Rezultaty skanu uzupełniającego Farbar Recovery Scan Tool (x64) Wersja: 15-03-2017 Uruchomiony przez Ann (17-03-2017 14:18:51) Uruchomiony z C:\Users\Ann\Desktop Windows 10 Pro Wersja 1607 (X64) (2016-08-07 11:36:43) Tryb startu: Normal ========================================================== ==================== Konta użytkowników: ============================= Administrator (S-1-5-21-973633878-3127659-858757103-500 - Administrator - Disabled) Ann (S-1-5-21-973633878-3127659-858757103-1000 - Administrator - Enabled) => C:\Users\Ann Gość (S-1-5-21-973633878-3127659-858757103-501 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-973633878-3127659-858757103-1004 - Limited - Enabled) Konto domyślne (S-1-5-21-973633878-3127659-858757103-503 - Limited - Disabled) ==================== Centrum zabezpieczeń ======================== (Załączenie wejścia w fixlist spowoduje jego usunięcie.) AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AV: avast! Antivirus (Enabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: avast! Antivirus (Enabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736} ==================== Zainstalowane programy ====================== (W fixlist dozwolone tylko załączanie programów adware z flagą "Hidden" w celu ich uwidocznienia. Programy adware powinny zostać w poprawny sposób odinstalowane.) . . (Version: 7.1 - Intel) Hidden . . . (x32 Version: 2.7.2.4 - Intel) Hidden µTorrent (HKU\S-1-5-21-973633878-3127659-858757103-1000\...\uTorrent) (Version: 3.4.9.43295 - BitTorrent Inc.) 7-Zip 16.04 (x64) (HKLM\...\7-Zip) (Version: 16.04 - Igor Pavlov) 7-Zip 9.38 beta (HKLM-x32\...\7-Zip) (Version: - ) 911 Operator (HKLM\...\Steam App 503560) (Version: - Jutsu Games) ACDSee Free (HKLM-x32\...\ACDSee Free) (Version: 1.1.21 - ACD Systems International Inc.) Adobe Acrobat Reader DC - Polish (HKLM-x32\...\{AC76BA86-7AD7-1045-7B44-AC0F074E4100}) (Version: 15.023.20070 - Adobe Systems Incorporated) Adobe Flash Player 25 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 25.0.0.127 - Adobe Systems Incorporated) Adobe Shockwave Player 12.2 (HKLM-x32\...\{5ECE64C9-F5B3-4914-B1F2-23D46548B7E3}) (Version: 12.2.3.183 - Adobe Systems, Inc) AIMP2 (HKLM-x32\...\AIMP2) (Version: - AIMP DevTeam) Allgemeine Runtime Files (x86) (HKLM\...\{1F6D1DB5-82B5-41A4-85A2-0A382C142A35}_is1) (Version: 1.0.5.0 - Sereby Corporation) ALLPlayer V6.X (HKLM-x32\...\ALLPlayer_is1) (Version: - ALLPlayer Group, Ltd.) Ansel (Version: 375.70 - NVIDIA Corporation) Hidden Apowersoft Online Launcher wersja 1.4.4 (HKU\S-1-5-21-973633878-3127659-858757103-1000\...\{20BF67A8-D81A-4489-8225-FABAA0896E2D}_is1) (Version: 1.4.4 - APOWERSOFT LIMITED) Ashampoo Burning Studio 2014 v.12.0.5 (HKLM-x32\...\{91B33C97-280F-B76D-E27B-E712D7041B76}_is1) (Version: 12.0.5 - Ashampoo GmbH & Co. KG) Asystent uaktualnienia do systemu Windows 10 (HKLM-x32\...\{D5C69738-B486-402E-85AC-2456D98A64E4}) (Version: 1.4.9200.17350 - Microsoft Corporation) Avast Free Antivirus (HKLM-x32\...\Avast) (Version: 12.1.2272 - AVAST Software) Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment) Cat on a Diet (HKLM\...\Steam App 447890) (Version: - Nawia Games) CCleaner (HKLM\...\CCleaner) (Version: 5.28 - Piriform) ChomikBox (HKLM-x32\...\{C7B52FAF-58D8-438C-B810-F78C3C927504}) (Version: 2.0.8.0 - Chomikuj.pl) Conan Exiles (HKLM\...\Steam App 440900) (Version: - Funcom) Counter-Strike: Global Offensive (HKLM\...\Steam App 730) (Version: - Valve) CPUID CPU-Z 1.76 (HKLM\...\CPUID CPU-Z_is1) (Version: - ) D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden FastStone Capture 8.4 (HKLM-x32\...\FastStone Capture) (Version: 8.4 - FastStone Soft) Foxit Reader (HKLM-x32\...\Foxit Reader_is1) (Version: 7.3.6.321 - Foxit Software Inc.) GG (HKU\S-1-5-21-973633878-3127659-858757103-1000\...\GG) (Version: 12 - GG Network S.A.) GIMP 2.8.18 (HKLM\...\GIMP-2_is1) (Version: 2.8.18 - The GIMP Team) GOG Galaxy (HKLM-x32\...\{7258BA11-600C-430E-A759-27E2C691A335}_is1) (Version: - GOG.com) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 56.0.2924.87 - Google Inc.) Google Drive (HKLM-x32\...\{07A12123-B717-496B-B471-48AF6407B433}) (Version: 1.32.4066.7445 - Google, Inc.) Google Update Helper (x32 Version: 1.3.25.11 - Google Inc.) Hidden Google Update Helper (x32 Version: 1.3.32.7 - Google Inc.) Hidden HD Tune 2.55 (HKLM-x32\...\HD Tune_is1) (Version: - EFD Software) Holy Potatoes! A Weapon Shop?! (HKLM\...\Steam App 363600) (Version: - Daylight Studios) Holy Potatoes! We’re in Space?! (HKLM\...\Steam App 505730) (Version: - Daylight Studios) IdleMaster (HKU\S-1-5-21-973633878-3127659-858757103-1000\...\1d85483b1c982d8c) (Version: 1.4.0.0 - IdleMaster) Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 9.5.23.1766 - Intel Corporation) Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 12.9.0.1001 - Intel Corporation) Intel(R) Smart Connect Technology (HKLM\...\{4188E70A-4D3B-447C-B366-963C9E8B4538}) (Version: 5.0.10.2907 - Intel Corporation) Intel(R) USB 3.0 eXtensible Host Controller Driver (HKLM-x32\...\{240C3DDD-C5E9-4029-9DF7-95650D040CF2}) (Version: 3.0.2.54 - Intel Corporation) Intel® Driver Update Utility (HKLM-x32\...\{954190cd-c66c-4650-bd15-f3dd85f2ae15}) (Version: 2.7.2.4 - Intel) IObit Uninstaller (HKLM-x32\...\IObitUninstall) (Version: 4.3.0.122 - IObit) ipla 2.8.6 (HKLM-x32\...\ipla) (Version: 2.8.6 - Redefine Sp z o.o.) Java 8 Update 91 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F86418091F0}) (Version: 8.0.910.14 - Oracle Corporation) Java 8 Update 91 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218091F0}) (Version: 8.0.910.14 - Oracle Corporation) Junk Mail filter update (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Kits Configuration Installer (x32 Version: 10.1.14393.0 - Microsoft) Hidden K-Lite Codec Pack 10.4.5 Basic (HKLM-x32\...\KLiteCodecPack_is1) (Version: 10.4.5 - ) Last.fm Scrobbler 2.1.37 (HKLM-x32\...\LastFM_is1) (Version: - Last.fm) LAV Filters 0.62.0 (HKLM-x32\...\lavfilters_is1) (Version: 0.62.0 - Hendrik Leppkes) Microsoft .NET Framework 4.6.1 Hotfix Rollup (KB3120241) (HKLM\...\{46556DC7-EFC0-361E-832E-E0A9B0D2EFAB}) (Version: 4.6.01067 - Microsoft Corporation) Microsoft ASP.NET MVC 4 Runtime (HKLM-x32\...\{3FE312D5-B862-40CE-8E4E-A6D8ABF62736}) (Version: 4.0.40804.0 - Microsoft Corporation) Microsoft Games for Windows - LIVE Redistributable (HKLM-x32\...\{42AA4CA8-DCD8-4308-BCAB-0B6D75856A9D}) (Version: 3.5.95.0 - Microsoft Corporation) Microsoft Games for Windows Marketplace (HKLM-x32\...\{67F42018-F647-4D3C-BE62-F8CB4FE2FCD5}) (Version: 3.5.67.0 - Microsoft Corporation) Microsoft Office 365 - pl-pl (HKLM\...\O365HomePremRetail - pl-pl) (Version: 16.0.7766.2060 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50905.0 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61187 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61186 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.7523 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.7523 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.7523 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.7523 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (HKLM-x32\...\{a1909659-0a08-4554-8af1-2175904903a1}) (Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24215 (HKLM-x32\...\{d992c12e-cab2-426f-bde3-fb8c53950b0d}) (Version: 14.0.24215.1 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24215 (HKLM-x32\...\{e2803110-78b3-4664-a479-3611a381656a}) (Version: 14.0.24215.1 - Microsoft Corporation) Microsoft XNA Framework Redistributable 3.1 (HKLM-x32\...\{19BFDA5D-1FE2-4F25-97F9-1A79DD04EE20}) (Version: 3.1.10527.0 - Microsoft Corporation) Microsoft XNA Framework Redistributable 4.0 Refresh (HKLM-x32\...\{D69C8EDE-BBC5-436B-8E0E-C5A6D311CF4F}) (Version: 4.0.30901.0 - Microsoft Corporation) Mozilla Firefox 52.0 (x86 pl) (HKLM-x32\...\Mozilla Firefox 52.0 (x86 pl)) (Version: 52.0 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 52.0.0.6270 - Mozilla) MSI Interceptor DS100 Gaming Mouse (HKLM-x32\...\{0554E252-D345-4924-A87E-F1C6242371AB}_is1) (Version: 1.1 - MSI Co., LTD) MSI Live Update 6 (HKLM-x32\...\{4F46CF54-47D2-41F4-B230-B0954C544420}}_is1) (Version: 6.0.013 - MSI) NapiProjekt (2.2.0.2399) (HKLM-x32\...\NapiProjekt_is1) (Version: - ) Napisy24 (HKLM-x32\...\{D1985DBC-F09E-4317-91B8-932AD0FD4A27}_is1) (Version: 1.7 - Napisy24.pl) Northgard (HKLM\...\Steam App 466560) (Version: - Shiro Games) NVIDIA Oprogramowanie systemu PhysX 9.16.0318 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.16.0318 - NVIDIA Corporation) NVIDIA Sterownik 3D Vision 376.53 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 376.53 - NVIDIA Corporation) NVIDIA Sterownik dźwięku HD 1.3.34.17 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.34.17 - NVIDIA Corporation) NVIDIA Sterownik graficzny 376.53 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 376.53 - NVIDIA Corporation) NVIDIA Sterownik kontrolera 3D Vision 369.04 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 369.04 - NVIDIA Corporation) OBS Studio (HKLM-x32\...\OBS Studio) (Version: 0.16.6 - OBS Project) Office 16 Click-to-Run Extensibility Component (x32 Version: 16.0.7766.2047 - Microsoft Corporation) Hidden Office 16 Click-to-Run Extensibility Component 64-bit Registration (Version: 16.0.7766.2047 - Microsoft Corporation) Hidden Office 16 Click-to-Run Licensing Component (Version: 16.0.7766.2047 - Microsoft Corporation) Hidden Office 16 Click-to-Run Localization Component (x32 Version: 16.0.7668.2066 - Microsoft Corporation) Hidden OnScreen Control (HKLM-x32\...\{E5C1B339-0E4E-49A5-859E-5E1DE1938706}) (Version: 1.39 - LG Electronics Inc) OpenOffice 4.1.1 (HKLM-x32\...\{B5373BA3-BAD7-4EAC-A9D2-B66B41B82C57}) (Version: 4.11.9775 - Apache Software Foundation) Oprogramowanie mikroukładu Intel® (x32 Version: 10.1.1.14 - Intel(R) Corporation) Hidden Origin (HKLM-x32\...\Origin) (Version: 10.4.5.25153 - Electronic Arts, Inc.) Panel sterowania NVIDIA 376.53 (Version: 376.53 - NVIDIA Corporation) Hidden PhotoScape (HKLM-x32\...\PhotoScape) (Version: - ) Pizza Syndicate (HKLM-x32\...\Pizza Syndicate) (Version: - ) PlayReady PC Runtime x86 (HKLM-x32\...\{CCA5EAAD-92F4-4B7A-B5EE-14294C66AB61}) (Version: 1.3.0 - Microsoft Corporation) Poczta usługi Windows Live (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Podstawowe programy Windows Live (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3528.0331 - Microsoft Corporation) Podstawowe programy Windows Live (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Project Remedium Demo (HKLM\...\Steam App 558930) (Version: - ) Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.89.716.2014 - Realtek) RESIDENT EVIL 7 biohazard / BIOHAZARD 7 resident evil (HKLM\...\Steam App 418370) (Version: - CAPCOM Co., Ltd.) ScummVM (HKLM-x32\...\ScummVM_is1) (Version: - The ScummVM Team) Shadow Warrior 2 (HKLM\...\Steam App 324800) (Version: - Flying Wild Hog) Skype™ 7.33 (HKLM-x32\...\{3B7E914A-93D5-4A29-92BB-AF8C3F66C431}) (Version: 7.33.105 - Skype Technologies S.A.) SlimDrivers (HKLM-x32\...\{A5457401-D56A-43F2-9524-78E54A7FC07A}) (Version: 2.2.32705 - SlimWare Utilities, Inc.) SpeedFan (remove only) (HKLM-x32\...\SpeedFan) (Version: - ) Stardew Valley (HKLM\...\Steam App 413150) (Version: - ConcernedApe) Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation) Superfrog HD (HKLM-x32\...\Steam App 234000) (Version: - Team17 Digital Ltd) The Walking Dead: A New Frontier (HKLM\...\Steam App 536220) (Version: - Telltale Games) Thimbleweed Park (HKLM\...\Steam App 569860) (Version: - Terrible Toybox) Toolkit Documentation (x32 Version: 10.1.14393.0 - Microsoft) Hidden UE4 Prerequisites (x64) (HKLM-x32\...\{b46d36bc-2438-471e-abe8-1fbbd51754ee}) (Version: 1.0.10.0 - Epic Games, Inc.) UE4 Prerequisites (x64) (Version: 1.0.10.0 - Epic Games, Inc.) Hidden Unlocker 1.9.2 (HKLM\...\Unlocker) (Version: 1.9.2 - Cedrick Collomb) Uplay (HKLM-x32\...\Uplay) (Version: 4.3 - Ubisoft) VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.4 - VideoLAN) Vulkan Run Time Libraries 1.0.26.0 (HKLM\...\VulkanRT1.0.26.0) (Version: 1.0.26.0 - LunarG, Inc.) WestwoodOnline (HKLM-x32\...\{BBCD6D56-8A26-4DDE-9482-DBC9C7B7341D}) (Version: 1.0.0.0 - WestwoodOnline) WinDirStat 1.1.2 (HKU\S-1-5-21-973633878-3127659-858757103-1000\...\WinDirStat) (Version: - ) Windows Assessment and Deployment Kit - Windows 10 (HKLM-x32\...\{39ebb79f-797c-418f-b329-97cfdf92b7ab}) (Version: 10.1.14393.0 - Microsoft Corporation) WPT Redistributables (x32 Version: 10.1.14393.0 - Microsoft) Hidden WPTx64 (x32 Version: 10.1.14393.0 - Microsoft) Hidden WPTx86 (HKLM-x32\...\{390515E1-2609-B6D5-1208-096EFCF266CB}) (Version: 10.1.14393.0 - Microsoft) ==================== Niestandardowe rejestracje CLSID (filtrowane): ========================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) CustomCLSID: HKU\S-1-5-21-973633878-3127659-858757103-1000_Classes\CLSID\{E68D0A55-3C40-4712-B90D-DCFA93FF2534}\InprocServer32 -> C:\Users\Ann\AppData\Roaming\GG\ggdrive\ggdrive-menu.dll (GG Network S.A.) ==================== Zaplanowane zadania (filtrowane) ============= (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) Task: {04FEF918-858C-4873-AC43-926A92002CF0} - System32\Tasks\Microsoft\Windows\Media Center\OCURDiscovery => %SystemRoot%\ehome\ehPrivJob.exe Task: {062724C2-F365-4AB2-8882-BD35CBB0E55C} - System32\Tasks\Microsoft\Windows\Media Center\MediaCenterRecoveryTask => %SystemRoot%\ehome\mcupdate.exe Task: {09CFA0BE-08CE-410D-8B45-FA871CA0D657} - System32\Tasks\Microsoft\Windows\Media Center\StartRecording => %SystemRoot%\ehome\ehrec.exe Task: {1912527F-7717-4F03-9E8F-3D144AFDF927} - System32\Tasks\Microsoft\Windows\Media Center\PvrScheduleTask => %SystemRoot%\ehome\mcupdate.exe Task: {1F398E47-553A-490C-958D-CBB39DED0BB9} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2016-10-25] (NVIDIA Corporation) Task: {20F45AA1-C479-4B49-B34E-E17E578D22EA} - System32\Tasks\Microsoft\Windows\Media Center\RegisterSearch => %SystemRoot%\ehome\ehPrivJob.exe Task: {28D99F4A-048B-4CC0-81CD-0AEA69055C52} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2016-10-25] (NVIDIA Corporation) Task: {322AAFEF-B337-44F9-BDD4-D2B3BBD36F07} - System32\Tasks\Microsoft\Windows\Media Center\InstallPlayReady => %SystemRoot%\ehome\ehPrivJob.exe Task: {378D42AD-C3A5-4BF0-8ECA-16AF71D7F674} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW2 => %SystemRoot%\ehome\ehPrivJob.exe Task: {429A543C-6BB8-47DB-84A8-07D6BD9ADBE7} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW1 => %SystemRoot%\ehome\ehPrivJob.exe Task: {4830EA25-08FA-466A-9C4D-1782E3A511B9} - System32\Tasks\USER_ESRV_SVC_QUEENCREEK => Wscript.exe //B //NoLogo "C:\Program Files\Intel\SUR\QUEENCREEK\task.vbs" Task: {48C5E243-54DE-44FC-9183-684724A99F26} - System32\Tasks\{BD684C48-D3DC-49BE-A952-D9214738A646} => pcalua.exe -a E:\Hopkins4\autorun.exe -d E:\Hopkins4 Task: {495B5D46-324C-4D20-A334-7BD533A11248} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2016-12-19] (Adobe Systems Incorporated) Task: {49B8176F-DB34-4E0D-A9F2-6A7698F42CF2} - System32\Tasks\Microsoft\Windows\Media Center\OCURActivate => %SystemRoot%\ehome\ehPrivJob.exe Task: {4BC880BA-CD94-4D96-96F7-24A434947F97} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-06-19] (Google Inc.) Task: {5473FA11-51F9-445B-953E-026007ED3306} - System32\Tasks\Microsoft\Windows\Media Center\DispatchRecoveryTasks => %SystemRoot%\ehome\ehPrivJob.exe Task: {548F19E8-0405-47F0-A762-D2C112B0F7E2} - System32\Tasks\Microsoft\Windows\Media Center\SqlLiteRecoveryTask => %SystemRoot%\ehome\mcupdate.exe Task: {562C3EC8-38DB-4583-B5C0-AC0CA6693A14} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2016-07-11] (AVAST Software) Task: {59DF28BA-49A7-4F67-8F06-48247D281000} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscovery => %SystemRoot%\ehome\ehPrivJob.exe Task: {70379F82-6E9D-40A6-8239-685D9FA09746} - System32\Tasks\NvTmRepOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2016-10-25] (NVIDIA Corporation) Task: {7E268CF5-EE9D-4B97-AA90-A7EEF7245ACE} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2017-03-16] (Adobe Systems Incorporated) Task: {8796A8EE-FD5B-4B92-B3AA-AE4C273918FB} - System32\Tasks\Microsoft\Windows\Media Center\ActivateWindowsSearch => %SystemRoot%\ehome\ehPrivJob.exe Task: {8A6B682D-7E8B-408B-BB8A-378D892312FC} - System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmMon.exe [2016-10-25] (NVIDIA Corporation) Task: {905B2FA3-FADB-4EB7-AEE4-B5D47FF11532} - System32\Tasks\Intel\Intel Telemetry 2 => C:\Program Files\Intel\Telemetry 2.0\lrio.exe [2016-03-17] (Intel Corporation) Task: {9394BBAE-40C1-4219-B71D-4CEF8B523FDF} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2017-02-18] (Microsoft Corporation) Task: {9A65C80D-F2D9-4425-8F74-2635EBCC2402} - System32\Tasks\Microsoft\Windows\Media Center\ConfigureInternetTimeService => %SystemRoot%\ehome\ehPrivJob.exe Task: {A6F3CD85-4096-48E5-BAB1-96FD275BC7DD} - System32\Tasks\Microsoft\Windows\Media Center\PvrRecoveryTask => %SystemRoot%\ehome\mcupdate.exe Task: {ADC46C64-88A3-4DAB-B292-48DBFDD86E69} - System32\Tasks\Microsoft\Windows\Media Center\ObjectStoreRecoveryTask => %SystemRoot%\ehome\mcupdate.exe Task: {BC8A8D48-8BA2-4BCA-B3D3-D65151F54D08} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance => C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonx86\Microsoft Shared\Office16\OLicenseHeartbeat.exe [2017-02-19] (Microsoft Corporation) Task: {C5710F51-35BD-4236-84FC-BB5D1BD30796} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate_scheduled => %SystemRoot%\ehome\mcupdate.exe Task: {C60C11E0-95A2-46A9-8207-A38F2E29B449} - System32\Tasks\Microsoft\Windows\Media Center\UpdateRecordPath => %SystemRoot%\ehome\ehPrivJob.exe Task: {C854CC6E-8FF1-4DAB-9A46-8EEC79B94E85} - System32\Tasks\Microsoft\Windows\Media Center\RecordingRestart => %SystemRoot%\ehome\ehrec.exe Task: {C8BCE25A-41F5-41DA-8AB7-2740ED65C2DB} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2017-02-18] (Microsoft Corporation) Task: {D09ED5E6-9BB8-4C39-9936-D5947DE2F8D6} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-06-19] (Google Inc.) Task: {DCC2C4AF-61DA-479A-9308-72C9EC31F137} - System32\Tasks\Microsoft\Windows\Media Center\ReindexSearchRoot => %SystemRoot%\ehome\ehPrivJob.exe Task: {E145F21A-20AF-4DCB-9CBC-7142FC0EA646} - System32\Tasks\Microsoft\Windows\Media Center\PeriodicScanRetry => %windir%\ehome\MCUpdate.exe Task: {E2F34D36-8D84-49E3-B0E4-82779EE40971} - System32\Tasks\Microsoft\Windows\Media Center\ehDRMInit => %SystemRoot%\ehome\ehPrivJob.exe Task: {E525C059-1B4C-4318-9637-85051BA81716} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate => %SystemRoot%\ehome\mcupdate.exe Task: {EA83A8BA-6EBE-4EFE-A50E-2461510CE5E9} - System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2016-10-25] (NVIDIA Corporation) Task: {F7052F54-C0BD-4AFD-A93F-C871EF25A781} - System32\Tasks\AVAST Software\Avast settings backup => C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe Task: {F981D39F-23AB-46B9-909E-301AFF1E56F4} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2017-03-03] (Piriform Ltd) Task: {FCB9BD35-7FA5-4DF7-B744-61A210435FCD} - System32\Tasks\Uninstaller_SkipUac_Ann => C:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exe [2015-07-02] (IObit) (Załączenie wejścia w fixlist spowoduje przesunięcie pliku zadania (.job). Plik uruchamiany docelowo przez zadanie nie zostanie przeniesiony.) Task: C:\WINDOWS\Tasks\Uninstaller_SkipUac_Ann.job => C:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exe ==================== Skróty ============================= (Wybrane wejścia mogą zostać załączone w celu ich zresetowania lub usunięcia.) Shortcut: C:\Users\Ann\Favorites\NCH Software Download Site.lnk -> hxxp://www.nchsoftware.com/index.htm ==================== Załadowane moduły (filtrowane) ============== 2016-07-16 12:42 - 2016-07-16 12:42 - 00231424 _____ () C:\WINDOWS\SYSTEM32\ism32k.dll 2017-03-15 10:27 - 2017-03-04 08:19 - 02681200 _____ () C:\WINDOWS\system32\CoreUIComponents.dll 2016-12-09 19:51 - 2012-04-24 18:42 - 01181544 _____ () C:\Program Files (x86)\MSI Gaming Series\Interceptor DS100\ETGMSrv.exe 2017-03-07 19:04 - 2017-03-07 19:04 - 00157456 _____ () C:\Program Files\Intel Driver Update Utility\SUR\SurSvc.exe 2016-08-07 12:28 - 2016-12-29 13:44 - 00134712 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll 2017-03-15 10:27 - 2017-03-04 08:19 - 02681200 _____ () C:\WINDOWS\SYSTEM32\CoreUIComponents.dll 2016-08-22 17:44 - 2016-05-22 18:33 - 00491184 ____N () C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll 2016-12-30 16:16 - 2016-12-30 16:16 - 00959168 _____ () C:\Users\Ann\AppData\Local\Microsoft\OneDrive\17.3.6390.0509_2\amd64\ClientTelemetry.dll 2010-07-15 05:44 - 2010-07-15 05:44 - 00020032 _____ () C:\Program Files\Unlocker\UnlockerCOM.dll 2016-09-13 18:51 - 2016-09-07 05:56 - 00134656 _____ () C:\Windows\ShellExperiences\Windows.UI.Shell.SharedUtilities.dll 2017-03-15 10:27 - 2017-03-04 07:31 - 00474112 _____ () C:\Windows\ShellExperiences\QuickActions.dll 2017-03-14 10:54 - 2017-03-14 10:54 - 00381440 _____ () C:\Program Files\WindowsApps\Microsoft.MicrosoftStickyNotes_1.7.1.0_x64__8wekyb3d8bbwe\Microsoft.Notes.Upgrade.dll 2017-03-13 14:22 - 2017-03-13 14:22 - 00077312 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.12.112.0_x64__kzf8qxf38zg5c\SkypeHost.exe 2017-03-13 14:22 - 2017-03-13 14:22 - 00182784 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.12.112.0_x64__kzf8qxf38zg5c\SkypeBackgroundTasks.dll 2017-03-13 14:22 - 2017-03-13 14:22 - 41048064 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.12.112.0_x64__kzf8qxf38zg5c\SkyWrap.dll 2017-03-13 14:22 - 2017-03-13 14:22 - 02236896 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.12.112.0_x64__kzf8qxf38zg5c\roottools.dll 2016-12-09 19:51 - 2014-03-10 11:43 - 03698176 _____ () C:\Program Files (x86)\MSI Gaming Series\Interceptor DS100\MMon2.exe 2017-03-15 10:27 - 2017-03-04 07:12 - 09760768 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll 2017-03-15 10:27 - 2017-03-04 07:05 - 01401856 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll 2017-03-15 10:27 - 2017-03-04 07:05 - 00757248 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CSGSuggestLib.dll 2017-03-15 10:27 - 2017-03-04 07:05 - 02424320 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll 2017-03-15 10:28 - 2017-03-04 07:08 - 04853760 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll 2016-07-11 18:36 - 2016-07-11 18:36 - 00146232 _____ () C:\Program Files\AVAST Software\Avast\JsonRpcServer.dll 2017-03-17 13:57 - 2017-03-17 13:57 - 05885952 _____ () C:\Program Files\AVAST Software\Avast\defs\17031700\algo.dll 2016-07-11 18:36 - 2016-07-11 18:36 - 00479288 _____ () C:\Program Files\AVAST Software\Avast\ffl2.dll 2015-07-05 14:26 - 2015-07-05 14:26 - 00622880 _____ () C:\Program Files (x86)\IObit\LiveUpdate\ProductStatistics.dll 2015-02-21 16:44 - 2005-07-18 13:43 - 00160256 _____ () C:\Program Files (x86)\MSI\Live Update\unrar.dll 2016-09-14 23:35 - 2017-03-07 17:11 - 02493440 _____ () C:\Program Files (x86)\Origin\libGLESv2.dll 2016-07-11 18:36 - 2016-07-11 18:36 - 48936448 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll 2016-12-09 19:51 - 2011-01-27 00:53 - 00028160 _____ () C:\Program Files (x86)\MSI Gaming Series\Interceptor DS100\uiHook.dll 2016-12-30 16:16 - 2016-12-30 16:16 - 00679624 _____ () C:\Users\Ann\AppData\Local\Microsoft\OneDrive\17.3.6390.0509_2\ClientTelemetry.dll 2015-05-07 23:19 - 2000-01-01 01:00 - 01242584 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll ==================== Alternate Data Streams (filtrowane) ========= (Załączenie wejścia w fixlist spowoduje usunięcie strumienia ADS.) ==================== Tryb awaryjny (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Wartość "AlternateShell" zostanie przywrócona.) ==================== Powiązania plików (filtrowane) =============== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci.) ==================== Internet Explorer - Witryny zaufane i z ograniczeniami =============== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru.) ==================== Hosts - zawartość: =============================== (Użycie dyrektywy Hosts: w fixlist spowoduje reset pliku Hosts.) 2009-07-14 03:34 - 2017-01-28 19:27 - 00000824 ____A C:\WINDOWS\system32\Drivers\etc\hosts ==================== Inne obszary ============================ (Obecnie brak automatycznej naprawy dla tej sekcji.) HKU\S-1-5-21-973633878-3127659-858757103-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\Ann\Desktop\12.jpg DNS Servers: 192.168.0.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Zapora systemu Windows [funkcja włączona] ==================== MSCONFIG/TASK MANAGER - Wyłączone elementy == MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^TP-LINK Wireless Configuration Utility.lnk => C:\Windows\pss\TP-LINK Wireless Configuration Utility.lnk.CommonStartup MSCONFIG\startupreg: CCleaner Monitoring => "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR MSCONFIG\startupreg: GmailNotifierPro => C:\Program Files (x86)\Gmail Notifier Pro\GmailNotifierPro.exe /minimized MSCONFIG\startupreg: GoogleDriveSync => "C:\Program Files (x86)\Google\Drive\googledrivesync.exe" /autostart MSCONFIG\startupreg: IAStorIcon => "C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe" "C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe" 60 MSCONFIG\startupreg: ISCT Tray => C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTsysTray8.exe MSCONFIG\startupreg: Live Update => C:\Program Files (x86)\MSI\Live Update\Live Update.exe /REMINDER MSCONFIG\startupreg: NvBackend => "C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe" MSCONFIG\startupreg: RTHDVCPL => "C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe" -s MSCONFIG\startupreg: ShadowPlay => C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart MSCONFIG\startupreg: StartCCC => "C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\amd64\CLIStart.exe" MSRun MSCONFIG\startupreg: SunJavaUpdateSched => "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" MSCONFIG\startupreg: USB3MON => "C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe" HKLM\...\StartupApproved\Run: => "NvBackend" HKLM\...\StartupApproved\Run32: => "Adobe Creative Cloud" HKLM\...\StartupApproved\Run32: => "SunJavaUpdateSched" HKU\S-1-5-21-973633878-3127659-858757103-1000\...\StartupApproved\Run: => "ALLUpdate" HKU\S-1-5-21-973633878-3127659-858757103-1000\...\StartupApproved\Run: => "GalaxyClient" HKU\S-1-5-21-973633878-3127659-858757103-1000\...\StartupApproved\Run: => "OneDrive" HKU\S-1-5-21-973633878-3127659-858757103-1000\...\StartupApproved\Run: => "Napisy24.pl" HKU\S-1-5-21-973633878-3127659-858757103-1000\...\StartupApproved\Run: => "Napisy24Update" HKU\S-1-5-21-973633878-3127659-858757103-1000\...\StartupApproved\Run: => "Steam" HKU\S-1-5-21-973633878-3127659-858757103-1000\...\StartupApproved\Run: => "CCleaner Monitoring" ==================== Reguły Zapory systemu Windows (filtrowane) =============== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139 FirewallRules: [MSMQ-In-TCP] => (Allow) %systemroot%\system32\mqsvc.exe FirewallRules: [MSMQ-Out-TCP] => (Allow) %systemroot%\system32\mqsvc.exe FirewallRules: [MSMQ-In-UDP] => (Allow) %systemroot%\system32\mqsvc.exe FirewallRules: [MSMQ-Out-UDP] => (Allow) %systemroot%\system32\mqsvc.exe FirewallRules: [WCF-NetTcpActivator-In-TCP-64bit] => (Allow) LPort=808 FirewallRules: [{975A844A-4E0D-4DDC-8BF1-734617AF2039}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe FirewallRules: [TCP Query User{7698D789-FF47-47D0-A6C9-AA3062A5078A}C:\users\ann\appdata\roaming\utorrent\utorrent.exe] => (Allow) C:\users\ann\appdata\roaming\utorrent\utorrent.exe FirewallRules: [UDP Query User{15ACA546-4F4A-48AD-B01E-C9FFC4821A77}C:\users\ann\appdata\roaming\utorrent\utorrent.exe] => (Allow) C:\users\ann\appdata\roaming\utorrent\utorrent.exe FirewallRules: [{8BA9D3FC-C089-4EF7-9459-F8EB9BD50364}] => (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe FirewallRules: [{DC9E939F-712F-43F0-9719-232225908FE1}] => (Allow) LPort=2869 FirewallRules: [{06E434BD-9D42-4E6A-BD6A-7A71F44E9572}] => (Allow) LPort=1900 FirewallRules: [{2D26AB26-E6B9-41E0-9BA1-1CAD53CAD4CA}] => (Allow) C:\Program Files (x86)\NapiProjekt\napisy.exe FirewallRules: [{773E06E6-250C-4783-B7F5-98AE70C6DAF5}] => (Allow) C:\Program Files (x86)\NapiProjekt\napisy.exe FirewallRules: [{2FED1F84-AF8C-481B-B353-AF9D0743658C}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{AAC5F7FC-07B8-419C-AE1C-F9D1341A11B1}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{CB5290ED-A9C4-432F-A9E3-A3FF58AD7759}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\outlook.exe FirewallRules: [{67BD0501-9086-4A79-B713-690F5DFC6B50}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe FirewallRules: [{308512AF-7A40-47CC-8210-D10BCC9B6412}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{67A165DE-DC5F-48B7-A66E-C9EBC89E69F7}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{125A8DB0-999C-4573-86CD-C970D8AC0B09}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe FirewallRules: [{56D1A5EB-0BEF-4D33-8EA2-BC0481A6268F}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe FirewallRules: [{E4769AA8-77C3-4C45-8CE2-6977834BCD35}] => (Allow) G:\Gry\Steam\SteamApps\common\Holy Potatoes! We're in Space!\HPWIS.exe FirewallRules: [{89A7D1C3-ABCE-4872-A9E2-E21FEFA91F67}] => (Allow) G:\Gry\Steam\SteamApps\common\Holy Potatoes! We're in Space!\HPWIS.exe FirewallRules: [TCP Query User{BE7BD2D5-12B8-4A4A-B9F4-69258A267F76}G:\gry\steam\steamapps\common\counter-strike global offensive\csgo.exe] => (Allow) G:\gry\steam\steamapps\common\counter-strike global offensive\csgo.exe FirewallRules: [UDP Query User{3CD9C054-2A42-4E6A-A9D1-B48F6252E2EC}G:\gry\steam\steamapps\common\counter-strike global offensive\csgo.exe] => (Allow) G:\gry\steam\steamapps\common\counter-strike global offensive\csgo.exe FirewallRules: [{318EDA27-3C1F-48B2-95D5-D43A581C4E83}] => (Allow) G:\Gry\Steam\SteamApps\common\Cat on a Diet\catonadiet_en.exe FirewallRules: [{6C831DA0-4E70-4582-8CFB-5AAD85BBFA27}] => (Allow) G:\Gry\Steam\SteamApps\common\Cat on a Diet\catonadiet_en.exe FirewallRules: [{B0202563-9B12-48BC-97BD-16561DB658E1}] => (Allow) G:\Gry\Steam\SteamApps\common\Conan Exiles\ConanSandbox\Binaries\Win64\ConanSandbox_BE.exe FirewallRules: [{FD40CC25-B8E3-4E19-B077-824847AD4089}] => (Allow) G:\Gry\Steam\SteamApps\common\Conan Exiles\ConanSandbox\Binaries\Win64\ConanSandbox_BE.exe FirewallRules: [{570AD141-5345-4130-A516-B24B2CC68EF4}] => (Allow) G:\Gry\Steam\SteamApps\common\Conan Exiles\ConanSandbox\Binaries\Win64\ConanSandbox.exe FirewallRules: [{034FB28F-B07E-4E27-99F4-B8DFA1DD0345}] => (Allow) G:\Gry\Steam\SteamApps\common\Conan Exiles\ConanSandbox\Binaries\Win64\ConanSandbox.exe FirewallRules: [{4EB82F57-0F50-4536-8460-7A0B6F9BBE3B}] => (Allow) G:\Gry\Steam\SteamApps\common\Shadow Warrior 2\ShadowWarrior2.exe FirewallRules: [{02ED40AC-4F5A-4D33-B8C0-410C976CA2BB}] => (Allow) G:\Gry\Steam\SteamApps\common\Shadow Warrior 2\ShadowWarrior2.exe FirewallRules: [{CBCD8F43-19D8-474B-8B96-1B9664631114}] => (Allow) G:\Gry\Steam\SteamApps\common\The Walking Dead - A New Frontier (Season 3)\WalkingDead3_win8.exe FirewallRules: [{8919AEE5-6423-40E7-BEBC-8DF138040EAA}] => (Allow) G:\Gry\Steam\SteamApps\common\The Walking Dead - A New Frontier (Season 3)\WalkingDead3_win8.exe FirewallRules: [{B76B6A79-1BAB-4A0A-9F01-B5613C7F11FE}] => (Allow) G:\Gry\Steam\SteamApps\common\The Walking Dead - A New Frontier (Season 3)\WalkingDead3_win7.exe FirewallRules: [{49227741-1B7A-4331-953D-8A255A0B163E}] => (Allow) G:\Gry\Steam\SteamApps\common\The Walking Dead - A New Frontier (Season 3)\WalkingDead3_win7.exe FirewallRules: [{7910BCA0-3B8A-431E-865D-7C1F1521C315}] => (Allow) G:\Gry\Steam\SteamApps\common\RESIDENT EVIL 7 biohazard\re7.exe FirewallRules: [{86A13BE7-7FFB-436B-87C3-D570CC2EC3F2}] => (Allow) G:\Gry\Steam\SteamApps\common\RESIDENT EVIL 7 biohazard\re7.exe FirewallRules: [{93BE492E-7D61-49FC-8530-A1F06FFE307D}] => (Allow) G:\Gry\Steam\SteamApps\common\911 Operator\911.exe FirewallRules: [{E3BB90A1-E0C6-489D-B949-7D6BBC013115}] => (Allow) G:\Gry\Steam\SteamApps\common\911 Operator\911.exe FirewallRules: [{9BE4CE4A-0E16-47AF-B7CB-BD5704FFC8B9}] => (Allow) G:\Gry\Steam\SteamApps\common\Holy Potatoes! A Weapon Shop!\HPAWS.exe FirewallRules: [{F57035F0-EA7C-4B7A-9032-8A5EE7BC3703}] => (Allow) G:\Gry\Steam\SteamApps\common\Holy Potatoes! A Weapon Shop!\HPAWS.exe FirewallRules: [{70DF3477-BF1C-476A-B71B-0CAA200E8B4B}] => (Allow) G:\Gry\Steam\SteamApps\common\Rise & Shine\RiseAndShine.exe FirewallRules: [{1C26FA22-BB9F-4DA3-B164-95B2CBC863A5}] => (Allow) G:\Gry\Steam\SteamApps\common\Rise & Shine\RiseAndShine.exe FirewallRules: [{23197E68-5ECA-486C-BDAD-C91FED429C7A}] => (Allow) G:\Gry\Steam\SteamApps\common\Northgard\Northgard.exe FirewallRules: [{19BC4701-DCD1-45DE-B582-9EF81028D969}] => (Allow) G:\Gry\Steam\SteamApps\common\Northgard\Northgard.exe FirewallRules: [{62612BC8-BF06-4A78-9AE9-585772032C8A}] => (Allow) G:\Gry\Steam\SteamApps\common\Thimbleweed Park\ThimbleweedPark.exe FirewallRules: [{D71A468E-C6AC-4921-9322-37D587093918}] => (Allow) G:\Gry\Steam\SteamApps\common\Thimbleweed Park\ThimbleweedPark.exe ==================== Punkty Przywracania systemu ========================= UWAGA: Przywracanie systemu jest wyłączone ==================== Wadliwe urządzenia w Menedżerze urządzeń ============= ==================== Błędy w Dzienniku zdarzeń: ========================= Dziennik Aplikacja: ================== Error: (03/17/2017 02:00:59 PM) (Source: SetupARService) (EventID: 0) (User: ) Description: Nie można uruchomić usługi. System.NullReferenceException: Odwołanie do obiektu nie zostało ustawione na wystąpienie obiektu. w SetupAfterRebootService.SetupARService.OnStart(String[] args) w System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object state) Error: (03/17/2017 01:56:25 PM) (Source: SetupARService) (EventID: 0) (User: ) Description: Nie można uruchomić usługi. System.NullReferenceException: Odwołanie do obiektu nie zostało ustawione na wystąpienie obiektu. w SetupAfterRebootService.SetupARService.OnStart(String[] args) w System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object state) Error: (03/17/2017 01:38:20 PM) (Source: SideBySide) (EventID: 59) (User: ) Description: Nie można wygenerować kontekstu aktywacji dla "C:\ProgramData\BlueStacksGameManager\BlueStacks.exe". Błąd w pliku manifestu lub w pliku zasad "C:\ProgramData\BlueStacksGameManager\BlueStacks.exe.Config" w wierszu 0. Nieprawidłowa składnia XML. Error: (03/17/2017 12:50:50 PM) (Source: SetupARService) (EventID: 0) (User: ) Description: Nie można uruchomić usługi. System.NullReferenceException: Odwołanie do obiektu nie zostało ustawione na wystąpienie obiektu. w SetupAfterRebootService.SetupARService.OnStart(String[] args) w System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object state) Error: (03/17/2017 12:22:49 PM) (Source: SideBySide) (EventID: 59) (User: ) Description: Nie można wygenerować kontekstu aktywacji dla "C:\ProgramData\BlueStacksGameManager\BlueStacks.exe". Błąd w pliku manifestu lub w pliku zasad "C:\ProgramData\BlueStacksGameManager\BlueStacks.exe.Config" w wierszu 0. Nieprawidłowa składnia XML. Error: (03/17/2017 12:20:16 PM) (Source: SideBySide) (EventID: 59) (User: ) Description: Nie można wygenerować kontekstu aktywacji dla "C:\ProgramData\BlueStacksGameManager\BlueStacks.exe". Błąd w pliku manifestu lub w pliku zasad "C:\ProgramData\BlueStacksGameManager\BlueStacks.exe.Config" w wierszu 0. Nieprawidłowa składnia XML. Error: (03/17/2017 12:16:13 PM) (Source: SetupARService) (EventID: 0) (User: ) Description: Nie można uruchomić usługi. System.NullReferenceException: Odwołanie do obiektu nie zostało ustawione na wystąpienie obiektu. w SetupAfterRebootService.SetupARService.OnStart(String[] args) w System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object state) Error: (03/17/2017 12:12:01 PM) (Source: SetupARService) (EventID: 0) (User: ) Description: Nie można uruchomić usługi. System.NullReferenceException: Odwołanie do obiektu nie zostało ustawione na wystąpienie obiektu. w SetupAfterRebootService.SetupARService.OnStart(String[] args) w System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object state) Error: (03/17/2017 12:11:18 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: HELL) Description: Aktywacja aplikacji Microsoft.XboxApp_8wekyb3d8bbwe!Microsoft.XboxApp nie powiodła się. Błąd: -2144927141. Więcej informacji można znaleźć w dzienniku Microsoft-Windows-TWinUI/Działa. Error: (03/17/2017 12:11:17 PM) (Source: IDUU) (EventID: 1000) (User: ) Description: 2.7.2.4 en Exception Thrown!: Proces o identyfikatorze 8376 nie jest uruchomiony. SetupChipset.exe Windows® 10, 64-bit* 64-bit Chipset 4d36e97d-e325-11ce-bfc1-08002be10318 VEN_8086&DEV_244E 2006-06-21 Mostek PCI do PCI Microsoft 0 10.1.1.14 2016-02-14T06:37:02.54 SetupChipset.exe C:\WINDOWS\INF\pci.inf https://downloadmirror.intel.com/24165/eng/setupchipset.exe 10.0.14393.594 False 2017-03-17T11:11:17.6126632Z Dziennik System: ============= Error: (03/17/2017 02:04:35 PM) (Source: DCOM) (EventID: 10016) (User: ZARZĄDZANIE NT) Description: Zgodnie z ustawieniami uprawnienia właściwe dla aplikacji nie jest udzielane uprawnienie Lokalny Aktywacja do aplikacji serwera COM z identyfikatorem klasy CLSID {8D8F4F83-3594-4F07-8369-FC3C3CAE4919} i identyfikatorem aplikacji APPID {F72671A9-012C-4725-9D2F-2A4D32D65169} użytkownikowi ZARZĄDZANIE NT\SYSTEM o identyfikatorze zabezpieczeń SID (S-1-5-18) z adresu LocalHost (użycie LRPC) działającemu w kontenerze aplikacji o identyfikatorze SID Niedostępny (Niedostępny). To uprawnienie zabezpieczeń można modyfikować przy użyciu narzędzia administracyjnego Usługi składowe. Error: (03/17/2017 02:00:58 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: Usługa NetTcpActivator zależy od usługi NetTcpPortSharing, której nie można uruchomić z powodu następującego błędu: Nie można uruchomić określonej usługi, ponieważ jest ona wyłączona lub ponieważ nie są włączone skojarzone z nią urządzenia. Error: (03/17/2017 01:56:39 PM) (Source: DCOM) (EventID: 10016) (User: ZARZĄDZANIE NT) Description: Zgodnie z ustawieniami uprawnienia właściwe dla aplikacji nie jest udzielane uprawnienie Lokalny Aktywacja do aplikacji serwera COM z identyfikatorem klasy CLSID {8D8F4F83-3594-4F07-8369-FC3C3CAE4919} i identyfikatorem aplikacji APPID {F72671A9-012C-4725-9D2F-2A4D32D65169} użytkownikowi ZARZĄDZANIE NT\SYSTEM o identyfikatorze zabezpieczeń SID (S-1-5-18) z adresu LocalHost (użycie LRPC) działającemu w kontenerze aplikacji o identyfikatorze SID Niedostępny (Niedostępny). To uprawnienie zabezpieczeń można modyfikować przy użyciu narzędzia administracyjnego Usługi składowe. Error: (03/17/2017 01:56:24 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: Usługa NetTcpActivator zależy od usługi NetTcpPortSharing, której nie można uruchomić z powodu następującego błędu: Nie można uruchomić określonej usługi, ponieważ jest ona wyłączona lub ponieważ nie są włączone skojarzone z nią urządzenia. Error: (03/17/2017 01:46:35 PM) (Source: DCOM) (EventID: 10010) (User: HELL) Description: Serwer {9BA05972-F6A8-11CF-A442-00A0C90A8F39} nie zarejestrował się w modelu DCOM w wymaganym czasie. Error: (03/17/2017 01:46:35 PM) (Source: DCOM) (EventID: 10010) (User: HELL) Description: Serwer {9BA05972-F6A8-11CF-A442-00A0C90A8F39} nie zarejestrował się w modelu DCOM w wymaganym czasie. Error: (03/17/2017 12:50:54 PM) (Source: DCOM) (EventID: 10016) (User: ZARZĄDZANIE NT) Description: Zgodnie z ustawieniami uprawnienia właściwe dla aplikacji nie jest udzielane uprawnienie Lokalny Aktywacja do aplikacji serwera COM z identyfikatorem klasy CLSID {8D8F4F83-3594-4F07-8369-FC3C3CAE4919} i identyfikatorem aplikacji APPID {F72671A9-012C-4725-9D2F-2A4D32D65169} użytkownikowi ZARZĄDZANIE NT\SYSTEM o identyfikatorze zabezpieczeń SID (S-1-5-18) z adresu LocalHost (użycie LRPC) działającemu w kontenerze aplikacji o identyfikatorze SID Niedostępny (Niedostępny). To uprawnienie zabezpieczeń można modyfikować przy użyciu narzędzia administracyjnego Usługi składowe. Error: (03/17/2017 12:50:49 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: Usługa NetTcpActivator zależy od usługi NetTcpPortSharing, której nie można uruchomić z powodu następującego błędu: Nie można uruchomić określonej usługi, ponieważ jest ona wyłączona lub ponieważ nie są włączone skojarzone z nią urządzenia. Error: (03/17/2017 12:22:55 PM) (Source: DCOM) (EventID: 10016) (User: ZARZĄDZANIE NT) Description: Zgodnie z ustawieniami uprawnienia właściwe dla aplikacji nie jest udzielane uprawnienie Lokalny Aktywacja do aplikacji serwera COM z identyfikatorem klasy CLSID {8D8F4F83-3594-4F07-8369-FC3C3CAE4919} i identyfikatorem aplikacji APPID {F72671A9-012C-4725-9D2F-2A4D32D65169} użytkownikowi ZARZĄDZANIE NT\SYSTEM o identyfikatorze zabezpieczeń SID (S-1-5-18) z adresu LocalHost (użycie LRPC) działającemu w kontenerze aplikacji o identyfikatorze SID Niedostępny (Niedostępny). To uprawnienie zabezpieczeń można modyfikować przy użyciu narzędzia administracyjnego Usługi składowe. Error: (03/17/2017 12:16:18 PM) (Source: DCOM) (EventID: 10016) (User: ZARZĄDZANIE NT) Description: Zgodnie z ustawieniami uprawnienia właściwe dla aplikacji nie jest udzielane uprawnienie Lokalny Aktywacja do aplikacji serwera COM z identyfikatorem klasy CLSID {8D8F4F83-3594-4F07-8369-FC3C3CAE4919} i identyfikatorem aplikacji APPID {F72671A9-012C-4725-9D2F-2A4D32D65169} użytkownikowi ZARZĄDZANIE NT\SYSTEM o identyfikatorze zabezpieczeń SID (S-1-5-18) z adresu LocalHost (użycie LRPC) działającemu w kontenerze aplikacji o identyfikatorze SID Niedostępny (Niedostępny). To uprawnienie zabezpieczeń można modyfikować przy użyciu narzędzia administracyjnego Usługi składowe. CodeIntegrity: =================================== Date: 2017-03-15 12:54:11.631 Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume5\Windows\assembly\GAC\Microsoft.StdFormat\7.0.3300.0__b03f5f7f11d50a3a\Microsoft.stdformat.dll that did not meet the Microsoft signing level requirements. Date: 2017-03-15 12:54:11.615 Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume5\Windows\assembly\GAC\ADODB\7.0.3300.0__b03f5f7f11d50a3a\adodb.dll that did not meet the Microsoft signing level requirements. Date: 2017-03-15 12:54:11.585 Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume5\Windows\assembly\GAC\MSDATASRC\7.0.3300.0__b03f5f7f11d50a3a\msdatasrc.dll that did not meet the Microsoft signing level requirements. Date: 2017-03-15 12:54:11.528 Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume5\Windows\assembly\GAC\Microsoft.StdFormat\7.0.3300.0__b03f5f7f11d50a3a\Microsoft.stdformat.dll that did not meet the Microsoft signing level requirements. Date: 2017-03-15 12:54:11.516 Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume5\Windows\assembly\GAC\ADODB\7.0.3300.0__b03f5f7f11d50a3a\adodb.dll that did not meet the Microsoft signing level requirements. Date: 2017-03-15 12:54:11.505 Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume5\Windows\assembly\GAC\MSDATASRC\7.0.3300.0__b03f5f7f11d50a3a\msdatasrc.dll that did not meet the Microsoft signing level requirements. Date: 2017-03-15 12:54:10.715 Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume5\Windows\assembly\GAC\stdole\7.0.3300.0__b03f5f7f11d50a3a\stdole.dll that did not meet the Microsoft signing level requirements. Date: 2017-03-15 12:54:10.586 Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume5\Windows\assembly\GAC\stdole\7.0.3300.0__b03f5f7f11d50a3a\stdole.dll that did not meet the Microsoft signing level requirements. Date: 2017-03-15 12:51:01.711 Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume5\Windows\assembly\GAC\Microsoft.StdFormat\7.0.3300.0__b03f5f7f11d50a3a\Microsoft.stdformat.dll that did not meet the Microsoft signing level requirements. Date: 2017-03-15 12:51:01.697 Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume5\Windows\assembly\GAC\ADODB\7.0.3300.0__b03f5f7f11d50a3a\adodb.dll that did not meet the Microsoft signing level requirements. ==================== Statystyki pamięci =========================== Procesor: Intel(R) Core(TM) i5-4440 CPU @ 3.10GHz Procent pamięci w użyciu: 32% Całkowita pamięć fizyczna: 8117.22 MB Dostępna pamięć fizyczna: 5495.79 MB Całkowita pamięć wirtualna: 9653.22 MB Dostępna pamięć wirtualna: 6660.78 MB ==================== Dyski ================================ Drive c: (SSdek) (Fixed) (Total:111.35 GB) (Free:61.3 GB) NTFS Drive d: () (Fixed) (Total:491.95 GB) (Free:249.68 GB) NTFS Drive f: (Filmy/Anime) (Fixed) (Total:224.61 GB) (Free:73.55 GB) NTFS Drive g: (Gry/Różności) (Fixed) (Total:214.84 GB) (Free:104.88 GB) NTFS ==================== MBR & Tablica partycji ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: D10AD10A) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=931.4 GB) - (Type=OF Extended) ======================================================== Disk: 1 (MBR Code: Windows 7 or 8) (Size: 111.8 GB) (Disk ID: 3C6988C8) Partition 1: (Active) - (Size=111.3 GB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=450 MB) - (Type=27) ==================== Koniec Addition.txt ============================