Rezultaty skanu uzupełniającego Farbar Recovery Scan Tool (x64) Wersja:01-06-2016 Uruchomiony przez Karol (2016-06-02 17:01:02) Uruchomiony z C:\Users\Karol\Downloads Windows 7 Professional Service Pack 1 (X64) (2015-03-31 13:41:51) Tryb startu: Normal ========================================================== ==================== Konta użytkowników: ============================= Administrator (S-1-5-21-1544065239-652640673-2946235325-500 - Administrator - Disabled) Gość (S-1-5-21-1544065239-652640673-2946235325-501 - Limited - Enabled) HomeGroupUser$ (S-1-5-21-1544065239-652640673-2946235325-1010 - Limited - Enabled) Karol (S-1-5-21-1544065239-652640673-2946235325-1000 - Administrator - Enabled) => C:\Users\Karol ==================== Centrum zabezpieczeń ======================== (Załączenie wejścia w fixlist spowoduje jego usunięcie.) AV: AVG AntiVirus Free Edition 2015 (Enabled - Up to date) {4D41356F-32AD-7C42-C820-63775EE4F413} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: AVG AntiVirus Free Edition 2015 (Enabled - Up to date) {F620D48B-1497-73CC-F290-58052563BEAE} ==================== Zainstalowane programy ====================== (W fixlist dozwolone tylko załączanie programów adware z flagą "Hidden" w celu ich uwidocznienia. Programy adware powinny zostać w poprawny sposób odinstalowane.) µTorrent (HKU\S-1-5-21-1544065239-652640673-2946235325-1000\...\uTorrent) (Version: 3.4.7.42330 - BitTorrent Inc.) Ace Stream Media 3.1.1.1 (HKU\S-1-5-21-1544065239-652640673-2946235325-1000\...\AceStream) (Version: 3.1.1.1 - Ace Stream Media) <==== UWAGA Adobe Flash Player 10 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 10.1.102.64 - Adobe Systems Incorporated) AIMP (HKLM-x32\...\AIMP) (Version: v4.01.1705, 18.03.2016 - AIMP DevTeam) AMD Catalyst Install Manager (HKLM\...\{37FCE154-7F59-74F0-3A35-BF503CEB230B}) (Version: 8.0.877.0 - Advanced Micro Devices, Inc.) Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment) Corel Graphics - Windows Shell Extension (HKLM-x32\...\_{B922902F-E9E9-4AD9-B87D-7F62FA9EA1AD}) (Version: 15.2.0.661 - Corel Corporation) Corel Graphics - Windows Shell Extension (x32 Version: 15.2.661 - Corel Corporation) Hidden Corel Graphics - Windows Shell Extension 64 Bit (Version: 15.2.661 - Corel Corporation) Hidden Dropbox (HKLM-x32\...\Dropbox) (Version: 3.20.1 - Dropbox, Inc.) Dropbox Update Helper (x32 Version: 1.3.27.33 - Dropbox, Inc.) Hidden e-pity 6.5.2 za rok 2014 (HKLM-x32\...\{80D8170E-5590-218-B9ED-E24E4C99A18C}_is1) (Version: 6.5.2 - e-file sp. z o.o.) Evernote v. 6.0.6 (HKLM-x32\...\{FC4A0E2E-0CD3-11E6-B80E-005056951CAD}) (Version: 6.0.6.1769 - Evernote Corp.) FIFA 13 (HKLM-x32\...\{A29E18C2-7AB1-4b6b-848C-5D5E2C85F0C0}) (Version: 1.1.0.0 - Electronic Arts) Foxit Cloud (HKLM-x32\...\{41914D8B-9D6E-4764-A1F9-BC43FB6782C1}_is1) (Version: 3.7.143.923 - Foxit Software Inc.) Foxit Reader (HKLM-x32\...\Foxit Reader_is1) (Version: 7.1.3.320 - Foxit Software Inc.) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 50.0.2661.102 - Google Inc.) Google Update Helper (x32 Version: 1.3.30.3 - Google Inc.) Hidden K-Lite Codec Pack 11.0.0 Basic (HKLM-x32\...\KLiteCodecPack_is1) (Version: 11.0.0 - ) Microsoft .NET Framework 4.5.2 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.51209 - Microsoft Corporation) Microsoft .NET Framework 4.5.2 (Polski) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1045) (Version: 4.5.51209 - Microsoft Corporation) Microsoft Office Enterprise 2007 (HKLM-x32\...\ENTERPRISE) (Version: 12.0.4518.1014 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.40728.0 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.30319 (HKLM\...\{DA5E371C-6333-3D8A-93A4-6FD5B20BCC6E}) (Version: 10.0.30319 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005 (HKLM-x32\...\{7f51bdb9-ee21-49ee-94d6-90afc321780e}) (Version: 12.0.21005.1 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 (HKLM-x32\...\{ce085a78-074e-4823-8dc1-8a721b94b76d}) (Version: 12.0.21005.1 - Microsoft Corporation) Microsoft Visual Studio Tools for Applications 2.0 - ENU (HKLM-x32\...\{AA4A4B2C-0465-3CF8-BA76-27A027D8ACAB}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual Studio Tools for Applications 2.0 Runtime (HKLM-x32\...\{299C0434-4F4E-341F-A916-4E07AEB35E79}) (Version: 9.0.30729 - Microsoft Corporation) Mozilla Firefox 41.0 (x86 pl) (HKLM-x32\...\Mozilla Firefox 41.0 (x86 pl)) (Version: 41.0 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 41.0 - Mozilla) NapiProjekt (2.2.0.2399) (HKLM-x32\...\NapiProjekt_is1) (Version: - ) Native Instruments Controller Editor (HKLM-x32\...\Native Instruments Controller Editor) (Version: 1.7.2.189 - Native Instruments) Native Instruments Service Center (HKLM-x32\...\Native Instruments Service Center) (Version: 2.5.9.132 - Native Instruments) Native Instruments Traktor 2 (HKLM-x32\...\Native Instruments Traktor 2) (Version: 2.7.1.854 - Native Instruments) NVIDIA MediaShield (HKLM-x32\...\{CC452A50-5C87-4A1F-B295-445C3C69BF7D}) (Version: 11.1.0.43 - NVIDIA Corporation) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7246 - Realtek Semiconductor Corp.) SopCast 3.5.0 (HKLM-x32\...\SopCast) (Version: 3.5.0 - www.sopcast.com) Spotify (HKU\S-1-5-21-1544065239-652640673-2946235325-1000\...\Spotify) (Version: 1.0.28.87.g8f9312a4 - Spotify AB) Subtitle Workshop 6.0b (HKLM-x32\...\SubtitleWorkshop) (Version: - ) VirtualDJ PRO Full (HKLM-x32\...\{C515E2A3-4878-4C85-A519-52630C7AB08B}) (Version: 7.3 - Atomix Productions) Visual Studio 2012 x64 Redistributables (HKLM\...\{8C775E70-A791-4DA8-BCC3-6AB7136F4484}) (Version: 14.0.0.1 - AVG Technologies) Visual Studio 2012 x86 Redistributables (HKLM-x32\...\{98EFF19A-30AB-4E4B-B943-F06B1C63EBF8}) (Version: 14.0.0.1 - AVG Technologies CZ, s.r.o.) WinRAR 5.20 (64-bitowy) (HKLM\...\WinRAR archiver) (Version: 5.20.0 - win.rar GmbH) ==================== Niestandardowe rejestracje CLSID (filtrowane): ========================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) ==================== Zaplanowane zadania (filtrowane) ============= (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) Task: {190AD4F2-334A-48C2-8134-D7BD96689575} - System32\Tasks\DropboxUpdateTaskMachineUA => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [2015-06-29] (Dropbox, Inc.) Task: {3ADA591D-52E1-4032-B1BD-DA66121D70DC} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-03-31] (Google Inc.) Task: {8238F47E-DEA4-41D1-BB48-C8419942F4CD} - System32\Tasks\DropboxUpdateTaskMachineCore => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [2015-06-29] (Dropbox, Inc.) Task: {8B613582-DA3B-4108-A220-DA4E40D65216} - System32\Tasks\e-pity2015_styczen => C:\Program Files (x86)\e-file\e-pity2014\Assets\signxml.exe [2015-04-24] (e-file sp. z o.o.) Task: {A8F45440-BB8A-484A-B9D1-05A5FB6CD95F} - System32\Tasks\e-pity2015_kwiecien => C:\Program Files (x86)\e-file\e-pity2014\Assets\signxml.exe [2015-04-24] (e-file sp. z o.o.) Task: {F0FD2333-080C-41BB-9D14-44D8B6C46246} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-03-31] (Google Inc.) (Załączenie wejścia w fixlist spowoduje przesunięcie pliku zadania (.job). Plik uruchamiany docelowo przez zadanie nie zostanie przeniesiony.) Task: C:\Windows\Tasks\DropboxUpdateTaskMachineCore.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe Task: C:\Windows\Tasks\DropboxUpdateTaskMachineUA.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ==================== Skróty ============================= (Wybrane wejścia mogą zostać załączone w celu ich zresetowania lub usunięcia.) ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> %SNP% ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk -> C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation) -> %SNF% ShortcutWithArgument: C:\Users\Public\Desktop\Mozilla Firefox.lnk -> C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation) -> %SNF% ==================== Załadowane moduły (filtrowane) ============== 2015-02-28 03:23 - 2015-02-28 03:23 - 00022824 _____ () C:\Users\Karol\AppData\Roaming\AceWebExtension\updater\ace_web_extension.exe 2013-04-29 23:25 - 2013-04-29 23:25 - 00103424 _____ () C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Proxy.Native.dll 2013-04-29 23:08 - 2013-04-29 23:08 - 00369152 _____ () C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLI.Aspect.CrossDisplay.Graphics.Dashboard.dll 2013-06-18 15:49 - 2013-06-18 15:49 - 00016384 _____ () C:\Program Files (x86)\ATI Technologies\ATI.ACE\Branding\Branding.dll 2011-06-12 15:09 - 2011-06-12 15:09 - 00038400 _____ () C:\Users\Karol\AppData\Roaming\AceWebExtension\updater\lib\_socket.pyd 2011-06-12 15:09 - 2011-06-12 15:09 - 00720896 _____ () C:\Users\Karol\AppData\Roaming\AceWebExtension\updater\lib\_ssl.pyd 2014-01-23 13:37 - 2014-01-23 13:37 - 00036352 _____ () C:\Users\Karol\AppData\Roaming\AceWebExtension\updater\lib\_psutil_mswindows.pyd 2012-02-07 18:37 - 2012-02-07 18:37 - 00098816 _____ () C:\Users\Karol\AppData\Roaming\AceWebExtension\updater\lib\win32api.pyd 2012-02-07 18:35 - 2012-02-07 18:35 - 00110080 _____ () C:\Users\Karol\AppData\Roaming\AceWebExtension\updater\lib\pywintypes27.dll 2012-02-07 18:38 - 2012-02-07 18:38 - 00358912 _____ () C:\Users\Karol\AppData\Roaming\AceWebExtension\updater\lib\pythoncom27.dll 2012-02-07 18:42 - 2012-02-07 18:42 - 00266240 _____ () C:\Users\Karol\AppData\Roaming\AceWebExtension\updater\lib\win32com.shell.shell.pyd 2011-06-12 15:06 - 2011-06-12 15:06 - 00287232 _____ () C:\Users\Karol\AppData\Roaming\AceWebExtension\updater\lib\_hashlib.pyd 2011-06-12 15:06 - 2011-06-12 15:06 - 00106496 _____ () C:\Users\Karol\AppData\Roaming\AceWebExtension\updater\lib\_ctypes.pyd 2010-10-11 00:23 - 2010-10-11 00:23 - 00723968 _____ () C:\Users\Karol\AppData\Roaming\AceWebExtension\updater\lib\apsw.pyd 2011-01-18 23:56 - 2011-01-18 23:56 - 00334336 _____ () C:\Users\Karol\AppData\Roaming\AceWebExtension\updater\lib\M2Crypto.__m2crypto.pyd 2011-06-12 15:06 - 2011-06-12 15:06 - 00011776 _____ () C:\Users\Karol\AppData\Roaming\AceWebExtension\updater\lib\select.pyd 2011-06-12 15:06 - 2011-06-12 15:06 - 00152576 _____ () C:\Users\Karol\AppData\Roaming\AceWebExtension\updater\lib\pyexpat.pyd 2016-04-27 18:48 - 2016-04-27 18:48 - 00439480 _____ () C:\Program Files (x86)\Evernote\Evernote\libxml2.dll 2016-04-27 18:48 - 2016-04-27 18:48 - 00321208 _____ () C:\Program Files (x86)\Evernote\Evernote\libtidy.dll 2016-05-13 07:45 - 2016-05-11 13:48 - 01738904 _____ () C:\Program Files (x86)\Google\Chrome\Application\50.0.2661.102\libglesv2.dll 2016-05-13 07:45 - 2016-05-11 13:48 - 00086168 _____ () C:\Program Files (x86)\Google\Chrome\Application\50.0.2661.102\libegl.dll 2015-05-16 16:31 - 2013-09-30 17:56 - 06314496 _____ () C:\Program Files (x86)\NapiProjekt\napisy.exe 2015-05-16 16:31 - 2008-06-22 10:58 - 00134656 _____ () C:\Program Files (x86)\NapiProjekt\chsdet.dll 2015-04-07 14:29 - 2015-02-18 20:00 - 00236544 _____ () C:\Program Files (x86)\K-Lite Codec Pack\Filters\LAV\libbluray.dll ==================== Alternate Data Streams (filtrowane) ========= (Załączenie wejścia w fixlist spowoduje usunięcie strumienia ADS.) AlternateDataStreams: C:\Users\Karol\Desktop\2016-05-26 17.05.16.jpg:com.dropbox.attributes [430] ==================== Tryb awaryjny (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Wartość "AlternateShell" zostanie przywrócona.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\QQPCRTP => ""="service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\QQPCRTP => ""="service" ==================== Powiązania plików (filtrowane) =============== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci.) ==================== Internet Explorer - Witryny zaufane i z ograniczeniami =============== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru.) ==================== Hosts - zawartość: ========================== (Użycie dyrektywy Hosts: w fixlist spowoduje reset pliku Hosts.) 2009-07-14 04:34 - 2016-05-28 19:48 - 00001626 ____A C:\Windows\system32\Drivers\etc\hosts 107.178.255.88 www.google-analytics.com 107.178.255.88 www.statcounter.com 107.178.255.88 statcounter.com 107.178.255.88 ssl.google-analytics.com 107.178.255.88 partner.googleadservices.com 107.178.255.88 google-analytics.com 107.178.248.130 static.doubleclick.net 107.178.247.130 connect.facebook.net 107.178.255.88 www.google-analytics.com 107.178.255.88 www.statcounter.com 107.178.255.88 statcounter.com 107.178.255.88 ssl.google-analytics.com 107.178.255.88 partner.googleadservices.com 107.178.255.88 google-analytics.com 107.178.248.130 static.doubleclick.net 107.178.247.130 connect.facebook.net127.0.0.1 down.baidu2016.com 127.0.0.1 123.sogou.com 127.0.0.1 www.czzsyzgm.com 127.0.0.1 www.czzsyzxl.com 127.0.0.1 union.baidu2019.com ==================== Inne obszary ============================ (Obecnie brak automatycznej naprawy dla tej sekcji.) HKU\S-1-5-21-1544065239-652640673-2946235325-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\Karol\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg DNS Servers: 104.197.191.4 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 0) (ConsentPromptBehaviorUser: 3) (EnableLUA: 0) Zapora systemu Windows [funkcja włączona] ==================== MSCONFIG/TASK MANAGER - Wyłączone elementy == (Obecnie brak automatycznej naprawy dla tej sekcji.) MSCONFIG\startupreg: AvgUi => "C:\Program Files (x86)\AVG\Framework\Common\avguirnx.exe" /lps=fmw MSCONFIG\startupreg: DAEMON Tools Lite => "C:\Program Files\DAEMON Tools Lite\DTLite.exe" -autorun MSCONFIG\startupreg: DIMDownloading your update...1300677038363 => "c:\Program Files (x86)\Corel\CorelDRAW Graphics Suite X5\Draw\DIM.exe" "c:\programdata\corel\downloads\540215253_410003\1300677038363\dim_params.xml" -Launch=3 -uibase="c:\users\karol\appdata\roaming\corel\messages\540215253_410003\en\messagecache2\workflow" MSCONFIG\startupreg: Spotify Web Helper => "C:\Users\Karol\AppData\Roaming\Spotify\SpotifyWebHelper.exe" ==================== Reguły Zapory systemu Windows (filtrowane) =============== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) FirewallRules: [SPPSVC-In-TCP] => (Allow) %SystemRoot%\system32\sppsvc.exe FirewallRules: [SPPSVC-In-TCP-NoScope] => (Allow) %SystemRoot%\system32\sppsvc.exe FirewallRules: [{32C158E5-FFA3-4C05-8C19-5CE9720FFE18}] => (Allow) C:\Program Files (x86)\AVG\AVG2015\avgmfapx.exe FirewallRules: [{35FDCABE-67AF-4B63-A60C-14B36BD9F4C7}] => (Allow) C:\Program Files (x86)\AVG\AVG2015\avgmfapx.exe FirewallRules: [{2D874A40-FF07-4641-AFBE-D581C11A1732}] => (Allow) E:\office\Office12\outlook.exe FirewallRules: [TCP Query User{8E06BAF2-385D-4246-9A68-34169D4C1A22}C:\program files (x86)\sopcast\sopcast.exe] => (Allow) C:\program files (x86)\sopcast\sopcast.exe FirewallRules: [UDP Query User{E5AEF5D0-0E75-4A6A-9680-64C9C9A6CFD8}C:\program files (x86)\sopcast\sopcast.exe] => (Allow) C:\program files (x86)\sopcast\sopcast.exe FirewallRules: [TCP Query User{A0307260-633F-418E-88D3-47CD343F64DD}C:\users\karol\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\karol\appdata\roaming\spotify\spotify.exe FirewallRules: [UDP Query User{F043B894-B7EB-4226-9DED-CFBECAB7D0AC}C:\users\karol\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\karol\appdata\roaming\spotify\spotify.exe FirewallRules: [{63C6B744-5A52-4855-B353-C72F1D81513F}] => (Allow) C:\Program Files (x86)\NapiProjekt\napisy.exe FirewallRules: [{0832FA74-B743-4DC4-A63A-0ED17190DB64}] => (Allow) C:\Program Files (x86)\NapiProjekt\napisy.exe FirewallRules: [{8536F6CB-6C02-4244-B7BC-D385EBFEA2A9}] => (Allow) D:\The Witcher Enhanced Edition\Launcher.exe FirewallRules: [{79DD744F-4517-42A0-8F43-6976726F1660}] => (Allow) D:\The Witcher Enhanced Edition\System\witcher.exe FirewallRules: [{EAC151FE-73BC-4B3F-9C2D-7A9F9B9D75BE}] => (Allow) D:\Games\FIFA 13\Game\fifa13.exe FirewallRules: [{5F211C8F-0261-4DAE-96FA-7264700DA854}] => (Allow) D:\Games\FIFA 13\Game\fifa13.exe FirewallRules: [{CDCA5F29-EF77-4841-9D70-4423C36AEBF3}] => (Allow) C:\Users\Karol\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{E3DDA9ED-E67A-44C6-848E-7E5158E37C08}] => (Allow) C:\Users\Karol\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{7D75FBC2-BF4F-4C72-82E2-663C7A86D44E}] => (Allow) E:\Battle.net\Battle.net.exe FirewallRules: [{FE983397-AB3A-488C-85DA-6F467426689A}] => (Allow) E:\Battle.net\Battle.net.exe FirewallRules: [{74F1D25D-3FD1-41DD-8950-78FB40128444}] => (Allow) E:\Battle.net\Hearthstone\Hearthstone.exe FirewallRules: [{0569E844-97F4-4849-A5F4-E47C6CB01F34}] => (Allow) E:\Battle.net\Hearthstone\Hearthstone.exe FirewallRules: [TCP Query User{FA2BDC54-F11D-4F21-9524-9091E17205C5}C:\users\karol\appdata\roaming\spotify\spotify.exe] => (Block) C:\users\karol\appdata\roaming\spotify\spotify.exe FirewallRules: [UDP Query User{7AB10D6C-80FB-4266-BEAA-E0B02617B6B1}C:\users\karol\appdata\roaming\spotify\spotify.exe] => (Block) C:\users\karol\appdata\roaming\spotify\spotify.exe FirewallRules: [{E2FEB20A-DC56-41C0-992B-CC64D4F08568}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{2883DB24-4764-471B-845E-5FD1F33FEC38}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{C4B6440F-C26B-46B8-A978-23B405FEE6D0}] => (Allow) C:\Users\Karol\AppData\Roaming\ACEStream\engine\ace_engine.exe FirewallRules: [{8170991B-F03A-4496-A865-2A4D60D707A5}] => (Allow) C:\Users\Karol\AppData\Roaming\ACEStream\engine\ace_engine.exe FirewallRules: [{82E98ADE-ADC7-401F-877E-7EC97AB08847}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe FirewallRules: [{2ACCF364-4E80-4DA7-AF30-2E5D00D5D4AA}] => (Allow) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe FirewallRules: [TCP Query User{01B9AB0B-DDC7-4AEA-9CE1-9277526097C9}C:\programdata\download\minithunderplatform.exe] => (Block) C:\programdata\download\minithunderplatform.exe FirewallRules: [UDP Query User{41DDC4BD-95CB-4CD6-BB9C-B5E5275DA031}C:\programdata\download\minithunderplatform.exe] => (Block) C:\programdata\download\minithunderplatform.exe FirewallRules: [{13E838DB-BB0E-412E-8D25-D9EBB3E4A562}] => (Allow) C:\ProgramData\download\MiniThunderPlatform.exe FirewallRules: [{2047E739-C4F2-4BD5-AA77-8D6BADD9B1B9}] => (Allow) C:\ProgramData\download\MiniThunderPlatform.exe FirewallRules: [{359571FE-D8BB-4791-A5AF-CB2FC3065C35}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCmgrInstallGuide.exe FirewallRules: [{F1EAC4F2-2D9D-4E62-9913-7D7728FC62C3}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe FirewallRules: [{E18BE006-7EB0-478F-A6EF-CD0D7161E50B}] => (Allow) C:\program files (x86)\common files\tencent\qqdownload\130\tencentdl.exe FirewallRules: [{517BD8E1-83AF-4028-B982-D7A6F3BFAB9A}] => (Allow) C:\program files (x86)\common files\tencent\qqdownload\130\bugreport_xf.exe FirewallRules: [{5A78EC7B-0167-4CDE-9DBE-D9C996DDACDF}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCMgr.exe FirewallRules: [{9648B3C5-793E-4A81-9DF1-FBCBA70F41E2}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCRTP.exe FirewallRules: [{2143581C-3060-4748-8D93-04FEF446BBFD}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QMDL.exe FirewallRules: [{E6060784-17E5-4D27-BECA-9A3BDEA66554}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\bugreport.exe FirewallRules: [{97583AC2-1659-4151-B398-0D3932AB9244}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCFileOpen.exe FirewallRules: [{373968F4-7020-4228-9872-9ABC3A53EE94}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCLeakScan.exe FirewallRules: [{C0124DCD-6FBE-4E70-8CD6-06604CFBD1A8}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPConfig.exe FirewallRules: [{286D0375-9367-4E46-81A4-B5DAE58A73C5}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCSoftMgr.exe FirewallRules: [{B24B8EF0-B244-451B-838D-8313AE1904D6}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\plugins\QMNetMon\QQPCNetFlow.exe FirewallRules: [{AF5A82AC-8FEC-432E-96C4-5F743E1B10A1}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCBTU.exe FirewallRules: [{9FFAF430-53EF-4350-8CC9-C1A885E9C377}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCClinic.exe FirewallRules: [{167D70F4-CA6C-4E4F-A239-3E0452A45BA0}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCLaunch.exe FirewallRules: [{73C6BB6D-0FE6-4694-9291-4CB448D425D9}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QMUpdate\QQPCMgrUpdate.exe FirewallRules: [{C1973EF6-711A-4553-BA09-A9244DC5E5C7}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCSoftGame.exe FirewallRules: [{DD9004CD-4432-4D56-B8D2-0D4D4EA55CE5}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCSysOptimize.exe FirewallRules: [{1717509B-2798-40D6-AB01-F8F1F00C6C43}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCUpdateAVLib.exe FirewallRules: [{F2CFD65D-CEC6-4098-A8AF-7352DC67484C}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQRepair.exe FirewallRules: [{783A431C-DC6D-4B75-B65A-8B95EE7625B2}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\Uninst.exe FirewallRules: [{CC37E3AF-37D2-475B-BD87-5E6410D109DE}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCPatch.exe FirewallRules: [{B5D33C06-711D-48BB-84EC-5B5261AB6A0E}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\TpkUpdate.exe FirewallRules: [{66C4391F-CBA8-4827-BCB8-51521F352334}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QMRouterMgr.exe FirewallRules: [{9F2D7FF0-DAB8-48EE-B273-DB4D87F77840}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QMAccountProtection.exe FirewallRules: [{B2088D12-84F2-4425-ADC4-222A3FA042F4}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QMAdBlock.exe FirewallRules: [{AB04971B-3107-4B8C-B1E8-3180EC0CA297}] => (Allow) C:\Program Files (x86)\AVG\Av\avgmfapx.exe FirewallRules: [{61A75344-62E7-49DB-9220-9498736AC96D}] => (Allow) C:\Program Files (x86)\AVG\Av\avgmfapx.exe ==================== Punkty Przywracania systemu ========================= ==================== Wadliwe urządzenia w Menedżerze urządzeń ============= Name: TsNetHlpX64.sys Description: TsNetHlpX64.sys Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1} Manufacturer: Service: tsnethlpx64 Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24) Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed. Devices stay in this state if they have been prepared for removal. After you remove the device, this error disappears.Remove the device, and this error should be resolved. Name: Karta tunelowania Teredo firmy Microsoft Description: Karta tunelowania Teredo firmy Microsoft Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318} Manufacturer: Microsoft Service: tunnel Problem: : This device cannot start. (Code10) Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device. On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard. Name: softaal Description: softaal Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1} Manufacturer: Service: softaal Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24) Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed. Devices stay in this state if they have been prepared for removal. After you remove the device, this error disappears.Remove the device, and this error should be resolved. Name: tencent QMUdisk Description: tencent QMUdisk Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1} Manufacturer: Service: QMUdisk Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24) Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed. Devices stay in this state if they have been prepared for removal. After you remove the device, this error disappears.Remove the device, and this error should be resolved. ==================== Błędy w Dzienniku zdarzeń: ========================= Dziennik Aplikacja: ================== Error: (05/28/2016 07:51:35 PM) (Source: SideBySide) (EventID: 80) (User: ) Description: Nie można wygenerować kontekstu aktywacji dla „C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest1”. Błąd w pliku manifestu lub w pliku zasad „C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest2” w wierszu C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest3. Wersja składnika wymagana przez aplikację powoduje konflikt z inną wersją składnika, która jest już aktywna. Składniki powodujące konflikt: Składnik 1: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest. Składnik 2: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest. Error: (04/07/2016 10:18:31 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: ace_player.exe, wersja: 2.2.3.0, sygnatura czasowa: 0x53357a22 Nazwa modułu powodującego błąd: libtsplayercore.dll, wersja: 2.0.5.0, sygnatura czasowa: 0x55c35039 Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x00082153 Identyfikator procesu powodującego błąd: 0xfa4 Godzina uruchomienia aplikacji powodującej błąd: 0xace_player.exe0 Ścieżka aplikacji powodującej błąd: ace_player.exe1 Ścieżka modułu powodującego błąd: ace_player.exe2 Identyfikator raportu: ace_player.exe3 Error: (06/30/2015 04:24:10 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: witcher.EXE, wersja: 1.5.0.1304, sygnatura czasowa: 0x4910475c Nazwa modułu powodującego błąd: MSVCR80.dll, wersja: 8.0.50727.4940, sygnatura czasowa: 0x4ca2b271 Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x00014a7f Identyfikator procesu powodującego błąd: 0x188 Godzina uruchomienia aplikacji powodującej błąd: 0xwitcher.EXE0 Ścieżka aplikacji powodującej błąd: witcher.EXE1 Ścieżka modułu powodującego błąd: witcher.EXE2 Identyfikator raportu: witcher.EXE3 Error: (03/31/2015 10:23:48 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (03/31/2015 09:59:10 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (03/31/2015 09:44:41 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (03/31/2015 09:41:11 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (03/31/2015 09:18:54 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (03/31/2015 03:48:50 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (03/31/2015 03:42:24 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Dziennik System: ============= Error: (06/02/2016 04:30:17 PM) (Source: Schannel) (EventID: 4119) (User: ZARZĄDZANIE NT) Description: Odebrano następujący alert krytyczny: 40. Error: (06/02/2016 04:06:11 PM) (Source: Service Control Manager) (EventID: 7026) (User: ) Description: Nie można załadować następujących sterowników startu rozruchowego lub systemowego: cdrom MPCKpt Error: (06/02/2016 04:06:08 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi SSFK z powodu następującego błędu: %%2 Error: (06/02/2016 04:06:08 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi Reservation Plastic z powodu następującego błędu: %%2 Error: (06/02/2016 04:06:08 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi Quoteex z powodu następującego błędu: %%2 Error: (06/02/2016 04:06:07 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi Ikermuze z powodu następującego błędu: %%2 Error: (06/02/2016 04:06:07 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi Renew Single Click z powodu następującego błędu: %%3 Error: (06/02/2016 04:06:07 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi All Programs Clipboard z powodu następującego błędu: %%2 Error: (06/02/2016 04:06:07 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi CloudPrinter z powodu następującego błędu: %%2 Error: (06/02/2016 04:06:07 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi Background Logic Handler z powodu następującego błędu: %%2 ==================== Statystyki pamięci =========================== Procesor: AMD Athlon(tm) 64 X2 Dual Core Processor 5000+ Procent pamięci w użyciu: 59% Całkowita pamięć fizyczna: 2047.54 MB Dostępna pamięć fizyczna: 826.85 MB Całkowita pamięć wirtualna: 4095.54 MB Dostępna pamięć wirtualna: 2235.74 MB ==================== Dyski ================================ Drive c: () (Fixed) (Total:52.79 GB) (Free:23.27 GB) NTFS Drive d: () (Fixed) (Total:90 GB) (Free:25.93 GB) NTFS Drive e: () (Fixed) (Total:90 GB) (Free:43.2 GB) NTFS ==================== MBR & Tablica partycji ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 232.9 GB) (Disk ID: 2A432A43) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=52.8 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=90 GB) - (Type=07 NTFS) Partition 4: (Not Active) - (Size=90 GB) - (Type=07 NTFS) ==================== Koniec Addition.txt ============================