Rezultaty skanu uzupełniającego Farbar Recovery Scan Tool (x64) Wersja: 30-09-2016 Uruchomiony przez Sebastian (01-10-2016 14:30:32) Uruchomiony z C:\Users\Sebastian\Desktop\Nowy folder Windows 7 Home Premium Service Pack 1 (X64) (2014-11-16 14:50:03) Tryb startu: Normal ========================================================== ==================== Konta użytkowników: ============================= Administrator (S-1-5-21-3580256871-2974044544-3284647674-500 - Administrator - Disabled) Gość (S-1-5-21-3580256871-2974044544-3284647674-501 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-3580256871-2974044544-3284647674-1003 - Limited - Enabled) Sebastian (S-1-5-21-3580256871-2974044544-3284647674-1000 - Administrator - Enabled) => C:\Users\Sebastian ==================== Centrum zabezpieczeń ======================== (Załączenie wejścia w fixlist spowoduje jego usunięcie.) AV: Panda Free Antivirus (Disabled - Up to date) {46AEFD02-ACA3-E038-1FA5-4A15EFD361E0} AS: Windows Defender (Enabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Panda Free Antivirus (Disabled - Up to date) {FDCF1CE6-8A99-EFB6-2515-716794542B5D} FW: Panda Firewall (Disabled) {7E957C27-E6CC-E160-34FA-E3201100269B} ==================== Zainstalowane programy ====================== (W fixlist dozwolone tylko załączanie programów adware z flagą "Hidden" w celu ich uwidocznienia. Programy adware powinny zostać w poprawny sposób odinstalowane.) 7 Days to Die (HKLM\...\Steam App 251570) (Version: - The Fun Pimps) Ad Muncher v4.94.34121 (Free) (HKLM-x32\...\Ad Muncher) (Version: - ) Adobe Flash Player 23 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 23.0.0.162 - Adobe Systems Incorporated) Adobe Flash Player 23 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 23.0.0.162 - Adobe Systems Incorporated) AIDA64 Extreme v5.00 (HKLM-x32\...\AIDA64 Extreme_is1) (Version: 5.00 - FinalWire Ltd.) Archeage (HKLM-x32\...\Glyph Archeage) (Version: - Trion Worlds, Inc.) ATI AVIVO64 Codecs (Version: 11.6.0.10419 - ATI Technologies Inc.) Hidden ATI Catalyst Install Manager (HKLM\...\{DD99C9BF-5A9C-25B5-EF7D-AA9A0DB12800}) (Version: 3.0.825.0 - ATI Technologies, Inc.) Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment) Bethesda.net Launcher (HKLM-x32\...\{3448917E-E4FE-4E30-9502-9FD52EABB6F5}_is1) (Version: 1.0 - Bethesda Softworks) BitComet 1.37 64-bit (HKLM-x32\...\BitComet_x64) (Version: 1.37 - CometNetwork) BlackBerry 10 Desktop Software (HKLM-x32\...\{a0642dd3-1105-464b-84c8-caaf676c39c8}) (Version: 1.1.0.22 - BlackBerry) BlackBerry Communication Drivers (x32 Version: 8.0.0.119 - BlackBerry Ltd.) Hidden BlackBerry Device Drivers (x32 Version: 8.0.0.119 - BlackBerry Ltd.) Hidden BlackBerry Link (x32 Version: 1.2.4.28 - BlackBerry) Hidden BlackBerry Link Remover (x32 Version: 1.2.4.0 - BlackBerry Ltd.) Hidden Counter-Strike: Global Offensive (HKLM-x32\...\Steam App 730) (Version: - Valve) Don't Starve (HKLM-x32\...\Steam App 219740) (Version: - Klei Entertainment) Dying Light (HKLM-x32\...\Steam App 239140) (Version: - Techland) Fallout Shelter (HKLM-x32\...\Fallout Shelter) (Version: - Bethesda Softworks) Far Cry 4 (HKLM-x32\...\Steam App 298110) (Version: - Ubisoft Montreal, Red Storm, Shanghai, Toronto, Kiev) GameRanger (HKU\S-1-5-21-3580256871-2974044544-3284647674-1000\...\GameRanger) (Version: - GameRanger Technologies) Gamma Control version 3 (HKLM-x32\...\{AB451963-CD15-4A27-866C-97B92268BE75}_is1) (Version: 3 - DesktopNerds) GG (HKU\S-1-5-21-3580256871-2974044544-3284647674-1000\...\GG) (Version: 12 - GG Network S.A.) Glyph (HKLM-x32\...\Glyph) (Version: - Trion Worlds, Inc.) Hammerwatch (HKLM-x32\...\Steam App 239070) (Version: - Crackshell) Hearthstone (HKLM-x32\...\Hearthstone) (Version: - Blizzard Entertainment) HydraVision (x32 Version: 4.2.200.0 - ATI Technologies Inc.) Hidden K-Lite Codec Pack 10.8.5 Full (HKLM-x32\...\KLiteCodecPack_is1) (Version: 10.8.5 - ) League of Legends (HKLM-x32\...\League of Legends 3.0.1) (Version: 3.0.1 - Riot Games) League of Legends (x32 Version: 3.0.1 - Riot Games) Hidden Microsoft .NET Framework 4.6 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.6.00081 - Microsoft Corporation) Microsoft Games for Windows - LIVE Redistributable (HKLM-x32\...\{59E4543A-D49D-4489-B445-473D763C79AF}) (Version: 2.0.672.0 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft XNA Framework Redistributable 4.0 Refresh (HKLM-x32\...\{D69C8EDE-BBC5-436B-8E0E-C5A6D311CF4F}) (Version: 4.0.30901.0 - Microsoft Corporation) Mozilla Firefox 43.0.1 (x86 pl) (HKLM-x32\...\Mozilla Firefox 43.0.1 (x86 pl)) (Version: 43.0.1 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 43.0.1.5828 - Mozilla) NapiProjekt (2.2.0.2399) (HKLM-x32\...\NapiProjekt_is1) (Version: - ) Nero 6 Ultra Edition (HKLM-x32\...\Nero - Burning Rom!UninstallKey) (Version: - ) NVIDIA Drivers (HKLM\...\NVIDIA Drivers) (Version: 1.5 - ) NVIDIA PhysX (HKLM-x32\...\{46ED2B64-85C7-4E1F-920C-A555B21F2E4C}) (Version: 9.11.1111 - NVIDIA Corporation) OpenAL (HKLM-x32\...\OpenAL) (Version: - ) Origin (HKLM-x32\...\Origin) (Version: 9.5.2.2829 - Electronic Arts, Inc.) OSCAR Editor (x32 Version: 12.03.0004 - A4TECH) Hidden Panda Devices Agent (x32 Version: 1.03.08 - Panda Security) Hidden Panda Devices Agent (x32 Version: 1.08.00 - Panda Security) Hidden Panda Free Antivirus (HKLM-x32\...\Panda Universal Agent Endpoint) (Version: 17.00.01.0000 - Panda Security) Panda Free Antivirus (Version: 8.31.00 - Panda Security) Hidden Platform (x32 Version: 1.36 - VIA Technologies, Inc.) Hidden Sid Meier's Civilization V (HKLM\...\Steam App 8930) (Version: - Firaxis Games) Sid Meier's Civilization V (HKLM-x32\...\steam app 8930) (Version: - 2K Games, Inc.) Stardew Valley (HKLM\...\Steam App 413150) (Version: - ConcernedApe) Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation) TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.0.16 - TeamSpeak Systems GmbH) Terraria (HKLM\...\Steam App 105600) (Version: - Re-Logic) The Witcher 2: Assassins of Kings Enhanced Edition (HKLM-x32\...\Steam App 20920) (Version: - CD PROJEKT RED) Uplay (HKLM-x32\...\Uplay) (Version: 2.0 - Ubisoft) VIA Platforma Menedżera urządzeń (HKLM-x32\...\InstallShield_{20D4A895-748C-4D88-871C-FDB1695B0169}) (Version: 1.36 - VIA Technologies, Inc.) WinRAR 5.11 (64-bitowy) (HKLM\...\WinRAR archiver) (Version: 5.11.0 - win.rar GmbH) WMV9/VC-1 Video Playback (Version: 1.0.60419.2210 - ATI Technologies Inc.) Hidden Worms Armageddon (HKLM-x32\...\Steam App 217200) (Version: - Team17 Digital Ltd) X7 Oscar Editor (HKLM-x32\...\InstallShield_{3C2379D2-337A-4FFA-9017-BDFB80EC0931}) (Version: 12.03.0004 - A4TECH) ==================== Niestandardowe rejestracje CLSID (filtrowane): ========================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) CustomCLSID: HKU\S-1-5-21-3580256871-2974044544-3284647674-1000_Classes\CLSID\{E68D0A55-3C40-4712-B90D-DCFA93FF2534}\InprocServer32 -> C:\Users\Sebastian\AppData\Roaming\GG\ggdrive\ggdrive-menu.dll (GG Network S.A.) ==================== Zaplanowane zadania (filtrowane) ============= (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) Task: {52399AC6-A124-4A1D-92A3-3A213281AB06} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-09-14] (Adobe Systems Incorporated) (Załączenie wejścia w fixlist spowoduje przesunięcie pliku zadania (.job). Plik uruchamiany docelowo przez zadanie nie zostanie przeniesiony.) Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe ==================== Skróty ============================= (Wybrane wejścia mogą zostać załączone w celu ich zresetowania lub usunięcia.) ==================== Załadowane moduły (filtrowane) ============== 2012-03-20 11:59 - 2012-03-20 11:59 - 03340288 _____ () C:\Program Files (x86)\OSCAR Editor X7\OscarEditor.exe 2014-11-16 16:57 - 2011-06-20 10:28 - 00078448 ____R () C:\Program Files (x86)\VIA\VIAudioi\VDeck\QsApoApi64.dll 2014-11-16 16:57 - 2011-06-20 10:28 - 00386160 ____R () C:\Program Files (x86)\VIA\VIAudioi\VDeck\Dts2ApoApi64.dll 2014-11-16 16:57 - 2011-06-20 10:28 - 00621168 ____R () C:\Program Files (x86)\VIA\VIAudioi\VDeck\Skin.dll 2011-04-19 23:16 - 2011-04-19 23:16 - 00243712 _____ () C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLI.Aspect.CrossDisplay.Graphics.Dashboard.dll 2015-03-19 13:01 - 2015-03-19 13:01 - 00688888 _____ () C:\Program Files (x86)\Common Files\Research In Motion\nginx\nginx.exe 2015-12-15 19:17 - 2015-12-15 19:17 - 00618544 _____ () C:\Program Files (x86)\Panda Security\Panda Security Protection\SQLite3.dll 2015-03-19 12:22 - 2015-03-19 12:22 - 00094208 _____ () C:\Program Files (x86)\Common Files\Research In Motion\Tunnel Manager\libxpmux.dll 2010-12-02 17:56 - 2010-12-02 17:56 - 00815104 _____ () C:\Program Files (x86)\OSCAR Editor X7\Data\X7\Forms\OSD_Text\OSD_Text.dll 2011-01-09 20:45 - 2011-01-09 20:45 - 00088064 _____ () C:\Program Files (x86)\OSCAR Editor X7\DLL\DLL_MouseDeviceManager.dll 2012-02-07 11:20 - 2012-02-07 11:20 - 02413568 _____ () C:\Program Files (x86)\OSCAR Editor X7\Data\X7\Forms\ScreenCapture\ScreenCapture.dll 2011-03-21 19:33 - 2011-03-21 19:33 - 00999424 _____ () C:\Program Files (x86)\OSCAR Editor X7\Data\X7\Forms\TrayIconWebAdvertisement\TrayIconWebAdvertisement.dll 2010-09-20 14:18 - 2010-09-20 14:18 - 00085504 _____ () C:\Program Files (x86)\OSCAR Editor X7\DLL\DLL_ZoomControl.dll 2010-09-20 14:18 - 2010-09-20 14:18 - 00054272 _____ () C:\Program Files (x86)\OSCAR Editor X7\DLL\DLL_ScrollbarControl.dll 2011-04-12 15:14 - 2011-04-12 15:14 - 00063488 _____ () C:\Program Files (x86)\OSCAR Editor X7\DLL\DLL_AnalyzeGesturesInRight.dll 2010-11-01 20:16 - 2010-11-01 20:16 - 00062976 _____ () C:\Program Files (x86)\OSCAR Editor X7\DLL\DLL_AnalyzeGesturesInOne.dll 2011-08-10 13:43 - 2011-08-10 13:43 - 00118272 _____ () C:\Program Files (x86)\OSCAR Editor X7\DLL\DLL_Wheel4D.dll 2014-11-23 14:36 - 2007-02-22 14:20 - 00083456 _____ () C:\Program Files (x86)\DesktopNerds\Gamma Control\mhook.dll 2016-09-14 01:02 - 2016-09-14 01:02 - 19588800 _____ () C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_23_0_0_162.dll ==================== Alternate Data Streams (filtrowane) ========= (Załączenie wejścia w fixlist spowoduje usunięcie strumienia ADS.) ==================== Tryb awaryjny (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Wartość "AlternateShell" zostanie przywrócona.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\NanoServiceMain => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PSUAService => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\NanoServiceMain => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\PSUAService => ""="Service" ==================== Powiązania plików (filtrowane) =============== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci.) ==================== Internet Explorer - Witryny zaufane i z ograniczeniami =============== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru.) ==================== Hosts - zawartość: =============================== (Użycie dyrektywy Hosts: w fixlist spowoduje reset pliku Hosts.) 2009-07-14 04:34 - 2009-06-10 23:00 - 00000824 ____N C:\Windows\system32\Drivers\etc\hosts ==================== Inne obszary ============================ (Obecnie brak automatycznej naprawy dla tej sekcji.) HKU\S-1-5-21-3580256871-2974044544-3284647674-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\Sebastian\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg DNS Servers: 192.168.1.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Zapora systemu Windows [funkcja włączona] ==================== MSCONFIG/TASK MANAGER - Wyłączone elementy == ==================== Reguły Zapory systemu Windows (filtrowane) =============== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) FirewallRules: [{3C80C183-2977-47F0-90BE-89B7DB668221}] => (Allow) D:\Steam\Steam.exe FirewallRules: [{02D4339B-ABC2-413E-930C-29471AF0900B}] => (Allow) D:\Steam\Steam.exe FirewallRules: [{31ED79FF-1A05-4939-93CB-50A355FBB66B}] => (Allow) D:\Steam\bin\steamwebhelper.exe FirewallRules: [{767830AF-047E-412C-9087-43297DF1DCD7}] => (Allow) D:\Steam\bin\steamwebhelper.exe FirewallRules: [{7F78886E-3695-4982-8F3A-8ABEF79D17F5}] => (Allow) D:\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe FirewallRules: [{6B33C24A-9EE8-45C8-818D-480DF2FC3FEC}] => (Allow) D:\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe FirewallRules: [{E2B0B01B-C92B-45F0-8C94-7BBEA578CA75}] => (Allow) C:\Program Files\BitComet\BitComet.exe FirewallRules: [{1EC3C3B0-0379-4C6F-8FBC-0CF8197B5CFE}] => (Allow) C:\Program Files\BitComet\BitComet.exe FirewallRules: [{4D042019-0F70-4D94-8A57-5AF8A199EA4C}] => (Allow) C:\Program Files (x86)\NapiProjekt\napisy.exe FirewallRules: [{C19F6C29-3272-4A4F-B60B-C5E26047DE98}] => (Allow) C:\Program Files (x86)\NapiProjekt\napisy.exe FirewallRules: [TCP Query User{C11EE48B-C235-4C9A-AFBE-7813DAEF9F5F}C:\program files\java\jre1.8.0_25\bin\javaw.exe] => (Allow) C:\program files\java\jre1.8.0_25\bin\javaw.exe FirewallRules: [UDP Query User{2C5470EB-600C-4C5C-8AEA-9575BF489037}C:\program files\java\jre1.8.0_25\bin\javaw.exe] => (Allow) C:\program files\java\jre1.8.0_25\bin\javaw.exe FirewallRules: [{873DCF01-6423-4B3E-A756-5D046C4F6025}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3526\Agent.exe FirewallRules: [{6AC49A4F-2830-4F66-9D7D-B87ABEAF4402}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3526\Agent.exe FirewallRules: [{A49B2BB0-04B2-4ED9-AB3D-3D3A43094B3A}] => (Allow) D:\BattleNet\Battle.net\Battle.net.exe FirewallRules: [{F1FB96AC-637A-4E04-B46D-971947EDFAFF}] => (Allow) D:\BattleNet\Battle.net\Battle.net.exe FirewallRules: [{36D4757B-EC69-4581-A9E6-5E33491984C1}] => (Allow) D:\Diablo III\Diablo III\Diablo III.exe FirewallRules: [{28EFFBB6-C066-4089-97A5-4F10B9EB0A9B}] => (Allow) D:\Diablo III\Diablo III\Diablo III.exe FirewallRules: [TCP Query User{D85E0AB7-2999-401C-8206-940254A75F81}D:\league of legends\rads\projects\lol_patcher\releases\0.0.0.14\deploy\lolpatcher.exe] => (Allow) D:\league of legends\rads\projects\lol_patcher\releases\0.0.0.14\deploy\lolpatcher.exe FirewallRules: [UDP Query User{A53AAC30-2322-4653-9725-0A936CB7697C}D:\league of legends\rads\projects\lol_patcher\releases\0.0.0.14\deploy\lolpatcher.exe] => (Allow) D:\league of legends\rads\projects\lol_patcher\releases\0.0.0.14\deploy\lolpatcher.exe FirewallRules: [TCP Query User{4CBA3944-2E03-47AF-A01C-0374AACD7A52}D:\league of legends\rads\projects\lol_patcher\releases\0.0.0.14\deploy\lolpatcherux.exe] => (Allow) D:\league of legends\rads\projects\lol_patcher\releases\0.0.0.14\deploy\lolpatcherux.exe FirewallRules: [UDP Query User{B87147C3-2005-4C2C-82CC-5B0B282F07DD}D:\league of legends\rads\projects\lol_patcher\releases\0.0.0.14\deploy\lolpatcherux.exe] => (Allow) D:\league of legends\rads\projects\lol_patcher\releases\0.0.0.14\deploy\lolpatcherux.exe FirewallRules: [{77E61378-94FF-4885-8859-1C27D624AC9E}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3634\Agent.exe FirewallRules: [{A1B0586D-9DE7-4A7F-8605-8B5F062F5768}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3634\Agent.exe FirewallRules: [{565E41E0-A190-44EB-9B3E-9A3C49448DCB}] => (Allow) D:\Steam\steamapps\common\Far Cry 3\bin\FC3UpdaterSteam.exe FirewallRules: [{65411DB7-A3ED-466B-BA6E-2D8A05DA6BFF}] => (Allow) D:\Steam\steamapps\common\Far Cry 3\bin\FC3UpdaterSteam.exe FirewallRules: [{0C435311-0260-4C0E-8C77-A59E8519A6B3}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{A096D024-712A-413E-AF6C-8DF8BB40BFAB}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{E90EE61B-3A91-493D-AA7B-23D23401A6A4}] => (Allow) D:\Steam\steamapps\common\POSTAL2Complete\System\Launcher.exe FirewallRules: [{4D2451A3-7E81-4A83-80D6-49E7321A2080}] => (Allow) D:\Steam\steamapps\common\POSTAL2Complete\System\Launcher.exe FirewallRules: [{61E96F43-0023-451D-A2DC-8E9B6742127D}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3715\Agent.exe FirewallRules: [{4E42A4EA-2A28-43C4-9942-BD14007593A2}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3715\Agent.exe FirewallRules: [{18960AE3-4612-4AC3-90A3-3FBF0E049B87}] => (Allow) E:\Steam DL\steamapps\common\Dying Light\DyingLightGame.exe FirewallRules: [{00B06DB4-3688-4E71-8E2B-D804224E82B3}] => (Allow) E:\Steam DL\steamapps\common\Dying Light\DyingLightGame.exe FirewallRules: [TCP Query User{14B442B6-4A4A-4698-AAC0-A118059E9E2E}C:\program files\java\jre1.8.0_31\bin\javaw.exe] => (Allow) C:\program files\java\jre1.8.0_31\bin\javaw.exe FirewallRules: [UDP Query User{A93A5E8B-0863-44BB-870C-E890EF709FDA}C:\program files\java\jre1.8.0_31\bin\javaw.exe] => (Allow) C:\program files\java\jre1.8.0_31\bin\javaw.exe FirewallRules: [{1515650B-5BFF-4E47-8690-EA28DA2FC12B}] => (Allow) tunmgr.exe FirewallRules: [{52977065-C4F2-48CF-BA0A-A58AC02FB3F8}] => (Allow) tunmgr.exe FirewallRules: [{EF027FE0-60ED-4FE0-A616-7A6AB9D001C1}] => (Allow) mDNSResponder.exe FirewallRules: [{F07C3613-0B7D-459A-86BC-2E2B75A46141}] => (Allow) mDNSResponder.exe FirewallRules: [{6E0896D8-19D2-4C00-A8A9-5CC137CEAD31}] => (Allow) C:\Program Files (x86)\Common Files\Research In Motion\nginx\nginx.exe FirewallRules: [{DBA756F7-1E1C-4057-A1D2-8F6CB146E95E}] => (Allow) C:\Program Files (x86)\Common Files\Research In Motion\tunnel manager\PeerManager.exe FirewallRules: [{ACEB666B-1457-40C9-B869-3CC2FBBE67A1}] => (Allow) E:\Steam DL\steamapps\common\Dying Light\DevTools\DyingLightPlayer.exe FirewallRules: [{0183CDA6-CC64-461E-A7C1-46EC6B293E34}] => (Allow) E:\Steam DL\steamapps\common\Dying Light\DevTools\DyingLightPlayer.exe FirewallRules: [{B1A55867-D06E-4A70-AAE5-305183857485}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe FirewallRules: [{34569E6D-90A7-487F-80E4-3103C1259333}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe FirewallRules: [{39648754-72D6-479F-88A3-52C51006FE2C}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe FirewallRules: [{40264040-1344-4F8C-8300-17973995F5E8}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe FirewallRules: [{338347FC-ECD2-4113-BBAB-8EB7C3884B9D}] => (Allow) D:\Steam\steamapps\common\the witcher 2\Launcher.exe FirewallRules: [{394B7BAB-1507-47E5-94B6-98930A8AB67D}] => (Allow) D:\Steam\steamapps\common\the witcher 2\Launcher.exe FirewallRules: [{82A89777-7A34-4D4F-BA41-44CEC16550A4}] => (Allow) D:\Steam\steamapps\common\Hammerwatch\Hammerwatch.exe FirewallRules: [{CE3487DA-59CC-4371-9FE9-6C9ECC239D23}] => (Allow) D:\Steam\steamapps\common\Hammerwatch\Hammerwatch.exe FirewallRules: [{0ECF0EAF-727F-4D99-8320-4C8DD2AA5E99}] => (Allow) E:\Steam DL\steamapps\common\Dishonored\Binaries\Win32\Dishonored.exe FirewallRules: [{A335286B-3FE0-4C17-9A4A-02CC43E4FA19}] => (Allow) E:\Steam DL\steamapps\common\Dishonored\Binaries\Win32\Dishonored.exe FirewallRules: [TCP Query User{6B327C59-29E3-4C9C-BE75-5FD807DF76A0}D:\steam\steamapps\common\the witcher 2\bin\witcher2.exe] => (Allow) D:\steam\steamapps\common\the witcher 2\bin\witcher2.exe FirewallRules: [UDP Query User{A31E1D8B-59FC-4212-822E-2685FB60C030}D:\steam\steamapps\common\the witcher 2\bin\witcher2.exe] => (Allow) D:\steam\steamapps\common\the witcher 2\bin\witcher2.exe FirewallRules: [{6BBCE0AC-EA96-424D-B5AA-AE63B7DFB862}] => (Allow) D:\Steam\steamapps\common\Worms Armageddon\WA.exe FirewallRules: [{4D57B6B6-9BF5-4CE8-8020-0894DB9F982E}] => (Allow) D:\Steam\steamapps\common\Worms Armageddon\WA.exe FirewallRules: [{B3F735E6-CD2C-44C8-9790-70B606B0F120}] => (Allow) E:\Steam DL\steamapps\common\Far Cry 4\bin\FarCry4.exe FirewallRules: [{0271EB0F-BCB6-4935-B1E2-4BED2F4DB424}] => (Allow) E:\Steam DL\steamapps\common\Far Cry 4\bin\FarCry4.exe FirewallRules: [{3D99FF31-A384-4213-BB11-2198F50B88CF}] => (Allow) E:\Steam DL\steamapps\common\Far Cry 4\bin\IGE_WPF64.exe FirewallRules: [{8BB3CC52-03A6-4622-A352-A792DA79F853}] => (Allow) E:\Steam DL\steamapps\common\Far Cry 4\bin\IGE_WPF64.exe FirewallRules: [{FEA281D2-A182-48DE-AA31-CA69D94B6845}] => (Allow) D:\Steam\steamapps\common\Hammerwatch\editor\HammerEditor.exe FirewallRules: [{27D4C108-EEF5-424F-A4E2-F88A06E440FA}] => (Allow) D:\Steam\steamapps\common\Hammerwatch\editor\HammerEditor.exe FirewallRules: [{AEC0A96B-776B-49FE-8755-B0FBBAD75515}] => (Allow) D:\Steam\steamapps\common\7 Days To Die\7DaysToDie_EAC.exe FirewallRules: [{0179BB92-131A-46BB-9EA9-2281CEA151B0}] => (Allow) D:\Steam\steamapps\common\7 Days To Die\7DaysToDie_EAC.exe FirewallRules: [{421337A1-372D-4F00-8170-F7820BE397D4}] => (Allow) D:\Steam\steamapps\common\7 Days To Die\7DaysToDie.exe FirewallRules: [{04965A75-E08B-405B-BB29-2F4C0DBFADF9}] => (Allow) D:\Steam\steamapps\common\7 Days To Die\7DaysToDie.exe FirewallRules: [{DB4B3510-292C-493B-8EA5-6F18EA467AFA}] => (Allow) D:\Steam\steamapps\common\7 Days To Die\7dLauncher.exe FirewallRules: [{62E47F29-CBE7-4458-B4A5-9F6D02778A7E}] => (Allow) D:\Steam\steamapps\common\7 Days To Die\7dLauncher.exe FirewallRules: [{4C24C3B8-1E07-4CF8-9EE8-FA8531930AA6}] => (Allow) D:\Steam\steamapps\common\Stardew Valley\Stardew Valley.exe FirewallRules: [{4C35C307-A435-41CC-8F12-CE8F453828A9}] => (Allow) D:\Steam\steamapps\common\Stardew Valley\Stardew Valley.exe FirewallRules: [{2B3010B3-E17E-46AE-9B60-5DBAEAEBDAB9}] => (Allow) D:\Steam\steamapps\common\Sid Meier's Civilization V\Launcher.exe FirewallRules: [{79EC604B-966C-4B36-A0E2-A55666B78E7E}] => (Allow) D:\Steam\steamapps\common\Sid Meier's Civilization V\Launcher.exe FirewallRules: [{D4754244-A835-405B-A03C-B83883E94CA7}] => (Allow) D:\Steam\steamapps\common\Terraria\Terraria.exe FirewallRules: [{3998ED48-6B5B-478F-8B09-B209A9A863A6}] => (Allow) D:\Steam\steamapps\common\Terraria\Terraria.exe FirewallRules: [TCP Query User{27C9B19D-4C5E-4E54-A461-13EE18C24125}D:\hearthstone\hearthstone\hearthstone.exe] => (Allow) D:\hearthstone\hearthstone\hearthstone.exe FirewallRules: [UDP Query User{62BAE17F-D526-4E01-A8D9-ADE035A7CBDA}D:\hearthstone\hearthstone\hearthstone.exe] => (Allow) D:\hearthstone\hearthstone\hearthstone.exe FirewallRules: [{182014EB-ED36-49D5-A0C8-50D30DB20BAD}] => (Allow) E:\Steam DL\steamapps\common\Dying Light\DevTools\DyingLightPlayer.exe FirewallRules: [{7FD5B718-2F7E-48F6-9C43-DC1B6460A2C2}] => (Allow) E:\Steam DL\steamapps\common\Dying Light\DevTools\DyingLightPlayer.exe FirewallRules: [{0EB9C760-8BE4-4413-A165-749E28AAEF38}] => (Allow) D:\Steam\steamapps\common\dont_starve\bin\dontstarve_steam.exe FirewallRules: [{19425DE4-A22B-4CAD-8079-D307FED5CB09}] => (Allow) D:\Steam\steamapps\common\dont_starve\bin\dontstarve_steam.exe ==================== Punkty Przywracania systemu ========================= 01-10-2016 14:10:04 Removed Java 8 Update 31 (64-bit) 01-10-2016 14:20:04 Restore Point Created by FRST ==================== Wadliwe urządzenia w Menedżerze urządzeń ============= Name: Teredo Tunneling Pseudo-Interface Description: Karta tunelowania Teredo firmy Microsoft Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318} Manufacturer: Microsoft Service: tunnel Problem: : This device cannot start. (Code10) Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device. On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard. ==================== Błędy w Dzienniku zdarzeń: ========================= Dziennik Aplikacja: ================== Error: (10/01/2016 02:24:47 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected. Error: (10/01/2016 02:24:36 PM) (Source: Winlogon) (EventID: 4103) (User: ) Description: Aktywacja licencji systemu Windows nie powiodła się. Błąd 0x80070005. Error: (10/01/2016 02:20:04 PM) (Source: VSS) (EventID: 8194) (User: ) Description: Błąd Usługi kopiowania woluminów w tle: nieoczekiwany błąd podczas badania interfejsu IVssWriterCallback. hr = 0x80070005, Odmowa dostępu. . To jest często spowodowane przez niepoprawne ustawienia zabezpieczeń w procesie zapisującym lub żądającym. Operacja: Zbieranie danych modułu zapisującego Kontekst: Identyfikator klasy modułu zapisującego: {e8132975-6f93-4464-a53e-1050253ae220} Nazwa modułu zapisującego: System Writer Identyfikator wystąpienia modułu zapisującego: {5322d777-0382-4c02-9229-5ec9dc583828} Error: (10/01/2016 12:22:18 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected. Error: (10/01/2016 12:21:58 PM) (Source: Winlogon) (EventID: 4103) (User: ) Description: Aktywacja licencji systemu Windows nie powiodła się. Błąd 0x80070005. Error: (09/30/2016 10:29:36 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected. Error: (09/30/2016 10:28:11 PM) (Source: Winlogon) (EventID: 4103) (User: ) Description: Aktywacja licencji systemu Windows nie powiodła się. Błąd 0x80070005. Error: (09/30/2016 10:36:03 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected. Error: (09/30/2016 10:35:46 AM) (Source: Winlogon) (EventID: 4103) (User: ) Description: Aktywacja licencji systemu Windows nie powiodła się. Błąd 0x80070005. Error: (09/30/2016 03:02:16 AM) (Source: RIM MDNS) (EventID: 100) (User: ) Description: mDNS_Execute: SendResponses didn't send all its responses; will try again in one second Dziennik System: ============= Error: (10/01/2016 02:25:17 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: Usługa Grupowanie sieci równorzędnej zależy od usługi Protokół rozpoznawania nazw równorzędnych, której nie można uruchomić z powodu następującego błędu: %%-2140993535 Error: (10/01/2016 02:25:17 PM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: Usługa Protokół rozpoznawania nazw równorzędnych zakończyła działanie; wystąpił następujący błąd: %%-2140993535 Error: (10/01/2016 02:25:17 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: Usługa Grupowanie sieci równorzędnej zależy od usługi Protokół rozpoznawania nazw równorzędnych, której nie można uruchomić z powodu następującego błędu: %%-2140993535 Error: (10/01/2016 02:25:17 PM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: Usługa Protokół rozpoznawania nazw równorzędnych zakończyła działanie; wystąpił następujący błąd: %%-2140993535 Error: (10/01/2016 02:25:17 PM) (Source: PNRPSvc) (EventID: 102) (User: ) Description: Chmura protokołu rozpoznawania nazw równorzędnych nie została uruchomiona, ponieważ tworzenie tożsamości domyślnej nie powiodło się; kod błędu: 0x80630801. Error: (10/01/2016 02:25:17 PM) (Source: PNRPSvc) (EventID: 102) (User: ) Description: Chmura protokołu rozpoznawania nazw równorzędnych nie została uruchomiona, ponieważ tworzenie tożsamości domyślnej nie powiodło się; kod błędu: 0x80630801. Error: (10/01/2016 02:25:06 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: Usługa Grupowanie sieci równorzędnej zależy od usługi Protokół rozpoznawania nazw równorzędnych, której nie można uruchomić z powodu następującego błędu: %%-2140993535 Error: (10/01/2016 02:25:06 PM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: Usługa Protokół rozpoznawania nazw równorzędnych zakończyła działanie; wystąpił następujący błąd: %%-2140993535 Error: (10/01/2016 02:25:06 PM) (Source: PNRPSvc) (EventID: 102) (User: ) Description: Chmura protokołu rozpoznawania nazw równorzędnych nie została uruchomiona, ponieważ tworzenie tożsamości domyślnej nie powiodło się; kod błędu: 0x80630801. Error: (10/01/2016 02:24:36 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi AMD FUEL Service z powodu następującego błędu: Usługa nie odpowiada na sygnał uruchomienia lub sygnał sterujący w oczekiwanym czasie. CodeIntegrity: =================================== Date: 2015-02-02 10:12:13.251 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Users\SEBAST~1\AppData\Local\Temp\EverestDriver.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2015-02-02 10:12:13.245 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Users\SEBAST~1\AppData\Local\Temp\EverestDriver.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2015-02-02 10:12:12.879 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files (x86)\Lavalys\EVEREST Home Edition\kerneld.amd64 because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2015-02-02 10:12:12.869 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files (x86)\Lavalys\EVEREST Home Edition\kerneld.amd64 because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. ==================== Statystyki pamięci =========================== Procesor: AMD FX(tm)-4100 Quad-Core Processor Procent pamięci w użyciu: 21% Całkowita pamięć fizyczna: 8175.24 MB Dostępna pamięć fizyczna: 6434.82 MB Całkowita pamięć wirtualna: 16348.68 MB Dostępna pamięć wirtualna: 14349.55 MB ==================== Dyski ================================ Drive c: () (Fixed) (Total:48.73 GB) (Free:13.23 GB) NTFS Drive d: () (Fixed) (Total:97.66 GB) (Free:8.31 GB) NTFS Drive e: () (Fixed) (Total:319.28 GB) (Free:40.82 GB) NTFS ==================== MBR & Tablica partycji ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: 00000001) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=48.7 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=97.7 GB) - (Type=07 NTFS) Partition 4: (Not Active) - (Size=319.3 GB) - (Type=07 NTFS) ==================== Koniec Addition.txt ============================