Rezultaty skanu uzupełniającego Farbar Recovery Scan Tool (x64) Wersja: 11-08-2016 01 Uruchomiony przez admin (2016-08-13 23:52:40) Uruchomiony z C:\Users\admin\Desktop Windows 7 Home Premium Service Pack 1 (X64) (2013-02-13 20:23:35) Tryb startu: Normal ========================================================== ==================== Konta użytkowników: ============================= 49EFA6502C774C02A505 (S-1-5-21-3731321512-1432075017-1604789293-1342 - Limited - Enabled) admin (S-1-5-21-3731321512-1432075017-1604789293-1000 - Administrator - Enabled) => C:\Users\admin Administrator (S-1-5-21-3731321512-1432075017-1604789293-500 - Administrator - Disabled) ASPNET (S-1-5-21-3731321512-1432075017-1604789293-1341 - Limited - Enabled) Gość (S-1-5-21-3731321512-1432075017-1604789293-501 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-3731321512-1432075017-1604789293-1123 - Limited - Enabled) ==================== Centrum zabezpieczeń ======================== (Załączenie wejścia w fixlist spowoduje jego usunięcie.) AV: COMODO Antivirus (Disabled - Up to date) {D0CC7563-ABD2-DEBE-138E-FDD553335AF2} AS: Comodo Defense+ (Enabled - Up to date) {6BAD9487-8DE8-D130-293E-C6A728B4104F} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} FW: COMODO Firewall (Disabled) {E8F7F446-E1BD-DFE6-38D1-54E0ADE01D89} ==================== Zainstalowane programy ====================== (W fixlist dozwolone tylko załączanie programów adware z flagą "Hidden" w celu ich uwidocznienia. Programy adware powinny zostać w poprawny sposób odinstalowane.) 5-Mode Oscar Editor (HKLM-x32\...\OscarX7Mouse5Mode) (Version: 13.02.0001 - A4Tech) Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 18.0.0.199 - Adobe Systems Incorporated) Adobe Flash Player 22 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 22.0.0.210 - Adobe Systems Incorporated) Adobe Flash Player 22 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 22.0.0.209 - Adobe Systems Incorporated) Adobe Help Manager (HKLM-x32\...\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1) (Version: 4.0.244 - Adobe Systems Incorporated) Adobe Shockwave Player 12.1 (HKLM-x32\...\Adobe Shockwave Player) (Version: 12.1.9.160 - Adobe Systems, Inc.) Aktualizacje NVIDIA 2.11.4.0 (Version: 2.11.4.0 - NVIDIA Corporation) Hidden ALLPlayer V6.X (HKLM-x32\...\ALLPlayer_is1) (Version: - ALLPlayer Group, Ltd.) Apple Application Support (32-bit) (HKLM-x32\...\{7FA9ECCF-A2DE-4DA1-BFF3-81260DBDA68F}) (Version: 4.1.2 - Apple Inc.) Apple Application Support (64-bit) (HKLM\...\{691F30EB-9009-475A-B8A9-E1BF39598FD5}) (Version: 4.1.2 - Apple Inc.) Apple Mobile Device Support (HKLM\...\{3540181E-340A-4E7A-B409-31663472B2F7}) (Version: 9.1.0.6 - Apple Inc.) Apple Software Update (HKLM-x32\...\{FFD1F7F1-1AC9-4BC4-A908-0686D635ABAF}) (Version: 2.1.4.131 - Apple Inc.) Assassin's Creed Rogue (HKLM-x32\...\Uplay Install 895) (Version: - Ubisoft) Badanie mające na celu poprawę produktów HP Deskjet 2540 series (HKLM\...\{727135FD-C574-41F7-AC62-FB2D9A86F020}) (Version: 32.1.145.46951 - Hewlett-Packard Co.) Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment) BitRaider Streaming Client (HKLM-x32\...\BitRaider Streaming Client) (Version: 1.3.3.4098 - BitRaider, LLC) BitTorrent (HKU\S-1-5-21-3731321512-1432075017-1604789293-1000\...\BitTorrent) (Version: 7.9.6.42095 - BitTorrent Inc.) bl (x32 Version: 1.0.0 - Your Company Name) Hidden Bonjour (HKLM\...\{56DDDFB8-7F79-4480-89D5-25E1F52AB28F}) (Version: 3.1.0.1 - Apple Inc.) Call of Duty(R) 4 - Modern Warfare(TM) 1.1 Patch (x32 Version: - ) Hidden Call of Duty(R) 4 - Modern Warfare(TM) 1.2 Patch (x32 Version: - ) Hidden Call of Duty(R) 4 - Modern Warfare(TM) 1.3 Patch (x32 Version: - ) Hidden Call of Duty(R) 4 - Modern Warfare(TM) 1.4 Patch (x32 Version: - ) Hidden Call of Duty(R) 4 - Modern Warfare(TM) 1.5 Multiplayer Patch (x32 Version: - ) Hidden Call of Duty(R) 4 - Modern Warfare(TM) 1.6 Patch (x32 Version: - ) Hidden Call of Duty(R) 4 - Modern Warfare(TM) 1.7 Patch (x32 Version: - ) Hidden CameraHelperMsi (x32 Version: 13.51.815.0 - Logitech) Hidden Camtasia Studio 8 (HKLM-x32\...\{BFA04EE0-8240-4667-8D53-45496A901C33}) (Version: 8.1.2.1327 - TechSmith Corporation) CCleaner (HKLM\...\CCleaner) (Version: 5.20 - Piriform) Centrum obsługi urządzeń z systemem Windows Mobile (HKLM\...\{626672CD-BFCF-49A9-AEFE-AB0FED3BFC5B}) (Version: 6.1.6965.0 - Microsoft Corporation) ChomikBox (HKLM-x32\...\{C7B52FAF-58D8-438C-B810-F78C3C927504}) (Version: 2.0.8.0 - Chomikuj.pl) Combined Community Codec Pack 2013-03-25 (HKLM-x32\...\Combined Community Codec Pack_is1) (Version: 2013.03.25.0 - CCCP Project) COMODO Internet Security Premium (HKLM\...\{EC925096-5689-4BE3-B675-D16D0394B4A0}) (Version: 8.4.0.5076 - COMODO Security Solutions Inc.) Corel Paint Shop Pro Photo XI (HKLM-x32\...\{93A1B09E-BAFA-4628-A5B6-921CB026955A}) (Version: 11.20.0000 - Corel Corporation) Counter-Strike: Global Offensive (HKLM-x32\...\Steam App 730) (Version: - Valve) D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden DJIA2540FWUpdateAlert (x32 Version: 1.00.0000 - HP) Hidden Dota 2 (HKLM-x32\...\Steam App 570) (Version: - Valve) Dropbox (HKU\S-1-5-21-3731321512-1432075017-1604789293-1000\...\Dropbox) (Version: 7.4.30 - Dropbox, Inc.) erLT (x32 Version: 1.20.138.34 - Logitech, Inc.) Hidden EVEREST Ultimate Edition v5.50 (HKLM-x32\...\EVEREST Ultimate Edition_is1) (Version: 5.50 - Lavalys, Inc.) Fable III (x32 Version: 1.0.0001.131 - Microsoft Game Studios) Hidden Fantasy Voice Pack (HKLM-x32\...\{8061C2C9-C2A3-4550-A3FC-585B646840CB}) (Version: 1.3.0 - Screaming Bee) FFCoder 1.3.0.3 (HKLM-x32\...\FFCoder) (Version: 1.3.0.3 - Tony George) Focusrite USB 2.0 Audio Driver 2.5.1 (HKLM\...\Focusrite USB 2.0 Audio Driver_is1) (Version: 2.5.1 - Focusrite Audio Engineering Limited.) Foxit Reader (HKLM-x32\...\Foxit Reader_is1) (Version: 7.3.6.321 - Foxit Software Inc.) Freemake Video Converter wersja 4.1.9 (HKLM-x32\...\Freemake Video Converter_is1) (Version: 4.1.9 - Ellora Assets Corporation) Gadu-Gadu 10 (GG 10.5) Packages (HKU\S-1-5-21-3731321512-1432075017-1604789293-1000\...\Gadu-Gadu 10 (GG 10.5) Packages) (Version: - ) <==== UWAGA Galeria fotografii (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden GG (HKU\S-1-5-21-3731321512-1432075017-1604789293-1000\...\GG) (Version: 11 - GG Network S.A.) Glyph (HKLM-x32\...\Glyph) (Version: - Trion Worlds, Inc.) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 52.0.2743.116 - Google Inc.) Google Update Helper (x32 Version: 1.3.31.5 - Google Inc.) Hidden Grand Theft Auto V (HKLM-x32\...\Grand Theft Auto V_R.G. Mechanics_is1) (Version: - R.G. Mechanics, ProZorg_tm) Guitar Pro 5.2 (HKLM-x32\...\Guitar Pro 5_is1) (Version: - Arobas Music) Hearthstone (HKLM-x32\...\Hearthstone) (Version: - Blizzard Entertainment) HP Deskjet 2540 series — podstawowe oprogramowanie urządzenia (HKLM\...\{4498746E-822A-4AFC-BCC0-689DC5C8925F}) (Version: 32.1.145.46951 - Hewlett-Packard Co.) HP Deskjet 2540 series Pomoc (HKLM-x32\...\{387813C9-5DFE-453E-95AE-142F2C6E929E}) (Version: 30.0.0 - Hewlett Packard) HP FWUpdateEDO2 (HKLM-x32\...\{415FA9AD-DA10-4ABE-97B6-5051D4795C90}) (Version: 1.2.0.0 - Hewlett-Packard) HP Photo Creations (HKLM-x32\...\HP Photo Creations) (Version: 1.0.0.7702 - HP) HP Update (HKLM-x32\...\{912D30CF-F39E-4B31-AD9A-123C6B794EE2}) (Version: 5.005.002.002 - Hewlett-Packard) HPDiagnosticAlert (x32 Version: 1.00.0001 - Microsoft) Hidden Intel(R) Control Center (HKLM-x32\...\{F8A9085D-4C7A-41a9-8A77-C8998A96C421}) (Version: 1.2.1.1008 - Intel Corporation) Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 8.1.0.1281 - Intel Corporation) Intel(R) USB 3.0 eXtensible Host Controller Driver (HKLM-x32\...\{240C3DDD-C5E9-4029-9DF7-95650D040CF2}) (Version: 1.0.5.235 - Intel Corporation) iTunes (HKLM\...\{FBEB98F8-64E4-4FA3-A15E-4A9F42FF962E}) (Version: 12.3.2.35 - Apple Inc.) Java 8 Update 101 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180101F0}) (Version: 8.0.1010.13 - Oracle Corporation) K-Lite Codec Pack 9.8.5 (64-bit) (HKLM\...\KLiteCodecPack64_is1) (Version: 9.8.5 - ) KM Wakeup 1.4 MUI (HKLM-x32\...\KM Wakeup) (Version: 1.4 MUI - Marcin Nowok) License Support (HKLM-x32\...\InstallShield_{3165EA9B-36CC-499B-96FF-36FC30E10EF4}) (Version: 1.1.1.1524 - PACE Anti-Piracy, Inc.) License Support (Version: 1.1.1.1524 - PACE Anti-Piracy, Inc.) Hidden Logitech Webcam Software (HKLM-x32\...\{D40EB009-0499-459c-A8AF-C9C110766215}) (Version: 2.51 - Logitech Inc.) Maya 44 Driver version 1.18 (HKLM-x32\...\{0F523211-7512-4F27-85C6-35E48B10C8A9}_is1) (Version: 1.18 - Esi Audiotechnik GmbH) MAYA44 PCI Driver version v1.3.1.0 (HKLM\...\{2C649BA4-D482-408F-9148-2EC10E1E3194}_is1) (Version: v1.3.1.0 - ESI-Audiotechnik) Microsoft .NET Framework 1.1 (HKLM-x32\...\Microsoft .NET Framework 1.1 (1033)) (Version: - ) Microsoft ASP.NET MVC 4 Runtime (HKLM-x32\...\{3FE312D5-B862-40CE-8E4E-A6D8ABF62736}) (Version: 4.0.40804.0 - Microsoft Corporation) Microsoft Games for Windows - LIVE Redistributable (HKLM-x32\...\{F2508213-9989-4E85-A078-72BE483917EF}) (Version: 3.5.88.0 - Microsoft Corporation) Microsoft Games for Windows Marketplace (HKLM-x32\...\{4CB0307C-565E-4441-86BE-0DF2E4FB828C}) (Version: 3.5.50.0 - Microsoft Corporation) Microsoft Mouse and Keyboard Center (HKLM\...\Microsoft Mouse and Keyboard Center) (Version: 2.1.177.0 - Microsoft Corporation) Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version: - Microsoft) Microsoft Office File Validation Add-In (HKLM-x32\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation) Microsoft Office Home and Student 2007 (HKLM-x32\...\HOMESTUDENTR) (Version: 12.0.6612.1000 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50428.0 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61187 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61186 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.7523 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.7523 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.7523 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.7523 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{a2199617-3609-410f-a8e8-e8806c73545b}) (Version: 11.0.61030.0 - Корпорация Майкрософт) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{f0080ca2-80ae-4958-b6eb-e8fa916d744a}) (Version: 11.0.61030.0 - Корпорация Майкрософт) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.23918 (HKLM-x32\...\{dab68466-3a7d-41a8-a5cf-415e3ff8ef71}) (Version: 14.0.23918.0 - Microsoft Corporation) Microsoft Visual F# 2.0 Runtime (HKLM-x32\...\{85467CBC-7A39-33C9-8940-D72D9269B84F}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft WSE 3.0 Runtime (HKLM-x32\...\{E3E71D07-CD27-46CB-8448-16D4FB29AA13}) (Version: 3.0.5305.0 - Microsoft Corp.) Microsoft XNA Framework Redistributable 4.0 (HKLM-x32\...\{2BFC7AA0-544C-4E3A-8796-67F3BE655BE9}) (Version: 4.0.20823.0 - Microsoft Corporation) Microsoft XNA Framework Redistributable 4.0 Refresh (HKLM-x32\...\{D69C8EDE-BBC5-436B-8E0E-C5A6D311CF4F}) (Version: 4.0.30901.0 - Microsoft Corporation) Minecraft 1.8 version 1.8 (HKLM-x32\...\Minecraft 1.8_is1) (Version: 1.8 - ) Moobot Assistant (HKU\S-1-5-21-3731321512-1432075017-1604789293-1000\...\40790fab0e175d6b) (Version: 1.0.0.1 - Knudsen Apps) MorphVOX Pro (HKLM-x32\...\{DE289787-7ECA-4BED-9D8C-99FAC407E3D6}) (Version: 4.3.13 - Screaming Bee) Movie Maker (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Mozilla Firefox 47.0 (x86 pl) (HKLM-x32\...\Mozilla Firefox 47.0 (x86 pl)) (Version: 47.0 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 47.0.0.5999 - Mozilla) MSI Afterburner 4.1.0 (HKLM-x32\...\Afterburner) (Version: 4.1.0 - MSI Co., LTD) MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation) MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation) Mumble 1.3.0 (HKLM-x32\...\{15F2B1E4-BE0A-4A97-9E78-966C8AC5B370}) (Version: 1.3.0 - The Mumble Developers) Native Instruments Guitar Rig 5 (HKLM-x32\...\Native Instruments Guitar Rig 5) (Version: - Native Instruments) Neverwinter Nights Diamentowa Edycja (HKLM-x32\...\{C1583439-B034-4881-819C-D52A0587662B}) (Version: 1.68 - BioWare) Nexus Mod Manager (HKLM\...\6af12c54-643b-4752-87d0-8335503010de_is1) (Version: 0.61.3 - Black Tree Gaming) NVIDIA GeForce Experience 2.11.4.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.11.4.0 - NVIDIA Corporation) NVIDIA Oprogramowanie systemu PhysX 9.16.0318 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.16.0318 - NVIDIA Corporation) NVIDIA Sterownik 3D Vision 368.39 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 368.39 - NVIDIA Corporation) NVIDIA Sterownik graficzny 368.39 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 368.39 - NVIDIA Corporation) NVIDIA Sterownik kontrolera 3D Vision 364.44 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 364.44 - NVIDIA Corporation) OCCT 4.4.1 (HKLM-x32\...\OCCT) (Version: 4.4.1 - Ocbase.com) Odkurzacz (HKLM-x32\...\Odkurzacz 14.2_is1) (Version: 14.2.0.4492 - FranmoSoftware - Maciej Opaliński) Open Broadcaster Software (HKLM-x32\...\Open Broadcaster Software) (Version: - ) OpenAL (HKLM-x32\...\OpenAL) (Version: - ) PACE License Support Win64 (HKLM-x32\...\InstallShield_{72ad9d51-0903-4fe7-af5d-33b3185fa6e9}) (Version: 2.3.1.0494 - PACE Anti-Piracy, Inc.) PACE License Support Win64 (Version: 2.3.1.0494 - PACE Anti-Piracy, Inc.) Hidden Pakiet sterowników systemu Windows - Focusrite USB 2.0 Audio Driver (09/25/2013 2.5.128.1) (HKLM\...\CF1FC201D237269A9CD51A3A6B14ADBF67175C32) (Version: 09/25/2013 2.5.128.1 - Focusrite) Panel sterowania NVIDIA 368.39 (Version: 368.39 - NVIDIA Corporation) Hidden ph (x32 Version: 1.0.0 - Your Company Name) Hidden Pizza Connection 2 (HKLM-x32\...\Pizza Connection 2) (Version: - ) Platform (x32 Version: 1.39 - VIA Technologies, Inc.) Hidden Podstawowe programy Windows Live (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3508.0205 - Microsoft Corporation) Podstawowe programy Windows Live (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden PowerISO (HKLM-x32\...\PowerISO) (Version: 5.5 - Power Software Ltd) QuickTime 7 (HKLM-x32\...\{80CEEB1E-0A6C-45B9-A312-37A1D25FDEBC}) (Version: 7.78.80.95 - Apple Inc.) Ralink RT2870 Wireless LAN Card (HKLM-x32\...\{28DA7D8B-F9A4-4F18-8AA0-551B1E084D0D}) (Version: 1.5.12.0 - Ralink) Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.61.612.2012 - Realtek) REAPER (x64) (HKLM\...\REAPER) (Version: - ) Rockstar Games Social Club (HKLM-x32\...\Rockstar Games Social Club) (Version: 1.1.5.8 - Rockstar Games) Scarlett Plug-in Suite 1.7 (HKLM-x32\...\{D7F912D4-C237-4079-966A-5044A5025CBF}}_is1) (Version: 1.7 - Focusrite) Serious Sam 2 (HKLM-x32\...\Steam App 204340) (Version: - Croteam) Shakes and Fidget (HKLM-x32\...\Steam App 438040) (Version: - Playa Games GmbH) SHIELD Streaming (Version: 7.1.0280 - NVIDIA Corporation) Hidden SHIELD Wireless Controller Driver (Version: 2.11.4.0 - NVIDIA Corporation) Hidden Skype™ 7.26 (HKLM-x32\...\{FC965A47-4839-40CA-B618-18F486F042C6}) (Version: 7.26.101 - Skype Technologies S.A.) SmartSound Common Data (HKLM-x32\...\InstallShield_{B8A2869E-30CA-40C5-9CF8-BD7354E57EF8}) (Version: 1.1.0 - SmartSound Software Inc.) SmartSound Common Data (x32 Version: 1.1.0 - SmartSound Software Inc.) Hidden SmartSound Quicktracks 5 (HKLM-x32\...\InstallShield_{2F8BA3FD-1FA9-4279-B696-712ABB12F09F}) (Version: 5.1.6 - SmartSound Software Inc.) SmartSound Quicktracks 5 (x32 Version: 5.1.6 - SmartSound Software Inc.) Hidden Steam (HKLM-x32\...\{048298C9-A4D3-490B-9FF9-AB023A9238F3}) (Version: 1.0.0.0 - Valve Corporation) Sterownik wideo firmy Pinnacle (HKLM\...\{6DE721A5-5E89-4D74-994C-652BB3C0672E}) (Version: 12.1.0.030 - Pinnacle Systems) Stronghold Crusader 2 (HKLM-x32\...\Stronghold Crusader 2_is1) (Version: 1.0.20907 - Релиз от R.G. Steamgames) swMSM (x32 Version: 12.0.0.1 - Adobe Systems, Inc) Hidden TeamSpeak 3 Client (HKU\S-1-5-21-3731321512-1432075017-1604789293-1000\...\TeamSpeak 3 Client) (Version: 3.0.15 - TeamSpeak Systems GmbH) The Elder Scrolls V Skyrim - Legendary Edition (HKLM-x32\...\The Elder Scrolls V Skyrim - Legendary Edition_is1) (Version: - ) The Sims Średniowiecze (HKLM-x32\...\{83BEEFB4-8C28-4F4F-8A9D-E0D1ADCE335B}) (Version: 2.0.113 - Electronic Arts) Tunngle version Tunngle (HKLM-x32\...\Tunngle_is1) (Version: Tunngle - Tunngle.net GmbH) Unity Web Player (HKU\S-1-5-21-3731321512-1432075017-1604789293-1000\...\UnityWebPlayer) (Version: - Unity Technologies ApS) Update for 2007 Microsoft Office System (KB967642) (HKLM-x32\...\{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version: - Microsoft) Vegas Pro 13.0 (64-bit) (HKLM\...\{D0360940-CCC6-11E3-B9C6-F04DA23A5C58}) (Version: 13.0.310 - Sony) VIA Platforma Menedżera urządzeń (HKLM-x32\...\InstallShield_{20D4A895-748C-4D88-871C-FDB1695B0169}) (Version: 1.39 - VIA Technologies, Inc.) Visual Basic 4 Runtime Files (HKLM-x32\...\ST4UNST #1) (Version: - ) Visual C++ 64-bit Redistributables (HKLM-x32\...\InstallShield_{FB03650C-B373-4B20-ACA5-B7BA1A8EEE33}) (Version: 1.2.0.5555 - PACE Anti-Piracy, Inc.) Visual C++ Redistributables (HKLM-x32\...\InstallShield_{F03117FA-9270-46B0-9666-0B4BC2CDEBF5}) (Version: 1.2.0.5555 - PACE Anti-Piracy, Inc.) VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.1 - VideoLAN) Vulkan Run Time Libraries 1.0.11.1 (HKLM\...\VulkanRT1.0.11.1) (Version: 1.0.11.1 - LunarG, Inc.) Vulkan Run Time Libraries 1.0.3.0 (HKLM\...\VulkanRT1.0.3.0) (Version: 1.0.3.0 - LunarG, Inc.) Windows Driver Package - ESI (Mam3.sys) MEDIA (02/08/2016 1.3.1.0) (HKLM\...\5AF12181C6AD9092859592A5128E309BEFCEE639) (Version: 02/08/2016 1.3.1.0 - ESI) Windows Media Encoder 9 Series (HKLM-x32\...\Windows Media Encoder 9) (Version: - ) WinRAR 5.21 (64-bitowy) (HKLM\...\WinRAR archiver) (Version: 5.21.0 - win.rar GmbH) WinRAR 5.31 (32-bit) (HKLM-x32\...\WinRAR archiver) (Version: 5.31.0 - win.rar GmbH) Xiph.Org Open Codecs 0.85.17777 (HKLM-x32\...\Open Codecs) (Version: 0.85.17777 - Xiph.Org) Xvid Video Codec (HKLM-x32\...\Xvid Video Codec 1.3.2) (Version: 1.3.2 - Xvid Team) ==================== Niestandardowe rejestracje CLSID (filtrowane): ========================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) CustomCLSID: HKU\S-1-5-21-3731321512-1432075017-1604789293-1000_Classes\CLSID\{005A3A96-BAC4-4B0A-94EA-C0CE100EA736}\localserver32 -> C:\Users\admin\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-3731321512-1432075017-1604789293-1000_Classes\CLSID\{E68D0A55-3C40-4712-B90D-DCFA93FF2534}\InprocServer32 -> C:\Users\admin\AppData\Roaming\GG\ggdrive\ggdrive-menu.dll (GG Network S.A.) CustomCLSID: HKU\S-1-5-21-3731321512-1432075017-1604789293-1000_Classes\CLSID\{ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C}\InprocServer32 -> C:\Users\admin\AppData\Roaming\Dropbox\bin\DropboxExt64.38.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-3731321512-1432075017-1604789293-1000_Classes\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\admin\AppData\Roaming\Dropbox\bin\DropboxExt64.38.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-3731321512-1432075017-1604789293-1000_Classes\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\admin\AppData\Roaming\Dropbox\bin\DropboxExt64.38.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-3731321512-1432075017-1604789293-1000_Classes\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\admin\AppData\Roaming\Dropbox\bin\DropboxExt64.38.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-3731321512-1432075017-1604789293-1000_Classes\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\admin\AppData\Roaming\Dropbox\bin\DropboxExt64.38.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-3731321512-1432075017-1604789293-1000_Classes\CLSID\{FB314EDD-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\admin\AppData\Roaming\Dropbox\bin\DropboxExt64.38.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-3731321512-1432075017-1604789293-1000_Classes\CLSID\{FB314EDE-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\admin\AppData\Roaming\Dropbox\bin\DropboxExt64.38.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-3731321512-1432075017-1604789293-1000_Classes\CLSID\{FB314EDF-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\admin\AppData\Roaming\Dropbox\bin\DropboxExt64.38.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-3731321512-1432075017-1604789293-1000_Classes\CLSID\{FB314EE0-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\admin\AppData\Roaming\Dropbox\bin\DropboxExt64.38.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-3731321512-1432075017-1604789293-1000_Classes\CLSID\{FBC9D74C-AF55-4309-9FB2-C426E071637F}\InprocServer32 -> C:\Users\admin\AppData\Roaming\Dropbox\bin\DropboxExt64.38.dll (Dropbox, Inc.) ==================== Zaplanowane zadania (filtrowane) ============= (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) Task: {16B957D4-550E-42ED-83F6-2A01390B272B} - System32\Tasks\Microsoft\Windows\Media Center\RecordingRestart => %SystemRoot%\ehome\ehrec [Argument = /RestartRecording] Task: {1A4DBEFF-42AA-40FA-8D29-A74F40F808DC} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-07-17] (Adobe Systems Incorporated) Task: {28DB0B34-E491-4FBE-BC2E-1D63656D5376} - System32\Tasks\SafeZone scheduled Autoupdate 1458039741 => C:\Program Files\AVAST Software\SZBrowser\launcher.exe Task: {2E286C68-5CDA-421D-B030-8C44D94B01ED} - System32\Tasks\Microsoft\Windows\Media Center\StartRecording => %SystemRoot%\ehome\ehrec [Argument = /StartRecording] Task: {2E524963-C00A-4D2C-9BA8-4497C75D2C83} - System32\Tasks\DropboxUpdateTaskUserS-1-5-21-3731321512-1432075017-1604789293-1000UA => C:\Users\admin\AppData\Local\Dropbox\Update\DropboxUpdate.exe [2015-06-19] (Dropbox, Inc.) Task: {306DA97A-1269-472C-BE5F-EC163F4A7E9B} - System32\Tasks\COMODO\COMODO Scan {F140D794-60B6-4F00-9235-D6457AA25B22} => C:\Program Files\COMODO\COMODO Internet Security\cfpconfg.exe [2016-07-10] (COMODO) Task: {4463A2B9-B5A9-4BCD-8E07-E3908BC2EDEE} - System32\Tasks\Microsoft_MKC_Logon_Task_ipoint.exe => C:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe [2000-01-01] (Microsoft Corporation) Task: {4543BD68-99AB-40A0-9306-7883F9BBF7AE} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2016-08-13] (Piriform Ltd) Task: {56C3C833-5A3E-4996-9184-C201B29F49D1} - System32\Tasks\COMODO\COMODO Autostart {D5EFF3B3-E126-4AF6-BCE9-852A72129E10} => C:\Program Files\COMODO\COMODO Internet Security\cistray.exe [2016-07-10] (COMODO) Task: {5D8915D1-105E-414C-93D9-8C4C6B3B3053} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-10-21] (Google Inc.) Task: {6969F9DB-5DEC-4571-9A03-CA6D912C7733} - System32\Tasks\Microsoft_Hardware_Launch_ipoint_exe => C:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe [2000-01-01] (Microsoft Corporation) Task: {7750EFDC-ECCB-444B-B31C-DEB633F88EFD} - System32\Tasks\Microsoft_Hardware_Launch_mousekeyboardcenter_exe => C:\Program Files\Microsoft Mouse and Keyboard Center\mousekeyboardcenter.exe [2000-01-01] (Microsoft) Task: {7C7B48CC-A1FF-490E-BE84-7C0FBF787CF0} - System32\Tasks\Odkurzacz => C:\Program Files (x86)\Odkurzacz\odkurzacz.exe [2016-08-13] (FranmoSoftware) Task: {7C90A4A3-E70C-47E9-9D92-0CF5F890453A} - System32\Tasks\COMODO\COMODO Update {A6D52E4F-569B-4756-B3D8-DF217313DA85} => C:\Program Files\COMODO\COMODO Internet Security\cfpconfg.exe [2016-07-10] (COMODO) Task: {8DE3F2BE-12B1-4F53-B4EF-F70CF330D57B} - System32\Tasks\COMODO\COMODO Cache Builder {0FB77674-7905-4F34-A362-C5A9A26F8CF9} => C:\Program Files\COMODO\COMODO Internet Security\cfpconfg.exe [2016-07-10] (COMODO) Task: {9E7185F0-7037-4C9E-AC04-C788B717D21C} - System32\Tasks\{18D42EBE-8F1D-4ABB-A788-0D604F1CD733} => pcalua.exe -a C:\Windows\IsUn0415.exe -c -fe:\pica\Uninst.isu Task: {B8014ACD-0F65-460E-A6DD-36021C6140FB} - System32\Tasks\COMODO\COMODO Signature Update {B9D5C6F9-17D2-4917-8BD0-614BAA1C6A59} => C:\Program Files\COMODO\COMODO Internet Security\cfpconfg.exe [2016-07-10] (COMODO) Task: {C5D4BEAF-11FA-47B8-91D6-0DA90E37A503} - System32\Tasks\Microsoft_MKC_Logon_Task_itype.exe => C:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe [2000-01-01] (Microsoft Corporation) Task: {C9EEF44A-1F9A-4CD8-A6B8-ADD96316812A} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate => %SystemRoot%\ehome\mcupdate [Argument = $(Arg0)] Task: {CA4396BA-7314-4446-8C4F-73648E443496} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-10-21] (Google Inc.) Task: {D645091C-2815-4F70-B2EA-DD1BA47796C4} - System32\Tasks\HPCustParticipation HP Deskjet 2540 series => C:\Program Files\HP\HP Deskjet 2540 series\Bin\HPCustPartic.exe [2013-11-29] (Hewlett-Packard Co.) Task: {D868B4F5-3C95-462F-BC27-4E60577FE021} - System32\Tasks\DropboxUpdateTaskUserS-1-5-21-3731321512-1432075017-1604789293-1000Core => C:\Users\admin\AppData\Local\Dropbox\Update\DropboxUpdate.exe [2015-06-19] (Dropbox, Inc.) Task: {E6F4AE96-AA8A-438F-9AF2-DAC7C5926A06} - System32\Tasks\Microsoft_Hardware_Launch_itype_exe => C:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe [2000-01-01] (Microsoft Corporation) Task: {EFC8AD34-1242-47F1-A16E-DDAD702147F1} - System32\Tasks\AVAST Software\Avast settings backup => C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe [2016-06-02] (AVAST Software) Task: {F156FBA8-972F-4033-AC3C-CADC411373EB} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2015-08-27] (Apple Inc.) (Załączenie wejścia w fixlist spowoduje przesunięcie pliku zadania (.job). Plik uruchamiany docelowo przez zadanie nie zostanie przeniesiony.) Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\DropboxUpdateTaskUserS-1-5-21-3731321512-1432075017-1604789293-1000Core.job => C:\Users\admin\AppData\Local\Dropbox\Update\DropboxUpdate.exe Task: C:\Windows\Tasks\DropboxUpdateTaskUserS-1-5-21-3731321512-1432075017-1604789293-1000UA.job => C:\Users\admin\AppData\Local\Dropbox\Update\DropboxUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ==================== Skróty ============================= (Wybrane wejścia mogą zostać załączone w celu ich zresetowania lub usunięcia.) Shortcut: C:\Users\admin\AppData\Local\Microsoft\Windows\GameExplorer\{E686A9A8-2BF2-4BA4-A675-62739045CEA0}\SupportTasks\0\Więcej gier od firmy Microsoft.lnk -> hxxp://www.rockstargames.com/sanandreas/ Shortcut: C:\Users\admin\AppData\Local\Microsoft\Windows\GameExplorer\{E10B9B6D-7B00-476B-B665-74EBB3E766D4}\SupportTasks\1\Pomoc techniczna.lnk -> hxxp://techsupport.ea.com/ Shortcut: C:\Users\admin\AppData\Local\Microsoft\Windows\GameExplorer\{E10B9B6D-7B00-476B-B665-74EBB3E766D4}\SupportTasks\0\Więcej gier od firmy Microsoft.lnk -> hxxp://www.bfme2.ea.com/ Shortcut: C:\Users\admin\AppData\Local\Microsoft\Windows\GameExplorer\{DE0D36EC-6D3B-4ACE-9F9C-D54B64101701}\SupportTasks\1\Pomoc techniczna.lnk -> hxxp://www.atarisupport.com/ Shortcut: C:\Users\admin\AppData\Local\Microsoft\Windows\GameExplorer\{DE0D36EC-6D3B-4ACE-9F9C-D54B64101701}\SupportTasks\0\Więcej gier od firmy Microsoft.lnk -> hxxp://www.piranha-bytes.com/gothic2/content_english/news_press.php/ Shortcut: C:\Users\admin\AppData\Local\Microsoft\Windows\GameExplorer\{DA1EA245-9658-4BFD-9C35-98DD3878170A}\SupportTasks\1\Pomoc techniczna.lnk -> hxxp://www.ina-support.com/ Shortcut: C:\Users\admin\AppData\Local\Microsoft\Windows\GameExplorer\{DA1EA245-9658-4BFD-9C35-98DD3878170A}\SupportTasks\0\Więcej gier od firmy Microsoft.lnk -> hxxp://nwn.bioware.com// Shortcut: C:\Users\admin\AppData\Local\Microsoft\Windows\GameExplorer\{ACDA09FD-B78F-4233-A6B8-0B69C39CDAA1}\SupportTasks\1\Pomoc techniczna.lnk -> hxxp://www.gtisonline.com/ Shortcut: C:\Users\admin\AppData\Local\Microsoft\Windows\GameExplorer\{ACDA09FD-B78F-4233-A6B8-0B69C39CDAA1}\SupportTasks\0\Więcej gier od firmy Microsoft.lnk -> hxxp://www.unrealtournament.net/shock/index2.htm/ Shortcut: C:\Users\admin\AppData\Local\Microsoft\Windows\GameExplorer\{8E96FA06-CE18-4A34-A46C-3BF825AA8854}\SupportTasks\1\Pomoc techniczna.lnk -> hxxp://www.divinedivinity.com/generated/dd_e_support.html/ Shortcut: C:\Users\admin\AppData\Local\Microsoft\Windows\GameExplorer\{8E96FA06-CE18-4A34-A46C-3BF825AA8854}\SupportTasks\0\Więcej gier od firmy Microsoft.lnk -> hxxp://www.larian.com/php/nieuws.php3 Shortcut: C:\Users\admin\AppData\Local\Microsoft\Windows\GameExplorer\{7DE05B23-AB79-4561-80B3-3F4C650E8F20}\SupportTasks\1\Pomoc techniczna.lnk -> hxxp://techsupport.ea.com/ Shortcut: C:\Users\admin\AppData\Local\Microsoft\Windows\GameExplorer\{7DE05B23-AB79-4561-80B3-3F4C650E8F20}\SupportTasks\0\Więcej gier od firmy Microsoft.lnk -> hxxp://www.needforspeed.com/ Shortcut: C:\Users\admin\AppData\Local\Microsoft\Windows\GameExplorer\{5DA68AC3-FD1C-43B3-B996-8266AE77B720}\SupportTasks\0\Więcej gier od firmy Microsoft.lnk -> hxxp://www.rockstargames.com/sanandreas/ Shortcut: C:\Users\admin\AppData\Local\Microsoft\Windows\GameExplorer\{476CAA1F-E3F9-44B6-B442-A4F341EE92B0}\SupportTasks\1\Pomoc techniczna.lnk -> hxxp://www.talonsoft.com/ Shortcut: C:\Users\admin\AppData\Local\Microsoft\Windows\GameExplorer\{476CAA1F-E3F9-44B6-B442-A4F341EE92B0}\SupportTasks\0\Więcej gier od firmy Microsoft.lnk -> hxxp://www.talonsoft.com/products/TZAR.html/ Shortcut: C:\Users\admin\AppData\Local\Microsoft\Windows\GameExplorer\{1C52E4D3-5035-4E17-A6B0-D8A8515990A8}\SupportTasks\1\Pomoc techniczna.lnk -> hxxp://support.vugames.com/ Shortcut: C:\Users\admin\AppData\Local\Microsoft\Windows\GameExplorer\{1C52E4D3-5035-4E17-A6B0-D8A8515990A8}\SupportTasks\0\Więcej gier od firmy Microsoft.lnk -> hxxp://www.swat4.com/ Shortcut: C:\Users\admin\AppData\Local\Microsoft\Windows\GameExplorer\{1556C52A-7346-479B-B73D-3514FD02358C}\SupportTasks\1\Pomoc techniczna.lnk -> hxxp://www.runningwithscissors.com/ Shortcut: C:\Users\admin\AppData\Local\Microsoft\Windows\GameExplorer\{1556C52A-7346-479B-B73D-3514FD02358C}\SupportTasks\0\Więcej gier od firmy Microsoft.lnk -> hxxp://www.gopostal.com/postal2/index.php/ ShortcutWithArgument: C:\Users\admin\AppData\Local\Google\Chrome\User Data\Program uruchamiający aplikacje Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --show-app-list ShortcutWithArgument: C:\Users\admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome\Program uruchamiający aplikacje Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --show-app-list ShortcutWithArgument: C:\Users\admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplikacje Chrome\TwitchAlerts Stream Labels.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --profile-directory="Profile 1" --app-id=kgmggmdngboajiakmbpdknfpdelbjbcg ShortcutWithArgument: C:\Users\admin\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\TwitchAlerts Stream Labels.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --profile-directory="Profile 1" --app-id=kgmggmdngboajiakmbpdknfpdelbjbcg ==================== Załadowane moduły (filtrowane) ============== 2015-02-13 05:20 - 2015-02-13 05:20 - 00085832 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll 2015-10-13 06:45 - 2015-10-13 06:45 - 01328912 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll 2013-03-10 00:41 - 2014-11-21 23:23 - 00076152 _____ () C:\Windows\SysWOW64\PnkBstrA.exe 2006-11-02 21:40 - 2006-11-02 21:40 - 00174656 ____N () C:\Windows\SysWOW64\PSIService.exe 2016-03-16 11:25 - 2016-03-16 11:25 - 00073912 _____ () C:\Program Files\COMODO\COMODO Internet Security\scanners\smart.cav 2013-03-24 22:13 - 2012-10-25 18:26 - 00078456 ____R () C:\Program Files (x86)\VIA\VIAudioi\VDeck\QsApoApi64.dll 2013-03-24 22:13 - 2012-10-25 18:26 - 00386168 ____R () C:\Program Files (x86)\VIA\VIAudioi\VDeck\Dts2ApoApi64.dll 2016-07-13 21:42 - 2016-07-13 21:42 - 00065536 _____ () C:\Program Files\CCleaner\lang\lang-1045.dll 2015-12-27 19:11 - 2013-02-01 15:58 - 03571712 _____ () C:\Program Files (x86)\OscarX7Editor5Mode\OscarX7Editor5Mode\OscarEditor.exe 2015-11-18 16:43 - 2016-03-03 10:34 - 00073216 _____ () C:\Program Files (x86)\Common Files\Freemake Shared\ProductUpdater\ProductUpdater.exe 2016-08-13 23:24 - 2016-08-13 23:24 - 00380928 _____ () C:\Users\admin\Desktop\h9qc9c3b.exe 2015-11-10 14:26 - 2016-06-03 05:26 - 00134712 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll 2016-05-21 16:57 - 2016-06-14 22:03 - 00018880 _____ () C:\Program Files (x86)\NVIDIA Corporation\Update Core\detoured.dll 2013-05-06 17:05 - 2016-08-03 00:08 - 00785920 _____ () C:\Program Files (x86)\Steam\SDL2.dll 2015-01-20 00:19 - 2016-08-03 00:10 - 04962816 _____ () C:\Program Files (x86)\Steam\v8.dll 2015-01-20 00:19 - 2016-08-03 00:09 - 01556992 _____ () C:\Program Files (x86)\Steam\icui18n.dll 2015-01-20 00:19 - 2016-08-03 00:09 - 01187840 _____ () C:\Program Files (x86)\Steam\icuuc.dll 2014-05-21 23:59 - 2016-08-03 02:00 - 02320160 _____ () C:\Program Files (x86)\Steam\video.dll 2014-08-29 09:51 - 2016-02-09 01:14 - 02549760 _____ () C:\Program Files (x86)\Steam\libavcodec-56.dll 2014-08-29 09:51 - 2016-02-09 01:14 - 00442880 _____ () C:\Program Files (x86)\Steam\libavutil-54.dll 2014-08-29 09:51 - 2016-02-09 01:14 - 00491008 _____ () C:\Program Files (x86)\Steam\libavformat-56.dll 2014-08-29 09:51 - 2016-02-09 01:14 - 00332800 _____ () C:\Program Files (x86)\Steam\libavresample-2.dll 2014-08-29 09:51 - 2016-02-09 01:14 - 00485888 _____ () C:\Program Files (x86)\Steam\libswscale-3.dll 2013-06-06 14:06 - 2016-08-03 01:59 - 00831776 _____ () C:\Program Files (x86)\Steam\bin\chromehtml.DLL 2016-03-10 04:27 - 2016-07-07 00:00 - 00266560 _____ () C:\Program Files (x86)\Steam\openvr_api.dll 2015-12-27 19:11 - 2011-04-06 17:06 - 00067072 _____ () C:\Program Files (x86)\OscarX7Editor5Mode\OscarX7Editor5Mode\DLL\DLL_PenSuit.dll 2015-12-27 19:11 - 2010-12-02 18:56 - 00815104 _____ () C:\Program Files (x86)\OscarX7Editor5Mode\OscarX7Editor5Mode\Data\X7_5Mode\Forms\OSD_Text\OSD_Text.dll 2015-12-27 19:11 - 2011-01-09 21:45 - 00088064 _____ () C:\Program Files (x86)\OscarX7Editor5Mode\OscarX7Editor5Mode\DLL\DLL_MouseDeviceManager.dll 2015-12-27 19:11 - 2012-06-14 16:59 - 02414080 _____ () C:\Program Files (x86)\OscarX7Editor5Mode\OscarX7Editor5Mode\Data\X7_5Mode\Forms\ScreenCapture\ScreenCapture.dll 2015-12-27 19:11 - 2011-03-21 20:33 - 00999424 _____ () C:\Program Files (x86)\OscarX7Editor5Mode\OscarX7Editor5Mode\Data\X7_5Mode\Forms\TrayIconWebAdvertisement\TrayIconWebAdvertisement.dll 2015-12-27 19:11 - 2011-05-20 17:52 - 00901632 _____ () C:\Program Files (x86)\OscarX7Editor5Mode\OscarX7Editor5Mode\Data\X7_5Mode\Forms\ProfileHint\ProfileHint.dll 2015-12-27 19:11 - 2010-12-03 15:43 - 00943104 _____ () C:\Program Files (x86)\OscarX7Editor5Mode\OscarX7Editor5Mode\Data\X7_5Mode\Forms\KeySettingRemind\KeySettingRemind.dll 2015-12-27 19:11 - 2010-09-20 15:18 - 00085504 _____ () C:\Program Files (x86)\OscarX7Editor5Mode\OscarX7Editor5Mode\DLL\DLL_ZoomControl.dll 2015-12-27 19:11 - 2010-09-20 15:18 - 00054272 _____ () C:\Program Files (x86)\OscarX7Editor5Mode\OscarX7Editor5Mode\DLL\DLL_ScrollbarControl.dll 2015-12-27 19:11 - 2011-04-12 16:14 - 00063488 _____ () C:\Program Files (x86)\OscarX7Editor5Mode\OscarX7Editor5Mode\DLL\DLL_AnalyzeGesturesInRight.dll 2015-12-27 19:11 - 2010-11-01 21:16 - 00062976 _____ () C:\Program Files (x86)\OscarX7Editor5Mode\OscarX7Editor5Mode\DLL\DLL_AnalyzeGesturesInOne.dll 2015-12-27 19:11 - 2012-04-27 12:40 - 00118272 _____ () C:\Program Files (x86)\OscarX7Editor5Mode\OscarX7Editor5Mode\DLL\DLL_Wheel4D.dll 2015-12-12 13:48 - 2016-06-30 04:25 - 00035792 _____ () C:\Users\admin\AppData\Roaming\Dropbox\bin\_multiprocessing.pyd 2016-08-07 22:49 - 2016-06-30 04:25 - 00145864 _____ () C:\Users\admin\AppData\Roaming\Dropbox\bin\pyexpat.pyd 2016-08-07 22:49 - 2016-06-30 04:26 - 00019408 _____ () C:\Users\admin\AppData\Roaming\Dropbox\bin\faulthandler.pyd 2016-08-07 22:49 - 2016-06-30 04:25 - 00116688 _____ () C:\Users\admin\AppData\Roaming\Dropbox\bin\pywintypes27.dll 2015-12-12 13:48 - 2016-06-30 04:25 - 00100296 _____ () C:\Users\admin\AppData\Roaming\Dropbox\bin\_ctypes.pyd 2015-12-12 13:48 - 2016-06-30 04:25 - 00018888 _____ () C:\Users\admin\AppData\Roaming\Dropbox\bin\select.pyd 2015-12-12 13:48 - 2016-08-01 23:27 - 00019760 _____ () C:\Users\admin\AppData\Roaming\Dropbox\bin\tornado.speedups.pyd 2015-12-12 13:48 - 2016-06-30 04:25 - 00694224 _____ () C:\Users\admin\AppData\Roaming\Dropbox\bin\unicodedata.pyd 2016-08-07 22:49 - 2016-08-01 23:26 - 00020816 _____ () C:\Users\admin\AppData\Roaming\Dropbox\bin\cryptography.hazmat.bindings._constant_time.pyd 2015-12-12 13:48 - 2016-06-30 04:26 - 00123856 _____ () C:\Users\admin\AppData\Roaming\Dropbox\bin\_cffi_backend.pyd 2016-08-07 22:49 - 2016-08-01 23:26 - 01682760 _____ () C:\Users\admin\AppData\Roaming\Dropbox\bin\cryptography.hazmat.bindings._openssl.pyd 2016-08-07 22:49 - 2016-08-01 23:26 - 00020808 _____ () C:\Users\admin\AppData\Roaming\Dropbox\bin\cryptography.hazmat.bindings._padding.pyd 2016-08-07 22:49 - 2016-08-01 23:27 - 00021312 _____ () C:\Users\admin\AppData\Roaming\Dropbox\bin\winffi.crt.compiled._winffi_crt.pyd 2016-08-07 22:49 - 2016-08-01 23:27 - 00052024 _____ () C:\Users\admin\AppData\Roaming\Dropbox\bin\psutil._psutil_windows.pyd 2016-08-07 22:49 - 2016-08-01 23:27 - 00038696 _____ () C:\Users\admin\AppData\Roaming\Dropbox\bin\fastpath.pyd 2015-12-12 13:48 - 2016-06-30 04:27 - 00105928 _____ () C:\Users\admin\AppData\Roaming\Dropbox\bin\win32api.pyd 2016-08-07 22:49 - 2016-06-30 04:25 - 00392144 _____ () C:\Users\admin\AppData\Roaming\Dropbox\bin\pythoncom27.dll 2016-08-07 22:49 - 2016-06-30 04:27 - 00020936 _____ () C:\Users\admin\AppData\Roaming\Dropbox\bin\mmapfile.pyd 2015-12-12 13:48 - 2016-06-30 04:27 - 00024528 _____ () C:\Users\admin\AppData\Roaming\Dropbox\bin\win32event.pyd 2015-12-12 13:48 - 2016-06-30 04:27 - 00114640 _____ () C:\Users\admin\AppData\Roaming\Dropbox\bin\win32security.pyd 2015-12-12 13:48 - 2016-08-01 23:27 - 00381752 _____ () C:\Users\admin\AppData\Roaming\Dropbox\bin\win32com.shell.shell.pyd 2015-12-12 13:48 - 2016-06-30 04:27 - 00124880 _____ () C:\Users\admin\AppData\Roaming\Dropbox\bin\win32file.pyd 2016-08-07 22:49 - 2016-08-01 23:27 - 00025424 _____ () C:\Users\admin\AppData\Roaming\Dropbox\bin\winffi.kernel32.compiled._winffi_kernel32.pyd 2015-12-12 13:48 - 2016-06-30 04:27 - 00024016 _____ () C:\Users\admin\AppData\Roaming\Dropbox\bin\win32clipboard.pyd 2015-12-12 13:48 - 2016-06-30 04:27 - 00175560 _____ () C:\Users\admin\AppData\Roaming\Dropbox\bin\win32gui.pyd 2015-12-12 13:48 - 2016-06-30 04:27 - 00030160 _____ () C:\Users\admin\AppData\Roaming\Dropbox\bin\win32pipe.pyd 2015-12-12 13:48 - 2016-06-30 04:27 - 00043472 _____ () C:\Users\admin\AppData\Roaming\Dropbox\bin\win32process.pyd 2015-12-12 13:48 - 2016-06-30 04:27 - 00048592 _____ () C:\Users\admin\AppData\Roaming\Dropbox\bin\win32service.pyd 2016-08-07 22:49 - 2016-08-01 23:27 - 00026456 _____ () C:\Users\admin\AppData\Roaming\Dropbox\bin\dropbox.infinite.win.compiled._driverinstallation.pyd 2015-12-12 13:48 - 2016-06-30 04:27 - 00057808 _____ () C:\Users\admin\AppData\Roaming\Dropbox\bin\win32evtlog.pyd 2015-12-12 13:48 - 2016-06-30 04:27 - 00024016 _____ () C:\Users\admin\AppData\Roaming\Dropbox\bin\win32profile.pyd 2016-08-07 22:49 - 2016-08-01 23:26 - 00246592 _____ () C:\Users\admin\AppData\Roaming\Dropbox\bin\breakpad.client.windows.handler.pyd 2015-12-12 13:48 - 2016-06-30 04:27 - 00028616 _____ () C:\Users\admin\AppData\Roaming\Dropbox\bin\win32ts.pyd 2016-02-18 01:37 - 2016-08-01 23:27 - 00020800 _____ () C:\Users\admin\AppData\Roaming\Dropbox\bin\winffi.iphlpapi._winffi_iphlpapi.pyd 2016-02-18 01:37 - 2016-08-01 23:27 - 00019776 _____ () C:\Users\admin\AppData\Roaming\Dropbox\bin\winffi.winerror._winffi_winerror.pyd 2016-02-18 01:37 - 2016-08-01 23:27 - 00020800 _____ () C:\Users\admin\AppData\Roaming\Dropbox\bin\winffi.wininet._winffi_wininet.pyd 2015-12-12 13:48 - 2016-06-30 04:25 - 00144848 _____ () C:\Users\admin\AppData\Roaming\Dropbox\bin\_elementtree.pyd 2016-08-07 22:49 - 2016-06-30 04:26 - 00241104 _____ () C:\Users\admin\AppData\Roaming\Dropbox\bin\_jpegtran.pyd 2016-08-07 22:49 - 2016-08-01 23:26 - 00020280 _____ () C:\Users\admin\AppData\Roaming\Dropbox\bin\cpuid.compiled._cpuid.pyd 2015-12-12 13:48 - 2016-08-01 23:27 - 00023376 _____ () C:\Users\admin\AppData\Roaming\Dropbox\bin\winscreenshot.compiled._CaptureScreenshot.pyd 2015-12-12 13:48 - 2016-06-30 04:27 - 00350152 _____ () C:\Users\admin\AppData\Roaming\Dropbox\bin\winxpgui.pyd 2016-02-18 01:37 - 2016-08-01 23:27 - 00022352 _____ () C:\Users\admin\AppData\Roaming\Dropbox\bin\winverifysignature.compiled._VerifySignature.pyd 2016-08-07 22:49 - 2016-08-01 23:27 - 00024392 _____ () C:\Users\admin\AppData\Roaming\Dropbox\bin\librsyncffi.compiled._librsyncffi.pyd 2016-08-07 22:49 - 2016-06-30 04:28 - 00036296 _____ () C:\Users\admin\AppData\Roaming\Dropbox\bin\librsync.dll 2016-08-07 22:49 - 2016-08-01 23:27 - 00084280 _____ () C:\Users\admin\AppData\Roaming\Dropbox\bin\dropbox_sqlite_ext.DLL 2016-08-07 22:49 - 2016-08-01 23:27 - 01826096 _____ () C:\Users\admin\AppData\Roaming\Dropbox\bin\PyQt5.QtCore.pyd 2015-12-12 13:48 - 2016-06-30 04:26 - 00083912 _____ () C:\Users\admin\AppData\Roaming\Dropbox\bin\sip.pyd 2016-08-07 22:49 - 2016-08-01 23:27 - 03929392 _____ () C:\Users\admin\AppData\Roaming\Dropbox\bin\PyQt5.QtWidgets.pyd 2016-08-07 22:49 - 2016-08-01 23:27 - 01972016 _____ () C:\Users\admin\AppData\Roaming\Dropbox\bin\PyQt5.QtGui.pyd 2016-08-07 22:49 - 2016-08-01 23:27 - 00531248 _____ () C:\Users\admin\AppData\Roaming\Dropbox\bin\PyQt5.QtNetwork.pyd 2016-08-07 22:49 - 2016-08-01 23:27 - 00132912 _____ () C:\Users\admin\AppData\Roaming\Dropbox\bin\PyQt5.QtWebKit.pyd 2016-08-07 22:49 - 2016-08-01 23:27 - 00224056 _____ () C:\Users\admin\AppData\Roaming\Dropbox\bin\PyQt5.QtWebKitWidgets.pyd 2016-08-07 22:49 - 2016-08-01 23:27 - 00207672 _____ () C:\Users\admin\AppData\Roaming\Dropbox\bin\PyQt5.QtPrintSupport.pyd 2016-08-07 22:49 - 2016-08-01 23:27 - 00020288 _____ () C:\Users\admin\AppData\Roaming\Dropbox\bin\winffi.user32._winffi_user32.pyd 2015-12-12 13:48 - 2016-06-30 04:27 - 00060880 _____ () C:\Users\admin\AppData\Roaming\Dropbox\bin\win32print.pyd 2016-08-07 22:49 - 2016-08-01 23:27 - 00024904 _____ () C:\Users\admin\AppData\Roaming\Dropbox\bin\winffi.winhttp.compiled._winffi_winhttp.pyd 2016-08-07 22:49 - 2016-08-01 23:27 - 00546096 _____ () C:\Users\admin\AppData\Roaming\Dropbox\bin\PyQt5.QtQuick.pyd 2016-08-07 22:49 - 2016-08-01 23:27 - 00357680 _____ () C:\Users\admin\AppData\Roaming\Dropbox\bin\PyQt5.QtQml.pyd 2016-08-07 22:49 - 2016-08-01 23:27 - 00168248 _____ () C:\Users\admin\AppData\Roaming\Dropbox\bin\PyQt5.QtWebEngineWidgets.pyd 2016-08-07 22:49 - 2016-08-01 23:27 - 00042808 _____ () C:\Users\admin\AppData\Roaming\Dropbox\bin\PyQt5.QtWebChannel.pyd 2012-09-13 00:38 - 2012-09-13 00:38 - 02144104 _____ () C:\Program Files (x86)\Logitech\LWS\Webcam Software\QtCore4.dll 2012-09-13 00:38 - 2012-09-13 00:38 - 07955304 _____ () C:\Program Files (x86)\Logitech\LWS\Webcam Software\QtGui4.dll 2012-09-13 00:38 - 2012-09-13 00:38 - 00341352 _____ () C:\Program Files (x86)\Logitech\LWS\Webcam Software\QtXml4.dll 2012-09-13 00:38 - 2012-09-13 00:38 - 00028008 _____ () C:\Program Files (x86)\Logitech\LWS\Webcam Software\imageformats\QGif4.dll 2012-09-13 00:38 - 2012-09-13 00:38 - 00127336 _____ () C:\Program Files (x86)\Logitech\LWS\Webcam Software\imageformats\QJpeg4.dll 2013-03-26 16:16 - 2016-06-14 21:14 - 49826080 _____ () C:\Program Files (x86)\Steam\bin\libcef.dll 2016-07-17 21:15 - 2016-07-17 21:15 - 19483328 _____ () C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_22_0_0_209.dll ==================== Alternate Data Streams (filtrowane) ========= (Załączenie wejścia w fixlist spowoduje usunięcie strumienia ADS.) AlternateDataStreams: C:\ProgramData:482EE99B1E21CE8C [1] AlternateDataStreams: C:\Windows\system32\Mam3ASIO.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\Mam3PAN.exe:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\Mam3ASIO32.dll:$CmdTcID [64] AlternateDataStreams: C:\Users\admin:Heroes & Generals [38] AlternateDataStreams: C:\Users\All Users:482EE99B1E21CE8C [1] AlternateDataStreams: C:\Users\admin\Desktop\FRST64.exe:$CmdZnID [26] AlternateDataStreams: C:\Users\admin\Desktop\h9qc9c3b.exe:$CmdTcID [64] AlternateDataStreams: C:\Users\admin\Desktop\h9qc9c3b.exe:$CmdZnID [26] AlternateDataStreams: C:\ProgramData\Application Data:482EE99B1E21CE8C [1] AlternateDataStreams: C:\ProgramData\Dane aplikacji:482EE99B1E21CE8C [1] AlternateDataStreams: C:\ProgramData\PACE:7D84ACDEDBABD845 [217] ==================== Tryb awaryjny (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Wartość "AlternateShell" zostanie przywrócona.) ==================== Powiązania plików (filtrowane) =============== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci.) ==================== Internet Explorer - Witryny zaufane i z ograniczeniami =============== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru.) IE trusted site: HKU\.DEFAULT\...\clonewarsadventures.com -> clonewarsadventures.com IE trusted site: HKU\.DEFAULT\...\freerealms.com -> freerealms.com IE trusted site: HKU\.DEFAULT\...\soe.com -> soe.com IE trusted site: HKU\.DEFAULT\...\sony.com -> sony.com IE trusted site: HKU\S-1-5-19\...\clonewarsadventures.com -> clonewarsadventures.com IE trusted site: HKU\S-1-5-19\...\freerealms.com -> freerealms.com IE trusted site: HKU\S-1-5-19\...\soe.com -> soe.com IE trusted site: HKU\S-1-5-19\...\sony.com -> sony.com IE trusted site: HKU\S-1-5-20\...\clonewarsadventures.com -> clonewarsadventures.com IE trusted site: HKU\S-1-5-20\...\freerealms.com -> freerealms.com IE trusted site: HKU\S-1-5-20\...\soe.com -> soe.com IE trusted site: HKU\S-1-5-20\...\sony.com -> sony.com IE trusted site: HKU\S-1-5-21-3731321512-1432075017-1604789293-1000\...\clonewarsadventures.com -> clonewarsadventures.com IE trusted site: HKU\S-1-5-21-3731321512-1432075017-1604789293-1000\...\freerealms.com -> freerealms.com IE trusted site: HKU\S-1-5-21-3731321512-1432075017-1604789293-1000\...\soe.com -> soe.com IE trusted site: HKU\S-1-5-21-3731321512-1432075017-1604789293-1000\...\sony.com -> sony.com ==================== Hosts - zawartość: ========================== (Użycie dyrektywy Hosts: w fixlist spowoduje reset pliku Hosts.) 2009-07-14 04:34 - 2015-09-28 17:16 - 00000970 ____A C:\Windows\system32\Drivers\etc\hosts 127.0.0.1 activation.cloud.techsmith.com 127.0.0.1 65.52.240.48 127.0.0.1 oscount.techsmith.com 127.0.0.1 69.167.144.18 ==================== Inne obszary ============================ (Obecnie brak automatycznej naprawy dla tej sekcji.) HKU\S-1-5-21-3731321512-1432075017-1604789293-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Tapeta pulpitu.bmp DNS Servers: 192.168.8.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 0) (ConsentPromptBehaviorUser: 3) (EnableLUA: 0) Zapora systemu Windows [funkcja wyłączona] ==================== MSCONFIG/TASK MANAGER - Wyłączone elementy == (Obecnie brak automatycznej naprawy dla tej sekcji.) MSCONFIG\startupreg: GG => "C:\Users\admin\AppData\Local\GG\Application\gghub.exe" ==================== Reguły Zapory systemu Windows (filtrowane) =============== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) FirewallRules: [{EE70FF13-1C50-46CA-A25F-BA26ED5ECAE3}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{641B7D24-5782-4ED5-8BDC-172AD99D9173}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [TCP Query User{568C2813-3B35-4ED2-B18B-779B49D8DFDC}C:\program files\hp\hp deskjet 2540 series\bin\hpnetworkcommunicatorcom.exe] => (Allow) C:\program files\hp\hp deskjet 2540 series\bin\hpnetworkcommunicatorcom.exe FirewallRules: [UDP Query User{4AC81EAE-CE14-43EB-9D9B-9E5E6915372A}C:\program files\hp\hp deskjet 2540 series\bin\hpnetworkcommunicatorcom.exe] => (Allow) C:\program files\hp\hp deskjet 2540 series\bin\hpnetworkcommunicatorcom.exe FirewallRules: [{C10905AA-4480-4C72-80E9-7EFF4F1CAA7B}] => (Allow) LPort=55291 FirewallRules: [{81CCF407-8C8D-4959-875E-DCA19CA45B0E}] => (Allow) LPort=55291 FirewallRules: [{AF48086D-E3F1-4228-83B0-620581E2048A}] => (Allow) C:\Users\admin\AppData\Roaming\BitTorrent\BitTorrent.exe FirewallRules: [{9526C8F7-0A80-4BF1-BE13-D063D4A8CB3D}] => (Allow) C:\Users\admin\AppData\Roaming\BitTorrent\BitTorrent.exe FirewallRules: [TCP Query User{C4E99616-46C3-4F0D-A989-7A8F0BB1E827}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe FirewallRules: [UDP Query User{322EB47A-E94B-4B7D-8013-AEF9819EF243}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe FirewallRules: [TCP Query User{664F0770-0BC8-4CC6-BF80-C0459C2AADB2}D:\nwn\nwmain.exe] => (Allow) D:\nwn\nwmain.exe FirewallRules: [UDP Query User{0F45C31F-FC8B-401C-B0F7-4A58E79C31AF}D:\nwn\nwmain.exe] => (Allow) D:\nwn\nwmain.exe FirewallRules: [{5E87283E-F43B-4D58-B8B1-B9F64DD19526}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe FirewallRules: [TCP Query User{5B81A08D-F4EE-4C0D-9CC5-72AD5353CAF4}C:\users\admin\appdata\roaming\dropbox\bin\dropbox.exe] => (Block) C:\users\admin\appdata\roaming\dropbox\bin\dropbox.exe FirewallRules: [UDP Query User{B7C3208A-25CD-4FCD-AA97-69A3EB41D0B0}C:\users\admin\appdata\roaming\dropbox\bin\dropbox.exe] => (Block) C:\users\admin\appdata\roaming\dropbox\bin\dropbox.exe FirewallRules: [{25E1AF6F-D4C2-4FF7-96F5-FD6EB4BB90AA}] => (Allow) D:\Program Files (x86)\Ubisoft\Assassin's Creed Rogue\ACC.exe FirewallRules: [{438C1C8F-B24B-4C16-AEBA-89CE2C2BA552}] => (Allow) D:\Program Files (x86)\Ubisoft\Assassin's Creed Rogue\ACC.exe FirewallRules: [TCP Query User{301D8EBE-EE50-4733-8030-3BF4FAB3E693}C:\program files (x86)\mozilla firefox\firefox.exe] => (Block) C:\program files (x86)\mozilla firefox\firefox.exe FirewallRules: [UDP Query User{32A88A36-4CF5-4369-9544-EE8A47349DD3}C:\program files (x86)\mozilla firefox\firefox.exe] => (Block) C:\program files (x86)\mozilla firefox\firefox.exe FirewallRules: [TCP Query User{E6BB0CFA-01C2-4F94-9FB9-CBE2C2D304D9}C:\program files\hp\hp deskjet 2540 series\bin\hpnetworkcommunicatorcom.exe] => (Block) C:\program files\hp\hp deskjet 2540 series\bin\hpnetworkcommunicatorcom.exe FirewallRules: [UDP Query User{8AD9AD85-FD34-4C9D-94C3-A0C2F823EB47}C:\program files\hp\hp deskjet 2540 series\bin\hpnetworkcommunicatorcom.exe] => (Block) C:\program files\hp\hp deskjet 2540 series\bin\hpnetworkcommunicatorcom.exe FirewallRules: [{BE490530-4084-4F86-A7C9-4DFEDD83AB25}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe FirewallRules: [{9403A1A5-F84B-4DA6-8456-8D2D7E71E3F5}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe FirewallRules: [TCP Query User{2C733A85-E70F-4CDB-9437-A59321E78ACB}C:\users\admin\appdata\roaming\dropbox\bin\dropbox.exe] => (Allow) C:\users\admin\appdata\roaming\dropbox\bin\dropbox.exe FirewallRules: [UDP Query User{35E928EB-3DC4-4D94-8CD8-B592AC6423D7}C:\users\admin\appdata\roaming\dropbox\bin\dropbox.exe] => (Allow) C:\users\admin\appdata\roaming\dropbox\bin\dropbox.exe FirewallRules: [TCP Query User{B3EF534E-5EF3-42C8-BDD0-89CFF415036A}D:\nwn\nwmain.exe] => (Block) D:\nwn\nwmain.exe FirewallRules: [UDP Query User{C5BAFE0C-879E-4D82-8897-585EF0836E9C}D:\nwn\nwmain.exe] => (Block) D:\nwn\nwmain.exe FirewallRules: [{8C436C8A-CCB0-46FB-9F41-734E20AF6030}] => (Allow) D:\Program Files (x86)\hs\Battle.net\Battle.net.exe FirewallRules: [{5749CB4B-ABB6-4F9D-B325-4467431D0F79}] => (Allow) D:\Program Files (x86)\hs\Battle.net\Battle.net.exe FirewallRules: [TCP Query User{D2E34DB2-F755-43EF-860C-06131DE6EA09}D:\nwn\nwserver.exe] => (Allow) D:\nwn\nwserver.exe FirewallRules: [UDP Query User{AF07675A-6DDD-4426-9FAE-D1825B76BA19}D:\nwn\nwserver.exe] => (Allow) D:\nwn\nwserver.exe FirewallRules: [{DF3CF7EA-F028-4917-A4CD-D547EADC0502}] => (Allow) D:\Nowe gry\SteamApps\common\dota 2 beta\game\bin\win32\dota2.exe FirewallRules: [{E9B30BB2-BFA7-445E-B4E6-AB592E25CB20}] => (Allow) D:\Nowe gry\SteamApps\common\dota 2 beta\game\bin\win32\dota2.exe FirewallRules: [TCP Query User{FD9B87E3-9F79-418E-B947-3DA3C12D9A1C}C:\program files (x86)\screaming bee\morphvox pro\morphvoxpro.exe] => (Allow) C:\program files (x86)\screaming bee\morphvox pro\morphvoxpro.exe FirewallRules: [UDP Query User{4B0C7081-DD40-4B57-832B-09C5DBEB42AC}C:\program files (x86)\screaming bee\morphvox pro\morphvoxpro.exe] => (Allow) C:\program files (x86)\screaming bee\morphvox pro\morphvoxpro.exe FirewallRules: [{3A1054E0-D574-4254-9D57-34E2B5FFFB92}] => (Allow) D:\Nowe gry\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{425E39E6-D074-4141-A9E8-C4BEF1A2174B}] => (Allow) D:\Nowe gry\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{80ED8DE2-38A5-4B0A-B638-EA638EF591EB}] => (Allow) D:\Nowe gry\SteamApps\common\Counter-Strike Global Offensive\csgo.exe FirewallRules: [{A7D7CA27-1CC6-4509-AA6C-1D606C852E63}] => (Allow) D:\Nowe gry\SteamApps\common\Counter-Strike Global Offensive\csgo.exe FirewallRules: [{F963ABA7-FE13-4CEE-A393-64E6EA64DDCF}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{254F1B43-54B1-4ABF-923A-E2989CAB7466}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{8B8D5595-76FB-499C-809D-E842BE1502E4}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{05EE6C23-F010-477C-BF2C-3FB1A5FAA74E}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{3C7EF156-638F-4F10-8B0C-7F626B698C25}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe FirewallRules: [{80AF4F92-2F7F-4912-BDBA-CD5C66CE7C33}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe FirewallRules: [{E034C8D7-5EDE-451A-8AF0-3F33882103F6}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe FirewallRules: [{EAC2A93C-2962-4C45-92C6-51C5B11E4F44}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{E9CE1608-AB53-438F-B286-C4A3293CE391}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{831ECBB3-0727-4E3B-ACB3-375A9B5154E4}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{9809CBBE-6F84-4B64-8A23-EA56C246A6AF}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{2935966D-4173-4912-B731-30DE4C3AC1FE}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{8372E3FF-F1E0-4FCB-9663-74ED5F51A842}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{1A97784F-C7EA-4E18-94EA-F4C45633607B}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe FirewallRules: [{54C4BA4E-4F57-4EE4-8F1F-EE76F4B8EE22}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe FirewallRules: [{78008ABF-47CC-4DC1-BA39-C57683CAC3C9}] => (Allow) D:\Nowe gry\SteamApps\common\Serious Sam 2\Bin\Sam2.exe FirewallRules: [{52310125-4BCD-4A25-81E0-C4C36FE8C428}] => (Allow) D:\Nowe gry\SteamApps\common\Serious Sam 2\Bin\Sam2.exe FirewallRules: [TCP Query User{1F3F8DC1-D903-4B8B-A2C4-1EBFA520F44D}D:\program files (x86)\stronghold crusader 2\bin\win32_release\crusader2.exe] => (Allow) D:\program files (x86)\stronghold crusader 2\bin\win32_release\crusader2.exe FirewallRules: [UDP Query User{9EA7B5A2-F272-489A-BCFC-AC08749B407A}D:\program files (x86)\stronghold crusader 2\bin\win32_release\crusader2.exe] => (Allow) D:\program files (x86)\stronghold crusader 2\bin\win32_release\crusader2.exe FirewallRules: [{9F12CD8F-B743-40FD-B717-A49DE1247667}] => (Allow) C:\Program Files\iTunes\iTunes.exe FirewallRules: [{87A46536-D550-401D-8487-11937DF86B35}] => (Allow) D:\Nowe gry\SteamApps\common\Shakes & Fidget\Shakes and Fidget.exe FirewallRules: [{93283E00-16BB-4C04-8BBB-2413868E5CDC}] => (Allow) D:\Nowe gry\SteamApps\common\Shakes & Fidget\Shakes and Fidget.exe FirewallRules: [{45E5954C-2BFD-4DA0-AC5D-6B5D547DBB98}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Punkty Przywracania systemu ========================= 11-08-2016 01:01:24 Windows Update 13-08-2016 18:31:56 Windows Update 13-08-2016 20:09:29 Instalacja pakietu sterownika urządzenia: ESI Kontrolery dźwięku, wideo i gier 13-08-2016 20:23:22 Installing COMODO Internet Security Premium 13-08-2016 20:24:10 Instalacja pakietu sterownika urządzenia: COMODO Usługa sieciowa 13-08-2016 23:10:53 Instalacja pakietu sterownika urządzenia: ESI Kontrolery dźwięku, wideo i gier ==================== Wadliwe urządzenia w Menedżerze urządzeń ============= Name: TAP-Win32 Adapter V9 (Tunngle) Description: TAP-Win32 Adapter V9 (Tunngle) Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318} Manufacturer: TAP-Win32 Provider V9 (Tunngle) Service: tap0901t Problem: : This device is disabled. (Code 22) Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions. Name: Hamachi Network Interface Description: Hamachi Network Interface Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318} Manufacturer: LogMeIn, Inc. Service: hamachi Problem: : This device is disabled. (Code 22) Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions. Name: Urządzenie VGA Description: Urządzenie VGA Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: avast! Firewall NDIS Filter Miniport Description: avast! Firewall NDIS Filter Miniport Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318} Manufacturer: ALWIL Software Service: aswNdis Problem: : Windows cannot start this hardware device because its configuration information (in the registry) is incomplete or damaged. (Code 19) Resolution: A registry problem was detected. This can occur when more than one service is defined for a device, if there is a failure opening the service subkey, or if the driver name cannot be obtained from the service subkey. Try these options: On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard. Click "Uninstall", and then click "Scan for hardware changes" to load a usable driver. ==================== Błędy w Dzienniku zdarzeń: ========================= Dziennik Aplikacja: ================== Error: (08/13/2016 11:15:34 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (08/13/2016 10:49:16 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (08/13/2016 10:45:10 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Program GFExperience.exe w wersji 2.11.4.0 zatrzymał interakcję z systemem Windows i został zamknięty. Aby zobaczyć, czy jest dostępnych więcej informacji dotyczących tego problemu, sprawdź historię problemu w panelu sterowania Centrum akcji. Identyfikator procesu: 15d0 Godzina rozpoczęcia: 01d1f5a1acbe8390 Godzina zakończenia: 8 Ścieżka aplikacji: C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\GFExperience.exe Identyfikator raportu: c96ab6b9-6196-11e6-a9ef-50465d76931b Error: (08/13/2016 09:42:34 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (08/13/2016 09:41:47 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: SplitCamService.exe, wersja: 1.0.0.1, sygnatura czasowa: 0x526f8d9b Nazwa modułu powodującego błąd: SplitCamService.exe, wersja: 1.0.0.1, sygnatura czasowa: 0x526f8d9b Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x000015e0 Identyfikator procesu powodującego błąd: 0xb1c Godzina uruchomienia aplikacji powodującej błąd: 0xSplitCamService.exe0 Ścieżka aplikacji powodującej błąd: SplitCamService.exe1 Ścieżka modułu powodującego błąd: SplitCamService.exe2 Identyfikator raportu: SplitCamService.exe3 Error: (08/13/2016 08:24:28 PM) (Source: WinMgmt) (EventID: 24) (User: ) Description: CisWmiSELECT * FROM CisFileRatingChangeCisFileRatingChange//./root/cis Error: (08/13/2016 08:24:28 PM) (Source: WinMgmt) (EventID: 24) (User: ) Description: CisWmiSELECT * FROM CisStatusChangeCisStatusChange//./root/cis Error: (08/13/2016 08:24:28 PM) (Source: WinMgmt) (EventID: 24) (User: ) Description: CisWmiSELECT * FROM CisNotificationCisNotification//./root/cis Error: (08/13/2016 08:24:28 PM) (Source: WinMgmt) (EventID: 24) (User: ) Description: CisWmiSELECT * FROM FwAlertFwAlert//./root/cis Error: (08/13/2016 08:24:28 PM) (Source: WinMgmt) (EventID: 24) (User: ) Description: CisWmiSELECT * FROM DfAlertDfAlert//./root/cis Dziennik System: ============= Error: (08/13/2016 11:14:40 PM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: Upłynął limit czasu (30000 ms) podczas oczekiwania na połączenie się z usługą NVIDIA Streamer Network Service. Error: (08/13/2016 11:14:39 PM) (Source: Service Control Manager) (EventID: 7026) (User: ) Description: Nie można załadować następujących sterowników startu rozruchowego lub systemowego: Mam3.sys prohlp02 prosync1 sfhlp01 Error: (08/13/2016 10:47:50 PM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: Upłynął limit czasu (30000 ms) podczas oczekiwania na połączenie się z usługą NVIDIA Streamer Network Service. Error: (08/13/2016 10:47:49 PM) (Source: Service Control Manager) (EventID: 7026) (User: ) Description: Nie można załadować następujących sterowników startu rozruchowego lub systemowego: Mam3.sys prohlp02 prosync1 sfhlp01 Error: (08/13/2016 10:32:03 PM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: Upłynął limit czasu (30000 ms) podczas oczekiwania na połączenie się z usługą NVIDIA Streamer Network Service. Error: (08/13/2016 09:41:54 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Usługa SplitCamService niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. Error: (08/13/2016 09:41:43 PM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: Upłynął limit czasu (30000 ms) podczas oczekiwania na połączenie się z usługą NVIDIA Streamer Network Service. Error: (08/13/2016 09:41:41 PM) (Source: Service Control Manager) (EventID: 7026) (User: ) Description: Nie można załadować następujących sterowników startu rozruchowego lub systemowego: Mam3.sys prohlp02 prosync1 sfhlp01 Error: (08/13/2016 09:41:10 PM) (Source: EventLog) (EventID: 6008) (User: ) Description: Poprzednie zamknięcie systemu przy 20:26:36 na ‎2016-‎08-‎13 było nieoczekiwane. Error: (08/13/2016 08:21:21 PM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: Upłynął limit czasu (30000 ms) podczas oczekiwania na połączenie się z usługą NVIDIA Streamer Network Service. CodeIntegrity: =================================== Date: 2016-05-22 10:28:25.858 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\kinonivd.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2016-05-22 10:28:25.795 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\kinonivd.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2016-05-22 10:28:25.717 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\kinonivad.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2016-05-22 10:28:25.655 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\kinonivad.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2016-05-21 12:40:02.294 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\kinonivd.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2016-05-21 12:40:02.232 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\kinonivd.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2016-05-21 12:40:02.154 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\kinonivad.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2016-05-21 12:40:02.092 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\kinonivad.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2016-05-21 11:31:58.436 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\kinonivd.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2016-05-21 11:31:58.358 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\kinonivd.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. ==================== Statystyki pamięci =========================== Procesor: Intel(R) Xeon(R) CPU E3-1230 V2 @ 3.30GHz Procent pamięci w użyciu: 28% Całkowita pamięć fizyczna: 16320.14 MB Dostępna pamięć fizyczna: 11750.36 MB Całkowita pamięć wirtualna: 32638.47 MB Dostępna pamięć wirtualna: 28070.62 MB ==================== Dyski ================================ Drive c: () (Fixed) (Total:150.16 GB) (Free:27.41 GB) NTFS Drive d: () (Fixed) (Total:390.62 GB) (Free:206.11 GB) NTFS Drive e: () (Fixed) (Total:390.62 GB) (Free:228.5 GB) NTFS ==================== MBR & Tablica partycji ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: 77E1A6E3) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=150.2 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=390.6 GB) - (Type=07 NTFS) Partition 4: (Not Active) - (Size=390.6 GB) - (Type=07 NTFS) ==================== Koniec Addition.txt ============================