Rezultaty skanu uzupełniającego Farbar Recovery Scan Tool (x64) Wersja:12-06-2016 01 Uruchomiony przez Ewa (2016-06-13 14:46:59) Uruchomiony z E:\FRST Windows 7 Home Premium Service Pack 1 (X64) (2012-12-25 12:27:37) Tryb startu: Safe Mode (minimal) ========================================================== ==================== Konta użytkowników: ============================= Administrator (S-1-5-21-3631931409-1417981497-3388749590-500 - Administrator - Disabled) Ewa (S-1-5-21-3631931409-1417981497-3388749590-1001 - Administrator - Enabled) => C:\Users\Ewa Gość (S-1-5-21-3631931409-1417981497-3388749590-501 - Limited - Disabled) UpdatusUser (S-1-5-21-3631931409-1417981497-3388749590-1000 - Limited - Enabled) => C:\Users\UpdatusUser ==================== Centrum zabezpieczeń ======================== (Załączenie wejścia w fixlist spowoduje jego usunięcie.) AV: McAfee Anti-Virus i Anti-Spyware (Enabled - Up to date) {86355677-4064-3EA7-ABB3-1B136EB04637} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: McAfee Anti-Virus i Anti-Spyware (Enabled - Up to date) {3D54B793-665E-3129-9103-206115370C8A} FW: McAfee Firewall (Enabled) {BE0ED752-0A0B-3FFF-80EC-B2269063014C} ==================== Zainstalowane programy ====================== (W fixlist dozwolone tylko załączanie programów adware z flagą "Hidden" w celu ich uwidocznienia. Programy adware powinny zostać w poprawny sposób odinstalowane.) Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 3.2.0.2070 - Adobe Systems Incorporated) Adobe Reader X (10.1.0) - Polish (HKLM-x32\...\{AC76BA86-7AD7-1045-7B44-AA1000000001}) (Version: 10.1.0 - Adobe Systems Incorporated) Aktualizacje NVIDIA 1.7.13 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 1.7.13 - NVIDIA Corporation) Amazon Browser Bar (HKLM\...\Amazon Browser Bar) (Version: 3.0.2012.0217 - Amazon.com) <==== UWAGA Atheros Bluetooth Suite (64) (HKLM\...\{230D1595-57DA-4933-8C4E-375797EBB7E1}) (Version: 7.4.0.135 - Atheros) Atheros Communications Inc.(R) AR81Family Gigabit/Fast Ethernet Driver (HKLM-x32\...\{3108C217-BE83-42E4-AE9E-A56A2A92E549}) (Version: 2.0.14.15 - Atheros Communications Inc.) Atheros WLAN Client Installation Program (HKLM-x32\...\{28006915-2739-4EBE-B5E8-49B25D32EB33}) (Version: 9.0 - Atheros) Conexant HD Audio (HKLM\...\CNXT_AUDIO_HDA) (Version: 8.54.32.50 - Conexant) D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden Dolby Advanced Audio v2 (HKLM-x32\...\{B9E70C7A-9F85-4A39-A4A3-BFA3C3BF7613}) (Version: 7.2.7000.11 - Dolby Laboratories Inc) Energy Management (HKLM-x32\...\InstallShield_{D0956C11-0F60-43FE-99AD-524E833471BB}) (Version: 7.0.4.1 - Lenovo) Energy Management (x32 Version: 7.0.4.1 - Lenovo) Hidden Formant ActiveX programu Windows Live Mesh odpowiedzialny za obsługę połączeń zdalnych (HKLM-x32\...\{B04A0E2F-1E4C-4E61-B18E-3B2BD6779CA7}) (Version: 15.4.5722.2 - Microsoft Corporation) Galeria fotografii usługi Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Google Chrome (HKLM-x32\...\Google Chrome) (Version: 12.0.742.112 - Google Inc.) Google Toolbar for Internet Explorer (HKLM-x32\...\{2318C2B1-4965-11d4-9B18-009027A5CD4F}) (Version: 7.1.1821.1806 - Google Inc.) Google Toolbar for Internet Explorer (x32 Version: 1.0.0 - Google Inc.) Hidden Google Update Helper (x32 Version: 1.3.21.57 - Google Inc.) Hidden Intel(R) Control Center (HKLM-x32\...\{F8A9085D-4C7A-41a9-8A77-C8998A96C421}) (Version: 1.2.1.1007 - Intel Corporation) Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 8.0.3.1427 - Intel Corporation) Intel(R) OpenCL CPU Runtime (HKLM-x32\...\{FCB3772C-B7D0-4933-B1A9-3707EBACC573}) (Version: - Intel Corporation) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 8.15.10.2656 - Intel Corporation) Intel(R) Rapid Storage Technology (HKLM-x32\...\{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}) (Version: 11.0.0.1032 - Intel Corporation) Intel(R) USB 3.0 eXtensible Host Controller Driver (HKLM-x32\...\{240C3DDD-C5E9-4029-9DF7-95650D040CF2}) (Version: 1.0.4.220 - Intel Corporation) Intel® Trusted Connect Service Client (HKLM\...\{09536BA1-E498-4CC3-B834-D884A67D7E34}) (Version: 1.23.605.1 - Intel Corporation) Junk Mail filter update (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Lenovo EasyCamera (HKLM-x32\...\{ADE16A9D-FBDC-4ECC-B6BD-9C31E51D0333}) (Version: 1.12.204.1 - Lenovo EasyCamera) Lenovo EE Boot Optimizer (HKLM\...\Lenovo EE Boot Optimizer) (Version: 0.0.1.9 - Lenovo) Lenovo OneKey Recovery (HKLM-x32\...\InstallShield_{46F4D124-20E5-4D12-BE52-EC177A7A4B42}) (Version: 7.0.0.3712 - CyberLink Corp.) Lenovo OneKey Recovery (Version: 7.0.0.3712 - CyberLink Corp.) Hidden Lenovo pointing device (HKLM\...\Elantech) (Version: 10.4.2.8 - ELAN Microelectronic Corp.) Lenovo Registration (HKLM-x32\...\{6707C034-ED6B-4B6A-B21F-969B3606FBDE}) (Version: 1.0.4 - Lenovo Inc.) Lenovo Solution Center (HKLM\...\{CA640F1C-BC62-47B4-BAE1-A6467324EB2F}) (Version: 1.1.006.00 - Lenovo Group Limited) Lenovo Welcome (HKLM-x32\...\{2DC26D10-CC6A-494F-BEA3-B5BC21126D5E}) (Version: 3.1.0011.00 - Lenovo Group Limited) Lenovo YouCam (HKLM-x32\...\InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D}) (Version: 3.1.3728 - CyberLink Corp.) Lenovo YouCam (x32 Version: 3.1.3728 - CyberLink Corp.) Hidden LockKey (HKLM-x32\...\InstallShield_{AF192694-4B15-4AC1-92F3-1B02E98C08BD}) (Version: 1.38.1.2 - Lenovo) LockKey (x32 Version: 1.38.1.2 - Lenovo) Hidden Mesh Runtime (x32 Version: 15.4.5722.2 - Microsoft Corporation) Hidden Microsoft .NET Framework 4 Client Profile (HKLM\...\Microsoft .NET Framework 4 Client Profile) (Version: 4.0.30319 - Microsoft Corporation) Microsoft Office 2010 (HKLM-x32\...\{95140000-0070-0000-0000-0000000FF1CE}) (Version: 14.0.4763.1000 - Microsoft Corporation) Microsoft Silverlight (HKLM-x32\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 4.0.50401.0 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) NVIDIA Oprogramowanie systemu PhysX 9.12.0213 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.12.0213 - NVIDIA Corporation) NVIDIA Sterownik graficzny 296.73 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 296.73 - NVIDIA Corporation) Pakiet sterowników systemu Windows - Lenovo (ACPIVPC) System (12/15/2011 7.1.0.1) (HKLM\...\99841829BE839365AA67B2AD0E50D371F59F8A1E) (Version: 12/15/2011 7.1.0.1 - Lenovo) Panel sterowania NVIDIA 296.73 (Version: 296.73 - NVIDIA Corporation) Hidden Poczta usługi Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Podręcznik użytkownika (x32 Version: 1.0.0.6 - Lenovo) Hidden Podstawowe programy Windows Live (HKLM-x32\...\WinLiveSuite) (Version: 15.4.3508.1109 - Microsoft Corporation) Podstawowe programy Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Power2Go (HKLM-x32\...\{40BF1E83-20EB-11D8-97C5-0009C5020658}) (Version: 5.6.0.7303 - CyberLink Corp.) Realtek USB 2.0 Reader Driver (HKLM-x32\...\{62BBB2F0-E220-4821-A564-730807D2C34D}) (Version: 6.1.7601.39016 - Realtek Semiconductor Corp.) SugarSync Manager (HKLM-x32\...\SugarSync) (Version: 1.9.49.86082 - SugarSync, Inc.) UserGuide (HKLM-x32\...\InstallShield_{F07C2CF8-4C53-4EC3-8162-A6221E36EB88}) (Version: 1.0.0.6 - Lenovo) VeriFace (HKLM-x32\...\VeriFace) (Version: 4.0.1.1230 - Lenovo) ==================== Niestandardowe rejestracje CLSID (filtrowane): ========================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) ==================== Zaplanowane zadania (filtrowane) ============= (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) Task: {1CBD7AF6-9037-468B-9060-72558D1B736E} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2012-07-23] (Google Inc.) Task: {40305F0F-6693-4D94-B6FA-60C041034509} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2012-07-23] (Google Inc.) Task: {4F57E61C-FE60-4E24-BA47-3B78E5A872FB} - System32\Tasks\Lenovo\Lenovo Solution Center Launcher => C:\Program Files\lenovo\lenovo solution center\lsc.exe [2012-04-19] () Task: {798CA15C-A597-4439-8A17-D63A6FD1F865} - System32\Tasks\Lenovo\LSC\CreateHardwareScanTask => C:\Program Files\Lenovo\Lenovo Solution Center\App\LSCService.exe [2012-04-19] (Lenovo) Task: {7DB2CDBD-EE7F-43F7-942C-55815B861EAA} - System32\Tasks\Lenovo\Lenovo Customer Feedback Program => C:\Program Files\Lenovo\Customer Feedback Program\Lenovo.TVT.CustomerFeedback.Agent.exe [2012-04-19] (Lenovo) Task: {A1D60D55-A6B8-401B-BC05-2938E02DF2F2} - System32\Tasks\Microsoft\Windows Defender\MP Scheduled Scan => d:\program files\windows defender\MpCmdRun.exe Task: {A3631BCC-6E57-4DD0-B6D0-D7FDD830F347} - System32\Tasks\MirageAgent => C:\Program Files (x86)\Lenovo\YouCam\YCMMirage.exe [2011-01-28] (CyberLink) Task: {CAACF29C-CB34-4CFE-BAC3-755456C56E1C} - System32\Tasks\OFFICE2010ACT => C:\Windows\system32\OFFICEICON.vbs [2012-02-23] () (Załączenie wejścia w fixlist spowoduje przesunięcie pliku zadania (.job). Plik uruchamiany docelowo przez zadanie nie zostanie przeniesiony.) Task: C:\Windows\Tasks\Adobe Flash Player PPAPI Notifier.job => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_21_0_0_242_pepper.exe Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ==================== Skróty ============================= (Wybrane wejścia mogą zostać załączone w celu ich zresetowania lub usunięcia.) ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome\Odinstaluj Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\12.0.742.112\Installer\setup.exe (Google Inc.) -> --uninstall --system-level ==================== Załadowane moduły (filtrowane) ============== 2012-07-23 20:17 - 2012-07-23 20:17 - 01508192 _____ () C:\Windows\system32\IcnOvrly.dll ==================== Alternate Data Streams (filtrowane) ========= ==================== Tryb awaryjny (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Wartość "AlternateShell" zostanie przywrócona.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Option => "OptionValue"="1" ==================== Powiązania plików (filtrowane) =============== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci.) ==================== Internet Explorer - Witryny zaufane i z ograniczeniami =============== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru.) ==================== Hosts - zawartość: =============================== (Użycie dyrektywy Hosts: w fixlist spowoduje reset pliku Hosts.) 2009-07-14 04:34 - 2009-06-10 23:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Inne obszary ============================ (Obecnie brak automatycznej naprawy dla tej sekcji.) HKU\S-1-5-21-3631931409-1417981497-3388749590-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Ewa\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg DNS Servers: Urządzenie nie jest podłączone do internetu. HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) ==================== MSCONFIG/TASK MANAGER - Wyłączone elementy == (Obecnie brak automatycznej naprawy dla tej sekcji.) ==================== Reguły Zapory systemu Windows (filtrowane) =============== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) FirewallRules: [{21832109-F233-4F75-BE8F-5E25AAA6AAEC}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe FirewallRules: [{7F5CD552-A5D0-4972-87F9-AF7C72F4C8FD}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe FirewallRules: [{C068FA33-8B0D-4D05-BEB1-F55CD4F64D5D}] => (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe FirewallRules: [{A74E2CC0-1300-46E6-A616-8E9DE9117F4A}] => (Allow) LPort=2869 FirewallRules: [{C8FEDD30-B557-401C-956D-5F8159DC0AAD}] => (Allow) LPort=1900 FirewallRules: [{94133C7C-FF2F-415B-BC21-65204236A644}] => (Allow) C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe FirewallRules: [{68A63943-7988-48F0-9775-EF72AAFBAE43}] => (Allow) C:\Program Files (x86)\Windows Live\Mesh\MOE.exe FirewallRules: [{24FEF71F-06A0-4945-9997-F2987B67B715}] => (Allow) C:\Program Files\Common Files\mcafee\mcsvchost\McSvHost.exe FirewallRules: [{A2E98059-48D6-4F83-AF4C-C396D3C0E08D}] => (Allow) C:\Program Files\Common Files\mcafee\mcsvchost\McSvHost.exe FirewallRules: [TCP Query User{31277690-059E-41E4-A865-C802FC58956E}C:\games\world_of_tanks\wotlauncher.exe] => (Allow) C:\games\world_of_tanks\wotlauncher.exe FirewallRules: [UDP Query User{98AC60A1-3D3D-474F-A9F8-E8CEFDD35786}C:\games\world_of_tanks\wotlauncher.exe] => (Allow) C:\games\world_of_tanks\wotlauncher.exe FirewallRules: [TCP Query User{6C62B28C-2796-402F-8894-9EFE050775E2}C:\games\world_of_tanks\worldoftanks.exe] => (Allow) C:\games\world_of_tanks\worldoftanks.exe FirewallRules: [UDP Query User{4CC9EEB3-B798-43C4-AE38-9284F26DDFC3}C:\games\world_of_tanks\worldoftanks.exe] => (Allow) C:\games\world_of_tanks\worldoftanks.exe FirewallRules: [TCP Query User{8C97CF4A-BD4C-41F0-8EC2-FAB942A9A7CF}C:\games\world_of_tanks\worldoftanks.exe] => (Block) C:\games\world_of_tanks\worldoftanks.exe FirewallRules: [UDP Query User{B462A38B-6FBC-428F-B7F6-F4B372EF6F03}C:\games\world_of_tanks\worldoftanks.exe] => (Block) C:\games\world_of_tanks\worldoftanks.exe FirewallRules: [TCP Query User{A5B9EF58-878F-47D1-924C-0F57C16A6037}C:\games\world_of_tanks\wotlauncher.exe] => (Block) C:\games\world_of_tanks\wotlauncher.exe FirewallRules: [UDP Query User{838594F1-F806-4784-8526-9FFDE90614B2}C:\games\world_of_tanks\wotlauncher.exe] => (Block) C:\games\world_of_tanks\wotlauncher.exe FirewallRules: [{0CB529C4-1D91-41DE-AEAD-0E9B323A65A7}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.2380\Agent.exe FirewallRules: [{E6BE063A-AB4C-4989-88F0-06F055AD85A1}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.2380\Agent.exe FirewallRules: [{E36585ED-5108-4870-852C-CA75F2EAD477}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.2816\Agent.exe FirewallRules: [{361C73E0-9982-4FF7-A873-5BCC734D2DC3}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.2816\Agent.exe FirewallRules: [TCP Query User{9002FB2D-C865-48CF-BB89-24AACF61F61B}C:\users\ewa\desktop\guild wars 2\gw2.exe] => (Allow) C:\users\ewa\desktop\guild wars 2\gw2.exe FirewallRules: [UDP Query User{3EF9B559-DB0E-4FDC-88E5-7CCBFACB713F}C:\users\ewa\desktop\guild wars 2\gw2.exe] => (Allow) C:\users\ewa\desktop\guild wars 2\gw2.exe FirewallRules: [TCP Query User{9459826E-4141-4062-9E81-10B182C9FB3A}C:\program files (x86)\team17 software ltd\wormsforts\wf.exe] => (Allow) C:\program files (x86)\team17 software ltd\wormsforts\wf.exe FirewallRules: [UDP Query User{4D357C65-737D-41E8-B1E7-78350DFCF906}C:\program files (x86)\team17 software ltd\wormsforts\wf.exe] => (Allow) C:\program files (x86)\team17 software ltd\wormsforts\wf.exe FirewallRules: [TCP Query User{E961ADFA-24BD-42A2-9E9C-AFA2D70FAD6D}C:\program files (x86)\warcraft iii\war3.exe] => (Allow) C:\program files (x86)\warcraft iii\war3.exe FirewallRules: [UDP Query User{A587713E-AC9E-4DF6-8CE9-62C4E1BC0829}C:\program files (x86)\warcraft iii\war3.exe] => (Allow) C:\program files (x86)\warcraft iii\war3.exe FirewallRules: [{9B6EEA00-6138-4B04-B446-A419C0245D6C}] => (Allow) C:\Program Files (x86)\ArcSoft\TotalMedia 3.5\TotalMedia.exe FirewallRules: [{76BD75FD-11DA-4D3F-AF9D-97F07CC4D169}] => (Allow) C:\Program Files (x86)\ArcSoft\TotalMedia 3.5\TotalMedia.exe FirewallRules: [TCP Query User{0E55C65F-6540-4A5F-9A83-AA6AAA787463}C:\program files (x86)\ubisoft\settlers v - złota edycja\extra2\bin\settlershok.exe] => (Block) C:\program files (x86)\ubisoft\settlers v - złota edycja\extra2\bin\settlershok.exe FirewallRules: [UDP Query User{CB7E40F8-8198-4E20-AF85-5CCDC6236EC1}C:\program files (x86)\ubisoft\settlers v - złota edycja\extra2\bin\settlershok.exe] => (Block) C:\program files (x86)\ubisoft\settlers v - złota edycja\extra2\bin\settlershok.exe FirewallRules: [{1EDE30B7-52EC-45BF-89B6-AD2C374DC3C8}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3147\Agent.exe FirewallRules: [{96F019EC-EF81-4FB8-9352-9040E314D06D}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3147\Agent.exe FirewallRules: [{03F5A1AC-1CDC-4781-8FBC-513AA85F3A63}] => (Allow) C:\Program Files (x86)\Common Files\Apple\Apple Application Support\WebKit2WebProcess.exe FirewallRules: [TCP Query User{DF85651C-4F06-454E-9E43-EBB31F0AE07B}C:\program files (x86)\origin games\fifa world\fifaworld.exe] => (Allow) C:\program files (x86)\origin games\fifa world\fifaworld.exe FirewallRules: [UDP Query User{BDB3D9A9-6451-4B33-82A3-B1A24D14E862}C:\program files (x86)\origin games\fifa world\fifaworld.exe] => (Allow) C:\program files (x86)\origin games\fifa world\fifaworld.exe FirewallRules: [{C52FA732-52B0-48E5-B2D3-C6C40599FDF8}] => (Allow) C:\Program Files (x86)\Battle.net\Battle.net.exe FirewallRules: [{CF7A2911-0D49-48DC-A634-E876E98F9F92}] => (Allow) C:\Program Files (x86)\Battle.net\Battle.net.exe FirewallRules: [{5D1D6987-4DA8-4699-A3DB-8A5AECBA58FA}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3526\Agent.exe FirewallRules: [{9A48700B-E1BE-4278-8ECC-E425DF1C92F9}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3526\Agent.exe FirewallRules: [TCP Query User{E9010557-E10C-4FA3-B781-030A2575A0D5}C:\users\ewa\desktop\hearthstone\hearthstone.exe] => (Allow) C:\users\ewa\desktop\hearthstone\hearthstone.exe FirewallRules: [UDP Query User{39EECD81-BC6F-4A32-81A4-FF4065F8E63E}C:\users\ewa\desktop\hearthstone\hearthstone.exe] => (Allow) C:\users\ewa\desktop\hearthstone\hearthstone.exe FirewallRules: [TCP Query User{B4FF7677-CF5C-4C1C-8F48-93F4DA79BC7F}C:\program files (x86)\team17 software ltd\wormsforts\wf.exe] => (Block) C:\program files (x86)\team17 software ltd\wormsforts\wf.exe FirewallRules: [UDP Query User{6A9FA719-25E7-4570-A2FB-F453DA6A8DE5}C:\program files (x86)\team17 software ltd\wormsforts\wf.exe] => (Block) C:\program files (x86)\team17 software ltd\wormsforts\wf.exe FirewallRules: [{1005DFB3-40DA-4DE6-9A3F-A9073FD1E64E}] => (Allow) C:\Games\World_of_Warships\WoWSLauncher.exe FirewallRules: [{A197CD1A-7CE4-48AA-A0D1-0EC99F6029D4}] => (Allow) C:\Games\World_of_Warships\WoWSLauncher.exe FirewallRules: [{AECABC82-E7E0-4DE4-9FE6-87E466A9E3BF}] => (Allow) C:\Games\World_of_Warships\worldofwarships.exe FirewallRules: [{3A007B60-3208-435C-87AA-E9C39B65A3C2}] => (Allow) C:\Games\World_of_Warships\worldofwarships.exe FirewallRules: [{4C2E6089-B11A-43A8-90FD-972DD6498D1E}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe FirewallRules: [TCP Query User{F8CB1022-4264-4E17-B70E-4BECDE6B7E82}C:\program files\logitech gaming software\lcore.exe] => (Allow) C:\program files\logitech gaming software\lcore.exe FirewallRules: [UDP Query User{4F7AB357-1C02-4303-B280-7807DD982D9D}C:\program files\logitech gaming software\lcore.exe] => (Allow) C:\program files\logitech gaming software\lcore.exe FirewallRules: [TCP Query User{375DE7A9-DE8C-4A9F-8BBB-0C0BD13CD7E4}C:\program files\logitech gaming software\lcore.exe] => (Allow) C:\program files\logitech gaming software\lcore.exe FirewallRules: [UDP Query User{1AE00A2E-A556-4F8B-B974-303BDA324496}C:\program files\logitech gaming software\lcore.exe] => (Allow) C:\program files\logitech gaming software\lcore.exe FirewallRules: [TCP Query User{B94C0D91-5174-4CAC-AE1E-D589B3F3249B}C:\program files (x86)\diablo iii\diablo iii.exe] => (Block) C:\program files (x86)\diablo iii\diablo iii.exe FirewallRules: [UDP Query User{3478481D-EF0F-44B8-8909-9490586DD432}C:\program files (x86)\diablo iii\diablo iii.exe] => (Block) C:\program files (x86)\diablo iii\diablo iii.exe FirewallRules: [{2C8DF9E7-0A6A-461A-A23D-53036C2322EE}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe FirewallRules: [{E46E0AAA-E5A3-4D25-B31B-92C1099F5744}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe FirewallRules: [{AB67FAAF-AFBE-487A-A084-AE13CD3BCAE2}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe FirewallRules: [{53929F38-443D-4AD0-8621-BE4B0E2A3051}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe FirewallRules: [{06C86245-F05A-4F96-935B-6A5BEB92DE34}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe FirewallRules: [{7A60C7D5-9936-4E90-825D-0001B21EBDFD}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{6D11C71C-E260-4A00-AFB2-265F09F29938}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [TCP Query User{3B5BCFC6-0E3A-4E45-9CF6-D4590283EC09}C:\program files (x86)\diablo iii\diablo iii.exe] => (Block) C:\program files (x86)\diablo iii\diablo iii.exe FirewallRules: [UDP Query User{8393ACFE-BA12-4004-943D-5BAB3D7AB5D4}C:\program files (x86)\diablo iii\diablo iii.exe] => (Block) C:\program files (x86)\diablo iii\diablo iii.exe FirewallRules: [TCP Query User{7F34E5E6-1D30-4133-ADF6-673440A8268C}C:\users\ewa\appdata\local\mycomgames\mycomgames.exe] => (Allow) C:\users\ewa\appdata\local\mycomgames\mycomgames.exe FirewallRules: [UDP Query User{A65495EC-E223-48D4-A05F-47785C4395D4}C:\users\ewa\appdata\local\mycomgames\mycomgames.exe] => (Allow) C:\users\ewa\appdata\local\mycomgames\mycomgames.exe FirewallRules: [TCP Query User{4C14C6A0-CDF4-47A0-9C9B-6FDB63868749}C:\mygames\armored warfare mycom\bin64\armoredwarfare.exe] => (Allow) C:\mygames\armored warfare mycom\bin64\armoredwarfare.exe FirewallRules: [UDP Query User{A4B6AC8F-79BF-4DB6-AAB8-02EFC721AC2C}C:\mygames\armored warfare mycom\bin64\armoredwarfare.exe] => (Allow) C:\mygames\armored warfare mycom\bin64\armoredwarfare.exe FirewallRules: [{2AEE948A-BE90-4970-928E-616B5D7C70AA}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{0B70D939-F5C7-4C7E-B6CB-B9CF0E67382A}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{9A86E1C6-223C-4309-8A50-86050B2DC6E2}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe FirewallRules: [{55EBC9A8-415E-426F-92D2-E70A6FB9C772}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe FirewallRules: [TCP Query User{369D5ABD-04E0-4B47-A0DD-9A2A5A3C3C1C}C:\users\ewa\appdata\local\mycomgames\mycomgames.exe] => (Block) C:\users\ewa\appdata\local\mycomgames\mycomgames.exe FirewallRules: [UDP Query User{5090DA25-5F73-4B1A-936C-3AE537921116}C:\users\ewa\appdata\local\mycomgames\mycomgames.exe] => (Block) C:\users\ewa\appdata\local\mycomgames\mycomgames.exe FirewallRules: [{530DF4EE-9AB0-4C3C-B569-CCAA284A9CCD}] => (Allow) C:\Games\Origin\Medal of Honor Pacific Assault\mohpa.exe FirewallRules: [{28EE9B9B-4651-4E38-9312-7C7E1B5F33FA}] => (Allow) C:\Games\Origin\Medal of Honor Pacific Assault\mohpa.exe FirewallRules: [{0EDC5587-EBE3-443F-90BE-9F7D3A96D47F}] => (Allow) C:\Games\Origin\Medal of Honor Pacific Assault\mohpa_setup.exe FirewallRules: [{23BA84F4-3AFE-40CA-AB35-DB862924D69D}] => (Allow) C:\Games\Origin\Medal of Honor Pacific Assault\mohpa_setup.exe FirewallRules: [{21B496AC-1751-4ADB-A764-E4D6AA724018}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Punkty Przywracania systemu ========================= UWAGA: Przywracanie systemu jest wyłączone ==================== Wadliwe urządzenia w Menedżerze urządzeń ============= Name: Logitech Gaming Virtual Bus Enumerator Description: Logitech Gaming Virtual Bus Enumerator Class Guid: {4d36e97d-e325-11ce-bfc1-08002be10318} Manufacturer: (Standard system devices) Service: LGBusEnum Problem: : Windows cannot load the device driver for this hardware. The driver may be corrupted or missing. (Code 39) Resolution: Reasons for this error include a driver that is not present; a binary file that is corrupt; a file I/O problem, or a driver that references an entry point in another binary file that could not be loaded. Uninstall the driver, and then click "Scan for hardware changes" to reinstall or upgrade the driver. Name: PLDS DVD-RW DS8A8SH Description: Stacja dysków CD-ROM Class Guid: {4d36e965-e325-11ce-bfc1-08002be10318} Manufacturer: (Standardowe stacje dysków CD-ROM) Service: cdrom Problem: : Windows cannot load the device driver for this hardware. The driver may be corrupted or missing. (Code 39) Resolution: Reasons for this error include a driver that is not present; a binary file that is corrupt; a file I/O problem, or a driver that references an entry point in another binary file that could not be loaded. Uninstall the driver, and then click "Scan for hardware changes" to reinstall or upgrade the driver. Name: Security Processor Loader Driver Description: Security Processor Loader Driver Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1} Manufacturer: Service: spldr Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24) Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed. Devices stay in this state if they have been prepared for removal. After you remove the device, this error disappears.Remove the device, and this error should be resolved. Name: aswRvrt Description: aswRvrt Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1} Manufacturer: Service: aswRvrt Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24) Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed. Devices stay in this state if they have been prepared for removal. After you remove the device, this error disappears.Remove the device, and this error should be resolved. Name: aswVmm Description: aswVmm Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1} Manufacturer: Service: aswVmm Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24) Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed. Devices stay in this state if they have been prepared for removal. After you remove the device, this error disappears.Remove the device, and this error should be resolved. ==================== Błędy w Dzienniku zdarzeń: ========================= Dziennik Aplikacja: ================== Error: (06/13/2016 02:16:55 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (04/16/2014 10:50:02 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (04/13/2014 05:40:30 PM) (Source: Schedule) (EventID: 0) (User: ) Description: Schedule error: 10050Initialize call failed, bailing out Error: (04/13/2014 05:39:57 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (04/13/2014 04:35:26 PM) (Source: Schedule) (EventID: 0) (User: ) Description: Schedule error: 10050Initialize call failed, bailing out Error: (04/13/2014 04:32:40 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (04/12/2014 08:10:35 PM) (Source: Schedule) (EventID: 0) (User: ) Description: Schedule error: 10050Initialize call failed, bailing out Error: (04/12/2014 08:05:06 PM) (Source: Schedule) (EventID: 0) (User: ) Description: Schedule error: 10050Initialize call failed, bailing out Error: (04/12/2014 08:01:55 PM) (Source: Schedule) (EventID: 0) (User: ) Description: Schedule error: 10050Initialize call failed, bailing out Error: (04/12/2014 07:59:40 PM) (Source: Schedule) (EventID: 0) (User: ) Description: Schedule error: 10050Initialize call failed, bailing out Dziennik System: ============= Error: (06/13/2016 02:26:02 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: Usługa Usługa listy sieci zależy od usługi Rozpoznawanie lokalizacji w sieci, której nie można uruchomić z powodu następującego błędu: %%1068 Error: (06/13/2016 02:26:02 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: Usługa Usługa listy sieci zależy od usługi Rozpoznawanie lokalizacji w sieci, której nie można uruchomić z powodu następującego błędu: %%1068 Error: (06/13/2016 02:26:02 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: Usługa Usługa listy sieci zależy od usługi Rozpoznawanie lokalizacji w sieci, której nie można uruchomić z powodu następującego błędu: %%1068 Error: (06/13/2016 02:26:02 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: Usługa Usługa listy sieci zależy od usługi Rozpoznawanie lokalizacji w sieci, której nie można uruchomić z powodu następującego błędu: %%1068 Error: (06/13/2016 02:26:02 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: Usługa Usługa listy sieci zależy od usługi Rozpoznawanie lokalizacji w sieci, której nie można uruchomić z powodu następującego błędu: %%1068 Error: (06/13/2016 02:26:01 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: Usługa Usługa listy sieci zależy od usługi Rozpoznawanie lokalizacji w sieci, której nie można uruchomić z powodu następującego błędu: %%1068 Error: (06/13/2016 02:26:00 PM) (Source: DCOM) (EventID: 10005) (User: ) Description: 1084WSearch{9E175B6D-F52A-11D8-B9A5-505054503030} Error: (06/13/2016 02:25:59 PM) (Source: DCOM) (EventID: 10005) (User: ) Description: 1084WSearch{7D096C5F-AC08-4F1F-BEB7-5C22C517CE39} Error: (06/13/2016 02:25:54 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: Usługa Usługa listy sieci zależy od usługi Rozpoznawanie lokalizacji w sieci, której nie można uruchomić z powodu następującego błędu: %%1068 Error: (06/13/2016 02:25:53 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: Usługa Usługa listy sieci zależy od usługi Rozpoznawanie lokalizacji w sieci, której nie można uruchomić z powodu następującego błędu: %%1068 ==================== Statystyki pamięci =========================== Procesor: Intel(R) Pentium(R) CPU B970 @ 2.30GHz Procent pamięci w użyciu: 18% Całkowita pamięć fizyczna: 3996.36 MB Dostępna pamięć fizyczna: 3243.78 MB Całkowita pamięć wirtualna: 7990.9 MB Dostępna pamięć wirtualna: 7296.36 MB ==================== Dyski ================================ Drive c: (Windows7_OS) (Fixed) (Total:653.44 GB) (Free:123.4 GB) NTFS ==>[system z komponentami startowymi (pozyskano odczytując dysk)] Drive d: (LENOVO) (Fixed) (Total:25.47 GB) (Free:22.86 GB) NTFS Drive e: () (Removable) (Total:14.44 GB) (Free:14.44 GB) FAT32 ==================== MBR & Tablica partycji ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 698.6 GB) (Disk ID: BE3A3765) Partition 1: (Active) - (Size=200 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=653.4 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=25.5 GB) - (Type=07 NTFS) Partition 4: (Not Active) - (Size=19.5 GB) - (Type=12) ======================================================== Disk: 1 (Size: 14.5 GB) (Disk ID: 6F20736B) No partition Table on disk 1. Disk 1 is a removable device. ==================== Koniec Addition.txt ============================