Rezultaty skanu uzupełniającego Farbar Recovery Scan Tool (x64) Wersja:27-04-2016 Uruchomiony przez User (2016-04-28 21:33:19) Uruchomiony z D:\Pobierane Windows 7 Home Premium Service Pack 1 (X64) (2013-09-11 09:15:27) Tryb startu: Normal ========================================================== ==================== Konta użytkowników: ============================= Administrator (S-1-5-21-4154841232-203179108-210261655-500 - Administrator - Disabled) Gość (S-1-5-21-4154841232-203179108-210261655-501 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-4154841232-203179108-210261655-1503 - Limited - Enabled) User (S-1-5-21-4154841232-203179108-210261655-1000 - Administrator - Enabled) => C:\Users\User ==================== Centrum zabezpieczeń ======================== (Załączenie wejścia w fixlist spowoduje jego usunięcie.) AS: Windows Defender (Enabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Zainstalowane programy ====================== (W fixlist dozwolone tylko załączanie programów adware z flagą "Hidden" w celu ich uwidocznienia. Programy adware powinny zostać w poprawny sposób odinstalowane.) µTorrent (HKU\S-1-5-21-4154841232-203179108-210261655-1000\...\uTorrent) (Version: 3.4.6.42094 - BitTorrent Inc.) 64 Bit HP CIO Components Installer (Version: 6.2.1 - Hewlett-Packard) Hidden Adobe Flash Player 21 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 21.0.0.213 - Adobe Systems Incorporated) Adobe Flash Player 21 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 21.0.0.213 - Adobe Systems Incorporated) Adobe Reader XI (11.0.09) - Polish (HKLM-x32\...\{AC76BA86-7AD7-1045-7B44-AB0000000001}) (Version: 11.0.09 - Adobe Systems Incorporated) Apple Mobile Device Support (HKLM\...\{C4123106-B685-48E6-B9BD-E4F911841EB4}) (Version: 8.1.1.3 - Apple Inc.) Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.) Archiwizator WinRAR (HKLM\...\WinRAR archiver) (Version: - ) ASUS GPU Tweak (HKLM-x32\...\InstallShield_{532F6E8A-AF97-41C3-915F-39F718EC07D1}) (Version: 2.3.0.3 - ASUSTek COMPUTER INC.) ASUS GPU Tweak (x32 Version: 2.3.0.3 - ASUSTek COMPUTER INC.) Hidden Bejeweled 3 (HKLM-x32\...\Bejeweled 31.0) (Version: 1.0 - AllSmartGames) BlueStacks App Player (HKLM-x32\...\{AA655366-D323-404D-AA9B-AD562CAE1DD0}) (Version: 2.2.21.6212 - BlueStack Systems, Inc.) Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.) Etron USB3.0 Host Controller (HKLM-x32\...\InstallShield_{DFBB738C-71D8-4DC5-B8D2-D65C37680E27}) (Version: 0.115 - Etron Technology) Etron USB3.0 Host Controller (x32 Version: 0.115 - Etron Technology) Hidden Google Chrome (HKLM-x32\...\Google Chrome) (Version: 50.0.2661.87 - Google Inc.) Google Update Helper (x32 Version: 1.3.25.11 - Google Inc.) Hidden Google Update Helper (x32 Version: 1.3.29.5 - Google Inc.) Hidden Google+ Auto Backup (HKLM-x32\...\{A50DE037-B5C0-4C8A-8049-B0C576B313D1}) (Version: 1.0.21.81 - Google) Hearthstone (HKLM-x32\...\Hearthstone) (Version: - Blizzard Entertainment) Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 8.1.0.1252 - Intel Corporation) iTunes (HKLM\...\{D227565A-0033-40AD-89BA-653A205CDC11}) (Version: 12.1.1.4 - Apple Inc.) Malwarebytes Anti-Malware wersja 2.2.1.1043 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.2.1.1043 - Malwarebytes) Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation) Microsoft Office Standard 2010 (HKLM-x32\...\Office14.STANDARD) (Version: 14.0.4763.1000 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729 (HKLM\...\{14297226-E0A0-3781-8911-E9D529552663}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) MPC-HC 1.7.10 (64-bit) (HKLM\...\{2ACBF1FA-F5C3-4B19-A774-B22A31F231B9}_is1) (Version: 1.7.10 - MPC-HC Team) NapiProjekt (2.2.0.2399) (HKLM-x32\...\NapiProjekt_is1) (Version: - ) NVIDIA Oprogramowanie systemu PhysX 9.15.0428 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.15.0428 - NVIDIA Corporation) NVIDIA Sterownik 3D Vision 353.62 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 353.62 - NVIDIA Corporation) NVIDIA Sterownik dźwięku HD 1.3.34.3 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.34.3 - NVIDIA Corporation) NVIDIA Sterownik graficzny 353.62 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 353.62 - NVIDIA Corporation) NVIDIA Sterownik kontrolera 3D Vision 352.65 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 352.65 - NVIDIA Corporation) Obsługa programów Apple (32-bitowa) (HKLM-x32\...\{447CDCE5-F555-429B-BFA6-642C3C6D684F}) (Version: 3.1.2 - Apple Inc.) Obsługa programów Apple (64-bitowa) (HKLM\...\{0DF7096B-715A-4233-8633-C7A16ED6D616}) (Version: 3.1.2 - Apple Inc.) Panel sterowania NVIDIA 353.62 (Version: 353.62 - NVIDIA Corporation) Hidden PLAY ONLINE (HKLM-x32\...\PLAY ONLINE) (Version: 23.015.02.02.264 - Huawei Technologies Co.,Ltd) Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.49.927.2011 - Realtek) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6662 - Realtek Semiconductor Corp.) Skype™ 7.3 (HKLM-x32\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 7.3.101 - Skype Technologies S.A.) Spotify (HKU\S-1-5-21-4154841232-203179108-210261655-1000\...\Spotify) (Version: 1.0.21.143.g76c19bcd - Spotify AB) Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation) TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.0.15 - TeamSpeak Systems GmbH) TeamViewer 9 (HKLM-x32\...\TeamViewer 9) (Version: 9.0.24951 - TeamViewer) TP-LINK Wireless Client Utility (HKLM-x32\...\{1E03C8BE-0848-430F-BECA-7D7709401626}) (Version: 7.0 - TP-LINK) VCRedistSetup (x32 Version: 1.0.0 - Nero AG) Hidden War Thunder (HKLM-x32\...\Steam App 236390) (Version: - Gaijin Entertainment) WinPcap 4.1.2 (HKLM-x32\...\WinPcapInst) (Version: 4.1.0.2001 - CACE Technologies) ==================== Niestandardowe rejestracje CLSID (filtrowane): ========================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) ==================== Zaplanowane zadania (filtrowane) ============= (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) Task: {453894A0-F5B2-4BEA-B4E9-7E4246264D2D} - System32\Tasks\{65502C18-88D3-4298-93E8-1273309FC944} => pcalua.exe -a D:\Gry\Smite\HiRezGamesDiagAndSupport.exe -c uninstall=all Task: {454922CA-BFB5-44D2-AD67-BF983B1DA134} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-27] (Google Inc.) Task: {4D28E908-E0D3-407C-A053-322E0A9820BF} - System32\Tasks\AutoKMS => C:\Windows\AutoKMS\AutoKMS.exe [2014-11-03] () Task: {56CE9D01-B413-4D97-8540-C84F3B68CA82} - System32\Tasks\{C5523E5C-2E3B-4CB4-ACC4-B70D4B1D649A} => pcalua.exe -a "C:\Program Files (x86)\MWSnap\uninstall.exe" Task: {5C008983-4884-474C-9543-BF4D89075703} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-27] (Google Inc.) Task: {A08AD0BC-E0A3-4882-9F0C-9FDFBB13840E} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-04-20] (Adobe Systems Incorporated) Task: {BA49AC66-E9FB-4FDE-B7B6-FA2B1C5EC202} - System32\Tasks\{451E0197-B8FE-4D9E-B3D2-6C5D28AF4163} => D:\Pobierane\Deluxe Ski Jump\Deluxe Ski Jump\Dsj.exe Task: {E8E51847-1016-4AA0-B835-4E7453ED44C4} - System32\Tasks\{4536485E-D9FD-428E-A9E8-C30D9FBF1DB2} => D:\Gry\Kosz2001\Kosz2001.exe Task: {F378FC95-0208-4400-B793-59F2C7BEEAB0} - System32\Tasks\{23B4A29D-A9F1-410B-A947-8486BF921B1C} => pcalua.exe -a "D:\Pobierane\Deluxe Ski Jump.exe" -d D:\Pobierane (Załączenie wejścia w fixlist spowoduje przesunięcie pliku zadania (.job). Plik uruchamiany docelowo przez zadanie nie zostanie przeniesiony.) Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ==================== Skróty ============================= (Wybrane wejścia mogą zostać załączone w celu ich zresetowania lub usunięcia.) ==================== Załadowane moduły (filtrowane) ============== 2015-08-08 00:36 - 2013-06-21 12:23 - 00087328 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll 2013-09-19 14:36 - 2011-04-01 05:30 - 00034304 _____ () C:\Windows\System32\ssk3mlm.dll 2015-02-13 04:20 - 2015-02-13 04:20 - 00085832 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll 2015-02-13 04:20 - 2015-02-13 04:20 - 01346344 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll 2012-01-17 11:24 - 2012-01-17 11:24 - 00055296 _____ () C:\Windows\SysWOW64\ASGT.exe 2013-10-28 04:02 - 2013-10-28 04:02 - 00351824 _____ () C:\ProgramData\DatacardService\HWDeviceService64.exe 2016-01-25 19:44 - 2013-10-26 11:45 - 00651856 _____ () C:\ProgramData\PLAY ONLINE\OnlineUpdate\ouc.exe 2012-09-10 11:37 - 2012-09-10 11:37 - 00192512 _____ () C:\Program Files (x86)\ASUS\GPU Tweak\Vender.dll 2012-09-27 11:08 - 2012-09-27 11:08 - 00049152 _____ () C:\Program Files (x86)\ASUS\GPU Tweak\Exeio.dll 2016-01-25 19:44 - 2013-08-31 07:44 - 02417152 _____ () C:\ProgramData\PLAY ONLINE\OnlineUpdate\QtCore4.dll 2016-01-25 19:44 - 2009-01-10 20:32 - 00011362 _____ () C:\ProgramData\PLAY ONLINE\OnlineUpdate\mingwm10.dll 2016-01-25 19:44 - 2009-06-23 04:42 - 00043008 _____ () C:\ProgramData\PLAY ONLINE\OnlineUpdate\libgcc_s_dw2-1.dll 2016-01-25 19:44 - 2013-08-31 07:46 - 01148416 _____ () C:\ProgramData\PLAY ONLINE\OnlineUpdate\QtNetwork4.dll 2016-04-23 16:46 - 2016-04-20 23:08 - 01738904 _____ () C:\Program Files (x86)\Google\Chrome\Application\50.0.2661.87\libglesv2.dll 2016-04-23 16:46 - 2016-04-20 23:08 - 00086168 _____ () C:\Program Files (x86)\Google\Chrome\Application\50.0.2661.87\libegl.dll ==================== Alternate Data Streams (filtrowane) ========= (Załączenie wejścia w fixlist spowoduje usunięcie strumienia ADS.) ==================== Tryb awaryjny (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Wartość "AlternateShell" zostanie przywrócona.) ==================== EXE - Powiązania (filtrowane) =============== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci.) ==================== Internet Explorer - Witryny zaufane i z ograniczeniami =============== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru.) IE trusted site: HKU\S-1-5-21-4154841232-203179108-210261655-1000\...\samsungsetup.com -> hxxp://www.samsungsetup.com ==================== Hosts - zawartość: ========================== (Użycie dyrektywy Hosts: w fixlist spowoduje reset pliku Hosts.) 2009-07-14 04:34 - 2016-04-28 20:41 - 00001006 ____A C:\Windows\system32\Drivers\etc\hosts 127.0.0.1 down.baidu2016.com 127.0.0.1 123.sogou.com 127.0.0.1 www.czzsyzgm.com 127.0.0.1 www.czzsyzxl.com 127.0.0.1 union.baidu2019.com ==================== Inne obszary ============================ (Obecnie brak automatycznej naprawy dla tej sekcji.) HKU\S-1-5-21-4154841232-203179108-210261655-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\User\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg DNS Servers: 192.168.137.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 0) (ConsentPromptBehaviorUser: 3) (EnableLUA: 0) Zapora systemu Windows [funkcja włączona] ==================== MSCONFIG/TASK MANAGER - Wyłączone elementy == (Obecnie brak automatycznej naprawy dla tej sekcji.) ==================== Reguły Zapory systemu Windows (filtrowane) =============== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) FirewallRules: [{5C61D10C-3A61-4338-AB2E-8A2240416600}] => (Allow) C:\Program Files (x86)\Battle.net\Battle.net.exe FirewallRules: [{77C356FD-5536-4750-A71B-A8453EB4F185}] => (Allow) C:\Program Files (x86)\Battle.net\Battle.net.exe FirewallRules: [{26A95DC5-D160-47EE-8B79-11F4BC891301}] => (Allow) C:\Users\User\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{B44BD234-BC30-4E98-95E0-64EA442AD401}] => (Allow) C:\Users\User\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{CDB144AA-96A6-4B64-99DC-E7561443793A}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{9EF2AB32-E0E1-4930-B0F0-644491A1BAD8}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{6239CB23-F17F-48C2-BBE8-D79F3E96F4E5}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{0CB79D6D-5028-440E-932A-09048B634117}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{06B96708-62AE-4C21-A238-73D8B0A0E107}] => (Allow) D:\Gry\Hearthstone\Hearthstone.exe FirewallRules: [{2DB832A3-3B47-418F-8EFB-81D04AFB5B0B}] => (Allow) D:\Gry\Hearthstone\Hearthstone.exe FirewallRules: [{B4CECCA4-6AED-4EDF-BC47-C0DC75509129}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.beta.2514\Agent.exe FirewallRules: [{33810251-5D2A-4CF7-BEF5-13471969F072}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.beta.2514\Agent.exe FirewallRules: [TCP Query User{087C8327-C0A4-4FF8-8ED6-043E29FE4CD5}D:\gry\hearthstone\hearthstone.exe] => (Allow) D:\gry\hearthstone\hearthstone.exe FirewallRules: [UDP Query User{AFAF0559-B74B-4D11-9F48-2F154629DA21}D:\gry\hearthstone\hearthstone.exe] => (Allow) D:\gry\hearthstone\hearthstone.exe FirewallRules: [{5BFE9366-9535-48A9-B746-A7C7762C5584}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe FirewallRules: [{0DBBBCA8-E2B1-4094-9D41-A299CABED53B}] => (Allow) C:\Program Files (x86)\TeamViewer\Version9\TeamViewer.exe FirewallRules: [{4AE095A6-9FC1-451D-8887-4CD9BE5F25C7}] => (Allow) C:\Program Files (x86)\TeamViewer\Version9\TeamViewer.exe FirewallRules: [{D56A3380-D2A6-405A-B478-6DC69580FBFA}] => (Allow) C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe FirewallRules: [{DB6CD161-5417-417E-9290-8FFE39F7D078}] => (Allow) C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe FirewallRules: [{416E58A8-A11F-4398-BDD7-D9BD51B95058}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.beta.2514\Agent.exe FirewallRules: [{6D9E686D-E86C-452D-BEA6-4EE5707A1191}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.beta.2514\Agent.exe FirewallRules: [{824C800F-B76B-4B99-B9AD-13A03E0E6858}] => (Allow) C:\Users\User\AppData\Roaming\Spotify\spotify.exe FirewallRules: [{3CEF41A5-0318-46CB-89B8-BA3B852AE6B7}] => (Allow) C:\Users\User\AppData\Roaming\Spotify\spotify.exe FirewallRules: [{15D7E39C-6514-4AFA-96B8-25EEB6920172}] => (Allow) C:\Users\User\AppData\Roaming\Spotify\spotify.exe FirewallRules: [{F081A506-1044-435E-830B-FF6835A26B1C}] => (Allow) C:\Users\User\AppData\Roaming\Spotify\spotify.exe FirewallRules: [{0559F200-3539-4CD4-B601-5112D6B428DE}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.beta.2638\Agent.exe FirewallRules: [{8DF98F6A-2E94-42E8-8575-418D7A296F7A}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.beta.2638\Agent.exe FirewallRules: [{A456E7E3-771D-458F-9269-15488313D62F}] => (Allow) C:\Users\User\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{263E1BFC-A6CA-4703-8C3C-BA5F3B62AB3E}] => (Allow) C:\Users\User\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{B008C16B-0DAC-4374-A23C-1556FF696B5D}] => (Allow) C:\Program Files (x86)\NapiProjekt\napisy.exe FirewallRules: [{074894CE-95EF-44B3-A7EF-023C8B3B1E51}] => (Allow) C:\Program Files (x86)\NapiProjekt\napisy.exe FirewallRules: [{8EDA17E9-0AE8-4BE3-9BFE-A83D79259FB0}] => (Allow) C:\Program Files\iTunes\iTunes.exe FirewallRules: [{B358D9CE-04DD-4B81-AB3F-9E1010C20656}] => (Allow) C:\Users\User\AppData\Local\Apps\2.0\2C6Q106D.Z31\M9821Z7T.T37\curs..tion_9e9e83ddf3ed3ead_0005.0001_fb8944c2684f5b6c\CurseClient.exe FirewallRules: [{73995FF9-438E-4F63-938F-DC78BA7A7D11}] => (Allow) C:\Users\User\AppData\Local\Apps\2.0\2C6Q106D.Z31\M9821Z7T.T37\curs..tion_9e9e83ddf3ed3ead_0005.0001_fb8944c2684f5b6c\CurseClient.exe FirewallRules: [{AB4664E5-0F86-46FD-82A5-0BE831997C9B}] => (Allow) D:\Steam\Steam.exe FirewallRules: [{EA2BB5B7-7203-48EE-9327-04218C3F80A8}] => (Allow) D:\Steam\Steam.exe FirewallRules: [{70A8928F-E39F-4005-AAFC-FA87F7949B4B}] => (Allow) D:\Steam\steamapps\common\Magic Duels\MagicDuels.exe FirewallRules: [{C0F7A27F-C287-4321-B020-6CFC58AD9C33}] => (Allow) D:\Steam\steamapps\common\Magic Duels\MagicDuels.exe FirewallRules: [{FF7E7217-179E-403D-84E9-5F12BD734175}] => (Allow) D:\Steam\steamapps\common\War Thunder\launcher.exe FirewallRules: [{850A1B04-831B-4C9B-83E8-57C9A7F50AAB}] => (Allow) D:\Steam\steamapps\common\War Thunder\launcher.exe FirewallRules: [TCP Query User{013F17DB-54BA-440D-AE82-BD5A8B449D40}D:\steam\steamapps\common\war thunder\aces.exe] => (Allow) D:\steam\steamapps\common\war thunder\aces.exe FirewallRules: [UDP Query User{3CE44D59-4C2B-4E98-A22F-F46B60A72ECC}D:\steam\steamapps\common\war thunder\aces.exe] => (Allow) D:\steam\steamapps\common\war thunder\aces.exe FirewallRules: [TCP Query User{17909E9E-EC21-41C9-A0AD-2BEB9740B5C5}D:\gry\wows\wowslauncher.exe] => (Allow) D:\gry\wows\wowslauncher.exe FirewallRules: [UDP Query User{E81DEF43-D8C4-4031-90C7-5D97B6F2AA89}D:\gry\wows\wowslauncher.exe] => (Allow) D:\gry\wows\wowslauncher.exe FirewallRules: [TCP Query User{FD9BB73F-FD97-4AAD-98F4-B456F3DB0BB5}D:\gry\wot\wotlauncher.exe] => (Allow) D:\gry\wot\wotlauncher.exe FirewallRules: [UDP Query User{00C3B8C9-A852-4E94-8057-25175A67EBAB}D:\gry\wot\wotlauncher.exe] => (Allow) D:\gry\wot\wotlauncher.exe FirewallRules: [TCP Query User{EBDC2DBC-DEBC-4A98-AC4C-65453785D25D}D:\gry\wot\worldoftanks.exe] => (Allow) D:\gry\wot\worldoftanks.exe FirewallRules: [UDP Query User{FEAE43F1-DF8A-4D08-922E-017DF51946EC}D:\gry\wot\worldoftanks.exe] => (Allow) D:\gry\wot\worldoftanks.exe FirewallRules: [TCP Query User{6DA4850B-9662-4A44-9B60-4B93CC4BECE0}D:\gry\smite\hirezgames\smite\binaries\win32\smite.exe] => (Allow) D:\gry\smite\hirezgames\smite\binaries\win32\smite.exe FirewallRules: [UDP Query User{AEDF17E5-32C0-4115-B14D-96A1888A06D5}D:\gry\smite\hirezgames\smite\binaries\win32\smite.exe] => (Allow) D:\gry\smite\hirezgames\smite\binaries\win32\smite.exe FirewallRules: [TCP Query User{6416AD12-A1F4-411C-B26E-9730239CCD50}D:\steam\steamapps\common\dirty bomb\binaries\win32\shootergame-win32-shipping.exe] => (Allow) D:\steam\steamapps\common\dirty bomb\binaries\win32\shootergame-win32-shipping.exe FirewallRules: [UDP Query User{687A232F-CBFC-49D8-AB1C-47BD967AEBBC}D:\steam\steamapps\common\dirty bomb\binaries\win32\shootergame-win32-shipping.exe] => (Allow) D:\steam\steamapps\common\dirty bomb\binaries\win32\shootergame-win32-shipping.exe FirewallRules: [{BF2079A2-C956-4EC0-9575-393D1E372747}] => (Allow) D:\Gry\WoT\WoTLauncher.exe FirewallRules: [{89FBE7DD-2DB4-437E-8005-DFCC3CE6B51C}] => (Allow) D:\Gry\WoT\WorldofTanks.exe FirewallRules: [{50B68E7D-78A2-4371-A3B0-0D489687DCF0}] => (Allow) D:\Steam\steamapps\common\Dirty Bomb\Binaries\Win32\ShooterGame-Win32-Shipping.exe FirewallRules: [{7FEC5FF7-6938-43BA-BCC3-5291B2786D37}] => (Allow) D:\Steam\steamapps\common\Dirty Bomb\Binaries\Win32\ShooterGame-Win32-Shipping.exe FirewallRules: [{B5F9B705-39C3-443C-8CFA-FEE7D17139A2}] => (Allow) C:\Users\User\AppData\Local\MyComGames\MyComGames.exe FirewallRules: [{8695A829-C4C8-4410-AB23-FB2A466EAEE6}] => (Allow) C:\Users\User\AppData\Local\MyComGames\MyComGames.exe FirewallRules: [TCP Query User{1CE16654-82F4-4340-AE70-77FD302618CF}D:\mygames\armored warfare mycom beta\bin64\armoredwarfare.exe] => (Allow) D:\mygames\armored warfare mycom beta\bin64\armoredwarfare.exe FirewallRules: [UDP Query User{5DAD2CEA-3D39-4B4A-8DE0-05E7FE3AC11E}D:\mygames\armored warfare mycom beta\bin64\armoredwarfare.exe] => (Allow) D:\mygames\armored warfare mycom beta\bin64\armoredwarfare.exe FirewallRules: [TCP Query User{E0E68411-C9F0-48B7-B428-A61D4591C26A}D:\gry\diablo iii\diablo iii.exe] => (Allow) D:\gry\diablo iii\diablo iii.exe FirewallRules: [UDP Query User{5C8812FD-A4C9-427A-B624-C49EBF313E4E}D:\gry\diablo iii\diablo iii.exe] => (Allow) D:\gry\diablo iii\diablo iii.exe FirewallRules: [TCP Query User{F10D88F6-BA25-4021-933C-1AD03E68E083}D:\steam\steamapps\common\war thunder\win64\aces.exe] => (Allow) D:\steam\steamapps\common\war thunder\win64\aces.exe FirewallRules: [UDP Query User{1EA2EE5B-FA24-4C2D-BA85-7951A6F57836}D:\steam\steamapps\common\war thunder\win64\aces.exe] => (Allow) D:\steam\steamapps\common\war thunder\win64\aces.exe FirewallRules: [{CBE7C2EA-7D8F-4CD7-B93D-5BE8FC982D18}] => (Allow) D:\Gry\Heroes of the Storm\Versions\Base41150\HeroesOfTheStorm_x64.exe FirewallRules: [{58B3E83E-F033-48F5-8B82-B6423C5B7A7C}] => (Allow) D:\Gry\Heroes of the Storm\Versions\Base41150\HeroesOfTheStorm_x64.exe FirewallRules: [{D51DD072-0E16-42FF-8657-FAEDC66C71B6}] => (Allow) C:\ProgramData\BlueStacksGameManager\OBS\HD-OBS.exe FirewallRules: [{60F4096A-474C-4FB2-A67B-06CF9B4C3E62}] => (Allow) C:\ProgramData\BlueStacksGameManager\OBS\HD-OBS.exe FirewallRules: [{30EF5681-8620-410A-B1C3-15985F1A9F80}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe FirewallRules: [{E1EB7A03-59BD-404F-858A-BFCE2389934A}] => (Allow) C:\ProgramData\BlueStacksGameManager\OBS\HD-OBS.exe FirewallRules: [{D5B704CF-3366-4CFA-8EE3-D8A75301421B}] => (Allow) C:\ProgramData\BlueStacksGameManager\OBS\HD-OBS.exe FirewallRules: [{207366F4-2FE2-4FD5-B246-CCBB867B6D5D}] => (Allow) C:\Windows\Temp\download\MiniThunderPlatform.exe FirewallRules: [{22C1E825-13A3-459A-BE8B-1A7AC24B49F5}] => (Allow) C:\Windows\Temp\download\MiniThunderPlatform.exe FirewallRules: [{563A415A-9530-4FBF-8303-D4A30BAC1CBA}] => (Allow) C:\Users\User\AppData\Roaming\UPUpdata\download\MiniThunderPlatform.exe FirewallRules: [{44E2A57B-07A5-4190-8795-D3A72D65AB0D}] => (Allow) C:\Users\User\AppData\Roaming\UPUpdata\download\MiniThunderPlatform.exe ==================== Punkty Przywracania systemu ========================= 27-04-2016 16:35:57 Zaplanowany punkt kontrolny ==================== Wadliwe urządzenia w Menedżerze urządzeń ============= ==================== Błędy w Dzienniku zdarzeń: ========================= Dziennik Aplikacja: ================== Error: (04/28/2016 09:31:32 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3011) (User: ZARZĄDZANIE NT) Description: Nie można usunąć z pamięci ciągów licznika wydajności dla usługi WmiApRpl (WmiApRpl). Pierwszy wpis DWORD w sekcji danych (Data) zawiera kod błędu. Error: (04/28/2016 09:31:32 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3012) (User: ZARZĄDZANIE NT) Description: Ciągi wydajności w wartości rejestru wydajności są uszkodzone, kiedy proces wykonuje następującą operację na dostawcy licznika rozszerzeń: Performance. Wartość BaseIndex z rejestru wydajności to pierwszy wpis DWORD w sekcji danych Data, wartość LastCounter to drugi wpis DWORD, a wartość LastHelp to trzeci wpis DWORD w sekcji Data. Error: (04/28/2016 09:31:32 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3012) (User: ZARZĄDZANIE NT) Description: Ciągi wydajności w wartości rejestru wydajności są uszkodzone, kiedy proces wykonuje następującą operację na dostawcy licznika rozszerzeń: Performance. Wartość BaseIndex z rejestru wydajności to pierwszy wpis DWORD w sekcji danych Data, wartość LastCounter to drugi wpis DWORD, a wartość LastHelp to trzeci wpis DWORD w sekcji Data. Error: (04/28/2016 09:24:41 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (04/28/2016 09:14:23 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3011) (User: ZARZĄDZANIE NT) Description: Nie można usunąć z pamięci ciągów licznika wydajności dla usługi WmiApRpl (WmiApRpl). Pierwszy wpis DWORD w sekcji danych (Data) zawiera kod błędu. Error: (04/28/2016 09:14:23 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3012) (User: ZARZĄDZANIE NT) Description: Ciągi wydajności w wartości rejestru wydajności są uszkodzone, kiedy proces wykonuje następującą operację na dostawcy licznika rozszerzeń: Performance. Wartość BaseIndex z rejestru wydajności to pierwszy wpis DWORD w sekcji danych Data, wartość LastCounter to drugi wpis DWORD, a wartość LastHelp to trzeci wpis DWORD w sekcji Data. Error: (04/28/2016 09:14:23 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3012) (User: ZARZĄDZANIE NT) Description: Ciągi wydajności w wartości rejestru wydajności są uszkodzone, kiedy proces wykonuje następującą operację na dostawcy licznika rozszerzeń: Performance. Wartość BaseIndex z rejestru wydajności to pierwszy wpis DWORD w sekcji danych Data, wartość LastCounter to drugi wpis DWORD, a wartość LastHelp to trzeci wpis DWORD w sekcji Data. Error: (04/28/2016 09:09:46 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (04/28/2016 09:07:15 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (04/28/2016 08:59:35 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3011) (User: ZARZĄDZANIE NT) Description: Nie można usunąć z pamięci ciągów licznika wydajności dla usługi WmiApRpl (WmiApRpl). Pierwszy wpis DWORD w sekcji danych (Data) zawiera kod błędu. Dziennik System: ============= Error: (04/28/2016 09:24:39 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi PLAY ONLINE. OUC z powodu następującego błędu: %%1053 Error: (04/28/2016 09:24:39 PM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: Upłynął limit czasu (30000 ms) podczas oczekiwania na połączenie się z usługą PLAY ONLINE. OUC. Error: (04/28/2016 09:24:35 PM) (Source: Microsoft-Windows-WLAN-AutoConfig) (EventID: 10000) (User: ZARZĄDZANIE NT) Description: Uruchomienie modułu rozszerzalności sieci WLAN nie powiodło się. Ścieżka modułu: C:\Windows\system32\athExt.dll Kod błędu: 126 Error: (04/28/2016 09:24:36 PM) (Source: BugCheck) (EventID: 1001) (User: ) Description: 0x00000109 (0xa3a039d89c603502, 0xb3b7465eeede729c, 0xfffff88002f705c0, 0x0000000000000002)C:\Windows\MEMORY.DMP Error: (04/28/2016 09:24:36 PM) (Source: BugCheck) (EventID: 1005) (User: ) Description: Error: (04/28/2016 09:24:34 PM) (Source: EventLog) (EventID: 6008) (User: ) Description: Poprzednie zamknięcie systemu przy 21:22:34 na ‎2016-‎04-‎28 było nieoczekiwane. Error: (04/28/2016 09:09:45 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi PLAY ONLINE. OUC z powodu następującego błędu: %%1053 Error: (04/28/2016 09:09:45 PM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: Upłynął limit czasu (30000 ms) podczas oczekiwania na połączenie się z usługą PLAY ONLINE. OUC. Error: (04/28/2016 09:09:42 PM) (Source: Microsoft-Windows-WLAN-AutoConfig) (EventID: 10000) (User: ZARZĄDZANIE NT) Description: Uruchomienie modułu rozszerzalności sieci WLAN nie powiodło się. Ścieżka modułu: C:\Windows\system32\athExt.dll Kod błędu: 126 Error: (04/28/2016 09:07:02 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi PLAY ONLINE. OUC z powodu następującego błędu: %%1053 ==================== Statystyki pamięci =========================== Procesor: Intel(R) Core(TM) i5-2500K CPU @ 3.30GHz Procent pamięci w użyciu: 25% Całkowita pamięć fizyczna: 8175.24 MB Dostępna pamięć fizyczna: 6087.08 MB Całkowita pamięć wirtualna: 16348.68 MB Dostępna pamięć wirtualna: 14241.68 MB ==================== Dyski ================================ Drive c: () (Fixed) (Total:55.9 GB) (Free:16.21 GB) NTFS Drive d: (DATA) (Fixed) (Total:465.66 GB) (Free:440.63 GB) NTFS ==================== MBR & Tablica partycji ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: 7BE06D9D) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=465.7 GB) - (Type=07 NTFS) ======================================================== Disk: 1 (MBR Code: Windows 7 or 8) (Size: 55.9 GB) (Disk ID: EDD0FDEA) Partition 1: (Not Active) - (Size=55.9 GB) - (Type=07 NTFS) ==================== Koniec Addition.txt ============================