Rezultaty skanu uzupełniającego Farbar Recovery Scan Tool (x64) Wersja: 07-12-2016 Uruchomiony przez fffz (14-12-2016 14:33:43) Uruchomiony z L:\_instalki 2016\_spy Windows 7 Professional Service Pack 1 (X64) (2014-06-04 17:07:33) Tryb startu: Normal ========================================================== ==================== Konta użytkowników: ============================= Administrator (S-1-5-21-916462668-3198608929-2543406701-500 - Administrator - Disabled) fff (S-1-5-21-916462668-3198608929-2543406701-1000 - Administrator - Enabled) => C:\Users\sss fffz (S-1-5-21-916462668-3198608929-2543406701-1005 - Administrator - Enabled) => C:\Users\fffz Filippo (S-1-5-21-916462668-3198608929-2543406701-1002 - Administrator - Disabled) => C:\Users\Filippo Gość (S-1-5-21-916462668-3198608929-2543406701-501 - Limited - Disabled) ==================== Centrum zabezpieczeń ======================== (Załączenie wejścia w fixlist spowoduje jego usunięcie.) AV: Avira Antivirus (Enabled - Up to date) {4D041356-F94D-285F-8768-AAE50FA36859} AS: Comodo Defense+ (Enabled - Up to date) {6BAD9487-8DE8-D130-293E-C6A728B4104F} AS: Avira Antivirus (Enabled - Up to date) {F665F2B2-DF77-27D1-BDD8-9197742422E4} AS: Windows Defender (Disabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} FW: COMODO Firewall (Enabled) {E8F7F446-E1BD-DFE6-38D1-54E0ADE01D89} ==================== Zainstalowane programy ====================== (W fixlist dozwolone tylko załączanie programów adware z flagą "Hidden" w celu ich uwidocznienia. Programy adware powinny zostać w poprawny sposób odinstalowane.) 7-Zip 16.02 (x64) (HKLM\...\7-Zip) (Version: 16.02 - Igor Pavlov) 7-Zip 9.20 (x64 edition) (HKLM\...\{23170F69-40C1-2702-0920-000001000000}) (Version: 9.20.00.0 - Igor Pavlov) ABBYY FineReader 12 Corporate (HKLM-x32\...\{F12000CE-0001-0000-0000-074957833700}) (Version: 12.1.439 - ABBYY Production LLC) Adobe Acrobat XI Pro (HKLM-x32\...\{AC76BA86-1033-FFFF-7760-000000000006}) (Version: 11.0.09 - Adobe Systems) Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 3.1.0.4880 - Adobe Systems Incorporated) Adobe Flash Player 23 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 23.0.0.162 - Adobe Systems Incorporated) Adobe Flash Player 23 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 23.0.0.207 - Adobe Systems Incorporated) Adobe Flash Player 23 PPAPI (HKLM-x32\...\Adobe Flash Player PPAPI) (Version: 23.0.0.207 - Adobe Systems Incorporated) Adobe Flash Professional CS6 (HKLM-x32\...\{BD5669B5-49FF-4490-B956-E9D7CB9B0ADC}) (Version: 12.0 - Adobe Systems Incorporated) Adobe Help Manager (HKLM-x32\...\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1) (Version: 4.0.244 - Adobe Systems Incorporated) Adobe Illustrator CC (HKLM-x32\...\{F2321021-08A2-44D6-B1DF-BDB415F23EC3}) (Version: 17.0 - Adobe Systems Incorporated) Adobe Illustrator CS6 (HKLM-x32\...\{4869414E-7AEA-4C8E-BE1C-8D40977FD517}) (Version: 16.0 - Adobe Systems Incorporated) Adobe Photoshop CS6 (HKLM-x32\...\{74EB3499-8B95-4B5C-96EB-7B342F3FD0C6}) (Version: 13.0 - Adobe Systems Incorporated) Affinity Designer Public Beta (HKLM\...\{4FF8016B-01D0-49F3-9FBE-7E61E7289DFA}) (Version: 1.5.0.35 - Serif (Europe) Ltd) Affinity Photo Public Beta (HKLM\...\{AF3EFC00-81AD-41E5-98E3-B3C4E8EBB667}) (Version: 1.5.0.35 - Serif (Europe) Ltd) ArtRage 2 (HKLM-x32\...\{12766F00-807F-4978-8D24-FDD0A3D60EE4}) (Version: 2.6.0 - Ambient Design) Asus 802.11n Network Adapter (HKLM-x32\...\InstallShield_{2529B098-D709-440B-9A96-4BDEF63C1462}) (Version: 1.0.0.05 - ASUSTeK) Asus 802.11n Network Adapter (x32 Version: 1.0.0.05 - ASUSTeK) Hidden Audioscrobbler Component for Foobar2000 (remove only) (HKLM-x32\...\foo_audioscrobbler) (Version: - ) Avira Antivirus (HKLM-x32\...\Avira Antivirus) (Version: 15.0.23.58 - Avira Operations GmbH & Co. KG) Avira Connect (HKLM-x32\...\{707e8edf-9482-4417-ae39-c9b5fe605e87}) (Version: 1.2.76.27124 - Avira Operations GmbH & Co. KG) Avira Connect (x32 Version: 1.2.76.27124 - Avira Operations GmbH & Co. KG) Hidden Bamboo (HKLM-x32\...\Pen Tablet Driver) (Version: - Wacom Technology Corp.) Bit Chat (HKLM-x32\...\{E2CE6CF8-5F41-48E8-82D0-B5958F7910EF}) (Version: 4.5.1 - Technitium) Black Ink (HKLM-x32\...\Black Ink 0.151.1634) (Version: 0.151.1634 - Bleank) Black Ink (x32 Version: 0.151.1634 - Bleank) Hidden Brackets (HKLM-x32\...\{0DA290D2-0583-4967-9EC0-93C1F603DD13}) (Version: 1.6 - brackets.io) calibre 64bit (HKLM\...\{1A645F80-97F2-424B-AED0-9DBF6B835C6D}) (Version: 2.17.0 - Kovid Goyal) CCleaner (HKLM\...\CCleaner) (Version: 5.02 - Piriform) CDDRV_Installer (Version: 4.60 - Logitech) Hidden CDex - Open Source Digital Audio CD Extractor (HKLM-x32\...\CDex) (Version: 1.79.0.2015 - Georgy Berdyshev) CGS17_Setup_x64 (Version: 17.0 - Corel Corporation) Hidden Cobian Backup 11 Gravity (HKLM-x32\...\CobBackup11) (Version: - ) Comodo Dragon (HKLM-x32\...\Comodo Dragon) (Version: 36.1.1.21 - Comodo) COMODO Firewall (HKLM\...\{C7C71F0C-4CC1-4B17-943C-96E5196DDA74}) (Version: 8.4.0.5165 - COMODO Security Solutions Inc.) Corel Graphics - Windows Shell Extension (HKLM\...\_{4AB916EE-ABA8-4079-9889-745798B6D809}) (Version: 17.0.0.491 - Corel Corporation) Corel Graphics - Windows Shell Extension (Version: 17.0.491 - Corel Corporation) Hidden Corel Graphics - Windows Shell Extension 32 Bit (Version: 17.0.491 - Corel Corporation) Hidden CorelDRAW Graphics Suite X7 - Capture (x64) (Version: 17.0 - Corel Corporation) Hidden CorelDRAW Graphics Suite X7 - Common (x64) (Version: 17.0 - Corel Corporation) Hidden CorelDRAW Graphics Suite X7 - Connect (x64) (Version: 17.0 - Corel Corporation) Hidden CorelDRAW Graphics Suite X7 - Custom Data (x64) (Version: 17.0 - Corel Corporation) Hidden CorelDRAW Graphics Suite X7 - Draw (x64) (Version: 17.0 - Corel Corporation) Hidden CorelDRAW Graphics Suite X7 - EN (x64) (Version: 17.0 - Corel Corporation) Hidden CorelDRAW Graphics Suite X7 - Filters (x64) (Version: 17.0 - Corel Corporation) Hidden CorelDRAW Graphics Suite X7 - FontNav (x64) (Version: 17.0 - Corel Corporation) Hidden CorelDRAW Graphics Suite X7 - IPM Content (x64) (Version: 17.0 - Corel Corporation) Hidden CorelDRAW Graphics Suite X7 - IPM T (x64) (Version: 17.0 - Corel Corporation) Hidden CorelDRAW Graphics Suite X7 - PHOTO-PAINT (x64) (Version: 17.0 - Corel Corporation) Hidden CorelDRAW Graphics Suite X7 - Photozoom Plugin (x64) (Version: 17.0 - Corel Corporation) Hidden CorelDRAW Graphics Suite X7 - Redist (x64) (Version: 17.0 - Corel Corporation) Hidden CorelDRAW Graphics Suite X7 - Setup Files (x64) (Version: 17.0 - Corel Corporation) Hidden CorelDRAW Graphics Suite X7 - VBA (x64) (Version: 17.0 - Corel Corporation) Hidden CorelDRAW Graphics Suite X7 - VideoBrowser (x64) (Version: 17.0 - Corel Corporation) Hidden CorelDRAW Graphics Suite X7 - Writing Tools (x64) (Version: 17.0 - Corel Corporation) Hidden CorelDRAW Graphics Suite X7 (64-Bit) (HKLM\...\_{5CB73140-806C-42C6-A05A-1AFD0E92DEB5}) (Version: 17.0.0.491 - Corel Corporation) Creative ALchemy (HKLM-x32\...\ALchemy) (Version: 1.36 - Creative Technology Limited) Creative Audio Control Panel (HKLM-x32\...\AudioCS) (Version: 3.00 - Creative Technology Limited) Creative Live! Cam Video IM Driver (1.03.02.00) (HKLM\...\Creative VF0220) (Version: - ) Creative Software AutoUpdate (HKLM-x32\...\Creative Software AutoUpdate) (Version: 1.40 - Creative Technology Limited) Creative Sound Blaster Properties x64 Edition (HKLM-x32\...\Creative Sound Blaster Properties x64 Edition) (Version: - Creative Technology Limited) Creative System Information (HKLM-x32\...\SysInfo) (Version: - ) CWK (Czasowy Wyłącznik Komputera) (HKLM-x32\...\CWK) (Version: 2.52.3.43 - Damian Pasternak) D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden Dassault Systemes Software Prerequisites x86-x64 (HKLM\...\{CF1EB598-B424-436A-B15F-B763846BA970}) (Version: 8.1.3 - Dassault Systemes) Dassault Systemes Software VC9 Prerequisites x86-x64 (HKLM\...\{F2F2DEA7-36AB-4E13-907C-D8BDE775EF97}) (Version: 9.1.2 - Dassault Systemes) Defraggler (HKLM\...\Defraggler) (Version: 2.18 - Piriform) Document Express DjVu Plug-in (HKLM\...\{7AFD0DA0-068D-4C1E-BF5B-D42C9C8BCEB0}) (Version: 6.1.33592 - Cuminas Corporation) Doradca uaktualnienia systemu Windows 7 (HKLM-x32\...\{E8706A0A-D596-4ef8-B924-2D69BD75D95E}) (Version: 2.0.5000.0 - Microsoft Corporation) dupeGuru (HKLM\...\{C11DACBD-8863-4AA4-94AD-708602F6F7EF}) (Version: 3.9.1 - Hardcoded Software) DxO Optics Pro 8 (HKLM\...\{ECC28C7D-ABF5-4ED1-9B29-6D48BC218393}) (Version: 8.5.0 - DxO Labs) DxO Optics Pro 9 (HKLM\...\{CD5F5030-44C8-4432-9F61-209BA3F2F4BA}) (Version: 9.5.2 - DxO Labs) erLT (x32 Version: 1.20.0137 - Logitech, Inc.) Hidden Eusing Free Registry Cleaner (HKLM-x32\...\Eusing Free Registry Cleaner) (Version: - Eusing Software) FlashDevelop (HKLM-x32\...\FlashDevelop) (Version: 4.6.1 - FlashDevelop.org) Gadwin PrintScreen (64-Bit) (HKLM\...\{819A52E1-0929-469A-BEB6-1AEBE0873CFC}) (Version: 5.4.2.0 - Gadwin Systems) Galeria fotografii (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden gdipp (HKLM\...\{71596D05-3463-439F-A0D4-4D04768A5E87}) (Version: 0.9.1.0 - gdipp Project) Google Talk Plugin (HKLM-x32\...\{F9B579C2-D854-300A-BE62-A09EB9D722E4}) (Version: 5.41.3.0 - Google) Google Update Helper (x32 Version: 1.3.31.5 - Google Inc.) Hidden GPL Ghostscript (HKLM\...\GPL Ghostscript 9.20) (Version: 9.20 - Artifex Software Inc.) GPL Ghostscript (HKLM-x32\...\GPL Ghostscript 9.20) (Version: 9.20 - Artifex Software Inc.) Haali Media Splitter (HKLM-x32\...\HaaliMkx) (Version: - ) HDR Efex Pro 2 (HKLM-x32\...\HDR Efex Pro 2) (Version: 2.0.0.0 - Nik Software, Inc.) Host OpenAL (HKLM-x32\...\Host OpenAL) (Version: 2.02 - Creative Technology Limited) HP Deskjet 2540 series — podstawowe oprogramowanie urządzenia (HKLM\...\{642A855A-F7A6-429C-9818-DF41AE1982BE}) (Version: 32.2.188.47710 - Hewlett-Packard Co.) HP Deskjet 2540 series Pomoc (HKLM-x32\...\{387813C9-5DFE-453E-95AE-142F2C6E929E}) (Version: 30.0.0 - Hewlett Packard) HP Display Assistant (HKLM-x32\...\{17B371B7-740F-4C83-BDFE-0C3A2C585103}) (Version: 3.02.004 - Portrait Displays, Inc.) HP Photo Creations (HKLM-x32\...\HP Photo Creations) (Version: 1.0.0.7702 - HP) HP Update (HKLM-x32\...\{912D30CF-F39E-4B31-AD9A-123C6B794EE2}) (Version: 5.005.002.002 - Hewlett-Packard) Intel(R) C++ Redistributables for Windows* on Intel(R) 64 (HKLM-x32\...\{D2437C5C-2D8C-40D2-8059-689AD7239FA3}) (Version: 11.1.048 - Intel Corporation) Intel® Matrix Storage Manager (HKLM\...\{9068B2BE-D93A-4C0A-861C-5E35E2C0E09E}) (Version: - Intel Corporation) IrfanView 64 (remove only) (HKLM\...\IrfanView64) (Version: 4.42 - Irfan Skiljan) iRotate (HKLM-x32\...\iRotate) (Version: - ) Java 8 Update 101 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F64180101F0}) (Version: 8.0.1010.13 - Oracle Corporation) Java 8 Update 111 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F64180111F0}) (Version: 8.0.1110.14 - Oracle Corporation) JetBrains PyCharm 3.4.1 (HKLM-x32\...\PyCharm 3.4.1) (Version: 135.1057 - JetBrains s.r.o.) JMicron JMB36X Driver (HKLM-x32\...\{3A1B5D40-41E9-43FA-8C7B-A8667F5586EF}) (Version: 1.00.0000 - JMicron Technology Corp.) KhalInstallWrapper (Version: 2.00.0000 - Logitech) Hidden Krita Desktop (x64) 2.9.11.0 (HKLM\...\{AF6A4BDD-B912-42DD-972B-986DA81A429A}) (Version: 2.9.11.0 - Krita Foundation) LibreOffice 4.4.0.3 (HKLM-x32\...\{8BEE1CDD-F95D-4759-952D-6B38DF99D1F0}) (Version: 4.4.0.3 - The Document Foundation) Logitech SetPoint (HKLM-x32\...\{F29B21BD-CAA6-445F-8EF7-A7E2B9D8B14E}) (Version: 4.80 - Logitech) Malwarebytes Anti-Malware wersja 2.2.1.1043 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.2.1.1043 - Malwarebytes) Manga Studio (HKLM-x32\...\{CFA66508-B19D-4032-AB0A-EBBA2BDF1368}) (Version: 5.0.5 - Smith Micro) Matroska Pack (HKLM-x32\...\Matroska Pack) (Version: - ) Microsoft .NET Framework 4.5.1 (Polski) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1045) (Version: 4.5.50938 - Microsoft Corporation) Microsoft .NET Framework 4.6.2 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.6.01590 - Microsoft Corporation) Microsoft Camera Codec Pack (HKLM\...\{7C19409A-4C5A-49E9-B601-07383E4B6E37}) (Version: 6.3.9723.0 - Microsoft Corporation) Microsoft Office Professional Plus 2010 (HKLM-x32\...\Office14.PROPLUS) (Version: 14.0.7015.1000 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.41212.0 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation) Microsoft Visual Studio Tools for Applications 2012 (HKLM-x32\...\{89ca2a32-2b52-4595-8dfd-6fe4757958d0}) (Version: 11.0.51108 - Microsoft Corporation) Microsoft Xbox 360 Accessories 1.2 (HKLM\...\{D9C50188-12D5-4D3E-8F00-682346C2AA5F}) (Version: 1.20.146.0 - Microsoft) Motorola Device Manager (HKLM-x32\...\{28DB8373-C1BB-444F-A427-A55585A12ED7}) (Version: 2.5.4 - Motorola Mobility) Motorola Device Software Update (x32 Version: 13.09.3001 - Motorola Mobility) Hidden Motorola Mobile Drivers Installation 6.4.0 (HKLM\...\{27986EDD-C9EC-4B52-B92F-06D073F0AA52}) (Version: 6.4.0 - Motorola Mobility LLC) Movie Maker (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Mozilla Firefox 50.0.2 (x86 pl) (HKLM-x32\...\Mozilla Firefox 50.0.2 (x86 pl)) (Version: 50.0.2 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 53.0.0.6189 - Mozilla) Mozilla Thunderbird 45.5.1 (x86 pl) (HKLM-x32\...\Mozilla Thunderbird 45.5.1 (x86 pl)) (Version: 45.5.1 - Mozilla) MSI Afterburner 2.1.0 (HKLM-x32\...\Afterburner) (Version: 2.1.0 - MSI Co., LTD) MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation) MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation) MSXML 4.0 SP3 Parser (HKLM-x32\...\{196467F1-C11F-4F76-858B-5812ADC83B94}) (Version: 4.30.2100.0 - Microsoft Corporation) MSXML 4.0 SP3 Parser (KB2758694) (HKLM-x32\...\{1D95BA90-F4F8-47EC-A882-441C99D30C1E}) (Version: 4.30.2117.0 - Microsoft Corporation) Nero 7 Ultra Edition (HKLM-x32\...\{91C0B95B-B83A-4828-A775-BBE2DD421045}) (Version: 7.02.9752 - Nero AG) Nexus 16.6 (HKLM-x32\...\Winstep Xtreme_is1) (Version: - ) Nightly 53.0a1 (x64 en-US) (HKLM\...\Nightly 53.0a1 (x64 en-US)) (Version: 53.0a1 - Mozilla) Nik Collection (HKLM-x32\...\Nik Collection) (Version: 1.2.11 - Google) Notepad++ (64-bit x64) (HKLM\...\Notepad++) (Version: 7.1 - Notepad++ Team) NVIDIA Oprogramowanie systemu PhysX 9.15.0428 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.15.0428 - NVIDIA Corporation) NVIDIA Sterownik 3D Vision 365.19 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 365.19 - NVIDIA Corporation) NVIDIA Sterownik dźwięku HD 1.3.34.4 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.34.4 - NVIDIA Corporation) NVIDIA Sterownik graficzny 365.19 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 365.19 - NVIDIA Corporation) NVIDIA Sterownik kontrolera 3D Vision 364.44 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 364.44 - NVIDIA Corporation) Obsługa programów Apple (HKLM-x32\...\{83CAF0DE-8D3B-4C37-A631-2B8F16EC3031}) (Version: 3.1 - Apple Inc.) OCCT 4.4.1 (HKLM-x32\...\OCCT) (Version: 4.4.1 - Ocbase.com) Oracle VM VirtualBox 4.3.20 (HKLM\...\{DD8F7A7A-852F-4648-8A73-B8FC1DF5F082}) (Version: 4.3.20 - Oracle Corporation) Pacote de Idiomas do Microsoft Visual Studio Tools for Applications 2012 x64 Hosting Support - PTB (Version: 11.0.51108 - Microsoft Corporation) Hidden Pacote de Idiomas do Microsoft Visual Studio Tools for Applications 2012 x86 Hosting Support - PTB (x32 Version: 11.0.51108 - Microsoft Corporation) Hidden Panel sterowania NVIDIA 365.19 (Version: 365.19 - NVIDIA Corporation) Hidden PanoramaStudio 3.0 Pro ((uninstall)) (HKLM\...\PanoramaStudio3Pro) (Version: - ) PDF Settings CC (x32 Version: 12.0 - Adobe Systems Incorporated) Hidden PDF Settings CS6 (x32 Version: 11.0 - Adobe Systems Incorporated) Hidden PDF Split And Merge Basic (HKLM\...\{9A40D2F8-9458-458B-95E3-B57797C574E1}) (Version: 2.2.4 - Andrea Vacondio) PDF-XChange Viewer (HKLM\...\{9ED333F8-3E6C-4A38-BAFA-728454121CDA}) (Version: 2.5.318.1 - Tracker Software Products (Canada) Ltd.) Podstawowe programy Windows Live (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Polski pakiet językowy dla narzędzi Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - PLK) (Version: 10.0.50903 - Microsoft Corporation) PowerISO (HKLM-x32\...\PowerISO) (Version: 6.0 - Power Software Ltd) PunkBuster Services (HKLM-x32\...\PunkBusterSvc) (Version: 0.991 - Even Balance, Inc.) Python 2.7.8 (64-bit) (HKLM\...\{61121B12-88BD-4261-A6EE-AB32610A56DE}) (Version: 2.7.8150 - Python Software Foundation) Python 3.5.2 Add to Path (32-bit) (x32 Version: 3.5.2150.0 - Python Software Foundation) Hidden Python 3.5.2 Core Interpreter (32-bit) (x32 Version: 3.5.2150.0 - Python Software Foundation) Hidden Python 3.5.2 Development Libraries (32-bit) (x32 Version: 3.5.2150.0 - Python Software Foundation) Hidden Python 3.5.2 Documentation (32-bit) (x32 Version: 3.5.2150.0 - Python Software Foundation) Hidden Python 3.5.2 Executables (32-bit) (x32 Version: 3.5.2150.0 - Python Software Foundation) Hidden Python 3.5.2 pip Bootstrap (32-bit) (x32 Version: 3.5.2150.0 - Python Software Foundation) Hidden Python 3.5.2 Standard Library (32-bit) (x32 Version: 3.5.2150.0 - Python Software Foundation) Hidden Python 3.5.2 Tcl/Tk Support (32-bit) (x32 Version: 3.5.2150.0 - Python Software Foundation) Hidden Python 3.5.2 Test Suite (32-bit) (x32 Version: 3.5.2150.0 - Python Software Foundation) Hidden Python 3.5.2 Utility Scripts (32-bit) (x32 Version: 3.5.2150.0 - Python Software Foundation) Hidden Python Launcher (HKLM-x32\...\{963ECCDD-F09F-4C24-9367-8B5D748AA7C8}) (Version: 3.5.2121.0 - Python Software Foundation) Readiris Pro 10 (HKLM-x32\...\{14D08502-FEE4-40E5-90D3-8A967A1D8BA2}) (Version: - ) Realtek Ethernet Controller Driver For Windows 7 (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.23.623.2010 - Realtek) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7246 - Realtek Semiconductor Corp.) Revo Uninstaller 2.0.1 (HKLM\...\{A28DBDA2-3CC7-4ADC-8BFE-66D7743C6C97}_is1) (Version: 2.0.1 - VS Revo Group, Ltd.) RSSOwl (HKLM-x32\...\RSSOwl) (Version: - ) Safari (HKLM-x32\...\{C779648B-410E-4BBA-B75B-5815BCEFE71D}) (Version: 5.34.57.2 - Apple Inc.) Samsung SCX-4300 Series (HKLM-x32\...\Samsung SCX-4300 Series) (Version: - Samsung Electronics CO.,LTD) SAMSUNG USB Driver for Mobile Phones (HKLM\...\{D0795B21-0CDA-4a92-AB9E-6E92D8111E44}) (Version: 1.5.45.0 - SAMSUNG Electronics Co., Ltd.) SDK (x32 Version: 3.02.002 - Portrait Displays, Inc.) Hidden Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{DE28B448-32E8-4E8F-84F0-A52B21A49B5B}) (Version: - Microsoft) SHIELD Wireless Controller Driver (Version: 2.11.3.5 - NVIDIA Corporation) Hidden SMAC 2.0 (HKLM-x32\...\SMAC 2.0) (Version: - ) SmarThru 4 (HKLM-x32\...\{90F1943D-EA4A-4460-B59F-30023F3BA69A}) (Version: - ) SmarThru Office (HKLM-x32\...\{9BC1E722-AE07-46A3-B7A6-556DBE18E22A}) (Version: 2.10.000 - Samsung Electronics Co., Ltd.) Soda PDF 5 (HKLM-x32\...\{B756A738-AC20-4C26-9EFD-80810B624642}) (Version: 5.0.133.9133 - LULU SOFTWARE LIMITED) Soda PDF 6 (HKLM-x32\...\Soda6) (Version: 1.0.18.17237 - LULU Software Limited) Soda PDF 6 View Module (x32 Version: 6.4.8.18629 - LULU Software Limited) Hidden Soda PDF OCR (HKLM-x32\...\{8BE88409-618C-4136-ADD2-BE49B2B45048}) (Version: 1.0.25.9129 - LULU Software) SoulseekQt (HKLM-x32\...\SoulseekQt) (Version: - ) Sound Blaster X-Fi Surround 5.1 (HKLM-x32\...\{12BEF00E-ECFF-4820-BEDF-CCB9CC06A955}) (Version: 1.0 - ) SpeedFan (remove only) (HKLM-x32\...\SpeedFan) (Version: - ) SRWare Iron wersja 54.0.2850.0 (HKLM-x32\...\{C59CF2CE-B302-4833-AA35-E0E07D8EBC52}_is1) (Version: 54.0.2850.0 - SRWare) Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation) SWF File Player (HKLM-x32\...\{6A86F611-906C-422D-B34A-103662CBC195}_is1) (Version: - swffileplayer.com) Technitium MAC Address Changer v6.0.5 (HKLM-x32\...\TMACv6.0) (Version: 6.0.5 - Technitium) Theme Resource Changer X64 v1.0 (HKLM\...\Theme Resource Changer X64 v1.0) (Version: - Bad Ass Apps) Topaz Adjust 5 (HKLM-x32\...\Topaz Adjust 5) (Version: 5.0.1 - Topaz Labs, LLC) Topaz B&W Effects (HKLM-x32\...\Topaz BW Effects 2) (Version: 2.1.0 - Topaz Labs, LLC) Topaz Clarity (HKLM-x32\...\Topaz Clarity) (Version: 1.0.0 - Topaz Labs, LLC) Topaz Clean 3 (HKLM-x32\...\Topaz Clean 3) (Version: 3.1.0 - Topaz Labs, LLC) Topaz DeJpeg 4 (HKLM-x32\...\Topaz DeJpeg 4) (Version: 4.0.2 - Topaz Labs, LLC) Topaz DeNoise 5 (HKLM-x32\...\Topaz DeNoise 5) (Version: 5.1.0 - Topaz Labs, LLC) Topaz Detail 3 (HKLM-x32\...\Topaz Detail 3) (Version: 3.2.0 - Topaz Labs, LLC) Topaz Fusion Express 2 (HKLM-x32\...\Topaz Fusion Express 2) (Version: 2.1.3 - Topaz Labs, LLC) Topaz InFocus (HKLM-x32\...\Topaz InFocus) (Version: 1.0.0 - Topaz Labs, LLC) Topaz Lens Effects (HKLM-x32\...\Topaz Lens Effects) (Version: 1.2.0 - Topaz Labs, LLC) Topaz ReMask 4 (HKLM-x32\...\Topaz ReMask 4) (Version: 4.0.0 - Topaz Labs, LLC) Topaz ReStyle (HKLM-x32\...\Topaz ReStyle) (Version: 1.0.0 - Topaz Labs, LLC) Topaz Simplify 4 (HKLM-x32\...\Topaz Simplify 4) (Version: 4.1.1 - Topaz Labs, LLC) Topaz Star Effects (HKLM-x32\...\Topaz Star Effects) (Version: 1.1.0 - Topaz Labs, LLC) TP-LINK TL-WN727N Driver (HKLM-x32\...\{52C7E8B3-A21E-460B-A9EC-5B6CBB8635CE}) (Version: 1.3.1 - TP-LINK) TP-LINK Wireless Configuration Utility (HKLM-x32\...\{319D91C6-3D44-436C-9F79-36C0D22372DC}) (Version: 1.3.1 - TP-LINK) Unlocker 1.9.0-x64 (HKLM\...\Unlocker) (Version: 1.9.0-x64 - Cedrick Collomb) UxStyle Core Beta (HKLM\...\{8E363055-15E5-4D8A-9C69-A0A9DE9A3337}) (Version: 0.2.1.1 - The Within Network, LLC) VLC media player (HKLM-x32\...\VLC media player) (Version: 2.1.5 - VideoLAN) Volume Panel (HKLM-x32\...\Creative Volume Panel) (Version: 2.21 - Creative Technology Limited) Vulkan Run Time Libraries 1.0.11.1 (HKLM\...\VulkanRT1.0.11.1) (Version: 1.0.11.1 - LunarG, Inc.) Waterfox 50.0.2 (x64 en-US) (HKLM\...\Waterfox 50.0.2 (x64 en-US)) (Version: 50.0.2 - Mozilla) WebTablet IE Plugin (HKLM-x32\...\Wacom WebTabletPlugin for IE) (Version: 1.1.0.4 - Wacom Technology Corp.) WebTablet Netscape Plugin (HKLM-x32\...\Wacom WebTabletPlugin for Netscape) (Version: 1.1.0.3 - Wacom Technology Corp.) Windows 7 USB/DVD Download Tool (HKLM-x32\...\{CCF298AF-9CE1-4B26-B251-486E98A34789}) (Version: 1.0.30 - Microsoft Corporation) Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3528.0331 - Microsoft Corporation) WinISO (HKLM-x32\...\WinISO) (Version: 6.3.0.4969 - WinISO Computing Inc.) WinPcap 4.1.3 (HKLM-x32\...\WinPcapInst) (Version: 4.1.0.2980 - CACE Technologies) WinRAR 5.20 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.20.0 - win.rar GmbH) Wireshark 2.0.1 (64-bit) (HKLM-x32\...\Wireshark) (Version: 2.0.1 - The Wireshark developer community, hxxps://www.wireshark.org) Wise Registry Cleaner 9.35 (HKLM-x32\...\Wise Registry Cleaner_is1) (Version: 9.35 - WiseCleaner.com, Inc.) Xenu's Link Sleuth (HKLM-x32\...\Xenu's Link Sleuth) (Version: 1.3.8 - Tilman Hausherr) ZET 9 Lite 2.17 (HKLM-x32\...\ZET 9 Lite 2.17) (Version: 2.17 - ZET Astrology Software) Языковой пакет для поддержки размещения набора средств Microsoft Visual Studio Tools для работы с приложениями 2012 (x64) - RUS (Version: 11.0.51108 - Microsoft Corporation) Hidden Языковой пакет для поддержки размещения набора средств Microsoft Visual Studio Tools для работы с приложениями 2012 (x86) - RUS (x32 Version: 11.0.51108 - Microsoft Corporation) Hidden ==================== Niestandardowe rejestracje CLSID (filtrowane): ========================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) ==================== Zaplanowane zadania (filtrowane) ============= (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) Task: {0F58E6A5-A380-4584-8FB5-221A88DE7085} - System32\Tasks\COMODO\COMODO Autostart {D5EFF3B3-E126-4AF6-BCE9-852A72129E10} => C:\Program Files\COMODO\COMODO Internet Security\cistray.exe [2016-09-14] (COMODO) Task: {14C4F302-B776-4CFE-B17E-EF798F229DAD} - System32\Tasks\COMODO\COMODO Update {A6D52E4F-569B-4756-B3D8-DF217313DA85} => C:\Program Files\COMODO\COMODO Internet Security\cfpconfg.exe [2016-09-14] (COMODO) Task: {1916A703-D6AC-4C9F-A80C-B242C541F1C7} - System32\Tasks\{E0D56FC9-01B7-4734-8C6A-F14015DC1AD0} => c:\program files\waterfox\waterfox.exe [2016-12-12] (Waterfox) Task: {2864B4EA-2177-47BA-9AE3-E9D9F362B2F0} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2015-02-06] (Piriform Ltd) Task: {513B2EDA-D864-4DE5-A4E0-239EAF86DE00} - System32\Tasks\Motorola Device Manager Initial Update => C:\Program Files (x86)\Motorola Mobility\Motorola Device Manager\MotorolaDeviceManagerUpdate.exe [2014-10-30] () Task: {563C3317-B581-46B8-8D99-74D73137F8E9} - System32\Tasks\MSIAfterburner => C:\Program Files (x86)\MSI Afterburner\MSIAfterburner.exe [2011-02-15] () Task: {57022578-135F-4626-A48D-F2B66DC876CE} - System32\Tasks\Restore Point Creator\Restore Point Creator -- Run with no UAC (For User fff) => C:\Program Files (x86)\Restore Point Creator\Restore Point Creator.exe [2015-02-23] () Task: {5DB1F165-FBF2-4831-BA43-EA3F0728302A} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2014-12-31] (Adobe Systems Incorporated) Task: {7B7666D6-BFC7-4FD6-8CD1-F7ABF3C39539} - System32\Tasks\Restore Point Creator\Restore Point Creator -- Run with no UAC (Create Restore Point) (For User fff) => C:\Program Files (x86)\Restore Point Creator\Restore Point Creator.exe [2015-02-23] () Task: {87844BDE-CEE9-46C8-BDB5-F184B1207DDA} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-04-20] (Google Inc.) Task: {89098E91-0D8F-4D18-8E3E-714B903E371D} - System32\Tasks\Restore Point Creator\Restore Point Creator -- Run with no UAC (Create Custom Restore Point) (For User fff) => C:\Program Files (x86)\Restore Point Creator\Restore Point Creator.exe [2015-02-23] () Task: {94877FC8-4AEF-4156-9EE1-B9BBAC948320} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-916462668-3198608929-2543406701-1000UA => C:\Users\sss\AppData\Local\Google\Update\GoogleUpdate.exe [2016-04-20] (Google Inc.) Task: {97DE693B-082C-4A84-A109-228AE05102A7} - System32\Tasks\Adobe Flash Player PPAPI Notifier => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_23_0_0_207_pepper.exe [2016-12-04] (Adobe Systems Incorporated) Task: {A316934D-A199-4150-8C2B-9B55400F90FE} - System32\Tasks\Motorola Device Manager Update => C:\Program Files (x86)\Motorola Mobility\Motorola Device Manager\MotorolaDeviceManagerUpdate.exe [2014-10-30] () Task: {AE944B55-1FF0-45E9-A286-DC3F3345B319} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-04-20] (Google Inc.) Task: {B8155663-0E91-49F3-AE91-41CFE2EC7950} - System32\Tasks\Microsoft\Windows\Media Center\StartRecording => C:\Windows\ehome\ehrec.exe Task: {BA96B3F7-9435-453E-9EBB-E07925B6ABEE} - System32\Tasks\COMODO\COMODO Signature Update {B9D5C6F9-17D2-4917-8BD0-614BAA1C6A59} => C:\Program Files\COMODO\COMODO Internet Security\cfpconfg.exe [2016-09-14] (COMODO) Task: {C6AAD9F1-E955-4222-8138-A2F1F6B8D4BB} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-916462668-3198608929-2543406701-1000Core => C:\Users\sss\AppData\Local\Google\Update\GoogleUpdate.exe [2016-04-20] (Google Inc.) Task: {CCF933FD-4C21-4596-B398-F75DADD2BB65} - System32\Tasks\WiseCleaner\WRCSkipUAC => C:\Program Files (x86)\Wise\Wise Registry Cleaner\WiseRegCleaner.exe [2016-12-11] (WiseCleaner.com) Task: {CDD32472-51E2-405D-965D-5F30BCD11AA4} - System32\Tasks\Razer_Game_Booster_AutoUpdate => C:\Program Files (x86)\Razer\Razer Game Booster\AutoUpdate.exe Task: {E2F1125A-F770-4240-9EE8-A066DCBD476E} - System32\Tasks\{28E7BE6F-9DBD-43B5-BE8E-DE5B50CB1598} => pcalua.exe -a E:\TL-WN727N\Setup.exe -d E:\TL-WN727N (Załączenie wejścia w fixlist spowoduje przesunięcie pliku zadania (.job). Plik uruchamiany docelowo przez zadanie nie zostanie przeniesiony.) Task: C:\Windows\Tasks\Adobe Flash Player PPAPI Notifier.job => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_23_0_0_207_pepper.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-916462668-3198608929-2543406701-1000Core.job => C:\Users\sss\AppData\Local\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-916462668-3198608929-2543406701-1000UA.job => C:\Users\sss\AppData\Local\Google\Update\GoogleUpdate.exe ==================== Skróty ============================= (Wybrane wejścia mogą zostać załączone w celu ich zresetowania lub usunięcia.) ShortcutWithArgument: C:\Users\fffz\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\3373c9ebc3a5e445\Chromium.lnk -> C:\Program Files (x86)\SRWare Iron\chrome.exe (SRWare) -> --profile-directory=Default ==================== Załadowane moduły (filtrowane) ============== 2016-11-09 11:55 - 2016-05-10 00:40 - 00133056 ____C () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll 2016-12-12 15:20 - 2016-02-04 12:35 - 00098272 ____C () C:\Program Files (x86)\Common Files\Portrait Displays\Plugins\DP\msgHook64.dll 2014-06-06 14:02 - 2008-02-06 00:54 - 00022016 _____ () C:\Windows\System32\sse1ml6.dll 2016-12-12 15:20 - 2016-12-12 15:20 - 00134624 ____C () C:\Program Files (x86)\Common Files\Portrait Displays\Plugins\AM\dtsslsrv.exe 2014-07-01 23:19 - 2014-07-01 23:19 - 00075136 _____ () C:\Windows\SysWOW64\PnkBstrA.exe 2014-06-06 14:01 - 2009-07-31 08:34 - 00327168 ___RC () C:\Windows\system32\SaMinDrv.dll 2010-04-26 02:09 - 2010-04-26 02:09 - 00102912 ____C () C:\Program Files (x86)\gdipp\EasyHook64.dll 2013-09-04 23:17 - 2013-09-04 23:17 - 04300456 _____ () C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Cultures\OFFICE.ODF 2016-12-12 15:20 - 2016-02-04 12:35 - 00276960 ____C () C:\Program Files (x86)\Common Files\Portrait Displays\Shared\dthook.dll 2014-06-05 02:03 - 2009-07-20 11:35 - 00018960 _____ () C:\Program Files\Logitech\SetPoint\khalwrapper.dll 2016-12-10 21:40 - 2014-09-10 10:13 - 00847872 ____C () C:\Program Files (x86)\TP-LINK\TP-LINK Wireless Configuration Utility\TWCU.exe 2014-06-05 02:03 - 2009-07-20 03:00 - 00077824 _____ () C:\Program Files\Logitech\SetPoint\x86\SetPoint32.exe 2009-08-28 03:58 - 2009-08-28 03:58 - 00614400 _____ () C:\Windows\Samsung\PanelMgr\SSMMgr.exe 2009-08-28 00:53 - 2009-08-28 00:53 - 00306688 _____ () C:\Windows\Samsung\PanelMgr\caller64.exe 2014-06-05 00:53 - 2016-12-12 15:20 - 00163296 ____C () C:\Program Files (x86)\Common Files\Portrait Displays\Plugins\DP\DPHelper.exe 2014-06-05 00:53 - 2016-12-12 15:20 - 00198112 ____C () C:\Program Files (x86)\Common Files\Portrait Displays\Plugins\DP\DPHelper64.exe 2016-11-30 14:02 - 2016-11-30 14:02 - 27071680 ____C () C:\Windows\system32\Macromed\Flash\NPSWF64_23_0_0_207.dll 2014-06-05 00:53 - 2012-08-22 16:35 - 04609664 _____ () C:\Program Files (x86)\Common Files\Portrait Displays\Plugins\AM\qt-mt332.dll 2016-12-12 15:20 - 2016-02-04 12:35 - 00163296 ____C () C:\Program Files (x86)\Common Files\Portrait Displays\Plugins\AM\SSLEAY32.dll 2016-12-12 15:20 - 2016-02-04 12:35 - 00806368 ____C () C:\Program Files (x86)\Common Files\Portrait Displays\Plugins\AM\LIBEAY32.dll 2014-04-07 15:31 - 2014-04-07 15:31 - 00172032 ____C () C:\Program Files (x86)\Motorola Mobility\Motorola Device Manager\css_core.dll 2010-04-26 02:09 - 2010-04-26 02:09 - 00098304 ____C () C:\Program Files (x86)\gdipp\EasyHook32.dll 2014-06-05 00:53 - 2016-12-12 15:20 - 00093664 ____C () C:\Program Files (x86)\Common Files\Portrait Displays\Plugins\DP\msgHook.dll 2013-09-04 23:14 - 2013-09-04 23:14 - 04300456 _____ () C:\Program Files (x86)\Common Files\microsoft shared\OFFICE14\Cultures\OFFICE.ODF 2016-03-08 19:32 - 2016-03-08 19:32 - 01086176 ____C () C:\Program Files (x86)\Winstep\wodTelnetDLX.dll 2016-12-10 21:40 - 2014-08-26 08:48 - 01411072 ____C () C:\Program Files (x86)\TP-LINK\TP-LINK Wireless Configuration Utility\nicLan.dll 2016-12-10 21:40 - 2014-08-26 08:48 - 00193024 ____C () C:\Program Files (x86)\TP-LINK\TP-LINK Wireless Configuration Utility\DC_WFF.dll 2016-12-10 21:40 - 2014-09-10 10:12 - 00192000 ____C () C:\Program Files (x86)\TP-LINK\TP-LINK Wireless Configuration Utility\WJRa.dll 2016-12-10 21:40 - 2014-08-26 08:48 - 01206576 ____C () C:\Program Files (x86)\TP-LINK\TP-LINK Wireless Configuration Utility\RaWLAPI.dll 2014-06-05 01:07 - 2009-11-30 17:53 - 00073728 _____ () C:\Windows\SysWOW64\CmdRtr.DLL 2014-06-05 01:07 - 2009-12-08 14:50 - 00177664 _____ () C:\Windows\SysWOW64\APOMngr.DLL 2014-06-05 00:53 - 2016-12-12 15:20 - 00191968 ____C () C:\Program Files (x86)\Common Files\Portrait Displays\Shared\PresetsCOM.dll 2014-06-05 00:53 - 2016-12-12 15:20 - 00122336 ____C () C:\Program Files (x86)\Common Files\Portrait Displays\Plugins\CC\gui.dll ==================== Alternate Data Streams (filtrowane) ========= (Załączenie wejścia w fixlist spowoduje usunięcie strumienia ADS.) AlternateDataStreams: C:\PatchMyPC.exe:$CmdTcID [64] AlternateDataStreams: C:\Windows\CtDrvIns.exe:$CmdTcID [64] AlternateDataStreams: C:\Windows\Explorer.exe.backup:$CmdTcID [130] AlternateDataStreams: C:\Windows\notepad.exe:$CmdTcID [64] AlternateDataStreams: C:\Windows\py.exe:$CmdTcID [64] AlternateDataStreams: C:\Windows\pyw.exe:$CmdTcID [64] AlternateDataStreams: C:\Windows\UNNeroVision.exe:$CmdTcID [64] AlternateDataStreams: C:\Windows\UnsignedThemesSvc.exe:$CmdTcID [64] AlternateDataStreams: C:\Windows\V0220Cfg.exe:$CmdTcID [64] AlternateDataStreams: C:\Windows\V0220Mon.exe:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\AdobePDF.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\AdobePDFUI.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\appinfo.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\asycfilt.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\atmfd.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\atmlib.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\audiodg.exe:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\AudioEng.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\AUDIOKSE.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\AudioSes.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\audiosrv.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\authui.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\basesrv.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\blackbox.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\catsrvut.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\cdxareader.ax:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\cewmdm.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\charmap.exe:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\clfs.sys:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\clfsw32.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\comctl32.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\comsvcs.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\consent.exe:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\CPFilters.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\crypt32.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\cryptnet.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\cryptsp.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\cryptsvc.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\cryptui.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\CtCamMgr.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\d3d10warp.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\D3DX9_42.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\dciman32.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\drmmgrtn.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\drmv2clt.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\dwmapi.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\dwmcore.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\els.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\EncDec.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\EncDump.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\ExplorerFrame.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\ff_vfw.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\fixmapi.exe:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\fontsub.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\gdi32.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\hpinkcoiC211.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\hpinkinsC211.exe:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\hpinkstsC211LM.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\HPScanTRDrv_DJ2540.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\HPWia2_DJ2540.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\InkEd.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\javaws.exe:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\jnwmon.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\LAVAudio.ax:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\LAVSplitter.ax:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\LAVVideo.ax:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\lpk.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\mapi32.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\mapistub.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\mfds.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\MRT.exe:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\msi.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\msiexec.exe:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\msihnd.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\msimsg.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\msmmsp.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\msnetobj.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\msscp.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\mstscax.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\msxml3.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\msxml3r.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\msxml6.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\msxml6r.dll:$CmdTcID [130] AlternateDataStreams: C:\Windows\system32\mtxoci.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\netr28ux.sys:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\nlasvc.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\notepad.exe:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\nvapi64.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\nvcpl.dll:$CmdTcID [130] AlternateDataStreams: C:\Windows\system32\nvcuda.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\nvcuvid.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\nvd3dumx.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\nvdispco6436519.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\nvdispgenco6436519.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\nvfatbinaryLoader.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\NvFBC64.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\nvhdagenco6420103.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\nvhdap64.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\NvIFR64.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\nvinitx.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\nvoglshim64.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\nvoglv64.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\nvopencl.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\nvptxJitCompiler.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\nvumdshimx.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\nvvsvc.exe:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\nvwgf2umx.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\ole32.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\oleaut32.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\OpenCL.dll:$CmdTcID [130] AlternateDataStreams: C:\Windows\system32\packager.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\pcadm.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\pcaevts.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\pcalua.exe:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\pcasvc.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\pcawrk.exe:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\Pen_Tablet.exe:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\perftrack.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\pku2u.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\poqexec.exe:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\powertracker.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\profsvc.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\pwdrvio.sys:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\pwdspio.sys:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\pwNative.exe:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\qedit.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\RaCoInstx.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\rdpcorets.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\RdpGroupPolicyExtension.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\rdpudd.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\rdvidcrl.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\RtNicProp64.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\RTNUninst64.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\samlib.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\samsrv.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\scesrv.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\schedsvc.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\seclogon.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\services.exe:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\shell32.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\Shell32.dll.backup:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\sysmain.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\termsrv.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\tsgqec.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\TSWbPrxy.exe:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\tzres.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\ubpm.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\user32.dll:$CmdTcID [130] AlternateDataStreams: C:\Windows\system32\usp10.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\V0220Ext.ax:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\V0220Hwx.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\V0220Pin.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\V0220Srv.exe:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\VBoxNetFltNobj.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\VSFilter.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\vulkaninfo-1-1-0-11-1.exe:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\vulkaninfo.exe:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\WdfCoInstaller01007.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\wdfcoinstaller01009.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\WdfCoInstaller01011.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\wdi.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\WindowsCodecs.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\winload.exe:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\winresume.exe:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\WinSetupUI.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\wintrust.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\WinUSBCoInstaller.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\wksprt.exe:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\wmdrmsdk.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\WMPhoto.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\WpdMtp.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\wpdshext.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\wshrm.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\WSManHTTPConfig.exe:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\WSManMigrationPlugin.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\WsmAuto.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\WsmSvc.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\WsmWmiPl.dll:$CmdTcID [130] AlternateDataStreams: C:\Windows\system32\wu.upgrade.ps.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\wuapi.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\wuapp.exe:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\wuauclt.exe:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\wuaueng.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\wucltux.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\wudriver.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\wups.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\wups2.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\wuwebv.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\asycfilt.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\atmfd.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\atmlib.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\AudioEng.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\AUDIOKSE.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\AudioSes.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\authui.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\blackbox.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\catsrvut.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\cdxareader.ax:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\cewmdm.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\charmap.exe:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\clfsw32.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\COMCT232.ocx:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\comctl32.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\comctl32.ocx:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\Comdlg32.ocx:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\comsvcs.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\CPFilters.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\crypt32.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\cryptnet.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\cryptsp.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\cryptsvc.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\cryptui.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\CtCamMgr.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\d3d10warp.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\D3DX9_42.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\dao360.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\dciman32.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\DiscHandler.exe:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\DiscHandler.exe.new:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\DivXa32.acm:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\drmmgrtn.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\drmv2clt.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\dwmapi.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\dwmcore.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\EditCtlsU.ocx:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\els.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\EncDec.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\ExLVwU.ocx:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\ExplorerFrame.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\ExTVwU.ocx:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\ff_vfw.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\ff_wmv9.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\fixmapi.exe:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\FlashPlayerApp.exe:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\FolderWatcher.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\fontsub.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\gdi32.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\IMJP10K.DLL:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\InkEd.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\Lagarith.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\LAVAudio.ax:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\LAVSplitter.ax:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\LAVVideo.ax:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\lpk.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\mapi32.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\mapistub.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\MCI32.OCX:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\MFC71ESP.DLL:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\mfds.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\MSCOMCT2.OCX:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\msctf.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\msi.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\msiexec.exe:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\msihnd.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\msimsg.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\msjava.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\msnetobj.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\msorcl32.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\msscp.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\mstscax.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\msxml3.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\msxml3r.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\msxml6.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\msxml6r.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\mtxoci.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\ncsi.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\NextControls.ocx:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\nlaapi.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\notepad.exe:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\nvapi.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\nvcompiler.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\nvcuda.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\nvcuvid.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\nvd3dum.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\nvfatbinaryLoader.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\NvFBC.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\NvIFR.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\nvinit.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\nvoglshim32.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\nvoglv32.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\nvopencl.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\nvptxJitCompiler.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\nvStreaming.exe:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\nvumdshim.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\nvwgf2um.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\ole32.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\oleaut32.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\OpenCL.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\packager.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\pku2u.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\poqexec.exe:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\PresentationCFFRasterizerNative_v0300.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\qedit.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\rdvidcrl.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\samlib.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\scesrv.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\shell32.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\tsgqec.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\tzres.dll:$CmdTcID [130] AlternateDataStreams: C:\Windows\SysWOW64\ubpm.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\unrar.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\user32.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\usp10.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\V0220Cvw.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\V0220Ext.ax:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\V0220Hwx.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\V0220Vfw.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\VSFilter.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\vulkaninfo-1-1-0-11-1.exe:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\vulkaninfo.exe:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\wdi.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\WindowsCodecs.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\wintrust.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\wmdrmsdk.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\WMPhoto.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\wpdshext.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\wshrm.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\WSManHTTPConfig.exe:$CmdTcID [130] AlternateDataStreams: C:\Windows\SysWOW64\WSManMigrationPlugin.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\WsmAuto.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\WsmSvc.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\WsmWmiPl.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\wuapi.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\wuapp.exe:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\wudriver.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\wups.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\wuwebv.dll:$CmdTcID [64] AlternateDataStreams: C:\Windows\SysWOW64\x264vfw.dll:$CmdTcID [130] AlternateDataStreams: C:\Windows\system32\Drivers\afd.sys:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\Drivers\athrxusb.sys:$CmdZnID [26] AlternateDataStreams: C:\Windows\system32\Drivers\avgntflt.sys:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\Drivers\avipbb.sys:$CmdTcID [130] AlternateDataStreams: C:\Windows\system32\Drivers\avkmgr.sys:$CmdTcID [130] AlternateDataStreams: C:\Windows\system32\Drivers\avnetflt.sys:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\Drivers\eve.sys:$CmdTcID [130] AlternateDataStreams: C:\Windows\system32\Drivers\http.sys:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\Drivers\motccgp.sys:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\Drivers\motfilt.sys:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\Drivers\motoandroid.sys:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\Drivers\Motousbnet.sys:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\Drivers\motswch.sys:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\Drivers\motusbdevice.sys:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\Drivers\mountmgr.sys:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\Drivers\nbdrv.sys:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\Drivers\ndis.sys:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\Drivers\netr28ux.sys:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\Drivers\nvhda64v.sys:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\Drivers\nvlddmkm.sys:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\Drivers\PEAuth.sys:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\Drivers\Rt64win7.sys:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\Drivers\RTL8192su.sys:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\Drivers\serscan.sys:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\Drivers\Smb_driver_Intel.sys:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\Drivers\ssudbus.sys:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\Drivers\ssudmdm.sys:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\Drivers\ssudserd.sys:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\Drivers\tap0901.sys:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\Drivers\tdx.sys:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\Drivers\USBSTOR.SYS:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\Drivers\V0220Dev.sys:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\Drivers\V0220Vfx.sys:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\Drivers\VBoxDrv.sys:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\Drivers\VBoxNetAdp.sys:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\Drivers\VBoxNetFlt.sys:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\Drivers\VBoxUSB.sys:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\Drivers\VBoxUSBMon.sys:$CmdTcID [64] AlternateDataStreams: C:\Windows\system32\Drivers\wacmoumonitor.sys:$CmdTcID [130] AlternateDataStreams: C:\Windows\system32\Drivers\wacommousefilter.sys:$CmdTcID [130] AlternateDataStreams: C:\Windows\system32\Drivers\wacomvhid.sys:$CmdTcID [130] AlternateDataStreams: C:\Windows\system32\Drivers\winusb.sys:$CmdTcID [64] AlternateDataStreams: C:\ProgramData\TEMP:373E1720 [125] AlternateDataStreams: C:\ProgramData\TEMP:5B4BB726 [234] AlternateDataStreams: C:\Users\fffz\Desktop\quote-focus-is-a-matter-of-deciding-what-things-you-re-not-going-to-do-john-carmack-4-84-90.jpg:$CmdZnID [26] AlternateDataStreams: C:\Users\fffz\Downloads\15439815_1813000112271851_7161457467995223082_n.jpg:$CmdZnID [26] AlternateDataStreams: C:\Users\fffz\Downloads\15540885_172004593274024_5986325546059533832_o.jpg:$CmdZnID [26] AlternateDataStreams: C:\Users\fffz\Downloads\15541489_990466134392066_4543651345659519670_n.jpg:$CmdZnID [26] AlternateDataStreams: C:\Users\fffz\Downloads\15541602_1813000128938516_6292715907066336846_n.jpg:$CmdZnID [26] AlternateDataStreams: C:\Users\fffz\Downloads\15578614_1750539251936219_327559495297303444_n.jpg:$CmdZnID [26] ==================== Tryb awaryjny (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Wartość "AlternateShell" zostanie przywrócona.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\DDB74C9E.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\DDB74C9E.sys => ""="Driver" ==================== Powiązania plików (filtrowane) =============== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci.) ==================== Internet Explorer - Witryny zaufane i z ograniczeniami =============== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru.) ==================== Hosts - zawartość: =============================== (Użycie dyrektywy Hosts: w fixlist spowoduje reset pliku Hosts.) 2009-07-14 03:34 - 2016-12-11 16:39 - 00000027 ___AC C:\Windows\system32\Drivers\etc\hosts 127.0.0.1 localhost ==================== Inne obszary ============================ (Obecnie brak automatycznej naprawy dla tej sekcji.) HKU\S-1-5-21-916462668-3198608929-2543406701-1005\Control Panel\Desktop\\Wallpaper -> C:\Users\fffz\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg DNS Servers: 192.168.1.254 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 2) (ConsentPromptBehaviorUser: 3) (EnableLUA: 0) Zapora systemu Windows [funkcja włączona] ==================== MSCONFIG/TASK MANAGER - Wyłączone elementy == MSCONFIG\Services: cbVSCService11 => 2 MSCONFIG\Services: CobianBackup11 => 2 MSCONFIG\Services: nlsX86cc => 2 MSCONFIG\Services: NMIndexingService => 3 MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^AutoBoot.lnk => C:\Windows\pss\AutoBoot.lnk.CommonStartup MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^CodecPackUpdateChecker.lnk => C:\Windows\pss\CodecPackUpdateChecker.lnk.CommonStartup MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Kiwi Syslog Daemon.lnk => C:\Windows\pss\Kiwi Syslog Daemon.lnk.CommonStartup MSCONFIG\startupfolder: C:^Users^sss^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Logitech . Rejestracja produktu.lnk => C:\Windows\pss\Logitech . Rejestracja produktu.lnk.Startup MSCONFIG\startupreg: Acrobat Assistant 8.0 => "C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Acrotray.exe" MSCONFIG\startupreg: Adobe ARM => "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" MSCONFIG\startupreg: AdobeAAMUpdater-1.0 => "C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe" MSCONFIG\startupreg: AdobeCS6ServiceManager => "C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe" -launchedbylogin MSCONFIG\startupreg: Cobian Backup 11 interface => "C:\Program Files (x86)\Cobian Backup 11\cbInterface.exe" -service MSCONFIG\startupreg: Gadwin PrintScreen (64-bit) => "C:\Program Files\Gadwin\Gadwin PrintScreen\PrintScreen64.exe" /nosplash MSCONFIG\startupreg: Google Update => "C:\Users\sss\AppData\Local\Google\Update\GoogleUpdate.exe" /c MSCONFIG\startupreg: HP Software Update => C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe MSCONFIG\startupreg: iTunesHelper => "C:\Program Files (x86)\iTunes\iTunesHelper.exe" MSCONFIG\startupreg: NetLimiter => C:\Program Files (x86)\NetLimiter\NetLimiter.exe /s MSCONFIG\startupreg: PWRISOVM.EXE => C:\Program Files\PowerISO\PWRISOVM.EXE -startup MSCONFIG\startupreg: SDTray => "C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe" MSCONFIG\startupreg: STO Backup Service => C:\Program Files (x86)\SmarThru Office\BackUpSvr.exe MSCONFIG\startupreg: STO Launcher Service => C:\Program Files (x86)\SmarThru Office\x64\LegacyLauncher.exe /autorun MSCONFIG\startupreg: uTorrent => "C:\Users\sss\AppData\Roaming\uTorrent\uTorrent.exe" /MINIMIZED MSCONFIG\startupreg: World of Tanks (1) => "H:\World_of_Tanks\WargamingGameUpdater.exe" MSCONFIG\startupreg: XboxStat => "C:\Program Files\Microsoft Xbox 360 Accessories\XboxStat.exe" silentrun ==================== Reguły Zapory systemu Windows (filtrowane) =============== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) FirewallRules: [SPPSVC-In-TCP] => %SystemRoot%\system32\sppsvc.exe FirewallRules: [SPPSVC-In-TCP-NoScope] => %SystemRoot%\system32\sppsvc.exe FirewallRules: [{F2D1ECBE-EDD7-48DD-AC68-BC2488BE2A7F}] => LPort=1542 FirewallRules: [{3FDC33FB-40AC-495F-A644-2B8AAC42318E}] => LPort=1542 FirewallRules: [{F8EC8AF5-4E5A-43C7-9780-5026D3498037}] => LPort=53 FirewallRules: [{33FCA5CC-8FE4-4149-A8ED-1109C28A6BF1}] => C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe FirewallRules: [{45A68691-EC93-4D19-A1AD-95A3A34A1D73}] => LPort=2869 FirewallRules: [{E4CE87CF-7348-4637-B9A4-EA869E0B9B9D}] => LPort=1900 FirewallRules: [{E72EDB41-BA35-4F6A-94C2-4CD293245A80}] => C:\Windows\SysWOW64\PnkBstrA.exe FirewallRules: [{6B7542C6-435A-4C41-8402-ECF3E0A87263}] => C:\Windows\SysWOW64\PnkBstrA.exe FirewallRules: [{6AD58F8A-4C9F-4215-B6E8-D54AF0DD99FE}] => C:\Windows\SysWOW64\PnkBstrB.exe FirewallRules: [{607FF490-4808-4AF1-A917-9F402817C0AF}] => C:\Windows\SysWOW64\PnkBstrB.exe FirewallRules: [{DA636BF4-BD5A-434E-9177-08925A4719F1}] => C:\Program Files (x86)\NapiProjekt\napisy.exe FirewallRules: [{5163EF59-899E-4018-8496-83556A321B67}] => C:\Program Files (x86)\NapiProjekt\napisy.exe FirewallRules: [{309D4863-88CC-4DF6-B37C-B82F323333F9}] => C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{AAF7A37F-0F90-4F3F-B329-8C7BFB297C57}] => C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{BB9283C1-C512-436E-AB70-B12C9803500B}] => c:\Program Files\Corel\CorelDRAW Graphics Suite X7\Programs64\CorelDrw.exe FirewallRules: [{BA473A67-7180-4375-98A7-1EBD364F8976}] => c:\Program Files\Corel\CorelDRAW Graphics Suite X7\Programs64\CorelPP.exe FirewallRules: [{E64AA190-FA25-4F7D-861C-2002110DCA45}] => C:\Program Files\Waterfox\waterfox.exe FirewallRules: [{0B17D93D-2B67-4AA8-B706-B6F976CFAECC}] => C:\Program Files\Waterfox\waterfox.exe FirewallRules: [{1293C1A6-D93C-419F-865D-40AF10A4EB90}] => C:\Program Files (x86)\Wondershare\PDF to EPUB\PDFtoEPUB.exe FirewallRules: [TCP Query User{E6BD7808-939A-4795-9412-08A30408457A}C:\program files (x86)\soulseekqt\soulseekqt.exe] => C:\program files (x86)\soulseekqt\soulseekqt.exe FirewallRules: [UDP Query User{58F5DED6-EDBF-4D32-80CB-53B49E59D54A}C:\program files (x86)\soulseekqt\soulseekqt.exe] => C:\program files (x86)\soulseekqt\soulseekqt.exe FirewallRules: [TCP Query User{D21ACE6E-17A1-4294-B8F0-AE12C5023133}C:\program files\onone software\perfect effects 9\perfect effects 9.exe] => C:\program files\onone software\perfect effects 9\perfect effects 9.exe FirewallRules: [UDP Query User{1B62E77C-2F0C-4F1D-BF4F-3DCB20A35F7B}C:\program files\onone software\perfect effects 9\perfect effects 9.exe] => C:\program files\onone software\perfect effects 9\perfect effects 9.exe FirewallRules: [{54A9754A-0428-4D61-9511-C8A84123369A}] => C:\Program Files\HP\HP Deskjet 2540 series\Bin\DeviceSetup.exe FirewallRules: [{6534937B-346C-4EE3-B290-DFBEA60A0CE5}] => LPort=5357 FirewallRules: [{9F2189B9-3B27-462E-9A2F-95E69A737090}] => C:\Program Files\HP\HP Deskjet 2540 series\Bin\HPNetworkCommunicatorCom.exe FirewallRules: [TCP Query User{60E812CF-68B4-4378-B263-70B3C2C2EB28}C:\program files (x86)\jetbrains\pycharm 3.4.1\bin\pycharm.exe] => C:\program files (x86)\jetbrains\pycharm 3.4.1\bin\pycharm.exe FirewallRules: [UDP Query User{1DE868E6-0CA4-4D6B-9785-4E1868723059}C:\program files (x86)\jetbrains\pycharm 3.4.1\bin\pycharm.exe] => C:\program files (x86)\jetbrains\pycharm 3.4.1\bin\pycharm.exe FirewallRules: [{7468C5D7-729A-426A-BE8E-8B10A082B836}] => C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{D6B71A58-814E-4947-85FC-D513FB474B83}] => C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [TCP Query User{5FCD080C-457F-4311-B775-2BFD3D98DF64}C:\windows\microsoft.net\framework\v2.0.50727\vbc.exe] => C:\windows\microsoft.net\framework\v2.0.50727\vbc.exe FirewallRules: [UDP Query User{CB2B2521-925A-4CD6-8690-99A40259E5FC}C:\windows\microsoft.net\framework\v2.0.50727\vbc.exe] => C:\windows\microsoft.net\framework\v2.0.50727\vbc.exe FirewallRules: [TCP Query User{42BBB2DC-28B6-431E-AC0F-CBC6AAD81311}L:\processing-3.0.1-windows64\processing-3.0.1\java\bin\java.exe] => L:\processing-3.0.1-windows64\processing-3.0.1\java\bin\java.exe FirewallRules: [UDP Query User{6D20185C-707E-4947-A4EC-216BB4A08869}L:\processing-3.0.1-windows64\processing-3.0.1\java\bin\java.exe] => L:\processing-3.0.1-windows64\processing-3.0.1\java\bin\java.exe FirewallRules: [{F92770EE-A194-4B7B-8C7B-F4271DCE681A}] => C:\Users\sss\AppData\Local\Google\Update\GoogleUpdate.exe FirewallRules: [{F2A570BB-4845-40EA-A524-6762FA349E4E}] => %USERPROFILE%\AppData\Local\Google\Update\GoogleUpdate.exe FirewallRules: [{2D7B76C0-7A60-472C-A8F7-0A90D01C109E}] => C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{512F5F56-C033-45AA-B3D6-F9BB703219C6}] => C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{FDA6812A-D573-46E1-9614-E873FD05D0D1}] => C:\Program Files (x86)\Steam\bin\steamwebhelper.exe FirewallRules: [{C513D88A-FF27-41AB-85DA-22FF6F451D9E}] => C:\Program Files (x86)\Steam\bin\steamwebhelper.exe FirewallRules: [TCP Query User{8C54BBE0-159A-4FD3-9D03-03D45DF0DB7D}H:\world_of_tanks\worldoftanks.exe] => H:\world_of_tanks\worldoftanks.exe FirewallRules: [UDP Query User{DE119340-289F-4C18-B933-812789ABC409}H:\world_of_tanks\worldoftanks.exe] => H:\world_of_tanks\worldoftanks.exe FirewallRules: [TCP Query User{4980DF0F-29EF-40DB-B58D-01AAE9EBE569}H:\world_of_tanks\wotlauncher.exe] => H:\world_of_tanks\wotlauncher.exe FirewallRules: [UDP Query User{BE4C3471-13B5-4CAB-87A0-930B096C5EE2}H:\world_of_tanks\wotlauncher.exe] => H:\world_of_tanks\wotlauncher.exe FirewallRules: [TCP Query User{334CCBAF-2148-4681-A60E-8FE47F93D646}C:\program files (x86)\brackets\node.exe] => C:\program files (x86)\brackets\node.exe FirewallRules: [UDP Query User{633F8846-D748-4706-8034-64715B213921}C:\program files (x86)\brackets\node.exe] => C:\program files (x86)\brackets\node.exe FirewallRules: [{E279A721-F548-4405-BD4D-DA421C2931B7}] => C:\Program Files (x86)\Technitium\Bit Chat\BitChat.exe FirewallRules: [TCP Query User{251AB1F1-A1FB-406B-91D3-983935538612}C:\program files (x86)\srware iron\chrome.exe] => C:\program files (x86)\srware iron\chrome.exe FirewallRules: [UDP Query User{EB72CE5D-D3C7-4EEB-A3AA-8B641CEC4A99}C:\program files (x86)\srware iron\chrome.exe] => C:\program files (x86)\srware iron\chrome.exe FirewallRules: [{8C097544-67B8-4A4B-904A-99E82CEC330D}] => C:\Program Files\Nightly\firefox.exe FirewallRules: [{1764A6EC-83E6-4D4C-8075-1E3167F63BCD}] => C:\Program Files\Nightly\firefox.exe FirewallRules: [{FDBC75FC-AB6B-4A28-87C5-B5B903790AE9}] => L:\uTorrent\utorrent.exe FirewallRules: [{5B5A163C-31DC-42FE-B3E9-D96B17E670DF}] => L:\uTorrent\utorrent.exe FirewallRules: [TCP Query User{5488BA21-61F0-4504-AFB5-7EBC5C9986BC}C:\program files (x86)\videolan\vlc\vlc.exe] => C:\program files (x86)\videolan\vlc\vlc.exe FirewallRules: [UDP Query User{625FF77B-DE8E-4B95-B6BF-162EF622AB63}C:\program files (x86)\videolan\vlc\vlc.exe] => C:\program files (x86)\videolan\vlc\vlc.exe ==================== Punkty Przywracania systemu ========================= 12-12-2016 15:19:49 Configured HP Display Assistant 12-12-2016 15:19:55 Configured HP Display Assistant 12-12-2016 16:26:06 Installed gdipp 14-12-2016 14:27:05 Restore Point Created by FRST ==================== Wadliwe urządzenia w Menedżerze urządzeń ============= ==================== Błędy w Dzienniku zdarzeń: ========================= Dziennik Aplikacja: ================== Error: (12/14/2016 02:30:26 PM) (Source: Microsoft Office 14) (EventID: 2000) (User: ) Description: Microsoft Word: Accepted Safe Mode action : Poprawne uruchomienie produktu Word ostatnim razem nie powiodło się. Uruchomienie produktu Word w trybie awaryjnym umożliwi poprawienie lub wyodrębnienie problemu związanego z uruchamianiem, w celu pomyślnego uruchomienia programu. Niektóre funkcje mogą być w tym trybie wyłączone. Czy chcesz uruchomić produkt Word w trybie awaryjnym?. Accepted Safe Mode action : Microsoft Word. Error: (12/14/2016 02:27:07 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: Explorer.EXE, wersja: 6.1.7601.17567, sygnatura czasowa: 0x4d672ee4 Nazwa modułu powodującego błąd: dthook.dll_unloaded, wersja: 0.0.0.0, sygnatura czasowa: 0x56b3b512 Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x0000000004407d10 Identyfikator procesu powodującego błąd: 0xc88 Godzina uruchomienia aplikacji powodującej błąd: 0x01d2560d13cec970 Ścieżka aplikacji powodującej błąd: C:\Windows\Explorer.EXE Ścieżka modułu powodującego błąd: dthook.dll Identyfikator raportu: 022aaa96-c201-11e6-a5f8-40618648f213 Error: (12/14/2016 02:27:05 PM) (Source: .NET Runtime) (EventID: 1026) (User: ) Description: Aplikacja: Explorer.EXE Wersja architektury: v4.0.30319 Opis: proces został przerwany z powodu nieobsłużonego wyjątku. Informacje o wyjątku: kod wyjątku: c0000005, adres wyjątku: 0000000004407D10 Error: (12/14/2016 02:27:05 PM) (Source: VSS) (EventID: 8193) (User: ) Description: Błąd Usługi kopiowania woluminów w tle: nieoczekiwany błąd podczas wywoływania procedury ConvertStringSidToSid(S-1-5-21-916462668-3198608929-2543406701-1001.bak). hr = 0x80070539, Struktura identyfikatora zabezpieczenia jest nieprawidłowa. . Operacja: Zdarzenie OnIdentify Zbieranie danych modułu zapisującego Kontekst: Kontekst wykonywania: Shadow Copy Optimization Writer Identyfikator klasy modułu zapisującego: {4dc3bdd4-ab48-4d07-adb0-3bee2926fd7f} Nazwa modułu zapisującego: Shadow Copy Optimization Writer Identyfikator wystąpienia modułu zapisującego: {70ef8f06-b753-4e81-b698-5b602e8e1ceb} Error: (12/14/2016 02:27:05 PM) (Source: VSS) (EventID: 8193) (User: ) Description: Błąd Usługi kopiowania woluminów w tle: nieoczekiwany błąd podczas wywoływania procedury ConvertStringSidToSid(S-1-5-21-916462668-3198608929-2543406701-1001.bak). hr = 0x80070539, Struktura identyfikatora zabezpieczenia jest nieprawidłowa. . Operacja: Zdarzenie OnIdentify Zbieranie danych modułu zapisującego Kontekst: Kontekst wykonywania: Shadow Copy Optimization Writer Identyfikator klasy modułu zapisującego: {4dc3bdd4-ab48-4d07-adb0-3bee2926fd7f} Nazwa modułu zapisującego: Shadow Copy Optimization Writer Identyfikator wystąpienia modułu zapisującego: {70ef8f06-b753-4e81-b698-5b602e8e1ceb} Error: (12/14/2016 02:27:05 PM) (Source: VSS) (EventID: 8194) (User: ) Description: Błąd Usługi kopiowania woluminów w tle: nieoczekiwany błąd podczas badania interfejsu IVssWriterCallback. hr = 0x80070005, Odmowa dostępu. . To jest często spowodowane przez niepoprawne ustawienia zabezpieczeń w procesie zapisującym lub żądającym. Operacja: Zbieranie danych modułu zapisującego Kontekst: Identyfikator klasy modułu zapisującego: {e8132975-6f93-4464-a53e-1050253ae220} Nazwa modułu zapisującego: System Writer Identyfikator wystąpienia modułu zapisującego: {a8ee647a-8d5f-49cf-a3b9-dca40962db6a} Error: (12/14/2016 02:12:46 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3002) (User: ZARZĄDZANIE NT) Description: Występująca w rejestrze wartość ciągu objaśniającego licznika wydajności jest niepoprawnie sformatowana. Wadliwie sformułowany ciąg to Liczniki wydajności obiektu WorkflowServiceHost dla usługi przepływów pracy. Pierwszy wpis DWORD w sekcji danych (Data) zawiera wartość indeksu wadliwie sformułowanego ciągu, a drugi i trzeci wpis DWORD w sekcji danych zawiera ostatnie prawidłowe wartości indeksu. Error: (12/13/2016 10:34:13 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3002) (User: ZARZĄDZANIE NT) Description: Występująca w rejestrze wartość ciągu objaśniającego licznika wydajności jest niepoprawnie sformatowana. Wadliwie sformułowany ciąg to Liczniki wydajności obiektu WorkflowServiceHost dla usługi przepływów pracy. Pierwszy wpis DWORD w sekcji danych (Data) zawiera wartość indeksu wadliwie sformułowanego ciągu, a drugi i trzeci wpis DWORD w sekcji danych zawiera ostatnie prawidłowe wartości indeksu. Error: (12/13/2016 10:13:13 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: MotoHelperService.exe, wersja: 2.3.8.0, sygnatura czasowa: 0x52c5f617 Nazwa modułu powodującego błąd: MotoHelperService.exe, wersja: 2.3.8.0, sygnatura czasowa: 0x52c5f617 Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x00010612 Identyfikator procesu powodującego błąd: 0x22e0 Godzina uruchomienia aplikacji powodującej błąd: 0x01d2551fd80a6d95 Ścieżka aplikacji powodującej błąd: C:\Program Files (x86)\Motorola Mobility\Motorola Device Manager\MotoHelperService.exe Ścieżka modułu powodującego błąd: C:\Program Files (x86)\Motorola Mobility\Motorola Device Manager\MotoHelperService.exe Identyfikator raportu: 5f916c2e-c114-11e6-8d0e-40618648f213 Error: (12/13/2016 10:04:47 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: DllHost.exe, wersja: 6.1.7600.16385, sygnatura czasowa: 0x4a5bca54 Nazwa modułu powodującego błąd: KERNELBASE.dll, wersja: 6.1.7601.23543, sygnatura czasowa: 0x57d2fe27 Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x0000000000002070 Identyfikator procesu powodującego błąd: 0x2224 Godzina uruchomienia aplikacji powodującej błąd: 0x01d2551ff2ab6076 Ścieżka aplikacji powodującej błąd: C:\Windows\system32\DllHost.exe Ścieżka modułu powodującego błąd: C:\Windows\system32\KERNELBASE.dll Identyfikator raportu: 320ae17e-c113-11e6-8d0e-40618648f213 Dziennik System: ============= Error: (12/14/2016 02:29:46 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi DgiVecp z powodu następującego błędu: Nie można odnaleźć urządzenia. Error: (12/14/2016 02:27:33 PM) (Source: Service Control Manager) (EventID: 7032) (User: ) Description: Menedżer sterowania usługami próbował podjąć akcję korekcyjną (Uruchom usługę ponownie) po nieoczekiwanym zakończeniu usługi Windows Search, ale ta akcja nie powiodła się przy następującym błędzie: Jedno wystąpienie usługi już działa. . Error: (12/14/2016 02:27:03 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Usługa Ochrona oprogramowania niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 120000 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie. Error: (12/14/2016 02:27:03 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Usługa Windows Search niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 30000 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie. Error: (12/14/2016 02:27:03 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Usługa Intel(R) Matrix Storage Event Monitor niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. Error: (12/14/2016 02:27:03 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Usługa Winstep Xtreme Service niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. Error: (12/14/2016 02:27:03 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Usługa TabletServicePen niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. Error: (12/14/2016 02:27:03 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Usługa SAMSUNG Mobile Connectivity Service niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. Error: (12/14/2016 02:27:03 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Usługa RzKLService niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. Error: (12/14/2016 02:27:03 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Usługa PST Service niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 6000 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie. CodeIntegrity: =================================== Date: 2016-12-11 16:39:07.922 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\cf\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2016-12-11 16:39:07.906 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\cf\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2016-12-08 22:03:11.521 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\cf\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2016-12-08 22:03:11.499 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\cf\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. ==================== Statystyki pamięci =========================== Procesor: Intel(R) Core(TM) i5 CPU 760 @ 2.80GHz Procent pamięci w użyciu: 23% Całkowita pamięć fizyczna: 14326.11 MB Dostępna pamięć fizyczna: 10903.5 MB Całkowita pamięć wirtualna: 22324.3 MB Dostępna pamięć wirtualna: 18611.41 MB ==================== Dyski ================================ Drive c: (Wx64) (Fixed) (Total:111.69 GB) (Free:61.71 GB) NTFS Drive d: (miniswp) (Fixed) (Total:0.1 GB) (Free:0.06 GB) NTFS ==>[system z komponentami startowymi (pozyskano odczytując dysk)] Drive f: (mus) (Fixed) (Total:245.12 GB) (Free:5.28 GB) NTFS Drive g: (mag) (Fixed) (Total:391.6 GB) (Free:10.83 GB) NTFS Drive h: (mvs) (Fixed) (Total:196.29 GB) (Free:24.76 GB) NTFS Drive i: (Grphs) (Fixed) (Total:88.87 GB) (Free:10.98 GB) NTFS Drive j: (Dane) (Fixed) (Total:180.66 GB) (Free:8.64 GB) NTFS Drive k: (Tutki) (Fixed) (Total:25.37 GB) (Free:1.6 GB) NTFS Drive l: (Programy) (Fixed) (Total:269.26 GB) (Free:3.39 GB) NTFS Drive o: () (Fixed) (Total:931.51 GB) (Free:755.11 GB) NTFS ==================== MBR & Tablica partycji ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 111.8 GB) (Disk ID: 41B35809) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=111.7 GB) - (Type=07 NTFS) ======================================================== Disk: 1 (Size: 1397.3 GB) (Disk ID: 81FC8423) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=269.3 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=1127.9 GB) - (Type=OF Extended) ======================================================== Disk: 2 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: 377FA09E) Partition 1: (Not Active) - (Size=931.5 GB) - (Type=07 NTFS) ==================== Koniec Addition.txt ============================