Rezultaty skanu uzupeÅ‚niajÄ…cego Farbar Recovery Scan Tool (x64) Wersja: 21-12-2016 Uruchomiony przez Abi (27-12-2016 14:10:02) Uruchomiony z C:\Users\Abi\Desktop\first Windows 7 Enterprise (X64) (2016-09-13 16:38:17) Tryb startu: Normal ========================================================== ==================== Konta użytkowników: ============================= Abi (S-1-5-21-635823440-3631937757-4027532726-1000 - Administrator - Enabled) => C:\Users\Abi Administrator (S-1-5-21-635823440-3631937757-4027532726-500 - Administrator - Disabled) Gość (S-1-5-21-635823440-3631937757-4027532726-501 - Limited - Disabled) ==================== Centrum zabezpieczeÅ„ ======================== (ZaÅ‚Ä…czenie wejÅ›cia w fixlist spowoduje jego usuniÄ™cie.) AS: Windows Defender (Disabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Zainstalowane programy ====================== (W fixlist dozwolone tylko zaÅ‚Ä…czanie programów adware z flagÄ… "Hidden" w celu ich uwidocznienia. Programy adware powinny zostać w poprawny sposób odinstalowane.) µTorrent (HKU\S-1-5-21-635823440-3631937757-4027532726-1000\...\uTorrent) (Version: 3.4.9.43085 - BitTorrent Inc.) 7-Zip 4.42 (HKLM-x32\...\7-Zip) (Version: - ) Adobe Acrobat Reader DC - Polish (HKLM-x32\...\{AC76BA86-7AD7-1045-7B44-AC0F074E4100}) (Version: 15.020.20042 - Adobe Systems Incorporated) Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 23.0.0.257 - Adobe Systems Incorporated) Adobe Flash Player 24 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 24.0.0.186 - Adobe Systems Incorporated) Adobe Flash Player 24 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 24.0.0.186 - Adobe Systems Incorporated) Aktualizacje NVIDIA 2.11.4.0 (Version: 2.11.4.0 - NVIDIA Corporation) Hidden ALLPlayer V7.X (HKLM-x32\...\ALLPlayer_is1) (Version: - ALLPlayer Group, Ltd.) amuleC (HKLM-x32\...\{19539992-061C-4E8B-9053-07B175303AF4}) (Version: 1.0.1 - amuleC) <==== UWAGA Archiwizator WinRAR (HKLM-x32\...\WinRAR archiver) (Version: - ) Broadcom 802.11 Wireless Driver (HKLM-x32\...\{8991E763-21F5-4DEA-A938-5D9D77DCB488}) (Version: 1.0.0.0 - ) Conexant HD Audio (HKLM\...\CNXT_AUDIO_HDA) (Version: 4.111.0.62 - Conexant) DAEMON Tools Lite (HKLM-x32\...\DAEMON Tools Lite) (Version: 4.46.1.0328 - DT Soft Ltd) e-Deklaracje Desktop (HKLM-x32\...\e-Deklaracje.A1909296681C7ACEFE45687D3A64758C8659BF46.1) (Version: 8.0.9 - Ministerstwo Finansow) e-Deklaracje Desktop (x32 Version: 8.0.9 - Ministerstwo Finansow) Hidden Energy Management (HKLM-x32\...\{0CE226F3-EB27-4ECD-BBF5-F088716779FD}) (Version: 5.4.1.9 - Lenovo) EPSON Scan (HKLM-x32\...\EPSON Scanner) (Version: - Seiko Epson Corporation) Epson Software Updater (HKLM-x32\...\{B4F0E794-11F5-4971-85EC-6D7F2E4DAC68}) (Version: 4.4.3 - SEIKO EPSON CORPORATION) EPSON XP-312 313 315 Series Printer Uninstall (HKLM\...\EPSON XP-312 313 315 Series) (Version: - SEIKO EPSON Corporation) EpsonNet Print (HKLM-x32\...\{3E31400D-274E-4647-916C-2CACC3741799}) (Version: 2.6.0 - SEIKO EPSON CORPORATION) ETDWare PS/2-x64 7.0.4.18_WHQL (HKLM\...\Elantech) (Version: 7.0.4.18 - ELAN Microelectronics Corp.) Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 6.0.0.1179 - Intel Corporation) Intel(R) Rapid Storage Technology (HKLM-x32\...\{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}) (Version: 9.6.0.1014 - Intel Corporation) K-Lite Codec Pack 7.1.0 (Full) (HKLM-x32\...\KLiteCodecPack_is1) (Version: 7.1.0 - ) Lenovo EasyCamera (HKLM-x32\...\{FE7AD27A-62B1-44F6-B69C-25D1ECA94F5D}) (Version: 5.38.2.9 - Silicon Motion) Lenovo OneKey Recovery (HKLM-x32\...\InstallShield_{46F4D124-20E5-4D12-BE52-EC177A7A4B42}) (Version: 7.0.1230 - CyberLink Corp.) Lenovo OneKey Recovery (Version: 7.0.1230 - CyberLink Corp.) Hidden Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation) Microsoft Office Enterprise 2007 (HKLM-x32\...\ENTERPRISE) (Version: 12.0.4518.1014 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005 (HKLM-x32\...\{7f51bdb9-ee21-49ee-94d6-90afc321780e}) (Version: 12.0.21005.1 - Microsoft Corporation) MoorHunt 2.1.16.3 (HKLM-x32\...\MoorHunt_is1) (Version: - hxxp://moorhunt.pl) Mozilla Firefox 49.0.2 (x86 pl) (HKLM-x32\...\Mozilla Firefox 49.0.2 (x86 pl)) (Version: 49.0.2 - Mozilla) NapiProjekt 2.0.0 (build 2151) (HKLM-x32\...\NapiProjekt_is1) (Version: - ) Nero 7 Essentials (HKLM-x32\...\{F61DD673-0030-4BB2-A382-7E57E97F1045}) (Version: 7.02.8078 - Nero AG) NVIDIA GeForce Experience 2.11.4.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.11.4.0 - NVIDIA Corporation) NVIDIA Oprogramowanie systemu PhysX 9.13.1220 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.13.1220 - NVIDIA Corporation) NVIDIA Sterownik 3D Vision 341.96 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 341.96 - NVIDIA Corporation) NVIDIA Sterownik dźwiÄ™ku HD 1.3.30.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.30.1 - NVIDIA Corporation) NVIDIA Sterownik graficzny 341.96 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 341.96 - NVIDIA Corporation) Onekey Theater (HKLM-x32\...\{DFB19121-0609-49C1-92B1-546E5A940FE8}) (Version: 2.0.1.8 - Lenovo) Pakiet sterowników systemu Windows - Lenovo (ACPIVPC) System (10/19/2009 5.4.0.1) (HKLM\...\0A4175B489A1B4A6E07E11B063A6263480C51D71) (Version: 10/19/2009 5.4.0.1 - Lenovo) Pakiet sterowników systemu Windows - Ross-Tech USB Driver Package (06/16/2010 2.06.02) (HKLM\...\F2D626F9A8E5C6126BED6EBD3E3504D0B2AB8443) (Version: 06/16/2010 2.06.02 - Ross-Tech) Panel sterowania NVIDIA 341.96 (Version: 341.96 - NVIDIA Corporation) Hidden PodrÄ™czniki firmy EPSON (HKLM-x32\...\{84CECC1B-21EF-41B1-9A91-3E724E5D99D3}) (Version: 1.0.1.0 - SEIKO EPSON CORPORATION) Polski pakiet jÄ™zykowy dla programu Microsoft .NET Framework 4 Client Profile (HKLM\...\Microsoft .NET Framework 4 Client Profile PLK Language Pack) (Version: 4.0.30319 - Microsoft Corporation) Polski pakiet jÄ™zykowy dla programu Microsoft .NET Framework 4 Extended (HKLM\...\Microsoft .NET Framework 4 Extended PLK Language Pack) (Version: 4.0.30319 - Microsoft Corporation) Realtek Ethernet Controller Driver For Windows 7 (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.18.322.2010 - Realtek) SHIELD Streaming (Version: 7.1.0280 - NVIDIA Corporation) Hidden SHIELD Wireless Controller Driver (Version: 2.11.4.0 - NVIDIA Corporation) Hidden Winamp (HKLM-x32\...\Winamp) (Version: 5.666 - Nullsoft, Inc) Wtyczka e-Deklaracje (HKLM-x32\...\{81BF6353-3C5B-4E6E-A566-7E162A00BF72}_is1) (Version: 4.3.0 - Ministerstwo Finansów) ==================== Niestandardowe rejestracje CLSID (filtrowane): ========================== (ZaÅ‚Ä…czenie wejÅ›cia w fixlist spowoduje jego usuniÄ™cie z rejestru. PowiÄ…zany plik nie zostanie przeniesiony, o ile nie zostanie zaÅ‚Ä…czony z osobna.) ==================== Zaplanowane zadania (filtrowane) ============= (ZaÅ‚Ä…czenie wejÅ›cia w fixlist spowoduje jego usuniÄ™cie z rejestru. PowiÄ…zany plik nie zostanie przeniesiony, o ile nie zostanie zaÅ‚Ä…czony z osobna.) Task: {0C7F73F4-7BF5-4937-BE8D-686EF52ACBF1} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2016-10-21] (Adobe Systems Incorporated) Task: {260F8CE5-7186-4EBD-8117-F19F0B0CC8E5} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-12-14] (Adobe Systems Incorporated) Task: {4D7843E7-00F8-4ECC-886D-5F31C80517CA} - System32\Tasks\EPSON XP-312 313 315 Series Invitation {351E8C23-03B2-499A-BAA4-27DF3271AE0B} => C:\Windows\system32\spool\DRIVERS\x64\3\E_ITSLFE.EXE [2013-02-28] (SEIKO EPSON CORPORATION) Task: {563B580B-D99E-4C09-98E0-234BFAF53DD9} - System32\Tasks\EPSON XP-312 313 315 Series Update {351E8C23-03B2-499A-BAA4-27DF3271AE0B} => C:\Windows\system32\spool\DRIVERS\x64\3\E_ITSLFE.EXE [2013-02-28] (SEIKO EPSON CORPORATION) Task: {61F37B09-1BE8-4785-A14B-3BEA43719500} - System32\Tasks\AVAST Software\Avast settings backup => C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe (ZaÅ‚Ä…czenie wejÅ›cia w fixlist spowoduje przesuniÄ™cie pliku zadania (.job). Plik uruchamiany docelowo przez zadanie nie zostanie przeniesiony.) Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\EPSON XP-312 313 315 Series Invitation {351E8C23-03B2-499A-BAA4-27DF3271AE0B}.job => C:\Windows\system32\spool\DRIVERS\x64\3\E_ITSLFE.EXE Task: C:\Windows\Tasks\EPSON XP-312 313 315 Series Update {351E8C23-03B2-499A-BAA4-27DF3271AE0B}.job => C:\Windows\system32\spool\DRIVERS\x64\3\E_ITSLFE.EXE:/EXE:{351E8C23-03B2-499A-BAA4-27DF3271AE0B} /F:UpdateSYSTEMÄŠSearches for EPSON software updates, and notifies you when updates are available.If this task is disabled or stopped, your EPSON software will not be automatically kept up to date.Thi ==================== Skróty ============================= (Wybrane wejÅ›cia mogÄ… zostać zaÅ‚Ä…czone w celu ich zresetowania lub usuniÄ™cia.) ShortcutWithArgument: C:\Users\Abi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer (64-bit).lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) -> hxxp://www.amisites.com/?type=sc&ts=1482838427&z=7a7b3ccff673baf38448c06g3z7bdo0b0c6b5zfo2q&from=archer1028&uid=WDCXWD5000BEVT-24A0RT0_WD-WXH1A80N9470N9470 ShortcutWithArgument: C:\Users\Abi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk -> C:\Program Files (x86)\Internet Explorer\iexplore.exe (Microsoft Corporation) -> hxxp://www.amisites.com/?type=sc&ts=1482838427&z=7a7b3ccff673baf38448c06g3z7bdo0b0c6b5zfo2q&from=archer1028&uid=WDCXWD5000BEVT-24A0RT0_WD-WXH1A80N9470N9470 ShortcutWithArgument: C:\Users\Abi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Internet Explorer (No Add-ons).lnk -> C:\Program Files (x86)\Internet Explorer\iexplore.exe (Microsoft Corporation) -> hxxp://www.amisites.com/?type=sc&ts=1482838427&z=7a7b3ccff673baf38448c06g3z7bdo0b0c6b5zfo2q&from=archer1028&uid=WDCXWD5000BEVT-24A0RT0_WD-WXH1A80N9470N9470 ShortcutWithArgument: C:\Users\Abi\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk -> C:\Program Files (x86)\Internet Explorer\iexplore.exe (Microsoft Corporation) -> hxxp://www.amisites.com/?type=sc&ts=1482838427&z=7a7b3ccff673baf38448c06g3z7bdo0b0c6b5zfo2q&from=archer1028&uid=WDCXWD5000BEVT-24A0RT0_WD-WXH1A80N9470N9470 ==================== ZaÅ‚adowane moduÅ‚y (filtrowane) ============== 2016-09-13 18:23 - 2016-05-30 18:36 - 00133568 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll 2016-09-13 18:06 - 2009-12-19 01:52 - 00201120 _____ () C:\Program Files (x86)\Lenovo\Onekey Theater\ActiveDetect64.dll 2016-09-13 18:06 - 2009-12-19 01:53 - 00156576 _____ () C:\Program Files (x86)\Lenovo\Onekey Theater\WindowsApiHookDll64.dll 2016-12-23 21:27 - 2016-12-23 21:27 - 00109056 _____ () C:\Program Files (x86)\Gubed_WMI\Gubed_WMI.exe 2016-09-14 21:32 - 2016-06-14 21:03 - 00367552 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\MessageBus.dll 2016-09-14 21:32 - 2016-06-14 21:03 - 01147328 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\libprotobuf.dll 2016-09-14 21:32 - 2016-06-14 21:03 - 03611584 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\Poco.dll 2016-09-14 21:32 - 2016-06-14 21:03 - 00288192 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamBase.dll 2016-09-13 19:37 - 2006-12-11 02:14 - 00043008 _____ () C:\Program Files (x86)\WinRAR\rarext64.dll 2016-09-14 21:32 - 2016-06-14 21:03 - 01988544 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\Plugins\NSS\NvPortForwardPlugin.dll 2016-09-14 21:32 - 2016-06-14 21:03 - 02665920 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\Plugins\NSS\NvMdnsPlugin.dll 2016-09-14 21:32 - 2016-06-14 21:03 - 01840576 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\Plugins\NSS\RtspPlugin.dll 2016-09-14 21:32 - 2016-06-14 21:03 - 00207296 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\RtspServer.dll 2016-09-13 18:00 - 2009-07-15 14:55 - 00054088 _____ () C:\Program Files (x86)\Lenovo\Energy Management\kbdhook.dll 2016-09-13 18:00 - 2009-07-15 14:55 - 00054088 _____ () C:\Program Files (x86)\Lenovo\Energy Management\HookLib.dll 2016-09-13 18:06 - 2009-12-19 01:52 - 00100256 _____ () C:\Program Files (x86)\Lenovo\Onekey Theater\OnekeySupport.exe 2016-09-14 21:32 - 2016-06-14 21:03 - 00034240 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\boost_system-vc120-mt-1_58.dll 2016-09-14 21:32 - 2016-06-14 21:03 - 00920000 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\boost_regex-vc120-mt-1_58.dll 2016-12-15 15:30 - 2016-12-27 12:33 - 00877056 _____ () C:\Program Files (x86)\Common Files\Services\iThemes.dll 2016-12-23 21:27 - 2016-12-27 04:00 - 00784384 _____ () c:\program files (x86)\winarcher\archer.dll 2016-12-27 12:33 - 2016-12-27 08:26 - 00119808 _____ () c:\program files (x86)\gubed\gubedzl.dll 2016-09-13 18:06 - 2009-12-19 01:50 - 00161696 _____ () C:\Program Files (x86)\Lenovo\Onekey Theater\ActiveDetect32.dll 2016-09-13 18:06 - 2009-12-19 01:51 - 00133024 _____ () C:\Program Files (x86)\Lenovo\Onekey Theater\WindowsApiHookDll32.dll 2016-09-14 21:32 - 2016-06-14 21:03 - 00018880 _____ () C:\Program Files (x86)\NVIDIA Corporation\Update Core\detoured.dll 2016-12-14 14:31 - 2016-12-14 14:31 - 19761240 _____ () C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_24_0_0_186.dll 2016-09-13 18:02 - 2016-09-13 18:02 - 00170496 _____ () C:\Windows\assembly\NativeImages_v2.0.50727_32\IsdiInterop\a52290f344ad5c5e513d71251549f5c2\IsdiInterop.ni.dll 2016-09-13 18:01 - 2010-03-03 19:08 - 00058880 _____ () C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IsdiInterop.dll ==================== Alternate Data Streams (filtrowane) ========= (ZaÅ‚Ä…czenie wejÅ›cia w fixlist spowoduje usuniÄ™cie strumienia ADS.) ==================== Tryb awaryjny (filtrowane) =================== (ZaÅ‚Ä…czenie wejÅ›cia w fixlist spowoduje jego usuniÄ™cie z rejestru. Wartość "AlternateShell" zostanie przywrócona.) ==================== PowiÄ…zania plików (filtrowane) =============== (ZaÅ‚Ä…czenie wejÅ›cia w fixlist spowoduje usuniÄ™cie obiektu z rejestru lub przywrócenie jego domyÅ›lnej postaci.) ==================== Internet Explorer - Witryny zaufane i z ograniczeniami =============== (ZaÅ‚Ä…czenie wejÅ›cia w fixlist spowoduje jego usuniÄ™cie z rejestru.) ==================== Hosts - zawartość: =============================== (Użycie dyrektywy Hosts: w fixlist spowoduje reset pliku Hosts.) 2009-07-14 03:34 - 2016-12-05 19:30 - 00000035 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Inne obszary ============================ (Obecnie brak automatycznej naprawy dla tej sekcji.) HKU\S-1-5-21-635823440-3631937757-4027532726-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\Abi\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg DNS Servers: 192.168.43.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 0) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Zapora systemu Windows [funkcja wÅ‚Ä…czona] ==================== MSCONFIG/TASK MANAGER - WyÅ‚Ä…czone elementy == ==================== ReguÅ‚y Zapory systemu Windows (filtrowane) =============== (ZaÅ‚Ä…czenie wejÅ›cia w fixlist spowoduje jego usuniÄ™cie z rejestru. PowiÄ…zany plik nie zostanie przeniesiony, o ile nie zostanie zaÅ‚Ä…czony z osobna.) FirewallRules: [SPPSVC-In-TCP] => %SystemRoot%\system32\sppsvc.exe FirewallRules: [SPPSVC-In-TCP-NoScope] => %SystemRoot%\system32\sppsvc.exe FirewallRules: [{488FED52-6E8F-4B63-BD1F-4B802374030C}] => C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe FirewallRules: [{4F7A3AD3-6A17-4DA3-8EBD-95C82E54BD7D}] => C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe FirewallRules: [TCP Query User{9B6FB47B-76BD-4CEB-9AF4-B0B6E88289D3}C:\program files (x86)\allplayer remote\allplayerremotecontrol.exe] => C:\program files (x86)\allplayer remote\allplayerremotecontrol.exe FirewallRules: [UDP Query User{757193B7-78A1-4BEB-AF3F-9D9E23F1F86A}C:\program files (x86)\allplayer remote\allplayerremotecontrol.exe] => C:\program files (x86)\allplayer remote\allplayerremotecontrol.exe FirewallRules: [{6F2885D8-1C34-4B26-9BC3-AD012F340A88}] => C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe FirewallRules: [{E7D414FA-A06B-4BD7-AC8F-20997E85DC6D}] => C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe FirewallRules: [{11AD6549-7801-4061-8B17-FF8902F8E667}] => C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe FirewallRules: [{971E6042-85A3-4AA9-B194-AB4CEF2218C2}] => C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{C6A9492B-0F04-4CE6-9DEE-15C76DEABF78}] => C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{2B9BAA3E-15BD-4D3D-8E6D-D7FFF940C699}] => C:\Program Files (x86)\Winamp\winamp.exe FirewallRules: [{035B0E9E-5BD2-4259-8C94-2A8B77EAE866}] => C:\Program Files (x86)\Winamp\winamp.exe FirewallRules: [TCP Query User{BB66D45D-86AF-4C20-AA02-6AC0D46F0889}C:\users\abi\appdata\roaming\utorrent\utorrent.exe] => C:\users\abi\appdata\roaming\utorrent\utorrent.exe FirewallRules: [UDP Query User{D1108E1E-E7B7-4E7E-AD45-1A154E030264}C:\users\abi\appdata\roaming\utorrent\utorrent.exe] => C:\users\abi\appdata\roaming\utorrent\utorrent.exe FirewallRules: [{921AE40E-ADB0-44A0-92C7-F8DBA74BB205}] => C:\Users\Abi\AppData\Local\Temp\EpInsNav\DL\3013\Network\EpsonNetSetup\EpsonNetSetup3_6_1_2200\ENEasyApp.exe FirewallRules: [{5E6FE6A6-33A0-4F51-8252-C8F6199D47E5}] => C:\Users\Abi\AppData\Local\Temp\EpInsNav\DL\3013\Network\EpsonNetSetup\EpsonNetSetup3_6_1_2200\ENEasyApp.exe ==================== Punkty Przywracania systemu ========================= 14-12-2016 14:08:25 UsuniÄ™te Gothic II ZÅ‚ota Edycja 14-12-2016 16:52:34 Zainstalowany program DirectX 14-12-2016 16:55:06 Installed Nero 7 Essentials. Available with Windows Installer version 1.2 and later. 22-12-2016 00:00:45 Zaplanowany punkt kontrolny 23-12-2016 22:26:00 Restore Point Created by FRST 27-12-2016 13:49:33 Removed amuleC 27-12-2016 14:01:00 Restore Point Created by FRST ==================== Wadliwe urzÄ…dzenia w Menedżerze urzÄ…dzeÅ„ ============= ==================== BÅ‚Ä™dy w Dzienniku zdarzeÅ„: ========================= Dziennik Aplikacja: ================== Error: (12/27/2016 02:02:10 PM) (Source: Winlogon) (EventID: 4103) (User: ) Description: Aktywacja licencji systemu Windows nie powiodÅ‚a siÄ™. BÅ‚Ä…d 0x00000000. Error: (12/27/2016 02:02:10 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: ) Description: WystÄ…piÅ‚ bÅ‚Ä…d aktywacji licencji (slui.exe), kod bÅ‚Ä™du: 0x800401F9 Error: (12/27/2016 12:31:51 PM) (Source: Winlogon) (EventID: 4103) (User: ) Description: Aktywacja licencji systemu Windows nie powiodÅ‚a siÄ™. BÅ‚Ä…d 0x00000000. Error: (12/27/2016 12:31:51 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: ) Description: WystÄ…piÅ‚ bÅ‚Ä…d aktywacji licencji (slui.exe), kod bÅ‚Ä™du: 0x800401F9 Error: (12/26/2016 11:30:12 AM) (Source: Winlogon) (EventID: 4103) (User: ) Description: Aktywacja licencji systemu Windows nie powiodÅ‚a siÄ™. BÅ‚Ä…d 0x00000000. Error: (12/26/2016 11:30:12 AM) (Source: Software Protection Platform Service) (EventID: 8198) (User: ) Description: WystÄ…piÅ‚ bÅ‚Ä…d aktywacji licencji (slui.exe), kod bÅ‚Ä™du: 0x800401F9 Error: (12/25/2016 07:58:05 PM) (Source: Winlogon) (EventID: 4103) (User: ) Description: Aktywacja licencji systemu Windows nie powiodÅ‚a siÄ™. BÅ‚Ä…d 0x00000000. Error: (12/25/2016 07:58:05 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: ) Description: WystÄ…piÅ‚ bÅ‚Ä…d aktywacji licencji (slui.exe), kod bÅ‚Ä™du: 0x800401F9 Error: (12/24/2016 02:50:57 PM) (Source: Winlogon) (EventID: 4103) (User: ) Description: Aktywacja licencji systemu Windows nie powiodÅ‚a siÄ™. BÅ‚Ä…d 0x00000000. Error: (12/24/2016 02:50:53 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: ) Description: WystÄ…piÅ‚ bÅ‚Ä…d aktywacji licencji (slui.exe), kod bÅ‚Ä™du: 0x800401F9 Dziennik System: ============= Error: (12/27/2016 02:09:27 PM) (Source: Schannel) (EventID: 4119) (User: ZARZÄ„DZANIE NT) Description: Odebrano nastÄ™pujÄ…cy alert krytyczny: 40. Error: (12/27/2016 02:09:26 PM) (Source: Schannel) (EventID: 4119) (User: ZARZÄ„DZANIE NT) Description: Odebrano nastÄ™pujÄ…cy alert krytyczny: 40. Error: (12/27/2016 02:05:25 PM) (Source: Schannel) (EventID: 4119) (User: ZARZÄ„DZANIE NT) Description: Odebrano nastÄ™pujÄ…cy alert krytyczny: 40. Error: (12/27/2016 02:05:25 PM) (Source: Schannel) (EventID: 4119) (User: ZARZÄ„DZANIE NT) Description: Odebrano nastÄ™pujÄ…cy alert krytyczny: 40. Error: (12/27/2016 02:03:25 PM) (Source: Schannel) (EventID: 4119) (User: ZARZÄ„DZANIE NT) Description: Odebrano nastÄ™pujÄ…cy alert krytyczny: 40. Error: (12/27/2016 02:03:25 PM) (Source: Schannel) (EventID: 4119) (User: ZARZÄ„DZANIE NT) Description: Odebrano nastÄ™pujÄ…cy alert krytyczny: 40. Error: (12/27/2016 02:03:09 PM) (Source: Schannel) (EventID: 4119) (User: ZARZÄ„DZANIE NT) Description: Odebrano nastÄ™pujÄ…cy alert krytyczny: 40. Error: (12/27/2016 02:03:08 PM) (Source: Schannel) (EventID: 4119) (User: ZARZÄ„DZANIE NT) Description: Odebrano nastÄ™pujÄ…cy alert krytyczny: 40. Error: (12/27/2016 02:01:29 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usÅ‚ugi Windows Search z powodu nastÄ™pujÄ…cego bÅ‚Ä™du: UsÅ‚uga nie zostaÅ‚a uruchomiona z powodu nieudanego logowania. Error: (12/27/2016 02:01:29 PM) (Source: Service Control Manager) (EventID: 7038) (User: ) Description: UsÅ‚uga WSearch nie może zalogować siÄ™ jako NT AUTHORITY\SYSTEM za pomocÄ… obecnie skonfigurowanego hasÅ‚a z powodu nastÄ™pujÄ…cego bÅ‚Ä™du: Żądanie nie jest obsÅ‚ugiwane. Aby upewnić siÄ™, że usÅ‚uga jest skonfigurowana prawidÅ‚owo, użyj przystawki UsÅ‚ugi w programie Microsoft Management Console (MMC). CodeIntegrity: =================================== Date: 2016-12-27 14:02:09.090 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\user32.dll because the set of per-page image hashes could not be found on the system. Date: 2016-12-27 13:15:09.539 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\user32.dll because the set of per-page image hashes could not be found on the system. Date: 2016-12-27 12:31:48.867 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\user32.dll because the set of per-page image hashes could not be found on the system. Date: 2016-12-26 17:39:59.219 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\user32.dll because the set of per-page image hashes could not be found on the system. Date: 2016-12-26 14:04:42.105 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\user32.dll because the set of per-page image hashes could not be found on the system. Date: 2016-12-26 13:04:40.485 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\user32.dll because the set of per-page image hashes could not be found on the system. Date: 2016-12-26 12:04:35.576 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\user32.dll because the set of per-page image hashes could not be found on the system. Date: 2016-12-26 11:59:07.064 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\user32.dll because the set of per-page image hashes could not be found on the system. Date: 2016-12-26 11:30:11.304 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\user32.dll because the set of per-page image hashes could not be found on the system. Date: 2016-12-25 19:58:04.366 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\user32.dll because the set of per-page image hashes could not be found on the system. ==================== Statystyki pamiêci =========================== Procesor: Intel(R) Core(TM) i3 CPU M 370 @ 2.40GHz Procent pamiêci w u¿yciu: 28% Ca³kowita pamiêæ fizyczna: 6006.85 MB Dostêpna pamiêæ fizyczna: 4290.12 MB Ca³kowita pamiêæ wirtualna: 12011.85 MB Dostêpna pamiêæ wirtualna: 10178.72 MB ==================== Dyski ================================ Drive c: () (Fixed) (Total:94.57 GB) (Free:38.96 GB) NTFS Drive d: () (Fixed) (Total:175.78 GB) (Free:9.11 GB) NTFS Drive e: () (Fixed) (Total:195.31 GB) (Free:7.11 GB) NTFS ==================== MBR & Tablica partycji ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: 02C77197) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=94.6 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=175.8 GB) - (Type=07 NTFS) Partition 4: (Not Active) - (Size=195.3 GB) - (Type=07 NTFS) ==================== Koniec Addition.txt ============================