Rezultaty skanu uzupełniającego Farbar Recovery Scan Tool (x64) Wersja: 15-03-2017 Uruchomiony przez xxx (25-03-2017 12:50:58) Uruchomiony z C:\Users\xxx\Desktop\Nowy folder (2) Windows 7 Home Premium Service Pack 1 (X64) (2015-01-12 18:09:52) Tryb startu: Normal ========================================================== ==================== Konta użytkowników: ============================= Administrator (S-1-5-21-829155955-1858636651-191534281-500 - Administrator - Disabled) Gość (S-1-5-21-829155955-1858636651-191534281-501 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-829155955-1858636651-191534281-1002 - Limited - Enabled) xxx (S-1-5-21-829155955-1858636651-191534281-1000 - Administrator - Enabled) => C:\Users\xxx ==================== Centrum zabezpieczeń ======================== (Załączenie wejścia w fixlist spowoduje jego usunięcie.) AV: AVG AntiVirus Free Edition (Enabled - Up to date) {4D41356F-32AD-7C42-C820-63775EE4F413} AS: Windows Defender (Disabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: AVG AntiVirus Free Edition (Enabled - Up to date) {F620D48B-1497-73CC-F290-58052563BEAE} ==================== Zainstalowane programy ====================== (W fixlist dozwolone tylko załączanie programów adware z flagą "Hidden" w celu ich uwidocznienia. Programy adware powinny zostać w poprawny sposób odinstalowane.) µTorrent (HKU\S-1-5-21-829155955-1858636651-191534281-1000\...\uTorrent) (Version: 3.4.9.43388 - BitTorrent Inc.) Adobe Creative Cloud (HKLM-x32\...\Adobe Creative Cloud) (Version: 3.9.5.353 - Adobe Systems Incorporated) Adobe Flash Player 25 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 25.0.0.127 - Adobe Systems Incorporated) Adobe Photoshop CC 2017 (HKLM-x32\...\PHSP_18_0_1) (Version: 18.0.1 - Adobe Systems Incorporated) Airships: Conquer the Skies (HKLM\...\Steam App 342560) (Version: - David Stark) AMD Install Manager (HKLM\...\AMD Catalyst Install Manager) (Version: 9.0.000.4 - Advanced Micro Devices, Inc.) AVG (HKLM\...\AvgZen) (Version: 1.113.2.50020 - AVG Technologies) AVG (Version: 16.151.8007 - AVG Technologies) Hidden AVG 2016 (Version: 16.0.4767 - AVG Technologies) Hidden AVG Protection (HKLM\...\AVG) (Version: 2016.151.8007 - AVG Technologies) AVG Zen (Version: 1.113.1 - AVG Technologies) Hidden Batman™: Arkham Knight (HKLM-x32\...\Steam App 208650) (Version: - Rocksteady Studios) Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment) Battlefield 3™ (HKLM-x32\...\{76285C16-411A-488A-BCE3-C83CB933D8CF}) (Version: 1.6.0.0 - Electronic Arts) Battlefield 4™ (HKLM-x32\...\{ABADE36E-EC37-413B-8179-B432AD3FACE7}) (Version: 1.8.2.48475 - Electronic Arts) Brother MFL-Pro Suite DCP-J132W (HKLM-x32\...\{B742757A-7658-4E09-A51A-085CF0F7F4D3}) (Version: 1.0.0.0 - Brother Industries, Ltd.) Catalyst Control Center Next Localization BR (Version: 2016.0321.1015.16463 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization BR (Version: 2016.0718.1747.30147 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization CHS (Version: 2016.0321.1015.16463 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization CHS (Version: 2016.0718.1747.30147 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization CHT (Version: 2016.0321.1015.16463 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization CHT (Version: 2016.0718.1747.30147 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization CS (Version: 2016.0321.1015.16463 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization CS (Version: 2016.0718.1747.30147 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization DA (Version: 2016.0321.1015.16463 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization DA (Version: 2016.0718.1747.30147 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization DE (Version: 2016.0321.1015.16463 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization DE (Version: 2016.0718.1747.30147 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization EL (Version: 2016.0321.1015.16463 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization EL (Version: 2016.0718.1747.30147 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization ES (Version: 2016.0321.1015.16463 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization ES (Version: 2016.0718.1747.30147 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization FI (Version: 2016.0321.1015.16463 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization FI (Version: 2016.0718.1747.30147 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization FR (Version: 2016.0321.1015.16463 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization FR (Version: 2016.0718.1747.30147 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization HU (Version: 2016.0321.1015.16463 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization HU (Version: 2016.0718.1747.30147 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization IT (Version: 2016.0321.1015.16463 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization IT (Version: 2016.0718.1747.30147 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization JA (Version: 2016.0321.1015.16463 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization JA (Version: 2016.0718.1747.30147 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization KO (Version: 2016.0321.1015.16463 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization KO (Version: 2016.0718.1747.30147 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization NL (Version: 2016.0321.1015.16463 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization NL (Version: 2016.0718.1747.30147 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization NO (Version: 2016.0321.1015.16463 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization NO (Version: 2016.0718.1747.30147 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization PL (Version: 2016.0321.1015.16463 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization PL (Version: 2016.0718.1747.30147 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization RU (Version: 2016.0321.1015.16463 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization RU (Version: 2016.0718.1747.30147 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization SV (Version: 2016.0321.1015.16463 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization SV (Version: 2016.0718.1747.30147 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization TH (Version: 2016.0321.1015.16463 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization TH (Version: 2016.0718.1747.30147 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization TR (Version: 2016.0321.1015.16463 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization TR (Version: 2016.0718.1747.30147 - Advanced Micro Devices, Inc.) Hidden CCleaner (HKLM\...\CCleaner) (Version: 5.02 - Piriform) Cities: Skylines (HKLM-x32\...\Steam App 255710) (Version: - Colossal Order Ltd.) DAEMON Tools Lite (HKLM-x32\...\DAEMON Tools Lite) (Version: 4.49.1.0356 - Disc Soft Ltd) Dragon Age™: Inkwizycja (HKLM-x32\...\{DC4C36DC-4E5B-4262-B0C7-157DF534B969}) (Version: 1.0.0.12 - Electronic Arts) Dual-Core Optimizer (HKLM-x32\...\{9FD6F1A8-5550-46AF-8509-271DF0E768B5}) (Version: 1.1.4.0169 - AMD) ESN Sonar (HKLM-x32\...\ESN Sonar-0.70.4) (Version: 0.70.4 - ESN Social Software AB) FMW 1 (Version: 1.143.3 - AVG Technologies) Hidden GG (HKU\S-1-5-21-829155955-1858636651-191534281-1000\...\GG) (Version: 12 - GG Network S.A.) Google Chrome (HKU\S-1-5-21-829155955-1858636651-191534281-1000\...\Google Chrome) (Version: 57.0.2987.110 - Google Inc.) Google Update Helper (x32 Version: 1.3.25.11 - Google Inc.) Hidden Hidden & Dangerous 2 (HKLM-x32\...\InstallShield_{83437081-8186-4F63-BD39-4BE8A691E055}) (Version: 1.01.0000 - Illusion Softworks) Hidden & Dangerous 2 (x32 Version: 1.01.0000 - Illusion Softworks) Hidden Hidden & Dangerous 2 Sabre Squadron (HKLM-x32\...\InstallShield_{E2222809-FDED-4C7E-8F25-2337A8F39F03}) (Version: 1.00.0000 - Illusion Softworks) Hidden & Dangerous 2 Sabre Squadron (x32 Version: 1.00.0000 - Illusion Softworks) Hidden Infested Planet (HKLM\...\Steam App 204530) (Version: - Rocket Bear Games) Java 8 Update 121 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180121F0}) (Version: 8.0.1210.13 - Oracle Corporation) Microsoft .NET Framework 4.5.2 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.51209 - Microsoft Corporation) Microsoft Office Professional Plus 2013 (HKLM\...\Office15.PROPLUS) (Version: 15.0.4569.1506 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{A49F249F-0C91-497F-86DF-B2585E8E76B7}) (Version: 8.0.50727.42 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (HKLM-x32\...\{a1909659-0a08-4554-8af1-2175904903a1}) (Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 (HKLM-x32\...\{95716cce-fc71-413f-8ad5-56c2892d4b3a}) (Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24215 (HKLM-x32\...\{d992c12e-cab2-426f-bde3-fb8c53950b0d}) (Version: 14.0.24215.1 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24215 (HKLM-x32\...\{e2803110-78b3-4664-a479-3611a381656a}) (Version: 14.0.24215.1 - Microsoft Corporation) Microsoft XNA Framework Redistributable 4.0 (HKLM-x32\...\{2BFC7AA0-544C-4E3A-8796-67F3BE655BE9}) (Version: 4.0.20823.0 - Microsoft Corporation) Narzędzia sprawdzające pakietu Microsoft Office 2013 — polski (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden NVIDIA PhysX (HKLM-x32\...\{80407BA7-7763-4395-AB98-5233F1B34E65}) (Version: 9.13.1220 - NVIDIA Corporation) OpenAL (HKLM-x32\...\OpenAL) (Version: - ) Oprogramowanie mikroukładu Intel® (x32 Version: 10.0.20 - Intel(R) Corporation) Hidden Origin (HKLM-x32\...\Origin) (Version: 10.4.5.30491 - Electronic Arts, Inc.) PlaysTV (HKLM-x32\...\PlaysTV) (Version: 1.17.6-r119262-release - Plays.tv, LLC) Raptr (HKLM-x32\...\Raptr) (Version: 5.2.7-r116720-release - Raptr, Inc) Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.89.716.2014 - Realtek) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7293 - Realtek Semiconductor Corp.) Revo Uninstaller 1.95 (HKLM-x32\...\Revo Uninstaller) (Version: 1.95 - VS Revo Group) RimWorld (HKLM\...\Steam App 294100) (Version: - Ludeon Studios) Skype Click to Call (HKLM-x32\...\{873F8E7C-10E6-449F-BD7E-5FBA7C8E1C9B}) (Version: 8.5.0.9167 - Microsoft Corporation) Skype™ 7.24 (HKLM-x32\...\{FC965A47-4839-40CA-B618-18F486F042C6}) (Version: 7.24.104 - Skype Technologies S.A.) Sony Mobile Update Engine (HKLM-x32\...\Update Engine) (Version: 2.16.16.201611221058 - Sony Mobile Communications Inc.) Sony PC Companion 2.10.303 (HKLM-x32\...\{F09EF8F2-0976-42C1-8D9D-8DF78337C6E3}) (Version: 2.10.303 - Sony) Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation) Stellaris (HKLM\...\Steam App 281990) (Version: - Paradox Development Studio) The Elder Scrolls III - Morrowind Złota Edycja (HKLM-x32\...\{E52D32A0-0005-11D7-928D-000ACD006A23}) (Version: 1.0 - ) Ubisoft Game Launcher (HKLM-x32\...\{888F1505-C2B3-4FDE-835D-36353EBD4754}) (Version: 1.0.0.0 - UBISOFT) UE4 Prerequisites (x64) (HKLM-x32\...\{9514471f-b41e-41f7-af03-7da1d05b279e}) (Version: 1.0.8.0 - Epic Games, Inc.) UE4 Prerequisites (x64) (Version: 1.0.8.0 - Epic Games, Inc.) Hidden Uplay (HKLM-x32\...\Uplay) (Version: 4.0 - Ubisoft) Usługa Xperia Companion (Version: 1.3.2.0 - Sony) Hidden Visual Studio 2012 x64 Redistributables (HKLM\...\{8C775E70-A791-4DA8-BCC3-6AB7136F4484}) (Version: 14.0.0.1 - AVG Technologies) Visual Studio 2012 x86 Redistributables (HKLM-x32\...\{98EFF19A-30AB-4E4B-B943-F06B1C63EBF8}) (Version: 14.0.0.1 - AVG Technologies CZ, s.r.o.) Vulkan Run Time Libraries 1.0.17.0 (HKLM\...\VulkanRT1.0.17.0) (Version: 1.0.17.0 - LunarG, Inc.) Vulkan Run Time Libraries 1.0.3.1 (HKLM\...\VulkanRT1.0.3.1) (Version: 1.0.3.1 - LunarG, Inc.) War Thunder (HKLM\...\Steam App 236390) (Version: - Gaijin Entertainment) WinRAR 5.20 (64-bitowy) (HKLM\...\WinRAR archiver) (Version: 5.20.0 - win.rar GmbH) Xperia Companion (HKLM-x32\...\{f494d3ac-4796-4bbd-b7a0-1873600d110d}) (Version: 1.3.2.0 - Sony) Xperia Companion (x32 Version: 1.3.2.0 - Sony) Hidden ==================== Niestandardowe rejestracje CLSID (filtrowane): ========================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) CustomCLSID: HKU\S-1-5-21-829155955-1858636651-191534281-1000_Classes\CLSID\{CB492AF1-2CEF-4E58-BE47-471C77D0C8BA}\InprocServer32 -> C:\Users\xxx\AppData\Local\Google\Update\1.3.32.7\psuser_64.dll (Google Inc.) CustomCLSID: HKU\S-1-5-21-829155955-1858636651-191534281-1000_Classes\CLSID\{E68D0A55-3C40-4712-B90D-DCFA93FF2534}\InprocServer32 -> C:\Users\xxx\AppData\Roaming\GG\ggdrive\ggdrive-menu.dll (GG Network S.A.) CustomCLSID: HKU\S-1-5-21-829155955-1858636651-191534281-1000_Classes\CLSID\{e8c77137-e224-5791-b6e9-ff0305797a13}\InprocServer32 -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll (Adobe Systems) CustomCLSID: HKU\S-1-5-21-829155955-1858636651-191534281-1000_Classes\CLSID\{E8CF3E55-F919-49D9-ABC0-948E6CB34B9F}\InprocServer32 -> C:\Users\xxx\AppData\Local\Google\Update\1.3.32.7\psuser_64.dll (Google Inc.) ==================== Zaplanowane zadania (filtrowane) ============= (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) Task: {0DDCA432-FFA5-4A98-9E15-A387061BAC6A} - System32\Tasks\{3D906EBD-C706-4F7F-BC3A-A743C93FCBD6} => Chrome.exe hxxp://ui.skype.com/ui/0/7.23.0.105/pl/abandoninstall?page=tsMain Task: {1F095CDA-668D-4116-9139-F8088184FA61} - System32\Tasks\{73D1DE1B-AC67-445C-A930-7971CF2F7393} => C:\GOG Games\Railroad Tycoon 3\RT3.exe Task: {25CBF996-1C20-40F2-8726-FC2EBD9DDF66} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office15\OLicenseHeartbeat.exe [2014-01-23] (Microsoft Corporation) Task: {2B9F3199-D1C4-4406-B005-31691E544AF2} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2016-12-19] (Adobe Systems Incorporated) Task: {46035F52-8C72-4084-8553-D38D12C070D0} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-829155955-1858636651-191534281-1000Core => C:\Users\xxx\AppData\Local\Google\Update\GoogleUpdate.exe [2015-06-18] (Google Inc.) Task: {50126E10-242E-40AF-A5DA-1EE570942262} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-829155955-1858636651-191534281-1000UA => C:\Users\xxx\AppData\Local\Google\Update\GoogleUpdate.exe [2015-06-18] (Google Inc.) Task: {711B68C0-C02E-4CE1-B4D9-8E7368AA27EA} - System32\Tasks\{90EBC04D-632A-43C2-9C55-73B4A08894E5} => Chrome.exe hxxp://ui.skype.com/ui/0/7.13.64.101/pl/abandoninstall?page=tsProgressBar Task: {9528BA6C-C05E-4B83-BDFE-DAAACBA9CE26} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2015-01-20] (Piriform Ltd) Task: {9C4E9F5F-5952-4559-A0EA-28114985992B} - System32\Tasks\{87BB79F6-45D7-4705-BD43-C7DE0B8671EE} => C:\Users\xxx\Desktop\xxx\HORDE2\horde2.exe Task: {B73F7429-0DFD-4BCD-98A8-438AD12AEC89} - System32\Tasks\SidebarExecute => C:\Program Files (x86)\Windows Sidebar\sidebar.exe [2010-11-21] (Microsoft Corporation) Task: {BF31F04D-0AF4-4A20-B19E-DE3A2071D247} - System32\Tasks\AutoKMS => C:\Windows\AutoKMS\AutoKMS.exe Task: {C38188AB-6F22-431A-BDE2-F677C0FFDA21} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2017-03-14] (Adobe Systems Incorporated) Task: {D8B6563D-D0F1-401C-803D-21003536CAAF} - System32\Tasks\{F9E279B0-441B-43EB-AD76-8B9774012AFA} => D:\Users\xxx\Downloads\ZOO_TYCOON_2_PL\ZOO 2 PL - dodatki\Zoo_Tycoon_2_Addon_Hotfix.exe Task: {E2D95843-FC66-4A0F-9312-301A1BCCD880} - System32\Tasks\AVG EUpdate Task => avgsetupx.exe Task: {EBBA8120-54DC-4C54-B2D6-EE2968936090} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office\Office15\msoia.exe [2014-01-23] (Microsoft Corporation) Task: {F0B7C70F-83F7-4F04-A4A2-B391F221FB06} - System32\Tasks\AdobeAAMUpdater-1.0-xxx-komputer-xxx => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2016-07-01] (Adobe Systems Incorporated) Task: {F27F3887-FDE0-492C-AD2B-BAACE820D6A2} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office\Office15\msoia.exe [2014-01-23] (Microsoft Corporation) Task: {F4D6117C-09D1-4B4C-B222-763F1AE1CA7E} - System32\Tasks\{CC9918FC-E9F2-48D9-96B8-D0D3F4F7E1ED} => C:\GOG Games\Railroad Tycoon 3\RT3.exe Task: {F8D33B97-8431-498D-A347-5C67C55DBFBE} - System32\Tasks\AMD Updater => C:\Program Files\AMD\CIM\\Bin64\InstallManagerApp.exe [2016-03-21] (Advanced Micro Devices, Inc.) (Załączenie wejścia w fixlist spowoduje przesunięcie pliku zadania (.job). Plik uruchamiany docelowo przez zadanie nie zostanie przeniesiony.) ==================== Skróty ============================= (Wybrane wejścia mogą zostać załączone w celu ich zresetowania lub usunięcia.) ==================== Załadowane moduły (filtrowane) ============== 2016-10-25 09:57 - 2016-10-25 09:57 - 00491184 _____ () C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll 2015-01-21 03:06 - 2015-01-21 03:06 - 00057344 _____ () C:\Program Files\CCleaner\lang\lang-1045.dll 2016-10-25 09:57 - 2016-10-25 09:57 - 31723696 _____ () C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSync\CoreSync.exe 2016-03-21 14:49 - 2016-07-18 21:39 - 00223744 _____ () C:\Windows\SysWOW64\GameManager32.dll 2015-01-12 20:38 - 2017-03-10 01:13 - 00674592 _____ () E:\Program Files (x86)\Steam\SDL2.dll 2015-01-20 09:11 - 2016-09-01 02:02 - 04969248 _____ () E:\Program Files (x86)\Steam\v8.dll 2015-01-20 09:11 - 2016-09-01 02:02 - 01563936 _____ () E:\Program Files (x86)\Steam\icui18n.dll 2015-01-20 09:11 - 2016-09-01 02:02 - 01195296 _____ () E:\Program Files (x86)\Steam\icuuc.dll 2015-01-12 20:38 - 2017-03-23 01:52 - 02465056 _____ () E:\Program Files (x86)\Steam\video.dll 2015-01-12 20:38 - 2016-01-27 08:49 - 02549760 _____ () E:\Program Files (x86)\Steam\libavcodec-56.dll 2015-01-12 20:38 - 2016-01-27 08:49 - 00442880 _____ () E:\Program Files (x86)\Steam\libavutil-54.dll 2015-01-12 20:38 - 2016-01-27 08:49 - 00491008 _____ () E:\Program Files (x86)\Steam\libavformat-56.dll 2015-01-12 20:38 - 2016-01-27 08:49 - 00332800 _____ () E:\Program Files (x86)\Steam\libavresample-2.dll 2015-01-12 20:38 - 2016-01-27 08:49 - 00485888 _____ () E:\Program Files (x86)\Steam\libswscale-3.dll 2015-01-12 20:38 - 2017-03-23 01:52 - 00839456 _____ () E:\Program Files (x86)\Steam\bin\chromehtml.DLL 2016-03-09 03:14 - 2016-07-04 23:17 - 00266560 _____ () E:\Program Files (x86)\Steam\openvr_api.dll 2016-11-28 22:45 - 2016-11-28 22:45 - 48920064 _____ () C:\Program Files (x86)\AVG\UiDll\2623\libcef.dll 2016-12-09 15:09 - 2016-12-09 15:09 - 52051544 _____ () C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\CEF\libcef.dll 2017-01-19 05:46 - 2017-01-19 05:46 - 40524400 _____ () C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\libcef.dll 2016-12-02 01:54 - 2016-12-02 01:54 - 00118272 _____ () \\?\C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCXProcess\js\node_modules\fs-ext\build\Release\fs-ext.node 2016-12-02 01:54 - 2016-12-02 01:54 - 00223232 _____ () \\?\C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCXProcess\js\node_modules\node-vulcanjs\build\Release\VulcanJS.node 2016-12-02 01:54 - 2016-12-02 01:54 - 00117248 _____ () \\?\C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCXProcess\js\node_modules\ref\build\Release\binding.node 2016-12-02 01:54 - 2016-12-02 01:54 - 00124928 _____ () \\?\C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCXProcess\js\node_modules\ffi\build\Release\ffi_bindings.node 2016-12-09 15:09 - 2016-12-09 15:09 - 00110680 _____ () C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCXProcess\js\node_modules\node-ProxyResolver\build\Release\ProxyResolverWin7.dll 2016-12-02 01:54 - 2016-12-02 01:54 - 00086528 _____ () \\?\C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCXProcess\js\node_modules\idle-gc\build\Release\idle-gc.node 2016-12-13 09:38 - 2017-01-30 22:41 - 68875552 _____ () E:\Program Files (x86)\Steam\bin\cef\cef.win7\libcef.dll 2016-12-23 01:00 - 2016-12-23 01:00 - 00033280 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\cx_Logging.cp35-win32.pyd 2016-12-23 01:00 - 2016-12-23 01:00 - 00103424 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\win32api.pyd 2016-12-23 01:00 - 2016-12-23 01:00 - 00111616 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\pywintypes35.dll 2016-12-23 01:00 - 2016-12-23 01:00 - 00041984 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\win32process.pyd 2016-12-23 01:00 - 2016-12-23 01:00 - 00405504 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\pythoncom35.dll 2016-12-23 01:00 - 2016-12-23 01:00 - 00173568 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\win32gui.pyd 2016-12-23 01:00 - 2016-12-23 01:00 - 01934336 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\PyQt5.QtGui.pyd 2016-12-23 01:00 - 2016-12-23 01:00 - 00077824 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\sip.pyd 2016-12-23 01:00 - 2016-12-23 01:00 - 01780736 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\PyQt5.QtCore.pyd 2016-12-23 01:00 - 2016-12-23 01:00 - 00505856 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\PyQt5.QtNetwork.pyd 2016-12-23 01:00 - 2016-12-23 01:00 - 03812864 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\PyQt5.QtWidgets.pyd 2017-03-21 23:43 - 2017-03-16 04:21 - 02187096 _____ () C:\Users\xxx\AppData\Local\Google\Chrome\Application\57.0.2987.110\libglesv2.dll 2017-03-21 23:43 - 2017-03-16 04:21 - 00086360 _____ () C:\Users\xxx\AppData\Local\Google\Chrome\Application\57.0.2987.110\libegl.dll ==================== Alternate Data Streams (filtrowane) ========= (Załączenie wejścia w fixlist spowoduje usunięcie strumienia ADS.) ==================== Tryb awaryjny (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Wartość "AlternateShell" zostanie przywrócona.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service" ==================== Powiązania plików (filtrowane) =============== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci.) ==================== Internet Explorer - Witryny zaufane i z ograniczeniami =============== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru.) ==================== Hosts - zawartość: =============================== (Użycie dyrektywy Hosts: w fixlist spowoduje reset pliku Hosts.) 2009-07-14 03:34 - 2009-06-10 22:00 - 00000824 ____N C:\Windows\system32\Drivers\etc\hosts ==================== Inne obszary ============================ (Obecnie brak automatycznej naprawy dla tej sekcji.) HKU\S-1-5-21-829155955-1858636651-191534281-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\xxx\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg DNS Servers: 192.168.1.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 0) (ConsentPromptBehaviorUser: 3) (EnableLUA: 0) Zapora systemu Windows [funkcja włączona] ==================== MSCONFIG/TASK MANAGER - Wyłączone elementy == MSCONFIG\startupreg: PlaysTV => "C:\Program Files (x86)\Raptr Inc\PlaysTV\playstv_launcher.exe" --startup MSCONFIG\startupreg: Raptr => "C:\Program Files (x86)\Raptr Inc\Raptr\raptrstub.exe" --startup MSCONFIG\startupreg: XperiaCompanionAgent => "C:\Program Files (x86)\Sony\Xperia Companion\XperiaCompanionAgent.exe" ==================== Reguły Zapory systemu Windows (filtrowane) =============== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) FirewallRules: [{F293E80D-D1BC-4440-931E-CC8B78F707FB}] => (Allow) E:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{6993B26B-A7BB-404D-8E2D-42CFF3B279EE}] => (Allow) E:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{77CB66D5-55B0-4F43-B301-65B3544A83B5}] => (Allow) C:\Users\xxx\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{6B0A4D8A-A163-4230-A3F9-985FBCB3F25C}] => (Allow) C:\Users\xxx\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{07BF8EF5-243A-411D-B9C9-E22AC12F19C9}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe FirewallRules: [{8BAE5089-8E10-4178-B7C2-2DD669DAF407}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe FirewallRules: [{52DECC53-7B36-4E9A-9DF2-FD6BBEDFB7DA}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe FirewallRules: [{5EDDAC53-5A39-4930-9395-F372636A66F6}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe FirewallRules: [{7210D305-3A6C-4D5F-B258-41FEDDDF2D24}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe FirewallRules: [{BC5155BD-1A13-4ACC-A7C0-4EA387AE7840}] => (Allow) C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\UbisoftGameLauncher.exe FirewallRules: [{C83AE933-C03C-4942-9138-DEADF3EFEA33}] => (Allow) C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\UbisoftGameLauncher.exe FirewallRules: [{5DCC209E-B3CB-4BE3-9BE6-F9CB2E8A53F5}] => (Allow) E:\Program Files (x86)\Steam\steamapps\common\Batman Arkham Knight\Binaries\Win64\BatmanAK.exe FirewallRules: [{B7E44937-8322-41D6-8932-4EA41A9225DC}] => (Allow) E:\Program Files (x86)\Steam\steamapps\common\Batman Arkham Knight\Binaries\Win64\BatmanAK.exe FirewallRules: [{2F767F38-52E5-4A0A-9574-13915C9355FF}] => (Allow) C:\Program Files (x86)\AVG\Av\avgmfapx.exe FirewallRules: [{E88DF35A-14FC-437D-82D4-F7372D714D45}] => (Allow) C:\Program Files (x86)\AVG\Av\avgmfapx.exe FirewallRules: [{6C0EE138-D024-4ABC-9022-775F505ABFBE}] => (Allow) E:\Program Files (x86)\Steam\steamapps\common\Cities_Skylines\Cities.exe FirewallRules: [{05D93DCE-2211-43FF-BE67-3B1E4263C75C}] => (Allow) E:\Program Files (x86)\Steam\steamapps\common\Cities_Skylines\Cities.exe FirewallRules: [TCP Query User{6E475078-F4B3-4071-A651-9DF2E61810BF}E:\program files (x86)\steam\steamapps\common\war thunder\win64\aces.exe] => (Allow) E:\program files (x86)\steam\steamapps\common\war thunder\win64\aces.exe FirewallRules: [UDP Query User{B8E257AE-6C88-4E68-889C-8C2632563DF2}E:\program files (x86)\steam\steamapps\common\war thunder\win64\aces.exe] => (Allow) E:\program files (x86)\steam\steamapps\common\war thunder\win64\aces.exe FirewallRules: [TCP Query User{07010AF6-34ED-4ED7-87EB-28D07B603388}E:\program files (x86)\steam\steamapps\common\war thunder\win32\aces.exe] => (Allow) E:\program files (x86)\steam\steamapps\common\war thunder\win32\aces.exe FirewallRules: [UDP Query User{02D2D312-8BBA-44C0-9E1B-07DB901BB8D4}E:\program files (x86)\steam\steamapps\common\war thunder\win32\aces.exe] => (Allow) E:\program files (x86)\steam\steamapps\common\war thunder\win32\aces.exe FirewallRules: [{352A1E56-73DC-426D-BBAB-91C8AF5312ED}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe FirewallRules: [{4685DAEE-C655-4121-98ED-2F2CA3A54060}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe FirewallRules: [{9A10781D-39EE-4510-8BF2-0EBE3A5D30C0}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe FirewallRules: [{56B2B049-8257-462C-9E64-8310C831BD6F}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe FirewallRules: [{B00BE2EC-D658-45F0-B3BC-78DA8800536E}] => (Allow) C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\SonarHost.exe FirewallRules: [{FE4B1039-2C3B-4A35-9CE7-D78759839FBB}] => (Allow) C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\SonarHost.exe FirewallRules: [{7D7F3095-3966-4B7B-8AB6-8D55221948B9}] => (Allow) E:\Program Files (x86)\Origin Games\Battlefield 4\BF4WebHelper.exe FirewallRules: [{09D94369-6B65-41CE-A2D3-4DD48B8964A1}] => (Allow) E:\Program Files (x86)\Origin Games\Battlefield 4\BF4WebHelper.exe FirewallRules: [{BBA0A553-38D5-472E-AC1A-9BACBCCB40B9}] => (Allow) E:\Program Files (x86)\Origin Games\Battlefield 4\BF4X86WebHelper.exe FirewallRules: [{7E37EDC6-9715-4F8B-83A2-9A4D4B5C3676}] => (Allow) E:\Program Files (x86)\Origin Games\Battlefield 4\BF4X86WebHelper.exe FirewallRules: [{E77CC5D2-3212-48A5-B808-05CC4B080646}] => (Allow) C:\Program Files (x86)\Raptr Inc\Raptr\raptr.exe FirewallRules: [{7BFC3A95-093D-4BE5-9EC3-2BF7AEE7866E}] => (Allow) C:\Program Files (x86)\Raptr Inc\Raptr\raptr.exe FirewallRules: [{76D902A5-74CA-41DE-B09A-53D15393EC57}] => (Allow) C:\Program Files (x86)\Raptr Inc\Raptr\raptr_im.exe FirewallRules: [{30407FCF-3B12-4DD6-8765-EA5117885BAE}] => (Allow) C:\Program Files (x86)\Raptr Inc\Raptr\raptr_im.exe FirewallRules: [{357907CE-2D9D-48F3-B01C-F615F6674664}] => (Allow) E:\Program Files (x86)\Steam\steamapps\common\Infested Planet\InfestedPlanet.exe FirewallRules: [{272AFCEC-99A8-467E-9309-42D0F4B75754}] => (Allow) E:\Program Files (x86)\Steam\steamapps\common\Infested Planet\InfestedPlanet.exe FirewallRules: [{6F526C31-0CDC-40B7-973E-89A6113BF193}] => (Allow) C:\Program Files (x86)\Sony\Xperia Companion\XperiaCompanion.exe FirewallRules: [{F1500046-0D23-4EA7-B049-476546A880A4}] => (Allow) E:\Program Files (x86)\Steam\steamapps\common\War Thunder\launcher.exe FirewallRules: [{9F16FA77-A21C-4FE6-85D3-B34484C80F00}] => (Allow) E:\Program Files (x86)\Steam\steamapps\common\War Thunder\launcher.exe FirewallRules: [{F6EEDDC1-0AF9-4922-800C-4CE15D90B637}] => (Allow) C:\Program Files (x86)\Sony Mobile\Update Engine\Sony Mobile Update Engine.exe FirewallRules: [{E972A7C3-D63B-4122-AFBF-2106800466C3}] => (Allow) C:\Program Files (x86)\Sony Mobile\Update Engine\Sony Mobile Update Engine.exe FirewallRules: [{622F3E30-1B36-4CDF-8874-6555A0AE27F9}] => (Allow) E:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe FirewallRules: [{45FF349E-2031-4F6F-B88B-BE0B0DB7428E}] => (Allow) E:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe FirewallRules: [{6B55B74F-E5FA-43BA-B64A-1F9A8BE9B5B4}] => (Allow) C:\Program Files (x86)\Raptr Inc\PlaysTV\playstv.exe FirewallRules: [{38CF7056-2CE6-46CB-B057-82002BD9EEB2}] => (Allow) C:\Program Files (x86)\Raptr Inc\PlaysTV\playstv.exe FirewallRules: [{BDD13CF0-E6D8-4B8A-8012-ED8C53C7EB76}] => (Allow) E:\Program Files (x86)\Steam\steamapps\common\RimWorld\RimWorldWin.exe FirewallRules: [{AB0E9F27-F323-4CD3-9034-A32078A911C7}] => (Allow) E:\Program Files (x86)\Steam\steamapps\common\RimWorld\RimWorldWin.exe FirewallRules: [{6ED4739E-321D-43E5-AD29-C9CF8B8C895D}] => (Allow) C:\Program Files (x86)\AVG\Av\avgnsa.exe FirewallRules: [{C16A6F8A-D8FE-4A78-BFAC-2F4A88D582CA}] => (Allow) C:\Program Files (x86)\AVG\Av\avgnsa.exe FirewallRules: [{8DE14D60-0125-486F-A357-9A55D2541BBE}] => (Allow) C:\Program Files (x86)\AVG\Av\avgemca.exe FirewallRules: [{82D5974B-96DB-4722-90F7-D7818EC930D7}] => (Allow) C:\Program Files (x86)\AVG\Av\avgemca.exe FirewallRules: [TCP Query User{4F9807CE-B301-43A3-9182-1508D1CDFDA3}E:\program files (x86)\origin games\battlefield 4\bf4.exe] => (Allow) E:\program files (x86)\origin games\battlefield 4\bf4.exe FirewallRules: [UDP Query User{FA9300B7-0A8E-437D-8E87-15F7DB5FB17E}E:\program files (x86)\origin games\battlefield 4\bf4.exe] => (Allow) E:\program files (x86)\origin games\battlefield 4\bf4.exe FirewallRules: [TCP Query User{32C19D16-23DC-4EE9-8792-FFB7998B94EF}E:\program files (x86)\steam\steamapps\common\war thunder\win64\aces.exe] => (Allow) E:\program files (x86)\steam\steamapps\common\war thunder\win64\aces.exe FirewallRules: [UDP Query User{112879A1-3EFD-438B-858D-D3B7989B5C1C}E:\program files (x86)\steam\steamapps\common\war thunder\win64\aces.exe] => (Allow) E:\program files (x86)\steam\steamapps\common\war thunder\win64\aces.exe FirewallRules: [TCP Query User{EBAAFE1E-DC9A-4FDC-9E86-73903ED0E544}E:\program files (x86)\far cry 4\bin\farcry4.exe] => (Block) E:\program files (x86)\far cry 4\bin\farcry4.exe FirewallRules: [UDP Query User{0D9F759A-E8EE-48AF-8E4F-67BEE7EF2EF4}E:\program files (x86)\far cry 4\bin\farcry4.exe] => (Block) E:\program files (x86)\far cry 4\bin\farcry4.exe FirewallRules: [{2340EB68-DF7C-41D2-ACF9-145E1BEAB468}] => (Allow) E:\Program Files (x86)\Origin Games\Battlefield 3\bf3.exe FirewallRules: [{00BEA729-7010-49FC-BBF1-5BCC7C2CF462}] => (Allow) E:\Program Files (x86)\Origin Games\Battlefield 3\bf3.exe FirewallRules: [{41E26654-824C-4587-B55E-5DC6A2FD1684}] => (Allow) E:\Program Files (x86)\Origin Games\Dragon Age Inquisition\DragonAgeInquisition.exe FirewallRules: [{013DFB9F-C76D-4316-8BC4-DCF7683B16A6}] => (Allow) E:\Program Files (x86)\Origin Games\Dragon Age Inquisition\DragonAgeInquisition.exe FirewallRules: [{26565003-CEF2-4326-AA7F-C64C9692124E}] => (Allow) E:\Program Files (x86)\Steam\steamapps\common\Airships Conquer the Skies\Airships.exe FirewallRules: [{EC4E001F-52E7-4887-86F8-06A9DD110C0F}] => (Allow) E:\Program Files (x86)\Steam\steamapps\common\Airships Conquer the Skies\Airships.exe FirewallRules: [{68894D7F-E3AC-4911-9A53-315EF0743D81}] => (Allow) E:\Program Files (x86)\Steam\steamapps\common\Airships Conquer the Skies\AirshipsSystemJava.exe FirewallRules: [{500BD3C7-ADEC-4F94-9EFC-F49BB1429805}] => (Allow) E:\Program Files (x86)\Steam\steamapps\common\Airships Conquer the Skies\AirshipsSystemJava.exe FirewallRules: [{EAABBE2F-8607-4546-85A9-F36BB1498422}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe FirewallRules: [{49320082-587B-435B-BF25-3A28A4D12CAC}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe FirewallRules: [{8CA2E282-2828-4525-88F7-CBF11B94707F}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe FirewallRules: [{6284EB9E-D48B-46AB-A784-2AD90A088903}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe FirewallRules: [{137F94B5-35CC-4066-9AD7-A590FC3AA6D4}] => (Allow) C:\Program Files (x86)\AVG\Av\avgnsa.exe FirewallRules: [{7226FB40-B333-4298-BD68-70A03171038E}] => (Allow) C:\Program Files (x86)\AVG\Av\avgnsa.exe FirewallRules: [{B6349A47-4D31-4EFF-AE58-A37462C4BAAB}] => (Allow) C:\Program Files (x86)\AVG\Av\avgemca.exe FirewallRules: [{D08E8783-C72A-4FC1-9860-B66C9B8ECC56}] => (Allow) C:\Program Files (x86)\AVG\Av\avgemca.exe FirewallRules: [TCP Query User{540FD913-A77B-42AE-86F6-4D9100C6E29C}C:\windows\syswow64\dpnsvr.exe] => (Allow) C:\windows\syswow64\dpnsvr.exe FirewallRules: [UDP Query User{2E9304D6-BFDB-446A-955E-EDFA68EF04DA}C:\windows\syswow64\dpnsvr.exe] => (Allow) C:\windows\syswow64\dpnsvr.exe FirewallRules: [TCP Query User{37A6D8D6-7584-43B0-B489-992A9787AEFE}F:\program files (x86)\illusion softworks\hidden & dangerous 2\hd2_sabresquadron.exe] => (Allow) F:\program files (x86)\illusion softworks\hidden & dangerous 2\hd2_sabresquadron.exe FirewallRules: [UDP Query User{10031AB4-E3DE-483B-92BD-B45C99F3E1E9}F:\program files (x86)\illusion softworks\hidden & dangerous 2\hd2_sabresquadron.exe] => (Allow) F:\program files (x86)\illusion softworks\hidden & dangerous 2\hd2_sabresquadron.exe FirewallRules: [TCP Query User{479ADC30-B2A5-42CE-882A-CFF4A0B79F9A}E:\program files (x86)\steam\steamapps\common\sins of a solar empire rebellion\sins of a solar empire rebellion.exe] => (Allow) E:\program files (x86)\steam\steamapps\common\sins of a solar empire rebellion\sins of a solar empire rebellion.exe FirewallRules: [UDP Query User{3E1FCDBC-A979-4744-96DA-7FBADA313D0E}E:\program files (x86)\steam\steamapps\common\sins of a solar empire rebellion\sins of a solar empire rebellion.exe] => (Allow) E:\program files (x86)\steam\steamapps\common\sins of a solar empire rebellion\sins of a solar empire rebellion.exe FirewallRules: [{FD93B340-3467-4DBF-AB5C-0DCD014EC798}] => (Allow) E:\Program Files (x86)\Origin Games\Battlefield 4\BFLauncher.exe FirewallRules: [{C43B43E8-03C5-43CE-B051-4CFB8A53C60B}] => (Allow) E:\Program Files (x86)\Origin Games\Battlefield 4\BFLauncher.exe FirewallRules: [{15509387-9166-4742-8453-FFC944368560}] => (Allow) E:\Program Files (x86)\Origin Games\Battlefield 4\BFLauncher_x86.exe FirewallRules: [{CECD1C17-0763-40EA-9B31-F5202FB78199}] => (Allow) E:\Program Files (x86)\Origin Games\Battlefield 4\BFLauncher_x86.exe FirewallRules: [TCP Query User{35523220-F06A-4642-A959-6ABD45F50926}F:\program files (x86)\illusion softworks\hidden & dangerous 2\hd2ds_sabresquadron.exe] => (Allow) F:\program files (x86)\illusion softworks\hidden & dangerous 2\hd2ds_sabresquadron.exe FirewallRules: [UDP Query User{D5B8FD46-8754-4362-B52D-142555CD76BF}F:\program files (x86)\illusion softworks\hidden & dangerous 2\hd2ds_sabresquadron.exe] => (Allow) F:\program files (x86)\illusion softworks\hidden & dangerous 2\hd2ds_sabresquadron.exe FirewallRules: [{82087959-4B85-413E-9D1F-FACD4AB3E60F}] => (Allow) C:\Users\xxx\AppData\Local\Google\Chrome\Application\chrome.exe FirewallRules: [{3249916E-A9CA-40FE-917D-A2CD35E4E212}] => (Allow) E:\Program Files (x86)\Steam\steamapps\common\Stellaris\stellaris.exe FirewallRules: [{E6CA9E98-EBCE-4C7A-A349-FEE28AB8642F}] => (Allow) E:\Program Files (x86)\Steam\steamapps\common\Stellaris\stellaris.exe ==================== Punkty Przywracania systemu ========================= 23-03-2017 19:39:41 Removed WestwoodOnline 24-03-2017 20:53:01 Restore Point Created by FRST 24-03-2017 20:54:08 Restore Point Created by FRST 25-03-2017 12:23:13 Restore Point Created by FRST ==================== Wadliwe urządzenia w Menedżerze urządzeń ============= Name: Description: Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. ==================== Błędy w Dzienniku zdarzeń: ========================= Dziennik Aplikacja: ================== Error: (03/25/2017 12:49:18 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected. Error: (03/25/2017 12:25:47 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected. Error: (03/25/2017 12:23:13 PM) (Source: VSS) (EventID: 8194) (User: ) Description: Błąd Usługi kopiowania woluminów w tle: nieoczekiwany błąd podczas badania interfejsu IVssWriterCallback. hr = 0x80070005, Odmowa dostępu. . To jest często spowodowane przez niepoprawne ustawienia zabezpieczeń w procesie zapisującym lub żądającym. Operacja: Zbieranie danych modułu zapisującego Kontekst: Identyfikator klasy modułu zapisującego: {e8132975-6f93-4464-a53e-1050253ae220} Nazwa modułu zapisującego: System Writer Identyfikator wystąpienia modułu zapisującego: {c1abc424-7041-4147-a1fc-a653f747edb3} Error: (03/25/2017 11:12:19 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected. Error: (03/25/2017 08:43:05 AM) (Source: ATIeRecord) (EventID: 16387) (User: ) Description: ATI EEU Service event error Error: (03/25/2017 08:38:00 AM) (Source: Office 2013 Licensing Service) (EventID: 0) (User: ) Description: Event-ID 0 Error: (03/25/2017 08:28:46 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected. Error: (03/24/2017 08:54:11 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: FRST64.exe, wersja: 15.3.2017.0, sygnatura czasowa: 0x58c8eec9 Nazwa modułu powodującego błąd: ntdll.dll, wersja: 6.1.7601.18247, sygnatura czasowa: 0x521eaf24 Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x000000000000ca89 Identyfikator procesu powodującego błąd: 0x16b0 Godzina uruchomienia aplikacji powodującej błąd: 0x01d2a4d8650e02b2 Ścieżka aplikacji powodującej błąd: C:\Users\xxx\Desktop\Nowy folder (2)\FRST64.exe Ścieżka modułu powodującego błąd: C:\Windows\SYSTEM32\ntdll.dll Identyfikator raportu: a615de55-10cb-11e7-ad24-448a5b9dd1c2 Error: (03/24/2017 08:54:08 PM) (Source: VSS) (EventID: 8194) (User: ) Description: Błąd Usługi kopiowania woluminów w tle: nieoczekiwany błąd podczas badania interfejsu IVssWriterCallback. hr = 0x80070005, Odmowa dostępu. . To jest często spowodowane przez niepoprawne ustawienia zabezpieczeń w procesie zapisującym lub żądającym. Operacja: Zbieranie danych modułu zapisującego Kontekst: Identyfikator klasy modułu zapisującego: {e8132975-6f93-4464-a53e-1050253ae220} Nazwa modułu zapisującego: System Writer Identyfikator wystąpienia modułu zapisującego: {ca2a0d26-845a-4903-9a1f-174140dd1762} Error: (03/24/2017 08:53:10 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: FRST64.exe, wersja: 15.3.2017.0, sygnatura czasowa: 0x58c8eec9 Nazwa modułu powodującego błąd: ntdll.dll, wersja: 6.1.7601.18247, sygnatura czasowa: 0x521eaf24 Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x000000000000ca89 Identyfikator procesu powodującego błąd: 0x2e4 Godzina uruchomienia aplikacji powodującej błąd: 0x01d2a4d83a1c9ea2 Ścieżka aplikacji powodującej błąd: C:\Users\xxx\Desktop\Nowy folder (2)\FRST64.exe Ścieżka modułu powodującego błąd: C:\Windows\SYSTEM32\ntdll.dll Identyfikator raportu: 81592aaa-10cb-11e7-ad24-448a5b9dd1c2 Dziennik System: ============= Error: (03/25/2017 12:48:04 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi Origin Web Helper Service z powodu następującego błędu: Usługa nie odpowiada na sygnał uruchomienia lub sygnał sterujący w oczekiwanym czasie. Error: (03/25/2017 12:48:04 PM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: Upłynął limit czasu (30000 ms) podczas oczekiwania na połączenie się z usługą Origin Web Helper Service. Error: (03/25/2017 12:47:40 PM) (Source: Service Control Manager) (EventID: 7006) (User: ) Description: Wywołanie ScRegSetValueExW dla FailureActions nie powiodło się i wystąpił następujący błąd: Odmowa dostępu. . Error: (03/25/2017 12:46:58 PM) (Source: Service Control Manager) (EventID: 7006) (User: ) Description: Wywołanie ScRegSetValueExW dla FailureActions nie powiodło się i wystąpił następujący błąd: Odmowa dostępu. . Error: (03/25/2017 12:46:48 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Usługa Usługa udostępniania w sieci programu Windows Media Player niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 30000 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie. Error: (03/25/2017 12:46:48 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Usługa Windows Search niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 30000 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie. Error: (03/25/2017 12:46:48 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Usługa Usługa Xperia Companion niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. Error: (03/25/2017 12:46:48 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Usługa Plays.tv Update Service (PlaysService) niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. Error: (03/25/2017 12:46:45 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Usługa Adobe Genuine Software Integrity Service niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. Error: (03/25/2017 12:46:45 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Usługa AdobeUpdateService niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. CodeIntegrity: =================================== Date: 2017-03-18 17:07:21.583 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\drivers\hamachi.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2017-03-18 17:07:21.549 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\drivers\hamachi.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2017-03-18 17:07:21.511 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\drivers\hamachi.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2017-03-18 17:07:21.477 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\drivers\hamachi.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2017-03-18 17:07:18.032 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\drivers\hamachi.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2017-03-18 17:07:18.000 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\drivers\hamachi.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2017-03-18 17:04:56.064 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\drivers\hamachi.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2017-03-18 17:04:56.031 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\drivers\hamachi.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2017-03-18 17:03:53.247 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\drivers\Hamdrv.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2017-03-18 17:03:53.246 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\drivers\Hamdrv.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. ==================== Statystyki pamięci =========================== Procesor: Intel(R) Core(TM) i5-4460 CPU @ 3.20GHz Procent pamięci w użyciu: 33% Całkowita pamięć fizyczna: 8120 MB Dostępna pamięć fizyczna: 5428.38 MB Całkowita pamięć wirtualna: 16238.18 MB Dostępna pamięć wirtualna: 13342.66 MB ==================== Dyski ================================ Drive c: () (Fixed) (Total:119.14 GB) (Free:24.32 GB) NTFS ==>[dysk z komponentami startowymi (pozyskano odczytując BCD)] Drive d: () (Fixed) (Total:199.9 GB) (Free:188.14 GB) NTFS Drive e: () (Fixed) (Total:400 GB) (Free:123.53 GB) NTFS Drive f: () (Fixed) (Total:331.5 GB) (Free:328.21 GB) NTFS Drive h: (DISK1) (CDROM) (Total:0.67 GB) (Free:0 GB) CDFS ==================== MBR & Tablica partycji ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 119.2 GB) (Disk ID: F0822A17) Partition 1: (Active) - (Size=119.1 GB) - (Type=07 NTFS) ======================================================== Disk: 1 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: 26542653) Partition 1: (Active) - (Size=199.9 GB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=731.5 GB) - (Type=OF Extended) ==================== Koniec Addition.txt ============================