Rezultaty skanu uzupełniającego Farbar Recovery Scan Tool (x64) Wersja: 31-08-2016 Uruchomiony przez Stefan (08-09-2016 09:14:52) Uruchomiony z C:\Users\Stefan\Downloads Windows 7 Home Premium Service Pack 1 (X64) (2014-10-04 11:26:05) Tryb startu: Normal ========================================================== ==================== Konta użytkowników: ============================= Administrator (S-1-5-21-2469171809-464102732-1853336734-500 - Administrator - Disabled) Gość (S-1-5-21-2469171809-464102732-1853336734-501 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-2469171809-464102732-1853336734-1002 - Limited - Enabled) Stefan (S-1-5-21-2469171809-464102732-1853336734-1001 - Administrator - Enabled) => C:\Users\Stefan ==================== Centrum zabezpieczeń ======================== (Załączenie wejścia w fixlist spowoduje jego usunięcie.) AS: Windows Defender (Disabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Zainstalowane programy ====================== (W fixlist dozwolone tylko załączanie programów adware z flagą "Hidden" w celu ich uwidocznienia. Programy adware powinny zostać w poprawny sposób odinstalowane.) µTorrent (HKLM-x32\...\uTorrent) (Version: 2.2.1 - ) ActiveCheck component for HP Active Support Library (x32 Version: 3.0.0.3 - Hewlett-Packard) Hidden AdFender (HKLM-x32\...\AdFender) (Version: 1.83 - AdFender, Inc.) Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 17.0.0.124 - Adobe Systems Incorporated) Adobe Flash Player 17 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 17.0.0.169 - Adobe Systems Incorporated) Adobe Flash Player 22 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 22.0.0.209 - Adobe Systems Incorporated) Adobe Reader XI (11.0.10) - Polish (HKLM-x32\...\{AC76BA86-7AD7-1045-7B44-AB0000000001}) (Version: 11.0.10 - Adobe Systems Incorporated) Android Studio (HKLM\...\Android Studio) (Version: 1.0 - Google Inc.) Archiwizator WinRAR (HKLM-x32\...\WinRAR archiver) (Version: - ) ATI Catalyst Install Manager (HKLM\...\{9A11B072-9CE7-ABB9-2F65-EC971A7B839D}) (Version: 3.0.816.0 - ATI Technologies, Inc.) AuthenTec TrueAPI (Version: 1.2.1.33 - AuthenTec, Inc.) Hidden CCleaner (HKLM\...\CCleaner) (Version: 5.05 - Piriform) dreamboxEDIT -- The one and only settings editor for your Dreambox (HKLM-x32\...\dreamboxEDIT) (Version: - ) DreamStream E2 (HKLM-x32\...\845CCCCA-B77C-43EA-9A43-62DACEA4F902) (Version: 0.4.0 (Beta 14a) - Thomas "LazyT" Löwe) DVBViewer Pro Demo (HKLM-x32\...\DVBViewer Pro Demo_is1) (Version: 5.6.4 - CM&V) ESU for Microsoft Windows 7 (HKLM-x32\...\{3877C901-7B90-4727-A639-B6ED2DD59D43}) (Version: 1.0.0 - Hewlett-Packard) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 52.0.2743.116 - Google Inc.) Google Drive (HKLM-x32\...\{459CE109-4E46-4340-92BC-054642BC3BC2}) (Version: 1.31.2873.2758 - Google, Inc.) Google Update Helper (x32 Version: 1.3.25.11 - Google Inc.) Hidden Google Update Helper (x32 Version: 1.3.31.5 - Google Inc.) Hidden HP 3D DriveGuard (HKLM\...\{A2B01DF0-2C4A-4334-AC40-3E185C657722}) (Version: 4.1.16.1 - Hewlett-Packard Company) HP DVB-T TV Tuner 8.0.64.43 (HKLM-x32\...\HP DVB-T TV Tuner) (Version: 8.0.64.43 - ) HP On Screen Display (HKLM-x32\...\{ED1BD69A-07E3-418C-91F1-D856582581BF}) (Version: 1.3.5 - Hewlett-Packard Company) HP Quick Launch (HKLM-x32\...\{53B17A98-5BF0-40BC-AAFF-850A357975AC}) (Version: 2.7.2 - Hewlett-Packard Company) HP SimplePass 2011 (HKLM-x32\...\{BCFAA37D-A6DB-43BF-A351-43F183E52D07}) (Version: 5.1.0.495 - Hewlett-Packard) HP Software Framework (HKLM-x32\...\{A2FFB12E-4A66-478C-814C-26A9F54A2E17}) (Version: 4.5.10.1 - Hewlett-Packard Company) HP Support Solutions Framework (HKLM-x32\...\{2AD02988-163A-45E2-AC71-530B080D1A73}) (Version: 12.5.32.37 - HP) HPAsset component for HP Active Support Library (x32 Version: 3.0.2.2 - Hewlett-Packard) Hidden IDT Audio (HKLM-x32\...\{E3A5A8AB-58F6-45FF-AFCB-C9AE18C05001}) (Version: 1.0.6381.0 - IDT) Intel(R) Control Center (HKLM-x32\...\{F8A9085D-4C7A-41a9-8A77-C8998A96C421}) (Version: 1.2.1.1007 - Intel Corporation) Intel(R) Display Audio Driver (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 6.14.00.3074 - Intel Corporation) Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 7.0.0.1144 - Intel Corporation) Intel(R) PROSet/Wireless for Bluetooth(R) + High Speed (HKLM\...\{37EC048A-81A2-452A-8D1F-3BE2018E767D}) (Version: 15.1.0.0096 - Intel Corporation) Intel(R) PROSet/Wireless Software for Bluetooth(R) Technology (HKLM\...\{C7B40C35-85AE-4303-9EEA-1A1EA779664D}) (Version: 1.0.2.0511 - Intel Corporation) Intel(R) Rapid Storage Technology (HKLM-x32\...\{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}) (Version: 10.6.0.1002 - Intel Corporation) Intel(R) WiDi (HKLM-x32\...\{0DD706AF-B542-438C-999E-B30C7F625C8D}) (Version: 2.1.39.0 - Intel Corporation) Intel(R) Wireless Display (HKLM\...\{28EF7372-9087-4AC3-9B9F-D9751FCDF830}) (Version: - ) IrfanView (remove only) (HKLM-x32\...\IrfanView) (Version: 4.38 - Irfan Skiljan) Java 7 Update 79 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F06417079FF}) (Version: 7.0.790 - Oracle) Java 8 Update 25 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218025F0}) (Version: 8.0.250 - Oracle Corporation) Java SE Development Kit 7 Update 79 (64-bit) (HKLM\...\{64A3A4F4-B792-11D6-A78A-00B0D0170790}) (Version: 1.7.0.790 - Oracle) Kingo ROOT version 1.4.0.2390 (HKLM-x32\...\{AE7675D6-0B31-494F-ABFA-822E1A0FDF17}_is1) (Version: 1.4.0.2390 - Kingosoft Technology Ltd.) Malwarebytes Anti-Malware wersja 2.2.1.1043 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.2.1.1043 - Malwarebytes) MEGAsync (HKLM-x32\...\MEGAsync) (Version: - Mega Limited) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.40728.0 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) MSVC80_x64 (Version: 1.0.1.0 - Nokia) Hidden MSVC80_x86 (x32 Version: 1.0.1.0 - Nokia) Hidden NapiProjekt (2.2.0.2399) (HKLM-x32\...\NapiProjekt_is1) (Version: - ) Notepad++ (HKLM-x32\...\Notepad++) (Version: 6.8.8 - Notepad++ Team) Odkurzacz (HKLM-x32\...\Odkurzacz 14.2_is1) (Version: 14.2.0.4492 - FranmoSoftware - Maciej Opaliński) OpenOffice 4.1.1 (HKLM-x32\...\{B5373BA3-BAD7-4EAC-A9D2-B66B41B82C57}) (Version: 4.11.9775 - Apache Software Foundation) Oprogramowanie Intel® PROSet/Wireless WiFi (HKLM\...\{E2D0B67F-8032-4E11-87C6-C8C721D331B3}) (Version: 15.01.0500.0903 - Intel Corporation) Pakiet sterowników systemu Windows - eMPIA Technology Inc, (emAudio) MEDIA (08/31/2007 5.7.0831.0) (HKLM\...\1B8C0FE57993F0D33DD0A689D44B5B3D8954B0F7) (Version: 08/31/2007 5.7.0831.0 - eMPIA Technology Inc,) Philips SPC315NC Webcam (HKLM-x32\...\{D95F0670-EBA8-46B2-8ABE-9DDA2BC3DC7E}) (Version: 1.0.0.0 - ) PokerStars.eu (HKLM-x32\...\PokerStars.eu) (Version: - PokerStars.eu) PX Profile Update (x32 Version: 1.00.1. - AMD) Hidden Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.41.216.2011 - Realtek) Realtek PCIE Card Reader (HKLM-x32\...\{C1594429-8296-4652-BF54-9DBE4932A44C}) (Version: 6.1.7601.83 - Realtek Semiconductor Corp.) Recovery Manager (x32 Version: 2.0.0 - Hewlett-Packard) Hidden Renesas Electronics USB 3.0 Host Controller Driver (HKLM-x32\...\InstallShield_{5442DAB8-7177-49E1-8B22-09A049EA5996}) (Version: 2.1.19.0 - Renesas Electronics Corporation) Renesas Electronics USB 3.0 Host Controller Driver (x32 Version: 2.1.19.0 - Renesas Electronics Corporation) Hidden SAMSUNG USB Driver for Mobile Phones (HKLM\...\{D0795B21-0CDA-4a92-AB9E-6E92D8111E44}) (Version: 1.5.51.0 - SAMSUNG Electronics Co., Ltd.) Skype™ 7.0 (HKLM-x32\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 7.0.102 - Skype Technologies S.A.) Sony Mobile Update Engine (HKLM-x32\...\Update Engine) (Version: 2.15.10.201507101148 - Sony Mobile Communications Inc.) Sony PC Companion 2.10.303 (HKLM-x32\...\{F09EF8F2-0976-42C1-8D9D-8DF78337C6E3}) (Version: 2.10.303 - Sony) SopCast 3.9.3 (HKLM-x32\...\SopCast) (Version: 3.9.3 - www.sopcast.com) Synaptics TouchPad Driver (HKLM\...\SynTPDeinstKey) (Version: 15.3.11.0 - Synaptics Incorporated) TeamViewer 10 (HKLM-x32\...\TeamViewer) (Version: 10.0.45862 - TeamViewer) Total Commander 64-bit (Remove or Repair) (HKLM-x32\...\Totalcmd64) (Version: 8.51a - Ghisler Software GmbH) USB Audio/Video Driver (HKLM-x32\...\InstallShield_{050B869F-8ABE-447F-BDA0-374B49E10811}) (Version: 1.00.0000 - Nazwa firmy) USB Audio/Video Driver (x32 Version: 1.00.0000 - Nazwa firmy) Hidden Validity WBF DDK (HKLM\...\{79174AF2-6CB1-42F5-981E-66DCA49391D0}) (Version: 4.3.205.0 - Validity Sensors, Inc.) Viber (HKU\S-1-5-21-2469171809-464102732-1853336734-1001\...\Viber) (Version: 5.2.0.2546 - Viber Media Inc) Visual Studio 2012 x64 Redistributables (HKLM\...\{8C775E70-A791-4DA8-BCC3-6AB7136F4484}) (Version: 14.0.0.1 - AVG Technologies) Visual Studio 2012 x86 Redistributables (HKLM-x32\...\{98EFF19A-30AB-4E4B-B943-F06B1C63EBF8}) (Version: 14.0.0.1 - AVG Technologies CZ, s.r.o.) VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.1 - VideoLAN) Wise Disk Cleaner 9.06 (HKLM-x32\...\Wise Disk Cleaner_is1) (Version: 9.06 - WiseCleaner.com, Inc.) ==================== Niestandardowe rejestracje CLSID (filtrowane): ========================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) ==================== Zaplanowane zadania (filtrowane) ============= (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) Task: {00083533-60EC-4C15-BA52-EFA455DC414E} - System32\Tasks\{5DC0F6A7-3172-4D09-A1E0-14D850336455} => pcalua.exe -a "C:\Program Files (x86)\mpck\uninstaller.exe" Task: {197A1FA9-EEBE-405C-9608-916C95B76225} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe [2016-08-03] (HP Inc.) Task: {3CA2C85C-5810-4CF0-B93B-62DA0ACAA9F5} - System32\Tasks\UnregisterNonABICompliantCodeRange => C:\PROGRA~2\8js1E8B\i0o1E8B.bat <==== UWAGA Task: {5AF3E7FB-C40A-4373-A8D5-F2CE44FFE6DC} - System32\Tasks\Drogoghtsocerse Helper => C:\Program Files (x86)\Woctioncogesh\DrgHelperKlc.exe Task: {5F2B5512-FA12-44B2-9EF3-265F22FD5179} - System32\Tasks\{9D940323-563F-4E1C-9180-680B6CF4C100} => pcalua.exe -a "C:\Program Files (x86)\EasyHotspot\uninstaller.exe" Task: {7E55B478-CC77-4672-BAC1-B1ACD22319D9} - System32\Tasks\KuaiZip_Update => C:\Program Files\żěŃą\X86\Update.exe [2016-09-07] (Shanghai Guangle Network Technology Ltd ) <==== UWAGA Task: {9074A077-AD81-427D-86E9-7E8CE265A0EE} - \SMW_P -> Brak pliku <==== UWAGA Task: {94D1AD16-C892-4F93-9E93-7CDD82C28E60} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Report => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSFReport.exe [2016-05-09] (Hewlett-Packard) Task: {B7BB40EB-618B-4B9E-B316-55DA6BFD1E50} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2015-04-23] (Piriform Ltd) Task: {BDE61454-24C8-4F7F-B81C-FB2270245133} - System32\Tasks\{42EF222B-6DE4-40BF-9D91-F141719A754B} => pcalua.exe -a "C:\Program Files (x86)\MPC Cleaner\Uninstall.exe" -c /xuninstall Task: {D5ED73C3-0940-46E7-8561-82B4DEA3141A} - System32\Tasks\Odkurzacz => C:\Program Files (x86)\Odkurzacz\odkurzacz.exe [2016-09-07] (FranmoSoftware) Task: {F266B8A1-FFF9-4640-92BE-5EE2781C175B} - System32\Tasks\{C54ED715-26DF-4DDF-A85E-43143223D61F} => pcalua.exe -a "C:\Program Files\SpaceSoundPro\uninstaller.exe" (Załączenie wejścia w fixlist spowoduje przesunięcie pliku zadania (.job). Plik uruchamiany docelowo przez zadanie nie zostanie przeniesiony.) ==================== Skróty ============================= (Wybrane wejścia mogą zostać załączone w celu ich zresetowania lub usunięcia.) WMI_ActiveScriptEventConsumer_ASEC: <===== UWAGA ShortcutWithArgument: C:\Users\Stefan\Desktop\Skróty\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> hxxp://www%2dsearching.com/?prd=set_epf&s=g97zamobl2140bu,1adabb25-6e16-4bd3-b316-b5c3449df784, ShortcutWithArgument: C:\Users\Stefan\Desktop\Dysk D\SAMSUNG\sol\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> hxxp://www%2dsearching.com/?prd=set_epf&s=g97zamobl2140bu,1adabb25-6e16-4bd3-b316-b5c3449df784, ShortcutWithArgument: C:\Users\Stefan\AppData\Local\jervitheranaqientviriied\zaciphmuqshdreceward\Web Applications\_crx_onillcbgaeiljpiapgfijiijhadmpnff\PAPUTKI SKÓRZANE _ paputki-sweetbaby.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --profile-directory=Default --app-id=onillcbgaeiljpiapgfijiijhadmpnff ShortcutWithArgument: C:\Users\Stefan\AppData\Local\jervitheranaqientviriied\zaciphmuqshdreceward\Web Applications\_crx_jmollnljhngibnlbobjfamkabkbimnpd\Śledzenie przesyłek - Tracking _ emon.._.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --profile-directory=Default --app-id=jmollnljhngibnlbobjfamkabkbimnpd ShortcutWithArgument: C:\Users\Stefan\AppData\Local\jervitheranaqientviriied\zaciphmuqshdreceward\Web Applications\_crx_idmmgdbhdmmamcdblncdkefehbdjnnlh\Mini Disco - Kaczuszki - YouTube.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --profile-directory=Default --app-id=idmmgdbhdmmamcdblncdkefehbdjnnlh ShortcutWithArgument: C:\Users\Stefan\AppData\Local\Google\Chrome\User Data\Default\Web Applications\_crx_onillcbgaeiljpiapgfijiijhadmpnff\PAPUTKI SKÓRZANE _ paputki-sweetbaby.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --profile-directory=Default --app-id=onillcbgaeiljpiapgfijiijhadmpnff ShortcutWithArgument: C:\Users\Stefan\AppData\Local\Google\Chrome\User Data\Default\Web Applications\_crx_jmollnljhngibnlbobjfamkabkbimnpd\Śledzenie przesyłek - Tracking _ emon.._.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --profile-directory=Default --app-id=jmollnljhngibnlbobjfamkabkbimnpd ShortcutWithArgument: C:\Users\Stefan\AppData\Local\Google\Chrome\User Data\Default\Web Applications\_crx_idmmgdbhdmmamcdblncdkefehbdjnnlh\Mini Disco - Kaczuszki - YouTube.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --profile-directory=Default --app-id=idmmgdbhdmmamcdblncdkefehbdjnnlh ShortcutWithArgument: C:\Users\Stefan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer (64-bit).lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) -> hxxp://yeabests.cc ShortcutWithArgument: C:\Users\Stefan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk -> C:\Program Files (x86)\Internet Explorer\iexplore.exe (Microsoft Corporation) -> hxxp://yeabests.cc ShortcutWithArgument: C:\Users\Stefan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplikacje Chrome\Mini Disco - Kaczuszki - YouTube.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --profile-directory=Default --app-id=idmmgdbhdmmamcdblncdkefehbdjnnlh ShortcutWithArgument: C:\Users\Stefan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplikacje Chrome\PAPUTKI SKÓRZANE _ paputki-sweetbaby.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --profile-directory=Default --app-id=onillcbgaeiljpiapgfijiijhadmpnff ShortcutWithArgument: C:\Users\Stefan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplikacje Chrome\Śledzenie przesyłek - Tracking _ emon.._ (1).lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --profile-directory=Default --app-id=jmollnljhngibnlbobjfamkabkbimnpd ShortcutWithArgument: C:\Users\Stefan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplikacje Chrome\Śledzenie przesyłek - Tracking _ emon.._.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --profile-directory=Default --app-id=jmollnljhngibnlbobjfamkabkbimnpd ShortcutWithArgument: C:\Users\Stefan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Internet Explorer (No Add-ons).lnk -> C:\Program Files (x86)\Internet Explorer\iexplore.exe (Microsoft Corporation) -> hxxp://www%2dsearching.com/?prd=set_epf&s=g97zamobl2140bu,1adabb25-6e16-4bd3-b316-b5c3449df784, ShortcutWithArgument: C:\Users\Stefan\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --load-extension="C:\Users\Stefan\AppData\Local\kemgadeojglibflomicgnfeopkdfflnk" hxxp://yeabests.cc ShortcutWithArgument: C:\Users\Stefan\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --load-extension="C:\Users\Stefan\AppData\Local\kemgadeojglibflomicgnfeopkdfflnk" hxxp://yeabests.cc ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --load-extension="C:\Users\Stefan\AppData\Local\kemgadeojglibflomicgnfeopkdfflnk" hxxp://yeabests.cc ==================== Załadowane moduły (filtrowane) ============== 2015-07-02 17:12 - 2015-07-02 17:12 - 01927680 _____ () C:\Program Files\SpaceSoundPro\SpaceSoundPro.dll 2016-08-11 15:04 - 2016-08-11 15:04 - 00668672 ____N () C:\Users\Stefan\AppData\Roaming\Geunfy\Yjetipudl.dll 2014-05-01 16:13 - 2014-05-01 16:13 - 00470016 _____ () C:\Users\Stefan\AppData\Local\MEGAsync\ShellExtX64.dll 2016-09-07 21:03 - 2015-11-30 12:17 - 00165792 _____ () C:\Program Files\ZipTool\JZipExt.dll 2016-09-07 21:04 - 2016-09-07 21:04 - 00338368 _____ () C:\Program Files\żěŃą\X64\KZipShell.dll 2016-09-07 21:02 - 2016-09-07 21:02 - 00560768 _____ () C:\Program Files (x86)\KuaiZip\X64\KZipShell.dll 2016-09-07 20:56 - 2016-09-07 20:56 - 00176644 _____ () C:\Program Files (x86)\SOEasy.3\SSoEasyySvc3.exe 2016-09-07 20:56 - 2016-09-07 20:56 - 00176644 _____ () C:\Program Files (x86)\SOEasy.4\SSoEasyySvc4.exe 2016-09-07 20:56 - 2016-09-07 20:56 - 00176644 _____ () C:\Program Files (x86)\SOEasy.5\SSoEasyySvc5.exe 2016-09-07 20:56 - 2016-09-07 20:56 - 00176644 _____ () C:\Program Files (x86)\SOEasy.6\SSoEasyySvc6.exe 2016-08-11 15:04 - 2016-08-11 15:04 - 00170496 ____N () C:\Users\Stefan\AppData\Roaming\Geunfy\Geunfy.exe 2016-05-19 16:41 - 2016-05-19 16:41 - 00134656 ____N () C:\Users\Stefan\AppData\Local\Apps\2.0\abril.exe 2016-09-07 20:58 - 2016-09-07 20:58 - 00439296 _____ () C:\Program Files (x86)\30393644-1473274685-3043-3041-363831314531\knslE3F3.tmpfs 2016-09-07 21:02 - 2016-08-02 15:47 - 00899984 _____ () C:\Program Files (x86)\UCBrowser\Application\UCService.exe 2016-09-07 20:56 - 2016-09-07 20:56 - 00176644 ____N () D:\Program Files\MS.Default\Helper.3\Helper33.exe 2016-09-07 20:56 - 2016-09-07 20:56 - 00176644 ____N () D:\Program Files\MS.Default\Helper.4\Helper44.exe 2016-09-07 20:56 - 2016-09-07 20:56 - 00176644 ____N () D:\Program Files\MS.Default\Helper.5\Helper55.exe 2016-09-07 20:56 - 2016-09-07 20:56 - 00176644 ____N () D:\Program Files\MS.Default\Helper.6\Helper66.exe 2015-04-08 21:53 - 2015-04-08 21:53 - 00050688 _____ () C:\Program Files\CCleaner\lang\lang-1045.dll 2016-08-11 15:04 - 2016-08-11 15:04 - 00112128 ____N () C:\Users\Stefan\AppData\Roaming\Geunfy\Yurejjaeb.exe 2016-08-11 15:04 - 2016-08-11 15:04 - 00143872 ____N () C:\Users\Stefan\AppData\Roaming\Geunfy\Yjetipudl.exe 2016-09-08 08:32 - 2016-09-08 08:32 - 01893888 _____ () C:\Windows\Temp\B290.tmp 2016-09-07 15:02 - 2016-09-07 15:02 - 00399360 _____ () C:\Windows\system32\bi3.exe 2016-08-08 21:45 - 2016-08-03 01:41 - 02366280 _____ () C:\Program Files (x86)\Google\Chrome\Application\52.0.2743.116\libglesv2.dll 2016-08-08 21:45 - 2016-08-03 01:40 - 00107848 _____ () C:\Program Files (x86)\Google\Chrome\Application\52.0.2743.116\libegl.dll 2016-09-06 19:31 - 2016-09-02 11:11 - 30996160 _____ () C:\Users\Stefan\AppData\Local\Google\Chrome\User Data\PepperFlash\23.0.0.162\pepflashplayer.dll 2016-07-21 09:30 - 2016-07-21 09:30 - 00239016 _____ () c:\program files (x86)\ludashi\lpi\hpsvc.dll 2016-09-07 21:02 - 2016-09-07 21:02 - 00216704 _____ () c:\program files (x86)\kuaizip\x86\kuaizipupdatechecker.dll 2016-09-07 21:04 - 2016-09-07 21:04 - 00219072 _____ () c:\program files\żěńą\x86\kuaizipupdatechecker.dll 2016-09-07 21:03 - 2015-10-15 13:21 - 00163344 _____ () C:\Program Files (x86)\GreatMaker\MaohaWiFi\maohasubstat.dll 2016-09-07 21:03 - 2014-12-18 09:02 - 00261600 _____ () C:\Program Files (x86)\GreatMaker\MaohaWiFi\Updater\CheckUpdate.dll 2016-09-07 21:03 - 2016-05-31 10:51 - 00237088 _____ () C:\Program Files (x86)\GreatMaker\MaohaWiFi\tipsdll.dll 2016-09-07 21:03 - 2014-08-19 09:36 - 00206816 _____ () C:\Program Files (x86)\GreatMaker\MaohaWiFi\CrRpt.dll 2016-09-07 21:03 - 2015-11-30 12:16 - 00114080 _____ () c:\program files\ziptool\ziphost.dll 2016-09-07 21:03 - 2015-11-30 12:17 - 00085920 _____ () c:\program files\ziptool\ZipUpdater\ZipUpdate.dll 2016-09-07 21:03 - 2015-11-30 12:15 - 00261536 _____ () c:\program files\ziptool\CheckUpdate.dll 2016-09-07 21:03 - 2015-11-30 12:17 - 00084384 _____ () c:\program files\ziptool\ZipSubmit\ZipSubmit.dll 2016-09-07 21:03 - 2015-11-30 12:15 - 00164768 _____ () c:\program files\ziptool\substat.dll 2016-09-07 21:03 - 2015-11-30 12:16 - 00095648 _____ () c:\program files\ziptool\ZipPlug.dll 2016-09-07 21:03 - 2015-11-30 12:16 - 00164256 _____ () c:\program files\ziptool\wchsubstat.dll 2016-09-07 21:03 - 2015-11-30 12:15 - 00244640 _____ () c:\program files\ziptool\tipsdll.dll 2016-08-11 15:04 - 2016-08-11 15:04 - 00258560 ____N () C:\Users\Stefan\AppData\Roaming\Geunfy\Yurejjaeb.dll 2014-10-05 18:31 - 2014-10-05 18:31 - 00172544 _____ () C:\Windows\assembly\NativeImages_v2.0.50727_32\IsdiInterop\2c3ee4339f14af1e4dfc45a8964dedfb\IsdiInterop.ni.dll 2014-10-04 12:59 - 2011-05-20 10:05 - 00059904 _____ () C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IsdiInterop.dll ==================== Alternate Data Streams (filtrowane) ========= (Załączenie wejścia w fixlist spowoduje usunięcie strumienia ADS.) ==================== Tryb awaryjny (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Wartość "AlternateShell" zostanie przywrócona.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PEVSystemStart => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\procexp90.Sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\PEVSystemStart => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\procexp90.Sys => ""="Driver" ==================== Powiązania plików (filtrowane) =============== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci.) ==================== Internet Explorer - Witryny zaufane i z ograniczeniami =============== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru.) ==================== Hosts - zawartość: ========================== (Użycie dyrektywy Hosts: w fixlist spowoduje reset pliku Hosts.) 2009-07-14 04:34 - 2016-09-08 09:00 - 00000907 ____A C:\Windows\system32\Drivers\etc\hosts 107.178.255.88 www.statcounter.com 107.178.255.88 statcounter.com 107.178.255.88 ssl.goo.88 partner.googleadservices.com 107.178.255.88 google-analytics.com 107.178.255.88 www.statcounter.com 107.178.255.88 statcounter.com 107.178.255.88 ssl.goo.88 partner.googleadservices.com 107.178.255.88 google-analytics.com 127.0.0.1 localhost 127.0.0.1 down.baidu2016.com 127.0.0.1 123.sogou.com 127.0.0.1 www.czzsyzgm.com 127.0.0.1 www.czzsyzxl.com 127.0.0.1 union.baidu2019.com 127.0.0.1 down.baidu2016.com 127.0.0.1 123.sogou.com 127.0.0.1 www.czzsyzgm.com 127.0.0.1 www.czzsyzxl.com 127.0.0.1 union.baidu2019.com 127.0.0.1 down.baidu2016.com 127.0.0.1 123.sogou.com 127.0.0.1 www.czzsyzgm.com 127.0.0.1 www.czzsyzxl.com 127.0.0.1 union.baidu2019.com ==================== Inne obszary ============================ (Obecnie brak automatycznej naprawy dla tej sekcji.) HKU\S-1-5-21-2469171809-464102732-1853336734-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Stefan\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg DNS Servers: 192.168.1.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Zapora systemu Windows [funkcja włączona] ==================== MSCONFIG/TASK MANAGER - Wyłączone elementy == (Obecnie brak automatycznej naprawy dla tej sekcji.) ==================== Reguły Zapory systemu Windows (filtrowane) =============== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) FirewallRules: [{2DAB4251-31BC-42B9-9976-286983022BDB}] => (Allow) C:\Program Files (x86)\Intel Corporation\Intel WiDi\WiDiApp.exe FirewallRules: [{46A24C98-30A2-4AB5-BE9D-9D25C6D25B11}] => (Allow) C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe FirewallRules: [TCP Query User{EDE75602-3AAE-4ACD-B078-B05C2FB8071C}C:\program files (x86)\sopcast\sopcast.exe] => (Allow) C:\program files (x86)\sopcast\sopcast.exe FirewallRules: [UDP Query User{92F26C6E-FD04-4178-B7FA-827DD974FDB5}C:\program files (x86)\sopcast\sopcast.exe] => (Allow) C:\program files (x86)\sopcast\sopcast.exe FirewallRules: [{26B61885-C19D-4B18-BC24-26AF2CA929DA}] => (Allow) C:\Program Files (x86)\NapiProjekt\napisy.exe FirewallRules: [{0D2C1474-8898-45C9-A82C-69337A82E47F}] => (Allow) C:\Program Files (x86)\NapiProjekt\napisy.exe FirewallRules: [{65C0C37E-1024-4629-B283-E44C0FA2D55D}] => (Allow) C:\Program Files (x86)\uTorrent\uTorrent.exe FirewallRules: [{A6EE7A04-6132-40E6-80A1-36BD47378537}] => (Allow) C:\Program Files (x86)\uTorrent\uTorrent.exe FirewallRules: [TCP Query User{26A4A1DB-C600-484B-A64B-A818121B6774}C:\program files (x86)\internet explorer\iexplore.exe] => (Allow) C:\program files (x86)\internet explorer\iexplore.exe FirewallRules: [UDP Query User{61993CD7-BC65-4D15-A0B7-6CC6C951A37F}C:\program files (x86)\internet explorer\iexplore.exe] => (Allow) C:\program files (x86)\internet explorer\iexplore.exe FirewallRules: [{714F88CF-FC23-4423-8630-443CB0C0F6B7}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe FirewallRules: [TelnetServer-TlntSvr-TCP-In] => (Allow) %systemroot%\system32\tlntsvr.exe FirewallRules: [TelnetServer-Tlntadmn-RPC-In] => (Allow) %systemroot%\system32\tlntsvr.exe FirewallRules: [TCP Query User{6B7B69F8-517D-450D-B02C-0EFA0AA072E3}C:\program files (x86)\videolan\vlc\vlc.exe] => (Allow) C:\program files (x86)\videolan\vlc\vlc.exe FirewallRules: [UDP Query User{30A40C78-FE66-4885-9568-CC1EB2703A08}C:\program files (x86)\videolan\vlc\vlc.exe] => (Allow) C:\program files (x86)\videolan\vlc\vlc.exe FirewallRules: [TCP Query User{A26F06D3-C5EC-4872-A9AF-8804087E71A6}C:\program files (x86)\dreamstream-e2\dreamstream.exe] => (Allow) C:\program files (x86)\dreamstream-e2\dreamstream.exe FirewallRules: [UDP Query User{E457FABD-9771-46E6-B5FB-A2E77342C425}C:\program files (x86)\dreamstream-e2\dreamstream.exe] => (Allow) C:\program files (x86)\dreamstream-e2\dreamstream.exe FirewallRules: [TCP Query User{248293A8-75A2-48B4-8BE6-3129FF3E666E}C:\totalcmd\totalcmd.exe] => (Allow) C:\totalcmd\totalcmd.exe FirewallRules: [UDP Query User{D7C9818B-9B4C-4E49-82C0-F447C52807EC}C:\totalcmd\totalcmd.exe] => (Allow) C:\totalcmd\totalcmd.exe FirewallRules: [TCP Query User{3D1EEB85-62F4-4971-BA23-70562B7A43E9}C:\program files\android\android studio\bin\studio64.exe] => (Allow) C:\program files\android\android studio\bin\studio64.exe FirewallRules: [UDP Query User{FF891E1E-5B0D-4FFC-B0B0-A4006181DEBD}C:\program files\android\android studio\bin\studio64.exe] => (Allow) C:\program files\android\android studio\bin\studio64.exe FirewallRules: [TCP Query User{92440D88-C9AD-4138-B3E6-2CAC218DA5AC}C:\program files\java\jdk1.7.0_79\bin\java.exe] => (Allow) C:\program files\java\jdk1.7.0_79\bin\java.exe FirewallRules: [UDP Query User{0A8C44E2-B0BC-4A83-A70D-DAB3A9E093BF}C:\program files\java\jdk1.7.0_79\bin\java.exe] => (Allow) C:\program files\java\jdk1.7.0_79\bin\java.exe FirewallRules: [{755F276B-794E-4B6D-9312-5D7186CE6F4D}] => (Allow) C:\Program Files (x86)\Sony Mobile\Update Engine\Sony Mobile Update Engine.exe FirewallRules: [{D32C26E9-6093-40E7-ADD0-E945853D57F1}] => (Allow) C:\Program Files (x86)\Sony Mobile\Update Engine\Sony Mobile Update Engine.exe FirewallRules: [{53C48A55-9498-49BF-9A18-75D6C3896600}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe FirewallRules: [{8008A1AF-9048-4D50-8F2E-F408C3D39453}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe FirewallRules: [{6AD2E54B-EA5E-4079-8B78-A8B7D30021CD}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe FirewallRules: [{7940560F-876D-4733-851A-267B911649A9}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe FirewallRules: [TCP Query User{445FD686-83EE-46C4-AADC-13FBD98D259F}C:\totalcmd\totalcmd64.exe] => (Allow) C:\totalcmd\totalcmd64.exe FirewallRules: [UDP Query User{151D4A70-337F-40B0-BDF2-89C09242E0CA}C:\totalcmd\totalcmd64.exe] => (Allow) C:\totalcmd\totalcmd64.exe FirewallRules: [TCP Query User{2F484075-30DC-41BA-91F8-B17A84DD481E}C:\program files (x86)\dreamstream-e2\dreamstream.exe] => (Block) C:\program files (x86)\dreamstream-e2\dreamstream.exe FirewallRules: [UDP Query User{A3A52802-EE81-4718-8B4A-EDC6FDA16D7B}C:\program files (x86)\dreamstream-e2\dreamstream.exe] => (Block) C:\program files (x86)\dreamstream-e2\dreamstream.exe FirewallRules: [{8CF41820-E275-48B3-A9E8-7D91EAF1B1A5}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe FirewallRules: [{777AE576-CE49-43D4-A5F0-13A884026363}] => (Allow) C:\Program Files (x86)\UCBrowser\Application\UCBrowser.exe FirewallRules: [{A9EB676B-4BC8-41E6-9652-5F706A52F891}] => (Allow) C:\Program Files (x86)\LuDaShi\ComputerZTray.exe FirewallRules: [{F50F6F7B-8465-4C14-BA91-E22426153F9F}] => (Allow) C:\Program Files (x86)\LuDaShi\ComputerZTray.exe FirewallRules: [{F8D4DDB0-5D6E-4DFD-9742-E0CFCADBC0D8}] => (Allow) C:\Program Files (x86)\GreatMaker\MaohaWiFi\MaohaWifiSvr.exe ==================== Punkty Przywracania systemu ========================= 06-09-2016 17:03:24 Zainstalowane USB Audio/Video Driver 06-09-2016 21:00:06 Installed SmartDVB 07-09-2016 14:37:44 Removed SmartDVB 07-09-2016 14:38:52 Removed ArcSoft TotalMedia Theatre 6 07-09-2016 14:41:33 Installed ArcSoft TotalMedia Theatre 6 07-09-2016 15:05:36 Removed ArcSoft TotalMedia Theatre 6 07-09-2016 16:10:02 Zainstalowane TotalMedia 07-09-2016 21:04:08 JRT Pre-Junkware Removal 07-09-2016 21:07:34 Usunięte TotalMedia 08-09-2016 08:20:44 JRT Pre-Junkware Removal ==================== Wadliwe urządzenia w Menedżerze urządzeń ============= Name: Teredo Tunneling Pseudo-Interface Description: Karta tunelowania Teredo firmy Microsoft Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318} Manufacturer: Microsoft Service: tunnel Problem: : This device cannot start. (Code10) Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device. On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard. Name: KuaiZipDrive2 Description: KuaiZipDrive2 Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1} Manufacturer: Service: KuaiZipDrive2 Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24) Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed. Devices stay in this state if they have been prepared for removal. After you remove the device, this error disappears.Remove the device, and this error should be resolved. Name: Zewnętrzne urządzenie Bluetooth Description: Zewnętrzne urządzenie Bluetooth Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: ArcCtrl Description: ArcCtrl Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1} Manufacturer: Service: ArcCtrl Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24) Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed. Devices stay in this state if they have been prepared for removal. After you remove the device, this error disappears.Remove the device, and this error should be resolved. ==================== Błędy w Dzienniku zdarzeń: ========================= Dziennik Aplikacja: ================== Error: (09/08/2016 08:02:04 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected. Error: (09/07/2016 09:12:42 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected. Error: (09/07/2016 09:07:34 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: ) Description: Przetwarzanie wywołania OnIdentity() w obiekcie System Writer przez Usługi kryptograficzne nie powiodło się. Details: AddWin32ServiceFiles: Unable to back up image of service Double Spaced Firewall since QueryServiceConfig API failed System Error: Nie można odnaleźć określonego pliku. . Error: (09/07/2016 09:07:34 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: ) Description: Przetwarzanie wywołania OnIdentity() w obiekcie System Writer przez Usługi kryptograficzne nie powiodło się. Details: AddWin32ServiceFiles: Unable to back up image of service Search Module Update since QueryServiceConfig API failed System Error: Nie można odnaleźć określonego pliku. . Error: (09/07/2016 09:07:34 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: ) Description: Przetwarzanie wywołania OnIdentity() w obiekcie System Writer przez Usługi kryptograficzne nie powiodło się. Details: AddLegacyDriverFiles: Unable to back up image of binary cherimoya. System Error: Nie można odnaleźć określonego pliku. . Error: (09/07/2016 09:06:18 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: ) Description: Przetwarzanie wywołania OnIdentity() w obiekcie System Writer przez Usługi kryptograficzne nie powiodło się. Details: AddLegacyDriverFiles: Unable to back up image of binary bsdpr64 service. System Error: Odmowa dostępu. . Error: (09/07/2016 09:06:18 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: ) Description: Przetwarzanie wywołania OnIdentity() w obiekcie System Writer przez Usługi kryptograficzne nie powiodło się. Details: AddLegacyDriverFiles: Unable to back up image of binary bsdpf64 service. System Error: Odmowa dostępu. . Error: (09/07/2016 08:57:52 PM) (Source: MsiInstaller) (EventID: 10005) (User: Stefan-HP) Description: Product: Online.io Application -- Online.io Application cannot be installed on systems with less physical memory than 4096 MB. Error: (09/07/2016 05:06:31 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected. Error: (09/07/2016 03:46:04 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: BlazeHDTV.EXE, wersja: 1.0.0.1, sygnatura czasowa: 0x504d8508 Nazwa modułu powodującego błąd: DTVPlayerCtrl.DLL_unloaded, wersja: 0.0.0.0, sygnatura czasowa: 0x51f9d826 Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x61052a22 Identyfikator procesu powodującego błąd: 0x11b8 Godzina uruchomienia aplikacji powodującej błąd: 0x01d2090db02eb44f Ścieżka aplikacji powodującej błąd: C:\Program Files (x86)\BlazeVideo\BlazeVideo HDTV Player Standard\BlazeHDTV.EXE Ścieżka modułu powodującego błąd: DTVPlayerCtrl.DLL Identyfikator raportu: 6b6db690-7501-11e6-acae-ac7289ddf2fb Dziennik System: ============= Error: (09/08/2016 09:06:07 AM) (Source: Microsoft-Windows-DNS-Client) (EventID: 1012) (User: ZARZĄDZANIE NT) Description: Wystąpił błąd podczas próby odczytu lokalnego pliku hosts. Error: (09/08/2016 09:06:07 AM) (Source: Microsoft-Windows-DNS-Client) (EventID: 1012) (User: ZARZĄDZANIE NT) Description: Wystąpił błąd podczas próby odczytu lokalnego pliku hosts. Error: (09/08/2016 09:06:01 AM) (Source: Microsoft-Windows-DNS-Client) (EventID: 1012) (User: ZARZĄDZANIE NT) Description: Wystąpił błąd podczas próby odczytu lokalnego pliku hosts. Error: (09/08/2016 09:00:23 AM) (Source: Microsoft-Windows-DNS-Client) (EventID: 1012) (User: ZARZĄDZANIE NT) Description: Wystąpił błąd podczas próby odczytu lokalnego pliku hosts. Error: (09/08/2016 08:19:45 AM) (Source: DCOM) (EventID: 10010) (User: ) Description: Serwer {995C996E-D918-4A8C-A302-45719A6F4EA7} nie zarejestrował się w modelu DCOM w wymaganym czasie. Error: (09/08/2016 08:03:01 AM) (Source: Service Control Manager) (EventID: 7026) (User: ) Description: Nie można załadować następujących sterowników startu rozruchowego lub systemowego: ArcCtrl Error: (09/08/2016 08:01:52 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi KuaiZipDrive2 z powodu następującego błędu: Nie można utworzyć pliku, który już istnieje. Error: (09/07/2016 09:14:52 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi Usługa Google Update (gupdate) z powodu następującego błędu: Nie można odnaleźć określonego pliku. Error: (09/07/2016 09:12:49 PM) (Source: Service Control Manager) (EventID: 7026) (User: ) Description: Nie można załadować następujących sterowników startu rozruchowego lub systemowego: ArcCtrl Error: (09/07/2016 09:12:28 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi KuaiZipDrive2 z powodu następującego błędu: Nie można utworzyć pliku, który już istnieje. CodeIntegrity: =================================== Date: 2016-09-07 21:11:03.440 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\SpaceSoundPro\SpaceSoundPro.dll because the set of per-page image hashes could not be found on the system. Date: 2016-09-07 21:11:03.424 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\SpaceSoundPro\SpaceSoundPro.dll because the set of per-page image hashes could not be found on the system. Date: 2016-09-07 21:10:39.337 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\SpaceSoundPro\SpaceSoundPro.dll because the set of per-page image hashes could not be found on the system. Date: 2016-09-07 21:10:39.321 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\SpaceSoundPro\SpaceSoundPro.dll because the set of per-page image hashes could not be found on the system. Date: 2016-09-07 21:10:19.337 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\SpaceSoundPro\SpaceSoundPro.dll because the set of per-page image hashes could not be found on the system. Date: 2016-09-07 21:10:19.337 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\SpaceSoundPro\SpaceSoundPro.dll because the set of per-page image hashes could not be found on the system. Date: 2016-09-07 21:09:49.540 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\SpaceSoundPro\SpaceSoundPro.dll because the set of per-page image hashes could not be found on the system. Date: 2016-09-07 21:09:49.540 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\SpaceSoundPro\SpaceSoundPro.dll because the set of per-page image hashes could not be found on the system. Date: 2016-09-07 21:08:49.230 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\SpaceSoundPro\SpaceSoundPro.dll because the set of per-page image hashes could not be found on the system. Date: 2016-09-07 21:08:49.214 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\SpaceSoundPro\SpaceSoundPro.dll because the set of per-page image hashes could not be found on the system. ==================== Statystyki pamięci =========================== Procesor: Intel(R) Core(TM) i5-2430M CPU @ 2.40GHz Procent pamięci w użyciu: 66% Całkowita pamięć fizyczna: 4043.86 MB Dostępna pamięć fizyczna: 1355.27 MB Całkowita pamięć wirtualna: 8085.91 MB Dostępna pamięć wirtualna: 5376.54 MB ==================== Dyski ================================ Drive c: () (Fixed) (Total:447.83 GB) (Free:225.18 GB) NTFS ==>[system z komponentami startowymi (pozyskano odczytując dysk)] Drive d: (RECOVERY) (Fixed) (Total:17.64 GB) (Free:1.9 GB) NTFS ==>[system z komponentami startowymi (pozyskano odczytując dysk)] Drive e: (LV5H) (CDROM) (Total:0.2 GB) (Free:0 GB) CDFS ==================== MBR & Tablica partycji ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: 990190A5) Partition 1: (Active) - (Size=199 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=447.8 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=17.6 GB) - (Type=07 NTFS) Partition 4: (Not Active) - (Size=103 MB) - (Type=0C) ==================== Koniec Addition.txt ============================