-03-13 04:33 - 2014-08-04 19:06 - 02201088 _____ () C:\Program Files\Lenovo\Communications Utility\cxcore210.dll 2015-03-13 04:33 - 2014-08-04 19:06 - 02085888 _____ () C:\Program Files\Lenovo\Communications Utility\cv210.dll 2016-01-17 12:55 - 2016-01-17 12:55 - 00012800 _____ () C:\Users\Natalka\AppData\Local\Call Form\{B49D99C5-345C-2EBB-7681-69580AE8BE65}\mqku.dll 2016-01-17 12:55 - 2016-01-17 12:55 - 00011264 _____ () C:\Users\Natalka\AppData\Local\Call Form\{B49D99C5-345C-2EBB-7681-69580AE8BE65}\{D96DDDA4-10D7-D03F-AF06-72AF0F8171B3}.dat 2016-01-17 12:55 - 2016-01-17 12:55 - 00028160 _____ () C:\Users\Natalka\AppData\Local\Call Form\{B49D99C5-345C-2EBB-7681-69580AE8BE65}\CallForm.dll 2016-04-14 20:25 - 2016-04-14 20:25 - 63830568 _____ () C:\Program Files (x86)\Opera\36.0.2130.65\opera.dll 2016-04-14 20:25 - 2016-04-14 20:25 - 02134568 _____ () C:\Program Files (x86)\Opera\36.0.2130.65\libglesv2.dll 2016-04-14 20:25 - 2016-04-14 20:25 - 00082472 _____ () C:\Program Files (x86)\Opera\36.0.2130.65\libegl.dll 2016-04-14 01:00 - 2016-04-14 01:00 - 00569856 _____ () C:\Users\Natalka\AppData\Local\SweetLabs App Platform\Engine\ppGoogleNaClPluginChrome.dll 2016-04-14 01:00 - 2016-04-14 01:00 - 01400846 _____ () C:\Users\Natalka\AppData\Local\SweetLabs App Platform\Engine\avcodec-54.dll 2016-04-14 01:00 - 2016-04-14 01:00 - 00151054 _____ () C:\Users\Natalka\AppData\Local\SweetLabs App Platform\Engine\avutil-51.dll 2016-04-14 01:00 - 2016-04-14 01:00 - 00222734 _____ () C:\Users\Natalka\AppData\Local\SweetLabs App Platform\Engine\avformat-54.dll 2014-04-09 12:30 - 2014-04-09 12:30 - 00041248 _____ () C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\win32api.pyd 2014-04-09 12:29 - 2014-04-09 12:29 - 00059680 _____ () C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\pywintypes27.dll 2014-04-09 12:29 - 2014-04-09 12:29 - 00119072 _____ () C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\pythoncom27.dll 2014-04-09 12:29 - 2014-04-09 12:29 - 00562464 _____ () C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\urlmon.dll 2014-04-09 12:29 - 2014-04-09 12:29 - 00401184 _____ () C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iertutil.dll 2014-04-09 12:29 - 2014-04-09 12:29 - 00412448 _____ () C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\WININET.dll 2014-04-09 12:30 - 2014-04-09 12:30 - 00020256 _____ () C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\_multiprocessing.pyd 2014-04-09 12:30 - 2014-04-09 12:30 - 00025376 _____ () C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\win32service.pyd 2014-04-09 12:30 - 2014-04-09 12:30 - 00022816 _____ () C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\servicemanager.pyd 2014-04-09 12:30 - 2014-04-09 12:30 - 00018208 _____ () C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\win32event.pyd 2014-04-09 12:30 - 2014-04-09 12:30 - 00027424 _____ () C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\_socket.pyd 2014-04-09 12:30 - 2014-04-09 12:30 - 00277280 _____ () C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\_ssl.pyd 2014-04-09 12:30 - 2014-04-09 12:30 - 00113952 _____ () C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\_hashlib.pyd 2014-04-09 12:30 - 2014-04-09 12:30 - 00016672 _____ () C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\select.pyd 2014-04-09 12:30 - 2014-04-09 12:30 - 00040736 _____ () C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\_ctypes.pyd 2014-04-09 12:30 - 2014-04-09 12:30 - 00023328 _____ () C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\win32process.pyd 2014-04-09 12:30 - 2014-04-09 12:30 - 00020256 _____ () C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\win32ts.pyd 2014-04-09 12:30 - 2014-04-09 12:30 - 00018720 _____ () C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\win32profile.pyd 2014-04-09 12:30 - 2014-04-09 12:30 - 00042784 _____ () C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\win32security.pyd 2014-04-09 12:30 - 2014-04-09 12:30 - 00336160 _____ () C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\_bsddb.pyd 2014-04-09 12:30 - 2014-04-09 12:30 - 00023328 _____ () C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\win32evtlog.pyd 2014-04-09 12:30 - 2014-04-09 12:30 - 00024864 _____ () C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\win32inet.pyd 2014-04-09 12:29 - 2014-04-09 12:29 - 00021280 _____ () C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\EnvironmentID.dll 2015-08-27 18:56 - 2015-08-18 07:23 - 01405768 _____ () C:\Program Files (x86)\Google\Chrome\Application\44.0.2403.157\libglesv2.dll 2015-08-27 18:56 - 2015-08-18 07:23 - 00081224 _____ () C:\Program Files (x86)\Google\Chrome\Application\44.0.2403.157\libegl.dll ==================== Alternate Data Streams (filtrowane) ========= (Załączenie wejścia w fixlist spowoduje usunięcie strumienia ADS.) ==================== Tryb awaryjny (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Wartość "AlternateShell" zostanie przywrócona.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcpltsvc => ""="" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mcpltsvc => ""="" ==================== EXE - Powiązania (filtrowane) =============== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci.) ==================== Internet Explorer - Witryny zaufane i z ograniczeniami =============== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru.) ==================== Hosts - zawartość: ========================== (Użycie dyrektywy Hosts: w fixlist spowoduje reset pliku Hosts.) 2013-08-22 15:25 - 2016-02-07 23:34 - 00031262 ____A C:\WINDOWS\system32\Drivers\etc\hosts 127.0.0.1 localhost 13.69.186.195 1and1.com 13.69.186.195 22find.com 13.69.186.195 24img.com 13.69.186.195 a4.bing.com 13.69.186.195 abcsearch.ru 13.69.186.195 airzip.inspsearch.com 13.69.186.195 allsearch.ca 13.69.186.195 allsearch.space 13.69.186.195 alternativesearch.ru 13.69.186.195 amaizingsearches.info 13.69.186.195 amazon.smart-search.com 13.69.186.195 appiance.com 13.69.186.195 asiasearch.co 13.69.186.195 ask.com 13.69.186.195 atajitos.com 13.69.186.195 autosearch.centurylink.com 13.69.186.195 autosearch.zoominternet.net 13.69.186.195 avg.com 13.69.186.195 avg.nation.com 13.69.186.195 awesomehp.com 13.69.186.195 baidu.com 13.69.186.195 best-found.com 13.69.186.195 bestqualitysearch.com 13.69.186.195 bestsearch.com 13.69.186.195 bestsearch.space 13.69.186.195 bestsearchsresult.com 13.69.186.195 betasearch.ru 13.69.186.195 better-search.net 13.69.186.195 bilisearch.com Wykryto więcej niż wyliczono: 748 linii. ==================== Inne obszary ============================ (Obecnie brak automatycznej naprawy dla tej sekcji.) HKU\S-1-5-21-899261099-702920328-1542426104-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Natalka\AppData\Roaming\Microsoft\Windows Photo Viewer\Tapeta z Przeglądarki fotografii systemu Windows.jpg DNS Servers: 31.11.202.254 - 37.8.214.2 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Zapora systemu Windows [funkcja włączona] ==================== MSCONFIG/TASK MANAGER - Wyłączone elementy == (Obecnie brak automatycznej naprawy dla tej sekcji.) HKLM\...\StartupApproved\StartupFolder: => "Bluetooth.lnk" HKLM\...\StartupApproved\Run: => "PhoneCompanion" HKLM\...\StartupApproved\Run: => "OneKeyOptimizer" HKLM\...\StartupApproved\Run32: => "CLMLServer_For_P2G8" HKLM\...\StartupApproved\Run32: => "CLVirtualDrive" HKLM\...\StartupApproved\Run32: => "SunJavaUpdateSched" HKLM\...\StartupApproved\Run32: => "YTDownloader" HKU\S-1-5-21-899261099-702920328-1542426104-1001\...\StartupApproved\Run: => "MyDriveConnect.exe" HKU\S-1-5-21-899261099-702920328-1542426104-1001\...\StartupApproved\Run: => "DAEMON Tools Lite Automount" HKU\S-1-5-21-899261099-702920328-1542426104-1001\...\StartupApproved\Run: => "BingSvc" HKU\S-1-5-21-899261099-702920328-1542426104-1001\...\StartupApproved\Run: => "VideoDownloaderUltimate" HKU\S-1-5-21-899261099-702920328-1542426104-1001\...\StartupApproved\Run: => "YTDownloader" ==================== Reguły Zapory systemu Windows (filtrowane) =============== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139 FirewallRules: [{C33F6F1B-67AA-4E25-B384-EEB8E387BAA8}] => (Allow) C:\Program Files (x86)\Maxthon\Bin\MxUp.exe FirewallRules: [{2CBEA470-026F-4E6C-9894-E0C7E60CF9F7}] => (Allow) C:\Program Files (x86)\Maxthon\Bin\MxUp.exe FirewallRules: [{BB8C28CB-B381-4D56-A864-033EB398976C}] => (Allow) C:\Program Files (x86)\Maxthon\Bin\Maxthon.exe FirewallRules: [{2744629C-4BCA-442C-9CBB-50E2438737CF}] => (Allow) C:\Program Files (x86)\Maxthon\Bin\Maxthon.exe FirewallRules: [{AE483927-7CFC-46B1-A4D4-F314EFDE2566}] => (Allow) C:\Program Files (x86)\Lenovo\PowerDVD10\PowerDVD Cinema\PowerDVDCinema10.exe FirewallRules: [{57156597-8542-42B3-B45D-D6C448EFD014}] => (Allow) C:\Program Files (x86)\Lenovo\PowerDVD10\PowerDVD10.EXE FirewallRules: [{3FF342A9-8284-4BB4-BD05-27A6C29FAAE8}] => (Allow) C:\Program Files\Lenovo PhoneCompanion\LPAWDService.exe FirewallRules: [{9E7F20F1-5E1A-4754-A773-70DE97E986FE}] => (Allow) C:\Program Files\Lenovo PhoneCompanion\LPAWDService.exe FirewallRules: [{9B3A9BA2-3934-4950-8F05-6BAC802C46FA}] => (Allow) C:\Program Files (x86)\Lenovo\Lenovo Photo Master\PhotoPlus.exe FirewallRules: [{93A72D78-9D62-40D8-93A1-30110550B0CF}] => (Allow) C:\Program Files (x86)\Lenovo\Lenovo Photo Master\subsys\AdvPhotoEditor\PhotoDirector5.exe FirewallRules: [{1E2736B2-73A4-4526-9B87-652612B8698A}] => (Allow) LPort=55100 FirewallRules: [{5B911FD6-BCD9-4990-B116-5FD93E3DD5E9}] => (Allow) C:\Program Files\Lenovo PhotoMasterImport\PhotoMasterImport.exe FirewallRules: [{1943971B-1566-4A00-85B6-D208C976E154}] => (Allow) C:\Users\Natalka\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{C35AEE45-8DEF-4424-B2DF-730118F725D7}] => (Allow) C:\Users\Natalka\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{90BB0C72-6EE5-4148-A9A7-F29434B2705F}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe FirewallRules: [{6285E01A-DECB-471A-93E3-D6D7C5D5AAFB}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{D5686411-6C10-41DF-9FBC-1E2660C260A9}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{B3234CCE-7C97-42E6-A85C-00D131BD02FA}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe FirewallRules: [{57704374-18F0-4499-A241-69870C29F604}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe FirewallRules: [{CF02D569-E405-49E7-AE0C-14DFA8A039EB}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{B3A33755-B50C-4449-8762-9968BE402081}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{E23F17C7-EE81-43EE-B73A-DA8E3A0695FD}] => (Allow) C:\Program Files (x86)\Grand Theft Auto V\FiveM.exe FirewallRules: [{0FAFE242-621B-44B7-8BF5-7594D2700D45}] => (Allow) C:\Program Files (x86)\Grand Theft Auto V\FiveM.exe FirewallRules: [{80935672-9542-4EDB-80B4-C68A2EED46B9}] => (Allow) C:\Program Files (x86)\The Sims 4\Game\Bin\TS4.exe FirewallRules: [{1E51E597-D938-49F3-A3B8-84BEE2CB1944}] => (Allow) C:\Program Files (x86)\The Sims 4\Game\Bin\TS4.exe FirewallRules: [{CF699928-0C96-4599-84CF-08B10A5F6222}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\outlook.exe FirewallRules: [{2797754E-7415-4CDD-B20D-D031F1DE9164}] => (Allow) C:\Users\Natalka\AppData\Local\Microsoft\OneDrive\OneDrive.exe FirewallRules: [{1B970FEC-A6FC-4A26-8D08-B1BD469C37DC}] => (Allow) C:\Program Files (x86)\GTX Box Team\Euro Truck Simulator 2\bin\win_x64\eurotrucks2.exe FirewallRules: [{0AE6810B-838B-4435-85AE-408067508E95}] => (Allow) C:\Program Files (x86)\GTX Box Team\Euro Truck Simulator 2\bin\win_x64\eurotrucks2.exe FirewallRules: [{0E27AEAA-9F41-4A78-805F-35DFA78B12DF}] => (Allow) C:\Program Files (x86)\GTX Box Team\Euro Truck Simulator 2\bin\win_x86\eurotrucks2.exe FirewallRules: [{2B1924C6-D12C-4D49-BEF1-7BA1352BFB08}] => (Allow) C:\Program Files (x86)\GTX Box Team\Euro Truck Simulator 2\bin\win_x86\eurotrucks2.exe FirewallRules: [{3DEFA183-7F7B-475B-A7E8-2F5463DD96F2}] => (Allow) C:\Users\Natalka\Downloads\fivem (2)\FiveM.exe FirewallRules: [{28D16914-54EA-41F5-BEE1-2E262E372450}] => (Allow) C:\Users\Natalka\Downloads\fivem (2)\FiveM.exe FirewallRules: [{9B3152E2-0DF5-49B0-A5FB-DE2A5E2DB070}] => (Allow) C:\Program Files (x86)\Raptr\raptr.exe FirewallRules: [{D6F6FD13-C921-4DEE-B0B7-D829B4CCAB36}] => (Allow) C:\Program Files (x86)\Raptr\raptr.exe FirewallRules: [{B896CFD1-A880-4BBE-9656-7137051D864F}] => (Allow) C:\Program Files (x86)\Raptr\raptr_im.exe FirewallRules: [{F5875470-497A-48E7-A8F1-0B8E0E0811AE}] => (Allow) C:\Program Files (x86)\Raptr\raptr_im.exe ==================== Punkty Przywracania systemu ========================= 04-04-2016 09:17:11 Zaplanowany punkt kontrolny 11-04-2016 15:44:30 Zaplanowany punkt kontrolny 18-04-2016 23:45:14 Zaplanowany punkt kontrolny ==================== Wadliwe urządzenia w Menedżerze urządzeń ============= ==================== Błędy w Dzienniku zdarzeń: ========================= Dziennik Aplikacja: ================== Error: (04/25/2016 05:09:45 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: desktop254.exe, wersja: 1.0.0.10, sygnatura czasowa: 0x56e96567 Nazwa modułu powodującego błąd: desktop254.exe, wersja: 1.0.0.10, sygnatura czasowa: 0x56e96567 Kod wyjątku: 0xc0000409 Przesunięcie błędu: 0x00013ce7 Identyfikator procesu powodującego błąd: 0x2c10 Godzina uruchomienia aplikacji powodującej błąd: 0xdesktop254.exe0 Ścieżka aplikacji powodującej błąd: desktop254.exe1 Ścieżka modułu powodującego błąd: desktop254.exe2 Identyfikator raportu: desktop254.exe3 Pełna nazwa pakietu powodującego błąd: desktop254.exe4 Identyfikator aplikacji względem pakietu powodującego błąd: desktop254.exe5 Error: (04/25/2016 05:00:43 PM) (Source: ATIeRecord) (EventID: 16391) (User: ) Description: ATI EEU maximum number of session has been surpassed Error: (04/25/2016 04:53:00 PM) (Source: ATIeRecord) (EventID: 16391) (User: ) Description: ATI EEU maximum number of session has been surpassed Error: (04/25/2016 04:53:00 PM) (Source: ATIeRecord) (EventID: 16391) (User: ) Description: ATI EEU maximum number of session has been surpassed Error: (04/25/2016 04:53:00 PM) (Source: ATIeRecord) (EventID: 16391) (User: ) Description: ATI EEU maximum number of session has been surpassed Error: (04/25/2016 04:52:59 PM) (Source: ATIeRecord) (EventID: 16391) (User: ) Description: ATI EEU maximum number of session has been surpassed Error: (04/25/2016 04:52:54 PM) (Source: ATIeRecord) (EventID: 16391) (User: ) Description: ATI EEU maximum number of session has been surpassed Error: (04/25/2016 04:51:49 PM) (Source: ATIeRecord) (EventID: 16391) (User: ) Description: ATI EEU maximum number of session has been surpassed Error: (04/25/2016 03:46:46 PM) (Source: ATIeRecord) (EventID: 16391) (User: ) Description: ATI EEU maximum number of session has been surpassed Error: (04/25/2016 03:46:46 PM) (Source: ATIeRecord) (EventID: 16391) (User: ) Description: ATI EEU maximum number of session has been surpassed Dziennik System: ============= Error: (04/25/2016 06:01:04 PM) (Source: DCOM) (EventID: 10010) (User: Lenovo-PC) Description: {1B1F472E-3221-4826-97DB-2C2324D389AE} Error: (04/25/2016 06:00:34 PM) (Source: DCOM) (EventID: 10010) (User: Lenovo-PC) Description: {BF6C1E47-86EC-4194-9CE5-13C15DCB2001} Error: (04/25/2016 05:09:45 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Usługa DeskTop DispalyName niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. Error: (04/25/2016 04:52:57 PM) (Source: DCOM) (EventID: 10010) (User: Lenovo-PC) Description: {4545DEA0-2DFC-4906-A728-6D986BA399A9} Error: (04/25/2016 04:52:57 PM) (Source: DCOM) (EventID: 10010) (User: Lenovo-PC) Description: {4545DEA0-2DFC-4906-A728-6D986BA399A9} Error: (04/23/2016 07:52:25 PM) (Source: DCOM) (EventID: 10010) (User: Lenovo-PC) Description: {1B1F472E-3221-4826-97DB-2C2324D389AE} Error: (04/23/2016 07:51:54 PM) (Source: DCOM) (EventID: 10010) (User: Lenovo-PC) Description: {BF6C1E47-86EC-4194-9CE5-13C15DCB2001} Error: (04/21/2016 09:20:37 PM) (Source: DCOM) (EventID: 10010) (User: Lenovo-PC) Description: {1B1F472E-3221-4826-97DB-2C2324D389AE} Error: (04/21/2016 09:20:07 PM) (Source: DCOM) (EventID: 10010) (User: Lenovo-PC) Description: {BF6C1E47-86EC-4194-9CE5-13C15DCB2001} Error: (04/21/2016 11:21:28 AM) (Source: DCOM) (EventID: 10010) (User: Lenovo-PC) Description: App.AppXbpxbpprpfbevqr8w99y11sm2nbwkf65c.mca ==================== Statystyki pamięci =========================== Procesor: Intel(R) Core(TM) i7-5500U CPU @ 2.40GHz Procent pamięci w użyciu: 40% Całkowita pamięć fizyczna: 8106.45 MB Dostępna pamięć fizyczna: 4837.95 MB Całkowita pamięć wirtualna: 9658.45 MB Dostępna pamięć wirtualna: 5075.62 MB ==================== Dyski ================================ Drive c: (Windows8_OS) (Fixed) (Total:889.74 GB) (Free:365.52 GB) NTFS ==>[system z komponentami startowymi (pozyskano odczytując dysk)] Drive d: (LENOVO) (Fixed) (Total:25 GB) (Free:21.92 GB) NTFS ==================== MBR & Tablica partycji ================== ======================================================== Disk: 0 (Size: 931.5 GB) (Disk ID: BEF2C006) Partition: GPT. ==================== Koniec Addition.txt ============================